Demande de conseils sur un rapport SpybotSD
Choco
-
marco13 Messages postés 817 Statut Membre -
marco13 Messages postés 817 Statut Membre -
Bonjour à tous...
Je viens de lancer ma premiere recherche de spywares sur spybot... Voici le rapport qui m'a été fait!!
Malheureuse inculte et débutante que je suis je n'y comprens pas grand chose ... pouvez vous me dire s'il y a raison de m'inquiéter au vu de ce qu'il y a marqué dans le rapport !!
Merci d'avance à ceux qui accepteront de se pencher sur ce rapport!
--- Spybot - Search && Destroy version: 1.3 ---
2004-05-12 Includes\Cookies.sbi
2004-05-12 Includes\Dialer.sbi
2004-05-12 Includes\Hijackers.sbi
2004-05-12 Includes\Keyloggers.sbi
2004-05-12 Includes\LSP.sbi
2004-05-12 Includes\Malware.sbi
2004-05-12 Includes\Revision.sbi
2004-05-12 Includes\Security.sbi
2004-05-12 Includes\Spybots.sbi
2004-05-12 Includes\Tracks.uti
2004-05-12 Includes\Trojans.sbi
--- System information ---
Windows XP (Build: 2600)
/ Windows XP / SP1: Windows XP Hotfix - KB823980
/ Windows XP / SP1: Windows XP Hotfix (SP1) [See Q307274 for more information]
/ Windows XP / SP1 / Q308387: Windows XP Hotfix (SP1) [See Q308387 for more information]
/ Windows XP / SP1: Windows XP Hotfix (SP1) [See Q308402 for more information]
/ Windows XP / SP1 / Q308677: Windows XP Hotfix (SP1) [See Q308677 for more information]
/ Windows XP / SP1 / Q308678: Windows XP Hotfix (SP1) [See Q308678 for more information]
/ Windows XP / SP1: Windows XP Hotfix (SP1) [See Q315000 for more information]
/ Windows XP / SP1: Windows XP Hotfix (SP1) [See Q315403 for more information]
/ Windows XP / SP1: Windows XP Hotfix (SP1) [See Q316134 for more information]
/ Windows XP / SP1: Windows XP Hotfix (SP1) [See Q317277 for more information]
--- Startup entries list ---
Located: HK_LM:Run, AdslTaskBar
command: rundll32.exe stmctrl.dll,TaskBar
file: C:\WINDOWS\system32\rundll32.exe
size: 32256
MD5: ac0f912ea7571e9c1ad7b64c83f72bd9
Located: HK_LM:Run, Audio
command: C:\PNP\AUDIO\SOUNDMAN.EXE
file: C:\PNP\AUDIO\SOUNDMAN.EXE
size: 46592
MD5: f9bfdff7e19127ca836338f4c9236d79
Located: HK_LM:Run, AVPCC
command: "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
file: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
size: 487488
MD5: 580c84849fcd146fd46995ddff03e408
Located: HK_LM:Run, ccApp
command: "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
file: C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
size: 54512
MD5: 51bd35c44aba5df97d9fa15bbdc6d8be
Located: HK_LM:Run, ccRegVfy
command: "C:\Program Files\Fichiers communs\Symantec Shared\ccRegVfy.exe"
file: C:\Program Files\Fichiers communs\Symantec Shared\ccRegVfy.exe
size: 60344
MD5: 4d7f1e9d324fbffa6ec304c7d578550d
Located: HK_LM:Run, ESB
command: C:\WINDOWS\System32\ESB.exe
file: C:\WINDOWS\System32\ESB.exe
size: 274432
MD5: ed0d774217bd9511b0107f2621bf884e
Located: HK_LM:Run, HPDJ Taskbar Utility
command: C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
file: C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
size: 196608
MD5: 7c6b5065e7326e3c91a62800df3a31fa
Located: HK_LM:Run, LWBMOUSE
command: C:\Program Files\iWare\iWare Mouse\3.2\lwbwheel.exe
file: C:\Program Files\iWare\iWare Mouse\3.2\lwbwheel.exe
size: 359424
MD5: 14fd30e53471246bb8d7b092423f985c
Located: HK_LM:Run, NvCplDaemon
command: RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
