25 réponses
Utilisateur anonyme
20 sept. 2008 à 19:03
20 sept. 2008 à 19:03
Clique sur ce lien :
http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe
Clique sur navilog1.exe pour télécharger navilog1
Choisis Enregistrer
et enregistre-le sur ton bureau.
Ensuite double clique sur navilog1.exe pour lancer l'installation.
Une fois l'installation terminée, le fix s'exécutera automatiquement.
(Si ce n'est pas le cas, double-clique sur le raccourci Navilog1 présent sur le bureau).
Laisse-toi guider. Au menu principal, choisis 1 et valide.
(ne fais pas le choix 2,3 ou 4 sans notre avis/accord)
Patiente jusqu'au message :
*** Analyse Terminée le ..... ***
Appuie sur une touche comme demandé, le bloc note va s'ouvrir.
Copie-colle l'intégralité dans une réponse. Referme le bloc note.
Le rapport est en outre sauvegardé à la racine du disque (C:\fixnavi.txt)
poste le rapport obtenu
a+
http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe
Clique sur navilog1.exe pour télécharger navilog1
Choisis Enregistrer
et enregistre-le sur ton bureau.
Ensuite double clique sur navilog1.exe pour lancer l'installation.
Une fois l'installation terminée, le fix s'exécutera automatiquement.
(Si ce n'est pas le cas, double-clique sur le raccourci Navilog1 présent sur le bureau).
Laisse-toi guider. Au menu principal, choisis 1 et valide.
(ne fais pas le choix 2,3 ou 4 sans notre avis/accord)
Patiente jusqu'au message :
*** Analyse Terminée le ..... ***
Appuie sur une touche comme demandé, le bloc note va s'ouvrir.
Copie-colle l'intégralité dans une réponse. Referme le bloc note.
Le rapport est en outre sauvegardé à la racine du disque (C:\fixnavi.txt)
poste le rapport obtenu
a+
merci
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:50:53, on 20/09/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe
C:\WINDOWS\vsnpstd.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\TRENDnet\TEW-424UB\WlanCU.exe
C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
c:\windows\system\hpsysdrv.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: IE7Pro - {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Program Files\IEPro\iepro.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: (no name) - {254B87BB-510D-41FA-A887-52C5FA9BE585} - (no file)
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [ISUSPM] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -scheduler
O4 - HKLM\..\Run: [snpstd] C:\WINDOWS\vsnpstd.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [axis web cake second] C:\Documents and Settings\All Users\Application Data\Book Slow Axis Web\DEFAULT REMOTE.exe
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_1_0
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [GplOne] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ENCDEB~1\Curb Cash.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - Startup: ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE
O4 - Startup: Outil de notification Live Search.lnk = ?
O4 - Global Startup: Démarrage rapide de HP Photosmart Premier.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Wireless Configuration Utility.lnk = C:\Program Files\TRENDnet\TEW-424UB\WlanCU.exe
O9 - Extra button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll
O9 - Extra 'Tools' menuitem: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O20 - AppInit_DLLs: wbsys.dllC:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iolo FileInfoList Service (ioloFileInfoList) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe (file missing)
O23 - Service: iolo System Service (ioloSystemService) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe (file missing)
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:50:53, on 20/09/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe
C:\WINDOWS\vsnpstd.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\TRENDnet\TEW-424UB\WlanCU.exe
C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
c:\windows\system\hpsysdrv.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: IE7Pro - {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Program Files\IEPro\iepro.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: (no name) - {254B87BB-510D-41FA-A887-52C5FA9BE585} - (no file)
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [ISUSPM] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -scheduler
O4 - HKLM\..\Run: [snpstd] C:\WINDOWS\vsnpstd.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [axis web cake second] C:\Documents and Settings\All Users\Application Data\Book Slow Axis Web\DEFAULT REMOTE.exe
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_1_0
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [GplOne] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ENCDEB~1\Curb Cash.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - Startup: ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE
O4 - Startup: Outil de notification Live Search.lnk = ?
O4 - Global Startup: Démarrage rapide de HP Photosmart Premier.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Wireless Configuration Utility.lnk = C:\Program Files\TRENDnet\TEW-424UB\WlanCU.exe
O9 - Extra button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll
O9 - Extra 'Tools' menuitem: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O20 - AppInit_DLLs: wbsys.dllC:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iolo FileInfoList Service (ioloFileInfoList) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe (file missing)
O23 - Service: iolo System Service (ioloSystemService) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe (file missing)
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
Me suis tromper desole
Search Navipromo version 3.6.5 commencé le 20/09/2008 à 17:13:21,90
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!
Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "Compaq_Propriétaire"
Mise à jour le 22.08.2008 à 17h30 par IL-MAFIOSO
Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 7.0.5730.13
Système de fichiers : NTFS
Recherche executé en mode normal
*** Recherche Programmes installés ***
*** Recherche dossiers dans "C:\WINDOWS" ***
*** Recherche dossiers dans "C:\Program Files" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***
*** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Compaq_Propriétaire\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\COMPAQ~4\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\COMPAQ~3\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Compaq_Propriétaire\locals~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Compaq_Propriétaire\menudm~1\progra~1" ***
*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net
*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!
* Recherche dans "C:\WINDOWS\system32" *
* Recherche dans "C:\Documents and Settings\Compaq_Propriétaire\locals~1\applic~1" *
*** Recherche fichiers ***
*** Recherche clés spécifiques dans le Registre ***
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche nouveaux fichiers Instant Access :
2)Recherche Heuristique :
* Dans "C:\WINDOWS\system32" :
* Dans "C:\Documents and Settings\Compaq_Propriétaire\locals~1\applic~1" :
3)Recherche Certificats :
Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat Montorgueil absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !
4)Recherche fichiers connus :
*** Analyse terminée le 20/09/2008 à 17:28:56,74 ***
Search Navipromo version 3.6.5 commencé le 20/09/2008 à 17:13:21,90
!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!
Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "Compaq_Propriétaire"
Mise à jour le 22.08.2008 à 17h30 par IL-MAFIOSO
Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 7.0.5730.13
Système de fichiers : NTFS
Recherche executé en mode normal
*** Recherche Programmes installés ***
*** Recherche dossiers dans "C:\WINDOWS" ***
*** Recherche dossiers dans "C:\Program Files" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***
*** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Compaq_Propriétaire\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\COMPAQ~4\applic~1" ***
*** Recherche dossiers dans "C:\DOCUME~1\COMPAQ~3\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Compaq_Propriétaire\locals~1\applic~1" ***
*** Recherche dossiers dans "C:\Documents and Settings\Compaq_Propriétaire\menudm~1\progra~1" ***
*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net
*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!
* Recherche dans "C:\WINDOWS\system32" *
* Recherche dans "C:\Documents and Settings\Compaq_Propriétaire\locals~1\applic~1" *
*** Recherche fichiers ***
*** Recherche clés spécifiques dans le Registre ***
*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)
1)Recherche nouveaux fichiers Instant Access :
2)Recherche Heuristique :
* Dans "C:\WINDOWS\system32" :
* Dans "C:\Documents and Settings\Compaq_Propriétaire\locals~1\applic~1" :
3)Recherche Certificats :
Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat Montorgueil absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !
4)Recherche fichiers connus :
*** Analyse terminée le 20/09/2008 à 17:28:56,74 ***
non non c est bien d avoir coller hijack...
fait ceci maintenant
Fais un scan avec cet antispyware :
Telecharge malwarebytes + tutoriel :
-> https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Tu l´instale; le programme va se mettre automatiquement a jour.
Une fois a jour, le programme va se lancer; click sur l´onglet parametre, et coche la case : "Arreter internet explorer pendant la suppression".
Click maintenant sur l´onglet recherche et coche la case : "executer un examun complet".
Puis click sur "rechercher".
Laisse le scanner le pc...
Si des elements on ete trouvés > click sur supprimer la selection.
si il t´es demandé de redemarrer > click sur "yes".
A la fin un rapport va s´ouvrir; sauvegarde le de maniere a le retrouver en vu de le poster sur le forum.
Copie et colle le rapport stp.
fait ceci maintenant
Fais un scan avec cet antispyware :
Telecharge malwarebytes + tutoriel :
-> https://www.malekal.com/tutoriel-malwarebyte-anti-malware/
Tu l´instale; le programme va se mettre automatiquement a jour.
Une fois a jour, le programme va se lancer; click sur l´onglet parametre, et coche la case : "Arreter internet explorer pendant la suppression".
Click maintenant sur l´onglet recherche et coche la case : "executer un examun complet".
Puis click sur "rechercher".
Laisse le scanner le pc...
Si des elements on ete trouvés > click sur supprimer la selection.
si il t´es demandé de redemarrer > click sur "yes".
A la fin un rapport va s´ouvrir; sauvegarde le de maniere a le retrouver en vu de le poster sur le forum.
Copie et colle le rapport stp.
Malwarebytes' Anti-Malware 1.25
Version de la base de données: 1070
Windows 5.1.2600 Service Pack 3
20:22:52 20/09/2008
mbam-log-09-20-2008 (20-22-52).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 136082
Temps écoulé: 55 minute(s), 20 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
Logfile of Spyware Terminator v2.3.0.494 (db:2.009.019.000)
Scan Time: 20/09/2008 20:24:13 length: 169 s
Platform: WXP (5.1.0.2600)
User: Admin
Boot Mode: Normal
Scan type: Fast_Spyware_Scan
Scanned Objects: 41968 (Critical:0)
Filter: No System items, No Safe items, No Invalid items
Running Processes
Ati2evxx.exe [ATI Technologies Inc.] : C:\WINDOWS\system32\Ati2evxx.exe