file: C:\WINDOWS\system32\RUNDLL32.EXE
size: 32256
MD5: ac0f912ea7571e9c1ad7b64c83f72bd9
Located: HK_LM:Run, nwiz
command: nwiz.exe /installquiet
file: C:\WINDOWS\system32\nwiz.exe
size: 372736
MD5: 857d048a75a4ae03703dc0b23f2684ae
Located: HK_LM:Run, OfficeGuard RegChecker
command: "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
file: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe
size: 24576
MD5: 12ce31b22a0d8cab310aafaa1c1858c1
Located: HK_LM:Run, PCTVOICE
command: pctspk.exe
file: C:\WINDOWS\system32\pctspk.exe
size: 167936
MD5: 7661ef69b2c8296fc2f69b67572c77ee
Located: HK_LM:Run, SiSUSBRG
command: C:\WINDOWS\sisUSBrg.exe
file: C:\WINDOWS\sisUSBrg.exe
size: 32768
MD5: 73586316bd6976762753767762e46e70
Located: HK_LM:Run, SynTPEnh
command: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
file: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
size: 561152
MD5: 83b530c0e538bb9df86885ef3204bf15
Located: HK_LM:Run, SynTPLpr
command: C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
file: C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
size: 126976
MD5: 36a4a0a4b0827a8535f98000cfeb6115
Located: HK_CU:Run, MsnMsgr
command: "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
file: C:\Program Files\MSN Messenger\MsnMsgr.Exe
size: 4882432
MD5: f914c780dc4a3eb6eec812f0dddc0e3a
Located: Startup (common), Microsoft Office.lnk
command: C:\Program Files\Microsoft Office\Office10\OSA.EXE
file: C:\Program Files\Microsoft Office\Office10\OSA.EXE
size: 83360
MD5: 5bc65464354a9fd3beaa28e18839734a
--- Browser helper object list ---
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class)
BHO name:
CLSID name: AcroIEHlprObj Class
description: Adobe Acrobat reader
classification: Legitimate
known filename: ACROIEHELPER.OCX
info link: http://www.adobe.com/products/acrobat/readstep2.html
info source: TonyKlein
Path: C:\apps\Adobe\Acrobat 5.0\Reader\ActiveX\
Long name: AcroIEHelper.ocx
Short name: ACROIE~1.OCX
Date (created): 12/02/2004 11:40:38
Date (last access): 26/06/2004 13:24:24
Date (last write): 02/03/2001 13:02:04
Filesize: 37808
Attributes: archive
MD5: 8394ABFC1BE196A62C9F532511936DF7
CRC32: 71D6E350
Version: 0.1.0.0
{53707962-6F74-2D53-2644-206D7942484F} ()
BHO name:
CLSID name:
description: Spybot-S&D IE Browser plugin
classification: Legitimate
known filename: SDHelper.dll
info link: http://spybot.eon.net.au/
info source: Patrick M. Kolla
Path: C:\PROGRA~1\SPYBOT~1\
Long name: SDHelper.dll
Short name:
Date (created): 12/05/2004 01:03:00
Date (last access): 26/06/2004 13:24:24
Date (last write): 12/05/2004 01:03:00
Filesize: 744960
Attributes: archive
MD5: ABF5BA518C6A5ED104496FF42D19AD88
CRC32: 5587736E
Version: 0.1.0.3
{AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
BHO name:
CLSID name: Google Toolbar Helper
description: Google toolbar
classification: Open for discussion
known filename: Googletoolbar.dll
info link: http://toolbar.google.com/
info source: TonyKlein
Path: c:\program files\google\
Long name: GoogleToolbar1.dll
Short name: GOOGLE~1.DLL
Date (created): 18/06/2004 20:56:08
Date (last access): 26/06/2004 13:24:24
Date (last write): 18/06/2004 20:56:08
Filesize: 770048
Attributes: readonly archive
MD5: 477C394EB06C9F3C24CE59362ADF9A69
CRC32: 9C5C1D00
Version: 0.2.0.0
--- ActiveX list ---
Microsoft XML Parser for Java (Microsoft XML Parser for Java)