wbload.exe [Stardock Systems, Inc] : C:\Program Files\AlienGUIse\wbload.exe
sched.exe [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
Ati2evxx.exe [ATI Technologies Inc.] : C:\WINDOWS\system32\Ati2evxx.exe
avguard.exe [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
CLCapSvc.exe : C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
CLMLServer.exe [Cyberlink] : C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
CLSched.exe : C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
avgnt.exe [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
MemOptimizer.exe [TuneUp Software GmbH] : C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
hpqtra08.exe [Hewlett-Packard Co.] : C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
WlanCU.exe : C:\Program Files\TRENDnet\TEW-424UB\WlanCU.exe
Notification-LiveSearch.exe [Microsoft Corporation] : C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
Mise-a-jour-LiveSearch.exe [Microsoft Corporation] : C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
hpqimzone.exe [Hewlett-Packard Development Company, L.P.] : C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
usnsvc.exe [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\usnsvc.exe
msnmsgr.exe [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\msnmsgr.exe
WinamaxPoker.exe : C:\Program Files\WinamaxPoker\WinamaxPoker.exe
Internet Settings
R - HKCU\Software\Microsoft\Internet Explorer\Main, Search Bar = https://actus.sfr.fr
R - HKLM\Software\Microsoft\Internet Explorer\Main, Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R - HKLM\System\CurrentControlSet\Services\Tcpip\Parameters, Domain =
R - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Telephony, DomainName =
BHO
02 - BHO: IE7Pro BHO - {00011268-E188-40DF-A514-835FCD78B1BF} - [IE7Pro.com] : C:\Program Files\IEPro\iepro.dll
02 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - [Google Inc.] : C:\Program Files\google\googletoolbar3.dll
02 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - [Microsoft Corporation] : C:\Program Files\Windows Live Toolbar\msntb.dll
Toolbars
03 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - [Google Inc.] : C:\Program Files\google\googletoolbar3.dll
03 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - [Microsoft Corporation] : C:\Program Files\Windows Live Toolbar\msntb.dll
StartUps
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, TuneUp MemOptimizer : [TuneUp Software GmbH] : C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DAEMON Tools Lite : [DT Soft Ltd] : C:\Program Files\DAEMON TOOLS LITE\DAEMON.EXE
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MsnMsgr : [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\msnmsgr.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GplOne : : C:\Documents and Settings\Compaq_Propriétaire\Application Data\encdebugcopy\Curb Cash.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, HPBootOp : [Hewlett-Packard Company] : C:\Program Files\HEWLETT-PACKARD\HP BOOT OPTIMIZER\HPBOOTOP.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avgnt : [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, axis web cake second : : C:\Documents and Settings\All Users\Application Data\Book Slow Axis Web\DEFAULT REMOTE.exe
04 - Startup: %STARTUP%\ERUNT AutoBackup.lnk : C:\Program Files\ERUNT\AUTOBACK.EXE
04 - Startup: %STARTUP%\Outil de notification Live Search.lnk [Microsoft Corporation] : C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
04 - Startup: %STARTUPALL%\Démarrage rapide de HP Photosmart Premier.lnk [Hewlett-Packard Development Company, L.P.] : C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
04 - Startup: %STARTUPALL%\HP Digital Imaging Monitor.lnk [Hewlett-Packard Co.] : C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
04 - Startup: %STARTUPALL%\Lancement rapide d'Adobe Reader.lnk [Adobe Systems Incorporated] : C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
04 - Startup: %STARTUPALL%\Wireless Configuration Utility.lnk : C:\Program Files\TRENDnet\TEW-424UB\WlanCU.exe
Shell Extensions
RealOne Player Context Menu Class - {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} - [RealNetworks, Inc.] : C:\Program Files\Real\RealPlayer\rpshell.dll
ShellViewRTF - {7F67036B-66F1-411A-AD85-759FB9C5B0DB} - [XSS] : C:\WINDOWS\system32\ShellvRTF.dll
Shell Extension for Malware scanning - {45AC2688-0253-4ED8-97DE-B5370FA7D48A} - [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\shlext.dll
WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} - : C:\Program Files\WinRAR\rarext.dll
TuneUp Theme Extension - {44440D00-FF19-4AFC-B765-9A0970567D97} - [TuneUp Software GmbH] : C:\WINDOWS\system32\uxtuneup.dll
Mes dossiers de partage - {FC9FB64A-1EB2-4CCF-AF5E-1A497A9B5C2D} - [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\fsshext.8.5.1302.1018.dll
Protocol Handler
- {828030A1-22C1-4009-854F-8E305202313F} - [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
- {828030A1-22C1-4009-854F-8E305202313F} - [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
Services
23 - [Meetinghouse Data Communications] : C:\WINDOWS\system32\DRIVERS\AegisP.sys
23 - [Realtek Semiconductor Corp.] : C:\WINDOWS\system32\drivers\ALCXWDM.SYS
23 - [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
23 - [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
23 - [ATI Technologies Inc.] : C:\WINDOWS\system32\Ati2evxx.exe
23 - [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys
23 - [Avira GmbH] : C:\WINDOWS\system32\DRIVERS\avipbb.sys
23 - : C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
23 - : C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
23 - [Cyberlink] : C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
23 - [Hewlett-Packard Company] : C:\WINDOWS\system32\DRIVERS\PS2.sys
23 - [Realtek Semiconductor Corporation] : C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys
23 - : C:\WINDOWS\system32\Drivers\sptd.sys
23 - [Avira GmbH] : C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
23 - [Symantec Corporation] : C:\WINDOWS\system32\drivers\symlcbrd.sys
23 - [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\usnsvc.exe
Winlogon Notify
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent, DLLName : [ATI Technologies Inc.] : C:\WINDOWS\system32\Ati2evxx.dll
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WB, DLLName : [Stardock] : C:\Program Files\AlienGUIse\fastload.dll
Advanced Files Report
%SYSDIR%\Ati2evxx.dll [ATI Technologies Inc.] [ATI External Event Utility for NT, W2K and W9X] MD5=92AF7C28C332C1AA1D9F1ED46CCEA7A2 SIZE=46080
%PROGRAMFILES%\AlienGUIse\fastload.dll [Stardock] [fLoad] MD5=9F884C45F10AAEE442D4370BA90A1F89 SIZE=24576
%SYSDIR%\Ati2evxx.exe [ATI Technologies Inc.] [ATI External Event Utility for WindowsNT and Windows9X] MD5=D21352BCAAB174948EB9672BC203BB0F SIZE=376832
%SYSDIR%\Ati2edxx.dll [ATI Technologies, Inc.] [ATI External Device Utility] MD5=43098CEBE1EAD67130A5440F7A17DF40 SIZE=39936
%SYSDIR%\uxtuneup.dll [TuneUp Software GmbH] [TuneUp Utilities] MD5=838C97B3D28BFEBDD11D12ADFE957004 SIZE=28416
%PROGRAMFILES%\AlienGUIse\wbload.exe [Stardock Systems, Inc] [WindowBlinds - https://www.stardock.com/products/windowblinds/] MD5=A92D468804836F3EB4AF2326BE111BFF SIZE=437760
%PROGRAMFILES%\AlienGUIse\wbhelp.dll [Stardock.Net, Inc] [WindowBlinds 4 for Win32 x86 machines] MD5=4F3909B0A61F32CCF85CACACEB8C6D04 SIZE=28740
%PROGRAMFILES%\AlienGUIse\WBlind.dll [Stardock.Net, Inc] [WindowBlinds] MD5=639EB1039926E378F93F3A2CB3B24485 SIZE=501821
%SYSDIR%\hpzlnt12.dll [HP] [HP DeskJet] MD5=52417880AC75AC4B7F4E5C3B54CA6621 SIZE=139345
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\sched.exe [Avira GmbH] [AntiVir Workstation] MD5=1C51917C9B30530A781F438F6A4AC49F SIZE=68865
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\schedr.dll [Avira GmbH] [AntiVir Workstation] MD5=EFBABD350FA0E4804CD98CE6FFE98743 SIZE=7937
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\avevtlog.dll [Avira GmbH] [AntiVir Workstation] MD5=3A5874F76D8EA78F5AB0B158191C1EE4 SIZE=114945
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\sqlite3.dll [SQLite Database] MD5=A467ACDA6C73AE3F8DBC6B94602921B5 SIZE=339968
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\avguard.exe [Avira GmbH] [AntiVir Workstation] MD5=980825559F7C70B565ADD5F5C71CFE8F SIZE=147201
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\guardmsg.dll [Avira GmbH] [AntiVir Workstation] MD5=0F3552C80887EB93BE8FFAF26F8D7006 SIZE=46849
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\AVPREF.DLL [Avira GmbH] [AntiVir Workstation] MD5=0B4552C1E399392E0494D074941C6218 SIZE=25857
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\SMTPLIB.DLL [Avira GmbH] [AntiVir Workstation] MD5=F2D83E33EC3F82835FA631F8FF2CCE64 SIZE=28929
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\AVGIO.DLL [Avira GmbH] MD5=24D54A9DF157869A7DE4D61D37D10FC8 SIZE=122113
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aecore.dll [Avira GmbH] [AVCORE] MD5=79CFCBE53CC1643B346BA4BF5E937A7F SIZE=172406
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aevdf.dll [Avira GmbH] [AVVDF] MD5=C9FFFD5005F4FE7131DF6128E98E3A6A SIZE=102772
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aescript.dll [Avira GmbH] [AVSCRIPT] MD5=940CD41BFAAF19ACE1AD43EF0E135F4D SIZE=319867
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aescn.dll [Avira GmbH] [AVSCN] MD5=F519C10B10D73B2B6B75CFEBC5096236 SIZE=119156
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aerdl.dll [Avira GmbH] [AVRDL] MD5=63E0D3672EAD934C49F37CDC1F2CEF23 SIZE=438644
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aepack.dll [Avira GmbH] [AVPACK] MD5=BC3A6DDC19C4511CA2C37F0938EB8853 SIZE=364917
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\unacev2.dll [ACE Compression Software] [UNACE - freeware ACE extraction component] MD5=DE02C4D04088B69E64ECC30A3D9E22E5 SIZE=77312
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aeoffice.dll [Avira GmbH] [AVOFFICE] MD5=CEE6E30E4D1A7569F0E83C739EDF1547 SIZE=196986
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aeheur.dll [Avira GmbH] [AVHEUR] MD5=E14B955CE30DE445A680677BA9A7CA85 SIZE=1438071
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aehelp.dll [Avira GmbH] [AVHELP] MD5=83BAC707A4B7682201A1EB9766B54CEB SIZE=115063
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aegen.dll [Avira GmbH] [AVGEN] MD5=63F18A1FD1A6D1069B892EC25280E595 SIZE=315764
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aeemu.dll [Avira GmbH] [AVEMU] MD5=87A6C6E3993D3A635F8E7152FC6D1907 SIZE=430452
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aebb.dll [Avira GmbH] [AVBB] MD5=BBAD1D9B0694F5E8FE2ACB85283CC5FE SIZE=53617
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\avipc.dll [Avira GmbH] [AntiVir Workstation] MD5=922EE25E719104E6D0E166451118E9F4 SIZE=73985
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe [CLCapSvc Module] MD5=15BBBEDD7B17BF2B6B5CE84213992969 SIZE=266338
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLCapEngine.dll [CLCapEngine Dynamic Link Library] MD5=AE8D7CB5CC33837A3B9E5CEE61B0F7D0 SIZE=225384
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\PCMRRec4.dll [CyberLink Corp.] [CyberLink CLRec4.1] MD5=413004E6939C725F751889E70FDDEC05 SIZE=2814046
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLCapSvcps.dll MD5=98756F69CE437FAE387225C85DF6EF9B SIZE=32768
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe [Cyberlink] [Cyberlink Media Library Server] MD5=1CFDCB99812C62E19C47896A5857D342 SIZE=1073152
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLSched.exe [CLSched Module] MD5=07A0617AECF017457D7358EF178FCCBD SIZE=114784
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLSchMgr.dll [CLSchMgr Dynamic Link Library] MD5=039D4CE917BEEBB7038EB8ECDD90CC25 SIZE=65634
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLMLClient.dll [Cyberlink] [Cyberlink MediaLibrary client sdk] MD5=79F04CF5877C2BE0BA630D05A0BD0A14 SIZE=135303
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLSchedps.dll MD5=15525B3E1D2299377420BBFF3BA495F3 SIZE=24576
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\common\CLRCEngine3.dll [CyberLink Corp.] [Cyberlink PowerCinema] MD5=01FFBC88DD30A39A965A00240802874F SIZE=69632
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLCapX.dll [Cyberlink] [Cyberlink CLCapX] MD5=F406954E1A6E587AA7B36A340D731997 SIZE=229470
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLAuMixer.dll [CyberLink Corp.] [CyberLink CLAuMixer] MD5=F4454E355C9E0F5532852CFAD6AA25B4 SIZE=57407
%SystemDiskRoot%\HP\KBD\led.dll [Hewlett-Packard Company] [Hewlett-Packard Company LED DLL] MD5=F68A3F0D63BE926ED65ED1C8C5B03A3D SIZE=49152
%SystemDiskRoot%\HP\KBD\USB.dll [Hewlett-Packard Company] [Hewlett-Packard Company USB DLL] MD5=F8C008DA6F620E822394781C894A06DB SIZE=77824
%SystemDiskRoot%\HP\KBD\ps2.dll [Hewlett-Packard Company] [Hewlett-Packard Company PS2 DLL] MD5=2AE54F20144B2AF570587A8478D02885 SIZE=61440
%SystemDiskRoot%\HP\KBD\msg.dll [Hewlett-Packard Company] [Hewlett-Packard Company MSG DLL] MD5=205DB5A0DD15DF2657EFD4B64D0CC4A3 SIZE=53248
%SystemDiskRoot%\HP\KBD\osd.dll [Hewlett-Packard Company] [Hewlett-Packard Company OSD DLL] MD5=5F1EC8079DCC3ACB3315966A9A7E2391 SIZE=118784
%SystemDiskRoot%\HP\KBD\sct.dll [Hewlett-Packard Company] [Hewlett-Packard Company SCT DLL] MD5=2F420C4DCFFACF50F73CAB6C27DDA901 SIZE=81920
%SystemDiskRoot%\HP\KBD\onl.dll [Hewlett-Packard Company] [Hewlett-Packard Company ONL DLL] MD5=FB8BFCDF02173E59F8336C3EAECE76E5 SIZE=61440
%SystemDiskRoot%\HP\KBD\aol.dll [Hewlett-Packard Company] [Hewlett-Packard Company AOL DLL] MD5=308C9DDBD043903534514B097396E017 SIZE=57344
%SystemDiskRoot%\HP\KBD\url.dll [Hewlett-Packard Company] [Hewlett-Packard Company URL DLL] MD5=996FC333026A68A66078A4AB6C9EA54C SIZE=57344
%SystemDiskRoot%\HP\KBD\cfg.dll [Hewlett-Packard Company] [Hewlett-Packard Company CFG DLL] MD5=261E5E3602941656A1442B255C936B9E SIZE=94208
%SystemDiskRoot%\HP\KBD\MSIKBDIF.DLL [Hewlett-Packard Company] [Hewlett-Packard Company MSIKBDIF DLL] MD5=60DB5561F7B646FA217E9EA6561E6705 SIZE=69632
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\cclib.dll [Avira GmbH] [AntiVir Workstation] MD5=18F68A243BDA79BBA9D01FA39ECE8598 SIZE=160001
%PROGRAMFILES%\avira\antivir personaledition classic\ccgen.dll [Avira GmbH] [AntiVir Workstation] MD5=B9875A5471B3CF425BAAF9B3CE813A9C SIZE=270593
%PROGRAMFILES%\avira\antivir personaledition classic\ccgenrc.dll [Avira GmbH] [AntiVir Workstation] MD5=856DBDB418067A7E87A2302F94AC31F5 SIZE=17665
%PROGRAMFILES%\avira\antivir personaledition classic\ccguard.dll [Avira GmbH] [AntiVir Workstation] MD5=3E1F96DE993B8D6E87ACF9146F9DF0D9 SIZE=217345
%PROGRAMFILES%\avira\antivir personaledition classic\ccgrdrc.dll [Avira GmbH] [AntiVir Workstation] MD5=B09D14A806D30132C427AA3745C46D54 SIZE=20225
%PROGRAMFILES%\avira\antivir personaledition classic\ccupdate.dll [Avira GmbH] [AntiVir Workstation] MD5=E19C269071C08D9D30D91CE896480CA6 SIZE=114945
%PROGRAMFILES%\avira\antivir personaledition classic\ccupdrc.dll [Avira GmbH] [AntiVir Workstation] MD5=445F5AF6DFC84EFECB242209F3C12412 SIZE=12545
%PROGRAMFILES%\avira\antivir personaledition classic\cclic.dll [Avira GmbH] [AntiVir Workstation] MD5=708A5119B4C625B1AD300CD351A61F9B SIZE=61697
%PROGRAMFILES%\avira\antivir personaledition classic\cclicrc.dll [Avira GmbH] [AntiVir Workstation] MD5=35443145C1F3987262B8DD2AC6D53B05 SIZE=5889
%PROGRAMFILES%\avira\antivir personaledition classic\ccmsg.dll [Avira GmbH] [AntiVir Workstation] MD5=61DFF7D04472B97F33D66BF0934A4D48 SIZE=155905
%PROGRAMFILES%\TuneUp Utilities 2008\rtl100.bpl [CodeGear] [Borland Package Library] MD5=801E0F678FCEA83F9AE0BDD48D291FA7 SIZE=852992
%PROGRAMFILES%\TuneUp Utilities 2008\vcl100.bpl [CodeGear] [Borland Package Library] MD5=023DB95DE4E80D78AABC745BACDD4F60 SIZE=1868800
%PROGRAMFILES%\TuneUp Utilities 2008\MainControls.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=A5298B455BB3BD1AC299EF57748D86D8 SIZE=643584
%PROGRAMFILES%\TuneUp Utilities 2008\GR32_D6.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=3276A3D833EFE8B5C988445E8B345817 SIZE=563200
%PROGRAMFILES%\TuneUp Utilities 2008\vcljpg100.bpl [CodeGear] [Borland Package Library] MD5=02E7DB0B1F4580D815AB0F98179F5356 SIZE=97792
%PROGRAMFILES%\TuneUp Utilities 2008\RegExp.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=F5C5AE520CBFBC716A4A19342FF606D8 SIZE=42496
%PROGRAMFILES%\TuneUp Utilities 2008\XMLComponents.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=F9584169968FFAC4567290019DF241F1 SIZE=46592
%PROGRAMFILES%\TuneUp Utilities 2008\DEC.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=2204C3258994D577D1C2AA8F18D3A5E8 SIZE=259072
%PROGRAMFILES%\TuneUp Utilities 2008\TUBase.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=F79C175756FB9A26F1BE738FAB50487E SIZE=33280
%PROGRAMFILES%\TuneUp Utilities 2008\TUCompression.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=20EDCC4B9F23F14A1E16AC4BCD7DD65B SIZE=291328
%PROGRAMFILES%\TuneUp Utilities 2008\vclx100.bpl [CodeGear] [Borland Package Library] MD5=3C5C45805B7CEE27EC33750CDA98B116 SIZE=198656
%PROGRAMFILES%\TuneUp Utilities 2008\Html.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=0726166F8510D7860B60347B123607D2 SIZE=450560
%PROGRAMFILES%\TuneUp Utilities 2008\SmallUnits.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=B2689103707E8C8A5A144DCF18681565 SIZE=100352
%PROGRAMFILES%\TuneUp Utilities 2008\ntrtl60.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=153B137F60084FC454A4DC33FAC75E0F SIZE=390144
%PROGRAMFILES%\TuneUp Utilities 2008\AppInitialization.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=A53201C803C21705C9AF75221D2130C7 SIZE=130048
%PROGRAMFILES%\TuneUp Utilities 2008\VisControls.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=1C26454DCB8CABA37E49F5A2E276FB40 SIZE=282112
%PROGRAMFILES%\TuneUp Utilities 2008\TUKernel.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=D6F88AB1808B20ED4BEE4ADD41EE3DAF SIZE=283136
%PROGRAMFILES%\TuneUp Utilities 2008\TUBasic.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=586962C65D095F51C56C383A01D32D1B SIZE=117760
%PROGRAMFILES%\TuneUp Utilities 2008\SysControls.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=5191A043D979E70614FF663FE39E7930 SIZE=59392
%PROGRAMFILES%\TuneUp Utilities 2008\Indicators.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=42FE9DA09546E4BB7BF0DE48EE53C920 SIZE=48128
%PROGRAMFILES%\TuneUp Utilities 2008\SysInfo.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=36373126F614F86E7E1BC1F0003C5163 SIZE=279552
%PROGRAMFILES%\TuneUp Utilities 2008\MSI_D6.bpl MD5=A56F7A89427A342EDEE96D434E9EB17B SIZE=644608
%PROGRAMFILES%\TuneUp Utilities 2008\TUIcoEngineerDirTree.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=62F524084647E544F6DDE622D1033323 SIZE=127488
%PROGRAMFILES%\TuneUp Utilities 2008\TUShell.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=BA7FB924AAC4301C60065036B9DEBD19 SIZE=68096
%PROGRAMFILES%\TuneUp Utilities 2008\ehs_d6.bpl MD5=85CF0A6D7083C58A4EF277ECE20EBC77 SIZE=54272
%PROGRAMFILES%\TuneUp Utilities 2008\CommonForms.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=ECBC03B20C8AC8EE7A87DEBB307BCEB3 SIZE=133120
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqtra08.exe [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=C519CEC624CF9BCBA3059F32266C8FFF SIZE=258048
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqcxm08.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=7DB54F9C9D530193DEE603EF2C8C2895 SIZE=143360
%PROGRAMFILES%\HP\Digital Imaging\bin\hpquio08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=CF044EABD7510F6A50A584B814065D7D SIZE=102400
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqtra08.rsc [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=069757FCCCB66B2922748BBE2B5894C0 SIZE=45056
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqtao08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=A7BE8CDFE0F9C3799F014FB5F6810848 SIZE=65536
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqmif08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=9D329E2814F1BA48EC3E1196555C123E SIZE=237568
%PROGRAMFILES%\HP\Digital Imaging\bin\hpotra08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=4755978C1CAC77D07DB07519B92E924E SIZE=212992
%PROGRAMFILES%\HP\Digital Imaging\bin\hpotra08.rsc [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=840EF0C80FA4641F69E65ABFB2D687E5 SIZE=28672
%PROGRAMFILES%\HP\Digital Imaging\bin\hpodio08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=A3A18B8F2BDD9B154FE9BD33564114F1 SIZE=651264
%PROGRAMFILES%\HP\Digital Imaging\bin\hpotradd.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=4762C83EA26C685D0464030FDC1F57C6 SIZE=53248
%PROGRAMFILES%\HP\Digital Imaging\bin\hpoSTD08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=632A5ED567A8F4821EE0B90952CB9BAC SIZE=389120
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqtap08.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=E2D54A86EEE55DF810083A4043DACA09 SIZE=53248
%PROGRAMFILES%\HP\Digital Imaging\bin\hpoSTD08.rsc [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=340B7EFEA0E8744E3285D517C982C32E SIZE=323584
%PROGRAMFILES%\HP\Digital Imaging\bin\hpodvd09.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=A01ADD440BD19F4960558AA001DC6070 SIZE=63488
%PROGRAMFILES%\HP\Digital Imaging\bin\hpoddcomm09.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=E2809C835480E801FBF2E0006EAFC398 SIZE=91648
%SYSDIR%\hpzidr12.dll [HP] [HP Dot4Rtl] MD5=3A2030BBD08924970DCDB7ABBA4C4D92 SIZE=278584
%PROGRAMFILES%\HP\Digital Imaging\bin\hpocxi08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=1BAE120AF11F296052E5CD31E5AD6573 SIZE=270336
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqcob08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=C7B04879F5C16564110282E24FE7A470 SIZE=53248
%SYSDIR%\hpzipr12.dll [HP] [HP PmlRtl] MD5=D6D559B94671573A026ED47C5E75964B SIZE=204800
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqusg.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=338321A9BC5CA1772F21755DC3F55C08 SIZE=253952
%PROGRAMFILES%\HP\Digital Imaging\bin\hpodev08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=F4CE11DE5BA65E326EEB95EFA40468B1 SIZE=73728
%PROGRAMFILES%\HP\Digital Imaging\bin\hpodeb08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=59FDE0F5519FEFDBAFE4D89A771E5029 SIZE=204800
%PROGRAMFILES%\HP\Digital Imaging\bin\hposcn08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=8D812FC5DE751FE5C1F9560F37DF61D1 SIZE=118784
%PROGRAMFILES%\HP\Digital Imaging\bin\hpoSCN08.rsc [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=CD823AC79C4E87166CBEBE08FDBD5833 SIZE=24576