DPF name: Microsoft XML Parser for Java
CLSID name:
description:
classification: Legitimate
known filename: %WINDIR%\Java\classes\xmldso.cab
info link:
info source: Patrick M. Kolla
{CC05BC12-2AA2-4AC7-AC81-0E40F83B1ADF} (Live365Player Class)
DPF name:
CLSID name: Live365Player Class
Path: C:\WINDOWS\DOWNLO~1\
Long name: Play365.dll
Short name:
Date (created): 06/06/2003 18:06:56
Date (last access): 26/06/2004 13:15:06
Date (last write): 06/06/2003 18:06:56
Filesize: 335872
Attributes: archive
MD5: 02D3243B77F6C3EFBF67AAD62C26B443
CRC32: FA8AB3C6
Version: 0.1.0.0
{EFB22865-F3BC-4309-ADFA-C8E078A7F762} (SysWebTelecomInt Class)
DPF name:
CLSID name: SysWebTelecomInt Class
Path: C:\WINDOWS\DOWNLO~1\
Long name: SysWebTelecomInt.dll
Short name: SYSWEB~1.DLL
Date (created): 30/09/2003 18:45:42
Date (last access): 26/06/2004 13:15:06
Date (last write): 30/09/2003 18:45:42
Filesize: 51712
Attributes: archive
MD5: CCAC10F75A75137B906D25BC92321E9B
CRC32: F5867E6A
Version: 0.1.0.0
--- Process list ---
Spybot - Search && Destroy process list report, 26/06/2004 13:38:35
PID: 0 ( 0) [System]
PID: 4 ( 0) System
PID: 464 ( 4) \SystemRoot\System32\smss.exe
PID: 520 ( 464) csrss.exe
PID: 544 ( 464) \??\C:\WINDOWS\system32\winlogon.exe
PID: 588 ( 544) C:\WINDOWS\system32\services.exe
PID: 600 ( 544) C:\WINDOWS\system32\lsass.exe
PID: 764 ( 588) C:\WINDOWS\system32\svchost.exe
PID: 808 ( 588) C:\WINDOWS\System32\svchost.exe
PID: 976 ( 588) svchost.exe
PID: 1092 (1076) C:\WINDOWS\Explorer.EXE
PID: 1148 ( 588) svchost.exe
PID: 1168 (1092) C:\WINDOWS\System32\pctspk.exe
PID: 1240 (1092) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
PID: 1248 (1092) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
PID: 1280 (1092) C:\PNP\AUDIO\SOUNDMAN.EXE
PID: 1296 (1092) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
PID: 1348 (1092) C:\WINDOWS\System32\ESB.exe
PID: 1356 ( 588) C:\WINDOWS\system32\spoolsv.exe
PID: 1372 (1092) C:\Program Files\iWare\iWare Mouse\3.2\lwbwheel.exe
PID: 1392 (1092) C:\WINDOWS\System32\rundll32.exe
PID: 1436 ( 588) C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
PID: 1536 (1180) C:\WINDOWS\System32\ctfmon.exe
PID: 1796 ( 588) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
PID: 1824 ( 588) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
PID: 1888 ( 588) C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
PID: 1952 ( 588) C:\WINDOWS\System32\nvsvc32.exe
PID: 2092 (3520) C:\Program Files\eMule\eMule.exe
PID: 2412 (2212) C:\Program Files\MSN Messenger\msnmsgr.exe
PID: 2724 (1092) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
PID: 3976 ( 588) alg.exe
--- Browser start & search pages list ---
Spybot - Search && Destroy browser pages report, 26/06/2004 13:38:35
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
C:\WINDOWS\System32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.tele2.fr/startpage/adsl/fr/
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
%SystemRoot%\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
--- Winsock Layered Service Provider list ---
Protocol 0: MSAFD Tcpip [TCP/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]
Protocol 1: MSAFD Tcpip [UDP/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]
Protocol 2: MSAFD Tcpip [RAW/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]
Protocol 3: RSVP UDP Service Provider
GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
Filename: %SystemRoot%\system32\rsvpsp.dll
Description: Microsoft Windows NT/2k/XP RVSP
DB filename: %SystemRoot%\system32\rsvpsp.dll
DB protocol: RSVP * Service Provider
Protocol 4: RSVP TCP Service Provider
GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
Filename: %SystemRoot%\system32\rsvpsp.dll
Description: Microsoft Windows NT/2k/XP RVSP
DB filename: %SystemRoot%\system32\rsvpsp.dll
DB protocol: RSVP * Service Provider
Protocol 5: MSAFD NetBIOS [\Device\NetBT_Tcpip_{CED4C139-F354-44A8-9454-BDA0BAE97928}] SEQPACKET 1
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 6: MSAFD NetBIOS [\Device\NetBT_Tcpip_{CED4C139-F354-44A8-9454-BDA0BAE97928}] DATAGRAM 1
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 7: MSAFD NetBIOS [\Device\NetBT_Tcpip_{33718012-BAA3-41E5-BC43-86A5CBE86DAA}] SEQPACKET 0
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 8: MSAFD NetBIOS [\Device\NetBT_Tcpip_{33718012-BAA3-41E5-BC43-86A5CBE86DAA}] DATAGRAM 0
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 9: MSAFD NetBIOS [\Device\NetBT_Tcpip_{42E681BA-22CC-428E-9333-2726106B7BB4}] SEQPACKET 2
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 10: MSAFD NetBIOS [\Device\NetBT_Tcpip_{42E681BA-22CC-428E-9333-2726106B7BB4}] DATAGRAM 2
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 11: MSAFD NetBIOS [\Device\NetBT_Tcpip_{06AB001B-ABC4-4F7E-8A95-FF837FBDE58C}] SEQPACKET 3
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 12: MSAFD NetBIOS [\Device\NetBT_Tcpip_{06AB001B-ABC4-4F7E-8A95-FF837FBDE58C}] DATAGRAM 3
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 13: MSAFD NetBIOS [\Device\NetBT_Tcpip_{F2D637CB-D3F2-478B-B4B7-801E52081F67}] SEQPACKET 4
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 14: MSAFD NetBIOS [\Device\NetBT_Tcpip_{F2D637CB-D3F2-478B-B4B7-801E52081F67}] DATAGRAM 4
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 15: MSAFD NetBIOS [\Device\NetBT_Tcpip_{D0674BB8-E88E-4CF3-994F-4B584E440863}] SEQPACKET 5
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 16: MSAFD NetBIOS [\Device\NetBT_Tcpip_{D0674BB8-E88E-4CF3-994F-4B584E440863}] DATAGRAM 5
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Namespace Provider 0: TCP/IP
GUID: {22059D40-7E9E-11CF-AE5A-00AA00A7112B}
Filename: %SystemRoot%\System32\mswsock.dll
Description: Microsoft Windows NT/2k/XP TCP/IP name space provider
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: TCP/IP
Namespace Provider 1: NTDS
GUID: {3B2637EE-E580-11CF-A555-00C04FD8D4AC}
Filename: %SystemRoot%\System32\winrnr.dll
Description: Microsoft Windows NT/2k/XP name space provider
DB filename: %SystemRoot%\system32\winrnr.dll
DB protocol: NTDS
Namespace Provider 2: Espace de noms NLA (Network Location Awareness)
GUID: {6642243A-3BA8-4AA6-BAA5-2E0BD71FDD83}
Filename: %SystemRoot%\System32\mswsock.dll
Description: Microsoft Windows NT/2k/XP name space provider
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: NLA-Namespace
Euhhhhhhh... Voilà c'est tout : )
Merci...
Je viens de lancer ma premiere recherche de spywares sur spybot... Voici le rapport qui m'a été fait!!
Malheureuse inculte et débutante que je suis je n'y comprens pas grand chose ... pouvez vous me dire s'il y a raison de m'inquiéter au vu de ce qu'il y a marqué dans le rapport !!
Merci d'avance à ceux qui accepteront de se pencher sur ce rapport!