%PROGRAMFILES%\TRENDnet\TEW-424UB\WlanCU.exe [WlanCU Application] MD5=81EDFB5230A8428F3A31D135CA84E05B SIZE=634880
%PROGRAMFILES%\TRENDnet\TEW-424UB\WlanDll.dll [WlanDll Dynamic Link Library] MD5=AB6E857DBE12E9A64B6BA191CB5157B0 SIZE=45056
%PROGRAMFILES%\TRENDnet\TEW-424UB\RtlLib.dll [Realtek Semiconductor Corp.] [RtlLib Dynamic Link Library] MD5=656557A67C2BC63CEBB7A332F1B550F4 SIZE=233472
%PROGRAMFILES%\TRENDnet\TEW-424UB\acAuth.dll MD5=219F3E0553A8F681CAA386AF07517390 SIZE=966765
%APPDATA%\Microsoft\Live Search\Notification-LiveSearch.exe [Microsoft Corporation] [LiveSearch] MD5=F8B2BC63C1B708A2807EFBB4D1EA17CE SIZE=152616
%APPDATA%\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe [Microsoft Corporation] [LiveSearch] MD5=B3319DDF4184200719BBB53B2EF3E118 SIZE=134696
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqimzone.exe [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=6C56CF33C2C6236A1162FDFC0BECD042 SIZE=475136
%WINDIR%\assembly\gac\hpqiface\4.0.0.0__a53cf5803f4c3827\hpqiface.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=339D5F227A3D562851CB196BA43BEAED SIZE=20480
%WINDIR%\assembly\gac\hpqcc2\3.0.0.0__a53cf5803f4c3827\hpqcc2.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=852C905609CB5A57F8A8620A7DF6FDCF SIZE=589824
%WINDIR%\assembly\gac\hpqutils\4.0.0.0__a53cf5803f4c3827\hpqutils.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=E3B168BB340C3BB7687CE1D65711FF3C SIZE=225280
%WINDIR%\assembly\gac\hpqfmrsc\4.0.0.0__a53cf5803f4c3827\hpqfmrsc.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=8D246D90F457BEAE9ABD1C70A0BF41E2 SIZE=36864
%WINDIR%\assembly\gac\hpqtray\4.0.0.0__a53cf5803f4c3827\hpqtray.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=F351BAF721F3E07E91E8378644AF0AF5 SIZE=368640
%WINDIR%\assembly\gac\hpqovskn\3.0.0.0__a53cf5803f4c3827\hpqovskn.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=A057D8D1332CD79EBB8165D642C1C773 SIZE=53248
%WINDIR%\assembly\gac\hpqthumb\3.0.0.0__a53cf5803f4c3827\hpqthumb.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=8567A68B120374AF07A8E83587731CF5 SIZE=73728
%WINDIR%\assembly\gac\hpqimvlt\3.0.0.0__a53cf5803f4c3827\hpqimvlt.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=D765A51C0AC6BDDD32D2EC633F804C0D SIZE=512000
%WINDIR%\assembly\gac\hpqimgrc\4.0.0.0__a53cf5803f4c3827\hpqimgrc.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=7B5399123DD881C7107A34A293C972CA SIZE=192512
%PROGRAMFILES%\hp\digital imaging\bin\fr\hpqimzone.resources.dll MD5=30F92CC04C409B8A040FC315F4253A82 SIZE=86016
%WINDIR%\assembly\gac\hpqntrop\4.0.0.0__a53cf5803f4c3827\hpqntrop.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=270CC0F5B8215EF8E44028C88FDDFDB8 SIZE=69632
%WINDIR%\assembly\gac\interop.hpqcxm08\3.0.0.0__a53cf5803f4c3827\interop.hpqcxm08.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=100B1BFA7334E89DA7922D090B00B62F SIZE=36864
%WINDIR%\assembly\gac\lead\13.0.0.113__9cf889f53ea9b907\lead.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=648FE0D27734BB73EF04BC6789B20935 SIZE=77824
%WINDIR%\assembly\gac\lead.wrapper\13.0.0.113__9cf889f53ea9b907\lead.wrapper.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=335270904FED5F3629FE0D2FCAB7BD4F SIZE=430080
%PROGRAMFILES%\HP\Digital Imaging\bin\ltkrn13n.dll [LEAD Technologies, Inc.] [LEADTOOLS(r) DLL for Win32] MD5=E2CD12A09AAB75B19123E4AB807B2D25 SIZE=453120
%WINDIR%\assembly\gac\hpqtray.resources\4.0.0.0_fr_a53cf5803f4c3827\hpqtray.resources.dll MD5=A302F301F7B52E1F985C9C0AD1BC03B7 SIZE=122880
%WINDIR%\assembly\gac\hpqfmrsc.resources\4.0.0.0_fr_a53cf5803f4c3827\hpqfmrsc.resources.dll MD5=1249DE671A0F7FF2D1B2CF6AD641536C SIZE=24576
%WINDIR%\assembly\gac\lead.windows.forms\13.0.0.113__9cf889f53ea9b907\lead.windows.forms.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=4BBF2F7E4F0F21FDCF30F540E7331BD7 SIZE=40960
%WINDIR%\assembly\gac\lead.drawing\13.0.0.113__9cf889f53ea9b907\lead.drawing.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=B8549829AABD31329CB20367F05630EA SIZE=86016
%WINDIR%\assembly\gac\interop.hpqimgr\4.0.0.0__a53cf5803f4c3827\interop.hpqimgr.dll [Assembly imported from type library IMAGEMANAGERLib] MD5=3B51204D08FF98E01DA93C334DC5B9AC SIZE=10240
%PROGRAMFILES%\HP\Digital Imaging\Bin\hpqimgr.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=33C9E3D74E5869B64E4C3DA8CD33FF81 SIZE=495616
%WINDIR%\assembly\gac\hpqasset\4.0.0.0__a53cf5803f4c3827\hpqasset.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=F93A72045D60E0171841525713937A93 SIZE=24576
%PROGRAMFILES%\hp\digital imaging\bin\hpqmirsc.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=3E036B1D0DA9E1913887C78CAE810109 SIZE=65536
%PROGRAMFILES%\hp\digital imaging\bin\fr\hpqmirsc.resources.dll MD5=07B98F670F63E103C2862FE82CB9FD03 SIZE=40960
%WINDIR%\assembly\gac\hpqedit\3.0.0.0__a53cf5803f4c3827\hpqedit.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=490285CE5AD7D0425E10B7A4920CCFB8 SIZE=1044480
%WINDIR%\assembly\gac\hpqvideo\3.0.0.0__a53cf5803f4c3827\hpqvideo.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=5380E428E98EBC89BDF8CE618896487C SIZE=163840
%WINDIR%\assembly\gac\lead.windows.forms.drawingcontainer\13.0.0.113__9cf889f53ea9b907\lead.windows.forms.drawingcontainer.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=D086D14AE3E163DD38230CBC804C6747 SIZE=69632
%WINDIR%\assembly\gac\hpqmdmr\4.0.0.0__a53cf5803f4c3827\hpqmdmr.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=724EB00E5A97D6CA5D3CD902D2A0FEEA SIZE=65536
%WINDIR%\assembly\gac\lead.drawing.imaging.imageprocessing\13.0.0.113__9cf889f53ea9b907\lead.drawing.imaging.imageprocessing.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=F5A621C69B659258E5164306A15C9CAA SIZE=90112
%WINDIR%\assembly\gac\hpqimlib\3.0.0.0__a53cf5803f4c3827\hpqimlib.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=561991C7A5FC4B7FB7ECDBC6B206DE9B SIZE=57344
%WINDIR%\assembly\gac\hpqedit.resources\3.0.0.0_fr_a53cf5803f4c3827\hpqedit.resources.dll MD5=B3353AEC10B51E1707DD1DAA9BBD4D26 SIZE=335872
%WINDIR%\assembly\gac\hpqglutl\4.0.0.0__a53cf5803f4c3827\hpqglutl.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=F13BBF430E5116DCEC3F37F60C11FC5B SIZE=69632
%WINDIR%\assembly\gac\hpqcc2.resources\3.0.0.0_fr_a53cf5803f4c3827\hpqcc2.resources.dll MD5=5164947F9713F5F2FDCE77AC8B869BC2 SIZE=135168
%PROGRAMFILES%\hp\digital imaging\bin\fr\hpqvideo.resources.dll MD5=94920C40D3D6DC1F250A3B6FB1B89EC6 SIZE=40960
%WINDIR%\assembly\gac\interop.hpqvideo\4.0.0.0__a53cf5803f4c3827\interop.hpqvideo.dll [Assembly imported from type library VideoComponentLib] MD5=DF7B295804EDE1F2D933B138687F2730 SIZE=14848
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqvdcom.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=67C6D2011D79550A3A0BCE45E48DA299 SIZE=204800
%WINDIR%\assembly\gac\hpqprrsc\4.0.0.0__a53cf5803f4c3827\hpqprrsc.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=D7DE2F92F663F9AC02221E72CBF3D2DC SIZE=57344
%WINDIR%\assembly\gac\hpqprrsc.resources\4.0.0.0_fr_a53cf5803f4c3827\hpqprrsc.resources.dll MD5=3BF03139402553EF3D2B24179AD986A2 SIZE=28672
%WINDIR%\assembly\gac\interop.hprblog\3.0.0.0__a53cf5803f4c3827\interop.hprblog.dll [Assembly imported from type library hprblog] MD5=F89BDD4110A8F493AB2E4637F52EB1F4 SIZE=4096
%WINDIR%\assembly\gac\hpqcprsc\3.0.0.0__a53cf5803f4c3827\hpqcprsc.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=48D64CB65944B07D01E3CD32C4734453 SIZE=385024
%WINDIR%\assembly\gac\hpqcprsc.resources\3.0.0.0_fr_a53cf5803f4c3827\hpqcprsc.resources.dll MD5=2CBE102BCB139AE186D521FBD3777E5C SIZE=81920
%WINDIR%\assembly\gac\hpqisrtb\4.0.0.0__a53cf5803f4c3827\hpqisrtb.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=BEDB219AF28005EC174B5DE51BC25498 SIZE=69632
%WINDIR%\assembly\gac\hpqisrtb.resources\4.0.0.0_fr_a53cf5803f4c3827\hpqisrtb.resources.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=2AB4408F424CC284FC8F3D6A5449678C SIZE=69632
%WINDIR%\assembly\gac\hpqbakup\3.0.0.0__a53cf5803f4c3827\hpqbakup.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=10AAB6ED3E5AAE3865E9553A6F8F5442 SIZE=774144
%WINDIR%\assembly\gac\hpqbakup.resources\3.0.0.0_fr_a53cf5803f4c3827\hpqbakup.resources.dll MD5=4A9DE5588B1600AC93558AB63198B075 SIZE=249856
%WINDIR%\assembly\gac\lead.drawing.imaging.codecs\13.0.0.113__9cf889f53ea9b907\lead.drawing.imaging.codecs.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=C2808D9EC312E38A30B432DAAA91EA62 SIZE=81920
%PROGRAMFILES%\HP\Digital Imaging\bin\ltfil13n.dll [LEAD Technologies, Inc.] [LEADTOOLS(r) DLL for Win32] MD5=791166F60A6DB32C079E813D7DE43F47 SIZE=154112
%PROGRAMFILES%\Windows Live\Messenger\usnsvc.exe [Microsoft Corporation] [Messenger] MD5=9D19B042A4FD5C02195071EA2FE0C821 SIZE=98328
%PROGRAMFILES%\ATI Technologies\ATI Control Panel\atipdsxx.dll [ATI Technologies, Inc.] [ATI Desktop Component] MD5=54328AB5AD902D893F66AFB4B3251F7B SIZE=262144
%PROGRAMFILES%\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATRPUIXX.FRA [ATI Technologies, Inc.] [ATI Desktop Component] MD5=D15EC0509D9E1EEC98136643A9D3BE14 SIZE=159744
%PROGRAMFILES%\ATI Technologies\ATI Control Panel\atipdxxx.dll [ATI Technologies, Inc.] [ATI Desktop Component] MD5=F7C2AC54675FDBA935F4013BFD1AF5C1 SIZE=73728
%PROGRAMFILES%\Windows Live\Messenger\MSIMG32.dll [Patchou] [Messenger Plus! Live] MD5=67DE23C7D320590168DAD1B59CF59F3A SIZE=59728
%PROGRAMFILES%\Messenger Plus! Live\MsgPlusLive.dll [Patchou] [Messenger Plus! Live] MD5=EB73B015ABE61E67F02FB14B95E6E8C2 SIZE=3374928
%PROGRAMFILES%\Messenger Plus! Live\Detoured.dll MD5=6256684495C499B22DCDBA266E4F2494 SIZE=4096
%PROGRAMFILES%\Messenger Plus! Live\MsgPlusLiveRes.dll [Patchou] [Messenger Plus! Live] MD5=68262E065949567D7B38F4EC757B09E7 SIZE=1831248
%SYSDIR%\Macromed\Flash\Flash9f.ocx [Adobe Systems, Inc.] [Shockwave Flash] MD5=48FDF435B8595604E54125B321924510 SIZE=2991488
%PROGRAMFILES%\Messenger Plus! Live\libsndfile.dll MD5=00742B11F1492D15A0A8FF25E36AB9BE SIZE=370688
%PROGRAMFILES%\Messenger Plus! Live\lame_enc.dll MD5=75430D2F8B2E204814247D62D9445CE4 SIZE=390656
%PROGRAMFILES%\WinamaxPoker\WinamaxPoker.exe [Poker] MD5=1408F5573DB90CF53028CCC0985E8028 SIZE=7122944
%PROGRAMFILES%\WinamaxPoker\MSVCR71_.dll [Sample Corporation] [Sample Application DLL] MD5=10F31615112500DFE8A1E6392FF3D1D8 SIZE=352256
%PROGRAMFILES%\WinamaxPoker\MSVCP71_.dll [Sample Corporation] [Sample Application DLL] MD5=7B9A1997007B6FBEAC03F2C1C154B6FF SIZE=507904
%PROGRAMFILES%\WinamaxPoker\sqlite3.dll MD5=DA25D9633CB3669411CA07E29F8F7B55 SIZE=333043
%PROGRAMFILES%\ERUNT\AUTOBACK.EXE MD5=E00DE20F0F6BED5CD2160247DDC9443B SIZE=38912
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqthb08.exe [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=B2DDFF1F7FF31E8103DC221772353417 SIZE=73728
%PROGRAMFILES%\Adobe\Acrobat 7.0\Reader\reader_sl.exe [Adobe Systems Incorporated] [Adobe Acrobat] MD5=DFCB9ADE94A4F8A7C42EEF41101A30AD SIZE=29696
%PROGRAMFILES%\google\googletoolbar3.dll [Google Inc.] [Barre d'outils Google pour IE] MD5=6D44E0C3B43D27484FBB355E470C4188 SIZE=2436160
%PROGRAMFILES%\Windows Live Toolbar\msntb.dll [Microsoft Corporation] [Windows Live Toolbar] MD5=CEE1BE1DA21300208D07FBEAE9EA2B51 SIZE=546320
deskpan.dll
%PROGRAMFILES%\Real\RealPlayer\rpshell.dll [RealNetworks, Inc.] [RealPlayer] MD5=9AC5A66C293FEF3858F442589E4B33EB SIZE=49198