--- Spybot - Search && Destroy version: 1.3 ---
2004-05-12 Includes\Cookies.sbi
2004-05-12 Includes\Dialer.sbi
2004-05-12 Includes\Hijackers.sbi
2004-05-12 Includes\Keyloggers.sbi
2004-05-12 Includes\LSP.sbi
2004-05-12 Includes\Malware.sbi
2004-05-12 Includes\Revision.sbi
2004-05-12 Includes\Security.sbi
2004-05-12 Includes\Spybots.sbi
2004-05-12 Includes\Tracks.uti
2004-05-12 Includes\Trojans.sbi
--- System information ---
Windows XP (Build: 2600)
/ Windows XP / SP1: Windows XP Hotfix - KB823980
/ Windows XP / SP1: Windows XP Hotfix (SP1) [See Q307274 for more information]
/ Windows XP / SP1 / Q308387: Windows XP Hotfix (SP1) [See Q308387 for more information]
/ Windows XP / SP1: Windows XP Hotfix (SP1) [See Q308402 for more information]
/ Windows XP / SP1 / Q308677: Windows XP Hotfix (SP1) [See Q308677 for more information]
/ Windows XP / SP1 / Q308678: Windows XP Hotfix (SP1) [See Q308678 for more information]
/ Windows XP / SP1: Windows XP Hotfix (SP1) [See Q315000 for more information]
/ Windows XP / SP1: Windows XP Hotfix (SP1) [See Q315403 for more information]
/ Windows XP / SP1: Windows XP Hotfix (SP1) [See Q316134 for more information]
/ Windows XP / SP1: Windows XP Hotfix (SP1) [See Q317277 for more information]
--- Startup entries list ---
Located: HK_LM:Run, AdslTaskBar
command: rundll32.exe stmctrl.dll,TaskBar
file: C:\WINDOWS\system32\rundll32.exe
size: 32256
MD5: ac0f912ea7571e9c1ad7b64c83f72bd9
Located: HK_LM:Run, Audio
command: C:\PNP\AUDIO\SOUNDMAN.EXE
file: C:\PNP\AUDIO\SOUNDMAN.EXE
size: 46592
MD5: f9bfdff7e19127ca836338f4c9236d79
Located: HK_LM:Run, AVPCC
command: "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe" /wait
file: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
size: 487488
MD5: 580c84849fcd146fd46995ddff03e408
Located: HK_LM:Run, ccApp
command: "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
file: C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
size: 54512
MD5: 51bd35c44aba5df97d9fa15bbdc6d8be
Located: HK_LM:Run, ccRegVfy
command: "C:\Program Files\Fichiers communs\Symantec Shared\ccRegVfy.exe"
file: C:\Program Files\Fichiers communs\Symantec Shared\ccRegVfy.exe
size: 60344
MD5: 4d7f1e9d324fbffa6ec304c7d578550d
Located: HK_LM:Run, ESB
command: C:\WINDOWS\System32\ESB.exe
file: C:\WINDOWS\System32\ESB.exe
size: 274432
MD5: ed0d774217bd9511b0107f2621bf884e
Located: HK_LM:Run, HPDJ Taskbar Utility
command: C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
file: C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
size: 196608
MD5: 7c6b5065e7326e3c91a62800df3a31fa
Located: HK_LM:Run, LWBMOUSE
command: C:\Program Files\iWare\iWare Mouse\3.2\lwbwheel.exe
file: C:\Program Files\iWare\iWare Mouse\3.2\lwbwheel.exe
size: 359424
MD5: 14fd30e53471246bb8d7b092423f985c
Located: HK_LM:Run, NvCplDaemon
command: RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
file: C:\WINDOWS\system32\RUNDLL32.EXE
size: 32256
MD5: ac0f912ea7571e9c1ad7b64c83f72bd9
Located: HK_LM:Run, nwiz
command: nwiz.exe /installquiet
file: C:\WINDOWS\system32\nwiz.exe
size: 372736
MD5: 857d048a75a4ae03703dc0b23f2684ae
Located: HK_LM:Run, OfficeGuard RegChecker
command: "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe"
file: C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\ogrc.exe
size: 24576
MD5: 12ce31b22a0d8cab310aafaa1c1858c1
Located: HK_LM:Run, PCTVOICE
command: pctspk.exe
file: C:\WINDOWS\system32\pctspk.exe
size: 167936
MD5: 7661ef69b2c8296fc2f69b67572c77ee
Located: HK_LM:Run, SiSUSBRG
command: C:\WINDOWS\sisUSBrg.exe
file: C:\WINDOWS\sisUSBrg.exe
size: 32768
MD5: 73586316bd6976762753767762e46e70
Located: HK_LM:Run, SynTPEnh
command: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
file: C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
size: 561152
MD5: 83b530c0e538bb9df86885ef3204bf15
Located: HK_LM:Run, SynTPLpr
command: C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
file: C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
size: 126976
MD5: 36a4a0a4b0827a8535f98000cfeb6115
Located: HK_CU:Run, MsnMsgr
command: "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
file: C:\Program Files\MSN Messenger\MsnMsgr.Exe
size: 4882432
MD5: f914c780dc4a3eb6eec812f0dddc0e3a
Located: Startup (common), Microsoft Office.lnk
command: C:\Program Files\Microsoft Office\Office10\OSA.EXE
file: C:\Program Files\Microsoft Office\Office10\OSA.EXE
size: 83360
MD5: 5bc65464354a9fd3beaa28e18839734a
--- Browser helper object list ---
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} (AcroIEHlprObj Class)
BHO name:
CLSID name: AcroIEHlprObj Class
description: Adobe Acrobat reader
classification: Legitimate
known filename: ACROIEHELPER.OCX
info link: http://www.adobe.com/products/acrobat/readstep2.html
info source: TonyKlein
Path: C:\apps\Adobe\Acrobat 5.0\Reader\ActiveX\
Long name: AcroIEHelper.ocx
Short name: ACROIE~1.OCX
Date (created): 12/02/2004 11:40:38
Date (last access): 26/06/2004 13:24:24
Date (last write): 02/03/2001 13:02:04
Filesize: 37808
Attributes: archive
MD5: 8394ABFC1BE196A62C9F532511936DF7
CRC32: 71D6E350
Version: 0.1.0.0
{53707962-6F74-2D53-2644-206D7942484F} ()
BHO name:
CLSID name:
description: Spybot-S&D IE Browser plugin
classification: Legitimate
known filename: SDHelper.dll
info link: http://spybot.eon.net.au/
info source: Patrick M. Kolla
Path: C:\PROGRA~1\SPYBOT~1\
Long name: SDHelper.dll
Short name:
Date (created): 12/05/2004 01:03:00
Date (last access): 26/06/2004 13:24:24
Date (last write): 12/05/2004 01:03:00
Filesize: 744960
Attributes: archive
MD5: ABF5BA518C6A5ED104496FF42D19AD88
CRC32: 5587736E
Version: 0.1.0.3
{AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
BHO name:
CLSID name: Google Toolbar Helper
description: Google toolbar
classification: Open for discussion
known filename: Googletoolbar.dll
info link: http://toolbar.google.com/
info source: TonyKlein
Path: c:\program files\google\
Long name: GoogleToolbar1.dll
Short name: GOOGLE~1.DLL
Date (created): 18/06/2004 20:56:08
Date (last access): 26/06/2004 13:24:24
Date (last write): 18/06/2004 20:56:08
Filesize: 770048
Attributes: readonly archive
MD5: 477C394EB06C9F3C24CE59362ADF9A69
CRC32: 9C5C1D00
Version: 0.2.0.0
--- ActiveX list ---
Microsoft XML Parser for Java (Microsoft XML Parser for Java)
DPF name: Microsoft XML Parser for Java
CLSID name:
description:
classification: Legitimate
known filename: %WINDIR%\Java\classes\xmldso.cab
info link:
info source: Patrick M. Kolla
{CC05BC12-2AA2-4AC7-AC81-0E40F83B1ADF} (Live365Player Class)
DPF name:
CLSID name: Live365Player Class
Path: C:\WINDOWS\DOWNLO~1\
Long name: Play365.dll
Short name:
Date (created): 06/06/2003 18:06:56
Date (last access): 26/06/2004 13:15:06
Date (last write): 06/06/2003 18:06:56
Filesize: 335872
Attributes: archive
MD5: 02D3243B77F6C3EFBF67AAD62C26B443
CRC32: FA8AB3C6
Version: 0.1.0.0
{EFB22865-F3BC-4309-ADFA-C8E078A7F762} (SysWebTelecomInt Class)
DPF name:
CLSID name: SysWebTelecomInt Class
Path: C:\WINDOWS\DOWNLO~1\
Long name: SysWebTelecomInt.dll
Short name: SYSWEB~1.DLL
Date (created): 30/09/2003 18:45:42
Date (last access): 26/06/2004 13:15:06
Date (last write): 30/09/2003 18:45:42
Filesize: 51712
Attributes: archive
MD5: CCAC10F75A75137B906D25BC92321E9B
CRC32: F5867E6A
Version: 0.1.0.0
--- Process list ---
Spybot - Search && Destroy process list report, 26/06/2004 13:38:35
PID: 0 ( 0) [System]
PID: 4 ( 0) System
PID: 464 ( 4) \SystemRoot\System32\smss.exe