%SYSDIR%\ShellvRTF.dll [XSS] [XSS ShellvRTF] MD5=B309190CEDF4A4E60865787DDE826901 SIZE=237568
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\shlext.dll [Avira GmbH] [AntiVir Workstation] MD5=655A36AB49696FFE33FB376719B298C1 SIZE=69889
%PROGRAMFILES%\WinRAR\rarext.dll MD5=023707D932BA31314210E6844D33D500 SIZE=129024
%PROGRAMFILES%\Windows Live\Messenger\fsshext.8.5.1302.1018.dll [Microsoft Corporation] [Messenger] MD5=8BDE1F61DFBAAE7A2916170E8B75FE0F SIZE=329240
%SYSDIR%\DRIVERS\AegisP.sys [Meetinghouse Data Communications] [AEGIS Client 3.4.5.0] MD5=30BB1BDE595CA65FD5549462080D94E5 SIZE=21035
%SYSDIR%\drivers\ALCXWDM.SYS [Realtek Semiconductor Corp.] [Windows (R) WDM driver for Realtek AC'97 Audio(HRTF data Copyright 1994 by MIT Media Lab)] MD5=7F26D024355CBADB60838F53DFB171EC SIZE=3644928
%SYSDIR%\svchost.exe -k netsvcs
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\avgntflt.sys [Avira GmbH] [AntiVir Workstation] MD5=D1A025056656C572AD90CC6C2BFBE9F6 SIZE=49472
%SYSDIR%\DRIVERS\avipbb.sys [Avira GmbH] MD5=1A1068D7C0E1C836164ED924390CB407 SIZE=79424
%SYSDIR%\svchost -k DcomLaunch
%SYSDIR%\svchost.exe -k NetworkService
%SYSDIR%\svchost.exe -k HTTPFilter
%SYSDIR%\svchost.exe -k LocalService
%SYSDIR%\DRIVERS\PS2.sys [Hewlett-Packard Company] [Hewlett-Packard Company PS2 SYS] MD5=390C204CED3785609AB24E9C52054A84 SIZE=19072
%SYSDIR%\svchost -k rpcss
%SYSDIR%\DRIVERS\Rtnicxp.sys [Realtek Semiconductor Corporation] [Realtek 10/100/1000 NIC Family all in one NDIS Driver] MD5=7889E3981E0A5D347E037ABD467D53A5 SIZE=78720
%SYSDIR%\Drivers\sptd.sys SIZE=717296
%SYSDIR%\DRIVERS\ssmdrv.sys [Avira GmbH] MD5=3D2829FDE1C52FC64DA5413889CE4DEE SIZE=28352
%SYSDIR%\svchost.exe -k imgsvc
%SYSDIR%\drivers\symlcbrd.sys [Symantec Corporation] [Symantec Core Component] MD5=B226F8A4D780ACDF76145B58BB791D5B SIZE=10344
%SYSDIR%\svchost.exe -k WudfServiceGroup
%PROGRAMFILES%\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll [Microsoft Corporation] [Messenger] MD5=56319E6B4D190A2DEB4463A9CE4D4F74 SIZE=66072
%SYSDIR%\pxafs.dll [Sonic Solutions] [PxAFS Dynamic Link Library] MD5=21FE7EFA3039632434953955F3BDB235 SIZE=129784
%PROGRAMFILES%\Java\jre1.6.0_07\bin\JdbcOdbc.dll [Sun Microsystems, Inc.] [Java(TM) Platform SE 6 U7] MD5=F708430AE09C4102933E24CD6D12780D SIZE=36352
%PROGRAMFILES%\Java\jre1.6.0_07\bin\dcpr.dll [Sun Microsystems, Inc.] [Java(TM) Platform SE 6 U7] MD5=D6E7FFCD38ECDFE4BD8DCE29D8D1A654 SIZE=143360
%PROGRAMFILES%\Java\jre1.6.0_07\bin\ioser12.dll [Sun Microsystems, Inc.] [Java(TM) Platform SE 6 U7] MD5=5CF15BC4493299F6645DB27B51278D2A SIZE=12800
%PROGRAMFILES%\Java\jre1.6.0_07\bin\javacpl.cpl [Sun Microsystems, Inc.] [Java(TM) Platform SE 6 U7] MD5=370716E3CA99E6A4346F272DA56017C1 SIZE=73728
%PROGRAMFILES%\Java\jre1.6.0_07\bin\policytool.exe [Sun Microsystems, Inc.] [Java(TM) Platform SE 6 U7] MD5=1C0C6888952D9EC22A7B5C6FAD0E8160 SIZE=25600
%SYSDIR%\MFC71DEU.DLL [Microsoft Corporation] [Microsoft® Visual Studio .NET] MD5=C94D9D5B96D385586063093BAAD8F206 SIZE=65536
%PROGRAMFILES%\Microsoft Works\ltkrn13n.dll [LEAD Technologies, Inc.] [LEADTOOLS(r) DLL for Win32] MD5=6D853FA6843DF479F456D0B498D654FE SIZE=446976
End of Report
Suppression:
Préparation…
Supprimer Affiliate tracking cookie
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@advertising[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@apmebf[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@atdmt[2].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@doubleclick[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@emjcd[2].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@hitbox[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@mediaplex[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@questionmarket[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@serving-sys[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@statcounter[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@statse.webtrendslive[2].txt
Analyse(s) terminée(s)
Version de la base de données: 1070
Windows 5.1.2600 Service Pack 3
20:22:52 20/09/2008
mbam-log-09-20-2008 (20-22-52).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 136082
Temps écoulé: 55 minute(s), 20 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
Logfile of Spyware Terminator v2.3.0.494 (db:2.009.019.000)
Scan Time: 20/09/2008 20:24:13 length: 169 s
Platform: WXP (5.1.0.2600)
User: Admin
Boot Mode: Normal
Scan type: Fast_Spyware_Scan
Scanned Objects: 41968 (Critical:0)
Filter: No System items, No Safe items, No Invalid items
Running Processes
Ati2evxx.exe [ATI Technologies Inc.] : C:\WINDOWS\system32\Ati2evxx.exe
wbload.exe [Stardock Systems, Inc] : C:\Program Files\AlienGUIse\wbload.exe
sched.exe [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
Ati2evxx.exe [ATI Technologies Inc.] : C:\WINDOWS\system32\Ati2evxx.exe
avguard.exe [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
CLCapSvc.exe : C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
CLMLServer.exe [Cyberlink] : C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
CLSched.exe : C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
avgnt.exe [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
MemOptimizer.exe [TuneUp Software GmbH] : C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
hpqtra08.exe [Hewlett-Packard Co.] : C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
WlanCU.exe : C:\Program Files\TRENDnet\TEW-424UB\WlanCU.exe
Notification-LiveSearch.exe [Microsoft Corporation] : C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
Mise-a-jour-LiveSearch.exe [Microsoft Corporation] : C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
hpqimzone.exe [Hewlett-Packard Development Company, L.P.] : C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
usnsvc.exe [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\usnsvc.exe
msnmsgr.exe [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\msnmsgr.exe
WinamaxPoker.exe : C:\Program Files\WinamaxPoker\WinamaxPoker.exe
Internet Settings
R - HKCU\Software\Microsoft\Internet Explorer\Main, Search Bar = https://actus.sfr.fr
R - HKLM\Software\Microsoft\Internet Explorer\Main, Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R - HKLM\System\CurrentControlSet\Services\Tcpip\Parameters, Domain =
R - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Telephony, DomainName =
BHO
02 - BHO: IE7Pro BHO - {00011268-E188-40DF-A514-835FCD78B1BF} - [IE7Pro.com] : C:\Program Files\IEPro\iepro.dll
02 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - [Google Inc.] : C:\Program Files\google\googletoolbar3.dll
02 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - [Microsoft Corporation] : C:\Program Files\Windows Live Toolbar\msntb.dll
Toolbars
03 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - [Google Inc.] : C:\Program Files\google\googletoolbar3.dll
03 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - [Microsoft Corporation] : C:\Program Files\Windows Live Toolbar\msntb.dll
StartUps
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, TuneUp MemOptimizer : [TuneUp Software GmbH] : C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, DAEMON Tools Lite : [DT Soft Ltd] : C:\Program Files\DAEMON TOOLS LITE\DAEMON.EXE
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, MsnMsgr : [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\msnmsgr.exe
04 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, GplOne : : C:\Documents and Settings\Compaq_Propriétaire\Application Data\encdebugcopy\Curb Cash.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, HPBootOp : [Hewlett-Packard Company] : C:\Program Files\HEWLETT-PACKARD\HP BOOT OPTIMIZER\HPBOOTOP.EXE
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, avgnt : [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
04 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run, axis web cake second : : C:\Documents and Settings\All Users\Application Data\Book Slow Axis Web\DEFAULT REMOTE.exe
04 - Startup: %STARTUP%\ERUNT AutoBackup.lnk : C:\Program Files\ERUNT\AUTOBACK.EXE
04 - Startup: %STARTUP%\Outil de notification Live Search.lnk [Microsoft Corporation] : C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
04 - Startup: %STARTUPALL%\Démarrage rapide de HP Photosmart Premier.lnk [Hewlett-Packard Development Company, L.P.] : C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
04 - Startup: %STARTUPALL%\HP Digital Imaging Monitor.lnk [Hewlett-Packard Co.] : C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
04 - Startup: %STARTUPALL%\Lancement rapide d'Adobe Reader.lnk [Adobe Systems Incorporated] : C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
04 - Startup: %STARTUPALL%\Wireless Configuration Utility.lnk : C:\Program Files\TRENDnet\TEW-424UB\WlanCU.exe
Shell Extensions
RealOne Player Context Menu Class - {F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4} - [RealNetworks, Inc.] : C:\Program Files\Real\RealPlayer\rpshell.dll
ShellViewRTF - {7F67036B-66F1-411A-AD85-759FB9C5B0DB} - [XSS] : C:\WINDOWS\system32\ShellvRTF.dll
Shell Extension for Malware scanning - {45AC2688-0253-4ED8-97DE-B5370FA7D48A} - [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\shlext.dll
WinRAR - {B41DB860-8EE4-11D2-9906-E49FADC173CA} - : C:\Program Files\WinRAR\rarext.dll
TuneUp Theme Extension - {44440D00-FF19-4AFC-B765-9A0970567D97} - [TuneUp Software GmbH] : C:\WINDOWS\system32\uxtuneup.dll
Mes dossiers de partage - {FC9FB64A-1EB2-4CCF-AF5E-1A497A9B5C2D} - [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\fsshext.8.5.1302.1018.dll
Protocol Handler
- {828030A1-22C1-4009-854F-8E305202313F} - [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
- {828030A1-22C1-4009-854F-8E305202313F} - [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll
Services
23 - [Meetinghouse Data Communications] : C:\WINDOWS\system32\DRIVERS\AegisP.sys
23 - [Realtek Semiconductor Corp.] : C:\WINDOWS\system32\drivers\ALCXWDM.SYS
23 - [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
23 - [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
23 - [ATI Technologies Inc.] : C:\WINDOWS\system32\Ati2evxx.exe
23 - [Avira GmbH] : C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys
23 - [Avira GmbH] : C:\WINDOWS\system32\DRIVERS\avipbb.sys
23 - : C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
23 - : C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
23 - [Cyberlink] : C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
23 - [Hewlett-Packard Company] : C:\WINDOWS\system32\DRIVERS\PS2.sys
23 - [Realtek Semiconductor Corporation] : C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys
23 - : C:\WINDOWS\system32\Drivers\sptd.sys
23 - [Avira GmbH] : C:\WINDOWS\system32\DRIVERS\ssmdrv.sys
23 - [Symantec Corporation] : C:\WINDOWS\system32\drivers\symlcbrd.sys
23 - [Microsoft Corporation] : C:\Program Files\Windows Live\Messenger\usnsvc.exe
Winlogon Notify
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent, DLLName : [ATI Technologies Inc.] : C:\WINDOWS\system32\Ati2evxx.dll
HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WB, DLLName : [Stardock] : C:\Program Files\AlienGUIse\fastload.dll
Advanced Files Report
%SYSDIR%\Ati2evxx.dll [ATI Technologies Inc.] [ATI External Event Utility for NT, W2K and W9X] MD5=92AF7C28C332C1AA1D9F1ED46CCEA7A2 SIZE=46080