PID: 520 ( 464) csrss.exe
PID: 544 ( 464) \??\C:\WINDOWS\system32\winlogon.exe
PID: 588 ( 544) C:\WINDOWS\system32\services.exe
PID: 600 ( 544) C:\WINDOWS\system32\lsass.exe
PID: 764 ( 588) C:\WINDOWS\system32\svchost.exe
PID: 808 ( 588) C:\WINDOWS\System32\svchost.exe
PID: 976 ( 588) svchost.exe
PID: 1092 (1076) C:\WINDOWS\Explorer.EXE
PID: 1148 ( 588) svchost.exe
PID: 1168 (1092) C:\WINDOWS\System32\pctspk.exe
PID: 1240 (1092) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
PID: 1248 (1092) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
PID: 1280 (1092) C:\PNP\AUDIO\SOUNDMAN.EXE
PID: 1296 (1092) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
PID: 1348 (1092) C:\WINDOWS\System32\ESB.exe
PID: 1356 ( 588) C:\WINDOWS\system32\spoolsv.exe
PID: 1372 (1092) C:\Program Files\iWare\iWare Mouse\3.2\lwbwheel.exe
PID: 1392 (1092) C:\WINDOWS\System32\rundll32.exe
PID: 1436 ( 588) C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
PID: 1536 (1180) C:\WINDOWS\System32\ctfmon.exe
PID: 1796 ( 588) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpcc.exe
PID: 1824 ( 588) C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal Pro\avpm.exe
PID: 1888 ( 588) C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
PID: 1952 ( 588) C:\WINDOWS\System32\nvsvc32.exe
PID: 2092 (3520) C:\Program Files\eMule\eMule.exe
PID: 2412 (2212) C:\Program Files\MSN Messenger\msnmsgr.exe
PID: 2724 (1092) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
PID: 3976 ( 588) alg.exe
--- Browser start & search pages list ---
Spybot - Search && Destroy browser pages report, 26/06/2004 13:38:35
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
C:\WINDOWS\System32\blank.htm
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.tele2.fr/startpage/adsl/fr/
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
%SystemRoot%\system32\blank.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Page_URL
http://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Default_Search_URL
http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchasst.htm
HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
--- Winsock Layered Service Provider list ---
Protocol 0: MSAFD Tcpip [TCP/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]
Protocol 1: MSAFD Tcpip [UDP/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]
Protocol 2: MSAFD Tcpip [RAW/IP]
GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP IP protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD Tcpip [*]
Protocol 3: RSVP UDP Service Provider
GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
Filename: %SystemRoot%\system32\rsvpsp.dll
Description: Microsoft Windows NT/2k/XP RVSP
DB filename: %SystemRoot%\system32\rsvpsp.dll
DB protocol: RSVP * Service Provider
Protocol 4: RSVP TCP Service Provider
GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
Filename: %SystemRoot%\system32\rsvpsp.dll
Description: Microsoft Windows NT/2k/XP RVSP
DB filename: %SystemRoot%\system32\rsvpsp.dll
DB protocol: RSVP * Service Provider
Protocol 5: MSAFD NetBIOS [\Device\NetBT_Tcpip_{CED4C139-F354-44A8-9454-BDA0BAE97928}] SEQPACKET 1
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 6: MSAFD NetBIOS [\Device\NetBT_Tcpip_{CED4C139-F354-44A8-9454-BDA0BAE97928}] DATAGRAM 1
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 7: MSAFD NetBIOS [\Device\NetBT_Tcpip_{33718012-BAA3-41E5-BC43-86A5CBE86DAA}] SEQPACKET 0
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 8: MSAFD NetBIOS [\Device\NetBT_Tcpip_{33718012-BAA3-41E5-BC43-86A5CBE86DAA}] DATAGRAM 0
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 9: MSAFD NetBIOS [\Device\NetBT_Tcpip_{42E681BA-22CC-428E-9333-2726106B7BB4}] SEQPACKET 2
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 10: MSAFD NetBIOS [\Device\NetBT_Tcpip_{42E681BA-22CC-428E-9333-2726106B7BB4}] DATAGRAM 2
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 11: MSAFD NetBIOS [\Device\NetBT_Tcpip_{06AB001B-ABC4-4F7E-8A95-FF837FBDE58C}] SEQPACKET 3
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 12: MSAFD NetBIOS [\Device\NetBT_Tcpip_{06AB001B-ABC4-4F7E-8A95-FF837FBDE58C}] DATAGRAM 3
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 13: MSAFD NetBIOS [\Device\NetBT_Tcpip_{F2D637CB-D3F2-478B-B4B7-801E52081F67}] SEQPACKET 4
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 14: MSAFD NetBIOS [\Device\NetBT_Tcpip_{F2D637CB-D3F2-478B-B4B7-801E52081F67}] DATAGRAM 4
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 15: MSAFD NetBIOS [\Device\NetBT_Tcpip_{D0674BB8-E88E-4CF3-994F-4B584E440863}] SEQPACKET 5
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Protocol 16: MSAFD NetBIOS [\Device\NetBT_Tcpip_{D0674BB8-E88E-4CF3-994F-4B584E440863}] DATAGRAM 5
GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
Filename: %SystemRoot%\system32\mswsock.dll
Description: Microsoft Windows NT/2k/XP NetBios protocol
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: MSAFD NetBIOS *
Namespace Provider 0: TCP/IP
GUID: {22059D40-7E9E-11CF-AE5A-00AA00A7112B}
Filename: %SystemRoot%\System32\mswsock.dll
Description: Microsoft Windows NT/2k/XP TCP/IP name space provider
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: TCP/IP
Namespace Provider 1: NTDS
GUID: {3B2637EE-E580-11CF-A555-00C04FD8D4AC}
Filename: %SystemRoot%\System32\winrnr.dll
Description: Microsoft Windows NT/2k/XP name space provider
DB filename: %SystemRoot%\system32\winrnr.dll
DB protocol: NTDS
Namespace Provider 2: Espace de noms NLA (Network Location Awareness)
GUID: {6642243A-3BA8-4AA6-BAA5-2E0BD71FDD83}
Filename: %SystemRoot%\System32\mswsock.dll
Description: Microsoft Windows NT/2k/XP name space provider
DB filename: %SystemRoot%\system32\mswsock.dll
DB protocol: NLA-Namespace
Euhhhhhhh... Voilà c'est tout : )
Merci...
A voir également:
- Demande de conseils sur un rapport SpybotSD
- Plan d'un rapport de stage - Guide
- Rapport de crash windows - Guide
- Acheter un rapport de stage - Forum Programmation
- Impossible d'afficher le rapport de tableau croisé dynamique sur un rapport existant ✓ - Forum Excel
- Excel 2010 - TCD - message d'erreur - Forum Excel
3 réponses
salut choco,
Tu te donnes du mal pour rien. Tu fais tout vérifier par Spybot et tout ce qu'il trouve, tu le coches et "corriger les problemes". Il y a une sauvegarde automatique par défaut (à moins que tu ais décoché la case, dans "réglages"). Si tu as des problèmes, tu peux restaurer ce que tu avais supprimé.
Tu te donnes du mal pour rien. Tu fais tout vérifier par Spybot et tout ce qu'il trouve, tu le coches et "corriger les problemes". Il y a une sauvegarde automatique par défaut (à moins que tu ais décoché la case, dans "réglages"). Si tu as des problèmes, tu peux restaurer ce que tu avais supprimé.
Merci... à ki?? Marco!!
Bon ok j'arrete de paranoïer : )
Mais c'est vrai que g tjrs peur de faire une erreur et d'effacer un programme fondamental ... Mais bon il va falloir que j'apprenne à calmer mes craintes !
Merci encore !
Bon ok j'arrete de paranoïer : )
Mais c'est vrai que g tjrs peur de faire une erreur et d'effacer un programme fondamental ... Mais bon il va falloir que j'apprenne à calmer mes craintes !
Merci encore !
voilà pour configurer spybot,
http://assiste.free.fr/p/frameset/06_37.php
http://tomcoyote.com/SPYBOT/indexfr.php
http://www.zebulon.fr/articles/spybot_1.php
http://assiste.free.fr/p/frameset/06_37.php
http://tomcoyote.com/SPYBOT/indexfr.php
http://www.zebulon.fr/articles/spybot_1.php