%PROGRAMFILES%\AlienGUIse\fastload.dll [Stardock] [fLoad] MD5=9F884C45F10AAEE442D4370BA90A1F89 SIZE=24576
%SYSDIR%\Ati2evxx.exe [ATI Technologies Inc.] [ATI External Event Utility for WindowsNT and Windows9X] MD5=D21352BCAAB174948EB9672BC203BB0F SIZE=376832
%SYSDIR%\Ati2edxx.dll [ATI Technologies, Inc.] [ATI External Device Utility] MD5=43098CEBE1EAD67130A5440F7A17DF40 SIZE=39936
%SYSDIR%\uxtuneup.dll [TuneUp Software GmbH] [TuneUp Utilities] MD5=838C97B3D28BFEBDD11D12ADFE957004 SIZE=28416
%PROGRAMFILES%\AlienGUIse\wbload.exe [Stardock Systems, Inc] [WindowBlinds - https://www.stardock.com/products/windowblinds/] MD5=A92D468804836F3EB4AF2326BE111BFF SIZE=437760
%PROGRAMFILES%\AlienGUIse\wbhelp.dll [Stardock.Net, Inc] [WindowBlinds 4 for Win32 x86 machines] MD5=4F3909B0A61F32CCF85CACACEB8C6D04 SIZE=28740
%PROGRAMFILES%\AlienGUIse\WBlind.dll [Stardock.Net, Inc] [WindowBlinds] MD5=639EB1039926E378F93F3A2CB3B24485 SIZE=501821
%SYSDIR%\hpzlnt12.dll [HP] [HP DeskJet] MD5=52417880AC75AC4B7F4E5C3B54CA6621 SIZE=139345
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\sched.exe [Avira GmbH] [AntiVir Workstation] MD5=1C51917C9B30530A781F438F6A4AC49F SIZE=68865
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\schedr.dll [Avira GmbH] [AntiVir Workstation] MD5=EFBABD350FA0E4804CD98CE6FFE98743 SIZE=7937
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\avevtlog.dll [Avira GmbH] [AntiVir Workstation] MD5=3A5874F76D8EA78F5AB0B158191C1EE4 SIZE=114945
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\sqlite3.dll [SQLite Database] MD5=A467ACDA6C73AE3F8DBC6B94602921B5 SIZE=339968
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\avguard.exe [Avira GmbH] [AntiVir Workstation] MD5=980825559F7C70B565ADD5F5C71CFE8F SIZE=147201
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\guardmsg.dll [Avira GmbH] [AntiVir Workstation] MD5=0F3552C80887EB93BE8FFAF26F8D7006 SIZE=46849
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\AVPREF.DLL [Avira GmbH] [AntiVir Workstation] MD5=0B4552C1E399392E0494D074941C6218 SIZE=25857
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\SMTPLIB.DLL [Avira GmbH] [AntiVir Workstation] MD5=F2D83E33EC3F82835FA631F8FF2CCE64 SIZE=28929
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\AVGIO.DLL [Avira GmbH] MD5=24D54A9DF157869A7DE4D61D37D10FC8 SIZE=122113
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aecore.dll [Avira GmbH] [AVCORE] MD5=79CFCBE53CC1643B346BA4BF5E937A7F SIZE=172406
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aevdf.dll [Avira GmbH] [AVVDF] MD5=C9FFFD5005F4FE7131DF6128E98E3A6A SIZE=102772
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aescript.dll [Avira GmbH] [AVSCRIPT] MD5=940CD41BFAAF19ACE1AD43EF0E135F4D SIZE=319867
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aescn.dll [Avira GmbH] [AVSCN] MD5=F519C10B10D73B2B6B75CFEBC5096236 SIZE=119156
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aerdl.dll [Avira GmbH] [AVRDL] MD5=63E0D3672EAD934C49F37CDC1F2CEF23 SIZE=438644
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aepack.dll [Avira GmbH] [AVPACK] MD5=BC3A6DDC19C4511CA2C37F0938EB8853 SIZE=364917
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\unacev2.dll [ACE Compression Software] [UNACE - freeware ACE extraction component] MD5=DE02C4D04088B69E64ECC30A3D9E22E5 SIZE=77312
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aeoffice.dll [Avira GmbH] [AVOFFICE] MD5=CEE6E30E4D1A7569F0E83C739EDF1547 SIZE=196986
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aeheur.dll [Avira GmbH] [AVHEUR] MD5=E14B955CE30DE445A680677BA9A7CA85 SIZE=1438071
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aehelp.dll [Avira GmbH] [AVHELP] MD5=83BAC707A4B7682201A1EB9766B54CEB SIZE=115063
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aegen.dll [Avira GmbH] [AVGEN] MD5=63F18A1FD1A6D1069B892EC25280E595 SIZE=315764
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aeemu.dll [Avira GmbH] [AVEMU] MD5=87A6C6E3993D3A635F8E7152FC6D1907 SIZE=430452
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\aebb.dll [Avira GmbH] [AVBB] MD5=BBAD1D9B0694F5E8FE2ACB85283CC5FE SIZE=53617
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\avipc.dll [Avira GmbH] [AntiVir Workstation] MD5=922EE25E719104E6D0E166451118E9F4 SIZE=73985
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe [CLCapSvc Module] MD5=15BBBEDD7B17BF2B6B5CE84213992969 SIZE=266338
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLCapEngine.dll [CLCapEngine Dynamic Link Library] MD5=AE8D7CB5CC33837A3B9E5CEE61B0F7D0 SIZE=225384
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\PCMRRec4.dll [CyberLink Corp.] [CyberLink CLRec4.1] MD5=413004E6939C725F751889E70FDDEC05 SIZE=2814046
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLCapSvcps.dll MD5=98756F69CE437FAE387225C85DF6EF9B SIZE=32768
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe [Cyberlink] [Cyberlink Media Library Server] MD5=1CFDCB99812C62E19C47896A5857D342 SIZE=1073152
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLSched.exe [CLSched Module] MD5=07A0617AECF017457D7358EF178FCCBD SIZE=114784
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLSchMgr.dll [CLSchMgr Dynamic Link Library] MD5=039D4CE917BEEBB7038EB8ECDD90CC25 SIZE=65634
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLMLClient.dll [Cyberlink] [Cyberlink MediaLibrary client sdk] MD5=79F04CF5877C2BE0BA630D05A0BD0A14 SIZE=135303
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLSchedps.dll MD5=15525B3E1D2299377420BBFF3BA495F3 SIZE=24576
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\common\CLRCEngine3.dll [CyberLink Corp.] [Cyberlink PowerCinema] MD5=01FFBC88DD30A39A965A00240802874F SIZE=69632
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLCapX.dll [Cyberlink] [Cyberlink CLCapX] MD5=F406954E1A6E587AA7B36A340D731997 SIZE=229470
%PROGRAMFILES%\CyberLink\PowerCinema\Kernel\TV\CLAuMixer.dll [CyberLink Corp.] [CyberLink CLAuMixer] MD5=F4454E355C9E0F5532852CFAD6AA25B4 SIZE=57407
%SystemDiskRoot%\HP\KBD\led.dll [Hewlett-Packard Company] [Hewlett-Packard Company LED DLL] MD5=F68A3F0D63BE926ED65ED1C8C5B03A3D SIZE=49152
%SystemDiskRoot%\HP\KBD\USB.dll [Hewlett-Packard Company] [Hewlett-Packard Company USB DLL] MD5=F8C008DA6F620E822394781C894A06DB SIZE=77824
%SystemDiskRoot%\HP\KBD\ps2.dll [Hewlett-Packard Company] [Hewlett-Packard Company PS2 DLL] MD5=2AE54F20144B2AF570587A8478D02885 SIZE=61440
%SystemDiskRoot%\HP\KBD\msg.dll [Hewlett-Packard Company] [Hewlett-Packard Company MSG DLL] MD5=205DB5A0DD15DF2657EFD4B64D0CC4A3 SIZE=53248
%SystemDiskRoot%\HP\KBD\osd.dll [Hewlett-Packard Company] [Hewlett-Packard Company OSD DLL] MD5=5F1EC8079DCC3ACB3315966A9A7E2391 SIZE=118784
%SystemDiskRoot%\HP\KBD\sct.dll [Hewlett-Packard Company] [Hewlett-Packard Company SCT DLL] MD5=2F420C4DCFFACF50F73CAB6C27DDA901 SIZE=81920
%SystemDiskRoot%\HP\KBD\onl.dll [Hewlett-Packard Company] [Hewlett-Packard Company ONL DLL] MD5=FB8BFCDF02173E59F8336C3EAECE76E5 SIZE=61440
%SystemDiskRoot%\HP\KBD\aol.dll [Hewlett-Packard Company] [Hewlett-Packard Company AOL DLL] MD5=308C9DDBD043903534514B097396E017 SIZE=57344
%SystemDiskRoot%\HP\KBD\url.dll [Hewlett-Packard Company] [Hewlett-Packard Company URL DLL] MD5=996FC333026A68A66078A4AB6C9EA54C SIZE=57344
%SystemDiskRoot%\HP\KBD\cfg.dll [Hewlett-Packard Company] [Hewlett-Packard Company CFG DLL] MD5=261E5E3602941656A1442B255C936B9E SIZE=94208
%SystemDiskRoot%\HP\KBD\MSIKBDIF.DLL [Hewlett-Packard Company] [Hewlett-Packard Company MSIKBDIF DLL] MD5=60DB5561F7B646FA217E9EA6561E6705 SIZE=69632
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\cclib.dll [Avira GmbH] [AntiVir Workstation] MD5=18F68A243BDA79BBA9D01FA39ECE8598 SIZE=160001
%PROGRAMFILES%\avira\antivir personaledition classic\ccgen.dll [Avira GmbH] [AntiVir Workstation] MD5=B9875A5471B3CF425BAAF9B3CE813A9C SIZE=270593
%PROGRAMFILES%\avira\antivir personaledition classic\ccgenrc.dll [Avira GmbH] [AntiVir Workstation] MD5=856DBDB418067A7E87A2302F94AC31F5 SIZE=17665
%PROGRAMFILES%\avira\antivir personaledition classic\ccguard.dll [Avira GmbH] [AntiVir Workstation] MD5=3E1F96DE993B8D6E87ACF9146F9DF0D9 SIZE=217345
%PROGRAMFILES%\avira\antivir personaledition classic\ccgrdrc.dll [Avira GmbH] [AntiVir Workstation] MD5=B09D14A806D30132C427AA3745C46D54 SIZE=20225
%PROGRAMFILES%\avira\antivir personaledition classic\ccupdate.dll [Avira GmbH] [AntiVir Workstation] MD5=E19C269071C08D9D30D91CE896480CA6 SIZE=114945
%PROGRAMFILES%\avira\antivir personaledition classic\ccupdrc.dll [Avira GmbH] [AntiVir Workstation] MD5=445F5AF6DFC84EFECB242209F3C12412 SIZE=12545
%PROGRAMFILES%\avira\antivir personaledition classic\cclic.dll [Avira GmbH] [AntiVir Workstation] MD5=708A5119B4C625B1AD300CD351A61F9B SIZE=61697
%PROGRAMFILES%\avira\antivir personaledition classic\cclicrc.dll [Avira GmbH] [AntiVir Workstation] MD5=35443145C1F3987262B8DD2AC6D53B05 SIZE=5889
%PROGRAMFILES%\avira\antivir personaledition classic\ccmsg.dll [Avira GmbH] [AntiVir Workstation] MD5=61DFF7D04472B97F33D66BF0934A4D48 SIZE=155905
%PROGRAMFILES%\TuneUp Utilities 2008\rtl100.bpl [CodeGear] [Borland Package Library] MD5=801E0F678FCEA83F9AE0BDD48D291FA7 SIZE=852992
%PROGRAMFILES%\TuneUp Utilities 2008\vcl100.bpl [CodeGear] [Borland Package Library] MD5=023DB95DE4E80D78AABC745BACDD4F60 SIZE=1868800
%PROGRAMFILES%\TuneUp Utilities 2008\MainControls.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=A5298B455BB3BD1AC299EF57748D86D8 SIZE=643584
%PROGRAMFILES%\TuneUp Utilities 2008\GR32_D6.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=3276A3D833EFE8B5C988445E8B345817 SIZE=563200
%PROGRAMFILES%\TuneUp Utilities 2008\vcljpg100.bpl [CodeGear] [Borland Package Library] MD5=02E7DB0B1F4580D815AB0F98179F5356 SIZE=97792
%PROGRAMFILES%\TuneUp Utilities 2008\RegExp.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=F5C5AE520CBFBC716A4A19342FF606D8 SIZE=42496
%PROGRAMFILES%\TuneUp Utilities 2008\XMLComponents.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=F9584169968FFAC4567290019DF241F1 SIZE=46592
%PROGRAMFILES%\TuneUp Utilities 2008\DEC.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=2204C3258994D577D1C2AA8F18D3A5E8 SIZE=259072
%PROGRAMFILES%\TuneUp Utilities 2008\TUBase.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=F79C175756FB9A26F1BE738FAB50487E SIZE=33280
%PROGRAMFILES%\TuneUp Utilities 2008\TUCompression.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=20EDCC4B9F23F14A1E16AC4BCD7DD65B SIZE=291328
%PROGRAMFILES%\TuneUp Utilities 2008\vclx100.bpl [CodeGear] [Borland Package Library] MD5=3C5C45805B7CEE27EC33750CDA98B116 SIZE=198656
%PROGRAMFILES%\TuneUp Utilities 2008\Html.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=0726166F8510D7860B60347B123607D2 SIZE=450560
%PROGRAMFILES%\TuneUp Utilities 2008\SmallUnits.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=B2689103707E8C8A5A144DCF18681565 SIZE=100352
%PROGRAMFILES%\TuneUp Utilities 2008\ntrtl60.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=153B137F60084FC454A4DC33FAC75E0F SIZE=390144
%PROGRAMFILES%\TuneUp Utilities 2008\AppInitialization.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=A53201C803C21705C9AF75221D2130C7 SIZE=130048
%PROGRAMFILES%\TuneUp Utilities 2008\VisControls.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=1C26454DCB8CABA37E49F5A2E276FB40 SIZE=282112
%PROGRAMFILES%\TuneUp Utilities 2008\TUKernel.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=D6F88AB1808B20ED4BEE4ADD41EE3DAF SIZE=283136
%PROGRAMFILES%\TuneUp Utilities 2008\TUBasic.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=586962C65D095F51C56C383A01D32D1B SIZE=117760
%PROGRAMFILES%\TuneUp Utilities 2008\SysControls.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=5191A043D979E70614FF663FE39E7930 SIZE=59392
%PROGRAMFILES%\TuneUp Utilities 2008\Indicators.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=42FE9DA09546E4BB7BF0DE48EE53C920 SIZE=48128
%PROGRAMFILES%\TuneUp Utilities 2008\SysInfo.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=36373126F614F86E7E1BC1F0003C5163 SIZE=279552
%PROGRAMFILES%\TuneUp Utilities 2008\MSI_D6.bpl MD5=A56F7A89427A342EDEE96D434E9EB17B SIZE=644608
%PROGRAMFILES%\TuneUp Utilities 2008\TUIcoEngineerDirTree.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=62F524084647E544F6DDE622D1033323 SIZE=127488
%PROGRAMFILES%\TuneUp Utilities 2008\TUShell.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=BA7FB924AAC4301C60065036B9DEBD19 SIZE=68096
%PROGRAMFILES%\TuneUp Utilities 2008\ehs_d6.bpl MD5=85CF0A6D7083C58A4EF277ECE20EBC77 SIZE=54272
%PROGRAMFILES%\TuneUp Utilities 2008\CommonForms.bpl [TuneUp Software GmbH] [TuneUp Utilities] MD5=ECBC03B20C8AC8EE7A87DEBB307BCEB3 SIZE=133120
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqtra08.exe [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=C519CEC624CF9BCBA3059F32266C8FFF SIZE=258048
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqcxm08.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=7DB54F9C9D530193DEE603EF2C8C2895 SIZE=143360
%PROGRAMFILES%\HP\Digital Imaging\bin\hpquio08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=CF044EABD7510F6A50A584B814065D7D SIZE=102400
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqtra08.rsc [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=069757FCCCB66B2922748BBE2B5894C0 SIZE=45056
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqtao08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=A7BE8CDFE0F9C3799F014FB5F6810848 SIZE=65536
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqmif08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=9D329E2814F1BA48EC3E1196555C123E SIZE=237568
%PROGRAMFILES%\HP\Digital Imaging\bin\hpotra08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=4755978C1CAC77D07DB07519B92E924E SIZE=212992
%PROGRAMFILES%\HP\Digital Imaging\bin\hpotra08.rsc [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=840EF0C80FA4641F69E65ABFB2D687E5 SIZE=28672
%PROGRAMFILES%\HP\Digital Imaging\bin\hpodio08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=A3A18B8F2BDD9B154FE9BD33564114F1 SIZE=651264
%PROGRAMFILES%\HP\Digital Imaging\bin\hpotradd.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=4762C83EA26C685D0464030FDC1F57C6 SIZE=53248
%PROGRAMFILES%\HP\Digital Imaging\bin\hpoSTD08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=632A5ED567A8F4821EE0B90952CB9BAC SIZE=389120
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqtap08.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=E2D54A86EEE55DF810083A4043DACA09 SIZE=53248
%PROGRAMFILES%\HP\Digital Imaging\bin\hpoSTD08.rsc [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=340B7EFEA0E8744E3285D517C982C32E SIZE=323584
%PROGRAMFILES%\HP\Digital Imaging\bin\hpodvd09.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=A01ADD440BD19F4960558AA001DC6070 SIZE=63488
%PROGRAMFILES%\HP\Digital Imaging\bin\hpoddcomm09.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=E2809C835480E801FBF2E0006EAFC398 SIZE=91648
%SYSDIR%\hpzidr12.dll [HP] [HP Dot4Rtl] MD5=3A2030BBD08924970DCDB7ABBA4C4D92 SIZE=278584
%PROGRAMFILES%\HP\Digital Imaging\bin\hpocxi08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=1BAE120AF11F296052E5CD31E5AD6573 SIZE=270336
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqcob08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=C7B04879F5C16564110282E24FE7A470 SIZE=53248
%SYSDIR%\hpzipr12.dll [HP] [HP PmlRtl] MD5=D6D559B94671573A026ED47C5E75964B SIZE=204800
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqusg.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=338321A9BC5CA1772F21755DC3F55C08 SIZE=253952
%PROGRAMFILES%\HP\Digital Imaging\bin\hpodev08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=F4CE11DE5BA65E326EEB95EFA40468B1 SIZE=73728
%PROGRAMFILES%\HP\Digital Imaging\bin\hpodeb08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=59FDE0F5519FEFDBAFE4D89A771E5029 SIZE=204800
%PROGRAMFILES%\HP\Digital Imaging\bin\hposcn08.dll [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=8D812FC5DE751FE5C1F9560F37DF61D1 SIZE=118784
%PROGRAMFILES%\HP\Digital Imaging\bin\hpoSCN08.rsc [Hewlett-Packard Co.] [hp digital imaging - hp all-in-one series] MD5=CD823AC79C4E87166CBEBE08FDBD5833 SIZE=24576
%PROGRAMFILES%\TRENDnet\TEW-424UB\WlanCU.exe [WlanCU Application] MD5=81EDFB5230A8428F3A31D135CA84E05B SIZE=634880
%PROGRAMFILES%\TRENDnet\TEW-424UB\WlanDll.dll [WlanDll Dynamic Link Library] MD5=AB6E857DBE12E9A64B6BA191CB5157B0 SIZE=45056
%PROGRAMFILES%\TRENDnet\TEW-424UB\RtlLib.dll [Realtek Semiconductor Corp.] [RtlLib Dynamic Link Library] MD5=656557A67C2BC63CEBB7A332F1B550F4 SIZE=233472
%PROGRAMFILES%\TRENDnet\TEW-424UB\acAuth.dll MD5=219F3E0553A8F681CAA386AF07517390 SIZE=966765
%APPDATA%\Microsoft\Live Search\Notification-LiveSearch.exe [Microsoft Corporation] [LiveSearch] MD5=F8B2BC63C1B708A2807EFBB4D1EA17CE SIZE=152616
%APPDATA%\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe [Microsoft Corporation] [LiveSearch] MD5=B3319DDF4184200719BBB53B2EF3E118 SIZE=134696
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqimzone.exe [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=6C56CF33C2C6236A1162FDFC0BECD042 SIZE=475136
%WINDIR%\assembly\gac\hpqiface\4.0.0.0__a53cf5803f4c3827\hpqiface.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=339D5F227A3D562851CB196BA43BEAED SIZE=20480
%WINDIR%\assembly\gac\hpqcc2\3.0.0.0__a53cf5803f4c3827\hpqcc2.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=852C905609CB5A57F8A8620A7DF6FDCF SIZE=589824
%WINDIR%\assembly\gac\hpqutils\4.0.0.0__a53cf5803f4c3827\hpqutils.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=E3B168BB340C3BB7687CE1D65711FF3C SIZE=225280
%WINDIR%\assembly\gac\hpqfmrsc\4.0.0.0__a53cf5803f4c3827\hpqfmrsc.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=8D246D90F457BEAE9ABD1C70A0BF41E2 SIZE=36864
%WINDIR%\assembly\gac\hpqtray\4.0.0.0__a53cf5803f4c3827\hpqtray.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=F351BAF721F3E07E91E8378644AF0AF5 SIZE=368640
%WINDIR%\assembly\gac\hpqovskn\3.0.0.0__a53cf5803f4c3827\hpqovskn.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=A057D8D1332CD79EBB8165D642C1C773 SIZE=53248
%WINDIR%\assembly\gac\hpqthumb\3.0.0.0__a53cf5803f4c3827\hpqthumb.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=8567A68B120374AF07A8E83587731CF5 SIZE=73728
%WINDIR%\assembly\gac\hpqimvlt\3.0.0.0__a53cf5803f4c3827\hpqimvlt.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=D765A51C0AC6BDDD32D2EC633F804C0D SIZE=512000
%WINDIR%\assembly\gac\hpqimgrc\4.0.0.0__a53cf5803f4c3827\hpqimgrc.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=7B5399123DD881C7107A34A293C972CA SIZE=192512
%PROGRAMFILES%\hp\digital imaging\bin\fr\hpqimzone.resources.dll MD5=30F92CC04C409B8A040FC315F4253A82 SIZE=86016
%WINDIR%\assembly\gac\hpqntrop\4.0.0.0__a53cf5803f4c3827\hpqntrop.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=270CC0F5B8215EF8E44028C88FDDFDB8 SIZE=69632
%WINDIR%\assembly\gac\interop.hpqcxm08\3.0.0.0__a53cf5803f4c3827\interop.hpqcxm08.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=100B1BFA7334E89DA7922D090B00B62F SIZE=36864
%WINDIR%\assembly\gac\lead\13.0.0.113__9cf889f53ea9b907\lead.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=648FE0D27734BB73EF04BC6789B20935 SIZE=77824
%WINDIR%\assembly\gac\lead.wrapper\13.0.0.113__9cf889f53ea9b907\lead.wrapper.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=335270904FED5F3629FE0D2FCAB7BD4F SIZE=430080
%PROGRAMFILES%\HP\Digital Imaging\bin\ltkrn13n.dll [LEAD Technologies, Inc.] [LEADTOOLS(r) DLL for Win32] MD5=E2CD12A09AAB75B19123E4AB807B2D25 SIZE=453120
%WINDIR%\assembly\gac\hpqtray.resources\4.0.0.0_fr_a53cf5803f4c3827\hpqtray.resources.dll MD5=A302F301F7B52E1F985C9C0AD1BC03B7 SIZE=122880
%WINDIR%\assembly\gac\hpqfmrsc.resources\4.0.0.0_fr_a53cf5803f4c3827\hpqfmrsc.resources.dll MD5=1249DE671A0F7FF2D1B2CF6AD641536C SIZE=24576
%WINDIR%\assembly\gac\lead.windows.forms\13.0.0.113__9cf889f53ea9b907\lead.windows.forms.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=4BBF2F7E4F0F21FDCF30F540E7331BD7 SIZE=40960
%WINDIR%\assembly\gac\lead.drawing\13.0.0.113__9cf889f53ea9b907\lead.drawing.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=B8549829AABD31329CB20367F05630EA SIZE=86016
%WINDIR%\assembly\gac\interop.hpqimgr\4.0.0.0__a53cf5803f4c3827\interop.hpqimgr.dll [Assembly imported from type library IMAGEMANAGERLib] MD5=3B51204D08FF98E01DA93C334DC5B9AC SIZE=10240
%PROGRAMFILES%\HP\Digital Imaging\Bin\hpqimgr.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=33C9E3D74E5869B64E4C3DA8CD33FF81 SIZE=495616
%WINDIR%\assembly\gac\hpqasset\4.0.0.0__a53cf5803f4c3827\hpqasset.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=F93A72045D60E0171841525713937A93 SIZE=24576
%PROGRAMFILES%\hp\digital imaging\bin\hpqmirsc.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=3E036B1D0DA9E1913887C78CAE810109 SIZE=65536
%PROGRAMFILES%\hp\digital imaging\bin\fr\hpqmirsc.resources.dll MD5=07B98F670F63E103C2862FE82CB9FD03 SIZE=40960
%WINDIR%\assembly\gac\hpqedit\3.0.0.0__a53cf5803f4c3827\hpqedit.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=490285CE5AD7D0425E10B7A4920CCFB8 SIZE=1044480
%WINDIR%\assembly\gac\hpqvideo\3.0.0.0__a53cf5803f4c3827\hpqvideo.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=5380E428E98EBC89BDF8CE618896487C SIZE=163840
%WINDIR%\assembly\gac\lead.windows.forms.drawingcontainer\13.0.0.113__9cf889f53ea9b907\lead.windows.forms.drawingcontainer.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=D086D14AE3E163DD38230CBC804C6747 SIZE=69632
%WINDIR%\assembly\gac\hpqmdmr\4.0.0.0__a53cf5803f4c3827\hpqmdmr.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=724EB00E5A97D6CA5D3CD902D2A0FEEA SIZE=65536
%WINDIR%\assembly\gac\lead.drawing.imaging.imageprocessing\13.0.0.113__9cf889f53ea9b907\lead.drawing.imaging.imageprocessing.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=F5A621C69B659258E5164306A15C9CAA SIZE=90112
%WINDIR%\assembly\gac\hpqimlib\3.0.0.0__a53cf5803f4c3827\hpqimlib.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=561991C7A5FC4B7FB7ECDBC6B206DE9B SIZE=57344
%WINDIR%\assembly\gac\hpqedit.resources\3.0.0.0_fr_a53cf5803f4c3827\hpqedit.resources.dll MD5=B3353AEC10B51E1707DD1DAA9BBD4D26 SIZE=335872
%WINDIR%\assembly\gac\hpqglutl\4.0.0.0__a53cf5803f4c3827\hpqglutl.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=F13BBF430E5116DCEC3F37F60C11FC5B SIZE=69632
%WINDIR%\assembly\gac\hpqcc2.resources\3.0.0.0_fr_a53cf5803f4c3827\hpqcc2.resources.dll MD5=5164947F9713F5F2FDCE77AC8B869BC2 SIZE=135168
%PROGRAMFILES%\hp\digital imaging\bin\fr\hpqvideo.resources.dll MD5=94920C40D3D6DC1F250A3B6FB1B89EC6 SIZE=40960
%WINDIR%\assembly\gac\interop.hpqvideo\4.0.0.0__a53cf5803f4c3827\interop.hpqvideo.dll [Assembly imported from type library VideoComponentLib] MD5=DF7B295804EDE1F2D933B138687F2730 SIZE=14848
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqvdcom.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=67C6D2011D79550A3A0BCE45E48DA299 SIZE=204800
%WINDIR%\assembly\gac\hpqprrsc\4.0.0.0__a53cf5803f4c3827\hpqprrsc.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=D7DE2F92F663F9AC02221E72CBF3D2DC SIZE=57344
%WINDIR%\assembly\gac\hpqprrsc.resources\4.0.0.0_fr_a53cf5803f4c3827\hpqprrsc.resources.dll MD5=3BF03139402553EF3D2B24179AD986A2 SIZE=28672
%WINDIR%\assembly\gac\interop.hprblog\3.0.0.0__a53cf5803f4c3827\interop.hprblog.dll [Assembly imported from type library hprblog] MD5=F89BDD4110A8F493AB2E4637F52EB1F4 SIZE=4096
%WINDIR%\assembly\gac\hpqcprsc\3.0.0.0__a53cf5803f4c3827\hpqcprsc.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=48D64CB65944B07D01E3CD32C4734453 SIZE=385024
%WINDIR%\assembly\gac\hpqcprsc.resources\3.0.0.0_fr_a53cf5803f4c3827\hpqcprsc.resources.dll MD5=2CBE102BCB139AE186D521FBD3777E5C SIZE=81920
%WINDIR%\assembly\gac\hpqisrtb\4.0.0.0__a53cf5803f4c3827\hpqisrtb.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=BEDB219AF28005EC174B5DE51BC25498 SIZE=69632
%WINDIR%\assembly\gac\hpqisrtb.resources\4.0.0.0_fr_a53cf5803f4c3827\hpqisrtb.resources.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=2AB4408F424CC284FC8F3D6A5449678C SIZE=69632
%WINDIR%\assembly\gac\hpqbakup\3.0.0.0__a53cf5803f4c3827\hpqbakup.dll [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=10AAB6ED3E5AAE3865E9553A6F8F5442 SIZE=774144
%WINDIR%\assembly\gac\hpqbakup.resources\3.0.0.0_fr_a53cf5803f4c3827\hpqbakup.resources.dll MD5=4A9DE5588B1600AC93558AB63198B075 SIZE=249856
%WINDIR%\assembly\gac\lead.drawing.imaging.codecs\13.0.0.113__9cf889f53ea9b907\lead.drawing.imaging.codecs.dll [LEAD Technologies, Inc.] [LEADTOOLS For .NET] MD5=C2808D9EC312E38A30B432DAAA91EA62 SIZE=81920
%PROGRAMFILES%\HP\Digital Imaging\bin\ltfil13n.dll [LEAD Technologies, Inc.] [LEADTOOLS(r) DLL for Win32] MD5=791166F60A6DB32C079E813D7DE43F47 SIZE=154112
%PROGRAMFILES%\Windows Live\Messenger\usnsvc.exe [Microsoft Corporation] [Messenger] MD5=9D19B042A4FD5C02195071EA2FE0C821 SIZE=98328
%PROGRAMFILES%\ATI Technologies\ATI Control Panel\atipdsxx.dll [ATI Technologies, Inc.] [ATI Desktop Component] MD5=54328AB5AD902D893F66AFB4B3251F7B SIZE=262144
%PROGRAMFILES%\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATRPUIXX.FRA [ATI Technologies, Inc.] [ATI Desktop Component] MD5=D15EC0509D9E1EEC98136643A9D3BE14 SIZE=159744
%PROGRAMFILES%\ATI Technologies\ATI Control Panel\atipdxxx.dll [ATI Technologies, Inc.] [ATI Desktop Component] MD5=F7C2AC54675FDBA935F4013BFD1AF5C1 SIZE=73728
%PROGRAMFILES%\Windows Live\Messenger\MSIMG32.dll [Patchou] [Messenger Plus! Live] MD5=67DE23C7D320590168DAD1B59CF59F3A SIZE=59728
%PROGRAMFILES%\Messenger Plus! Live\MsgPlusLive.dll [Patchou] [Messenger Plus! Live] MD5=EB73B015ABE61E67F02FB14B95E6E8C2 SIZE=3374928
%PROGRAMFILES%\Messenger Plus! Live\Detoured.dll MD5=6256684495C499B22DCDBA266E4F2494 SIZE=4096
%PROGRAMFILES%\Messenger Plus! Live\MsgPlusLiveRes.dll [Patchou] [Messenger Plus! Live] MD5=68262E065949567D7B38F4EC757B09E7 SIZE=1831248
%SYSDIR%\Macromed\Flash\Flash9f.ocx [Adobe Systems, Inc.] [Shockwave Flash] MD5=48FDF435B8595604E54125B321924510 SIZE=2991488
%PROGRAMFILES%\Messenger Plus! Live\libsndfile.dll MD5=00742B11F1492D15A0A8FF25E36AB9BE SIZE=370688
%PROGRAMFILES%\Messenger Plus! Live\lame_enc.dll MD5=75430D2F8B2E204814247D62D9445CE4 SIZE=390656
%PROGRAMFILES%\WinamaxPoker\WinamaxPoker.exe [Poker] MD5=1408F5573DB90CF53028CCC0985E8028 SIZE=7122944
%PROGRAMFILES%\WinamaxPoker\MSVCR71_.dll [Sample Corporation] [Sample Application DLL] MD5=10F31615112500DFE8A1E6392FF3D1D8 SIZE=352256
%PROGRAMFILES%\WinamaxPoker\MSVCP71_.dll [Sample Corporation] [Sample Application DLL] MD5=7B9A1997007B6FBEAC03F2C1C154B6FF SIZE=507904
%PROGRAMFILES%\WinamaxPoker\sqlite3.dll MD5=DA25D9633CB3669411CA07E29F8F7B55 SIZE=333043
%PROGRAMFILES%\ERUNT\AUTOBACK.EXE MD5=E00DE20F0F6BED5CD2160247DDC9443B SIZE=38912
%PROGRAMFILES%\HP\Digital Imaging\bin\hpqthb08.exe [Hewlett-Packard Development Company, L.P.] [hp digital imaging] MD5=B2DDFF1F7FF31E8103DC221772353417 SIZE=73728
%PROGRAMFILES%\Adobe\Acrobat 7.0\Reader\reader_sl.exe [Adobe Systems Incorporated] [Adobe Acrobat] MD5=DFCB9ADE94A4F8A7C42EEF41101A30AD SIZE=29696
%PROGRAMFILES%\google\googletoolbar3.dll [Google Inc.] [Barre d'outils Google pour IE] MD5=6D44E0C3B43D27484FBB355E470C4188 SIZE=2436160
%PROGRAMFILES%\Windows Live Toolbar\msntb.dll [Microsoft Corporation] [Windows Live Toolbar] MD5=CEE1BE1DA21300208D07FBEAE9EA2B51 SIZE=546320
deskpan.dll
%PROGRAMFILES%\Real\RealPlayer\rpshell.dll [RealNetworks, Inc.] [RealPlayer] MD5=9AC5A66C293FEF3858F442589E4B33EB SIZE=49198
%SYSDIR%\ShellvRTF.dll [XSS] [XSS ShellvRTF] MD5=B309190CEDF4A4E60865787DDE826901 SIZE=237568
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\shlext.dll [Avira GmbH] [AntiVir Workstation] MD5=655A36AB49696FFE33FB376719B298C1 SIZE=69889
%PROGRAMFILES%\WinRAR\rarext.dll MD5=023707D932BA31314210E6844D33D500 SIZE=129024
%PROGRAMFILES%\Windows Live\Messenger\fsshext.8.5.1302.1018.dll [Microsoft Corporation] [Messenger] MD5=8BDE1F61DFBAAE7A2916170E8B75FE0F SIZE=329240
%SYSDIR%\DRIVERS\AegisP.sys [Meetinghouse Data Communications] [AEGIS Client 3.4.5.0] MD5=30BB1BDE595CA65FD5549462080D94E5 SIZE=21035
%SYSDIR%\drivers\ALCXWDM.SYS [Realtek Semiconductor Corp.] [Windows (R) WDM driver for Realtek AC'97 Audio(HRTF data Copyright 1994 by MIT Media Lab)] MD5=7F26D024355CBADB60838F53DFB171EC SIZE=3644928
%SYSDIR%\svchost.exe -k netsvcs
%PROGRAMFILES%\Avira\AntiVir PersonalEdition Classic\avgntflt.sys [Avira GmbH] [AntiVir Workstation] MD5=D1A025056656C572AD90CC6C2BFBE9F6 SIZE=49472
%SYSDIR%\DRIVERS\avipbb.sys [Avira GmbH] MD5=1A1068D7C0E1C836164ED924390CB407 SIZE=79424
%SYSDIR%\svchost -k DcomLaunch
%SYSDIR%\svchost.exe -k NetworkService
%SYSDIR%\svchost.exe -k HTTPFilter
%SYSDIR%\svchost.exe -k LocalService
%SYSDIR%\DRIVERS\PS2.sys [Hewlett-Packard Company] [Hewlett-Packard Company PS2 SYS] MD5=390C204CED3785609AB24E9C52054A84 SIZE=19072
%SYSDIR%\svchost -k rpcss
%SYSDIR%\DRIVERS\Rtnicxp.sys [Realtek Semiconductor Corporation] [Realtek 10/100/1000 NIC Family all in one NDIS Driver] MD5=7889E3981E0A5D347E037ABD467D53A5 SIZE=78720
%SYSDIR%\Drivers\sptd.sys SIZE=717296
%SYSDIR%\DRIVERS\ssmdrv.sys [Avira GmbH] MD5=3D2829FDE1C52FC64DA5413889CE4DEE SIZE=28352
%SYSDIR%\svchost.exe -k imgsvc
%SYSDIR%\drivers\symlcbrd.sys [Symantec Corporation] [Symantec Core Component] MD5=B226F8A4D780ACDF76145B58BB791D5B SIZE=10344
%SYSDIR%\svchost.exe -k WudfServiceGroup
%PROGRAMFILES%\Windows Live\Messenger\msgrapp.8.5.1302.1018.dll [Microsoft Corporation] [Messenger] MD5=56319E6B4D190A2DEB4463A9CE4D4F74 SIZE=66072
%SYSDIR%\pxafs.dll [Sonic Solutions] [PxAFS Dynamic Link Library] MD5=21FE7EFA3039632434953955F3BDB235 SIZE=129784
%PROGRAMFILES%\Java\jre1.6.0_07\bin\JdbcOdbc.dll [Sun Microsystems, Inc.] [Java(TM) Platform SE 6 U7] MD5=F708430AE09C4102933E24CD6D12780D SIZE=36352
%PROGRAMFILES%\Java\jre1.6.0_07\bin\dcpr.dll [Sun Microsystems, Inc.] [Java(TM) Platform SE 6 U7] MD5=D6E7FFCD38ECDFE4BD8DCE29D8D1A654 SIZE=143360
%PROGRAMFILES%\Java\jre1.6.0_07\bin\ioser12.dll [Sun Microsystems, Inc.] [Java(TM) Platform SE 6 U7] MD5=5CF15BC4493299F6645DB27B51278D2A SIZE=12800
%PROGRAMFILES%\Java\jre1.6.0_07\bin\javacpl.cpl [Sun Microsystems, Inc.] [Java(TM) Platform SE 6 U7] MD5=370716E3CA99E6A4346F272DA56017C1 SIZE=73728
%PROGRAMFILES%\Java\jre1.6.0_07\bin\policytool.exe [Sun Microsystems, Inc.] [Java(TM) Platform SE 6 U7] MD5=1C0C6888952D9EC22A7B5C6FAD0E8160 SIZE=25600
%SYSDIR%\MFC71DEU.DLL [Microsoft Corporation] [Microsoft® Visual Studio .NET] MD5=C94D9D5B96D385586063093BAAD8F206 SIZE=65536
%PROGRAMFILES%\Microsoft Works\ltkrn13n.dll [LEAD Technologies, Inc.] [LEADTOOLS(r) DLL for Win32] MD5=6D853FA6843DF479F456D0B498D654FE SIZE=446976
End of Report
Suppression:
Préparation…
Supprimer Affiliate tracking cookie
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@advertising[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@apmebf[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@atdmt[2].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@doubleclick[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@emjcd[2].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@hitbox[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@mediaplex[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@questionmarket[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@serving-sys[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@statcounter[1].txt
Les fichiers sélectionnés ont été supprimés.: C:\Documents and Settings\Compaq_Propriétaire\cookies\compaq_propriétaire@statse.webtrendslive[2].txt
Analyse(s) terminée(s)
ok fait ceci maintenant
Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
http://downloads.andymanchesta.com/RemovalTools/SDFix.exe
Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :
• Redémarre ton ordinateur
• Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
• A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
• Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
• Choisis ton compte.
Déroule la liste des instructions ci-dessous :
• Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
• Appuie sur Y pour commencer le processus de nettoyage.
• Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
• Appuie sur une touche pour redémarrer le PC.
• Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
• Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
• Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
• Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
• Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum
Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
http://downloads.andymanchesta.com/RemovalTools/SDFix.exe
Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :
• Redémarre ton ordinateur
• Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
• A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
• Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
• Choisis ton compte.
Déroule la liste des instructions ci-dessous :
• Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
• Appuie sur Y pour commencer le processus de nettoyage.
• Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
• Appuie sur une touche pour redémarrer le PC.
• Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
• Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
• Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
• Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
• Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
[b]SDFix: Version 1.227 [/b]
Run by Compaq_Propri‚taire on 20/09/2008 at 21:03
Microsoft Windows XP [version 5.1.2600]
Running From: C:\Documents and Settings\Compaq_Propri‚taire\Bureau\SDFix\SDFix
[b]Checking Services [/b]:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files [/b]:
Trojan Files Found:
C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\My Documents.url - Deleted
C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Ma musique\My Music.url - Deleted
C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Mes images\My Pictures.url - Deleted
C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Mes vid‚os\My Video.url - Deleted
Removing Temp Files
[b]ADS Check [/b]:
[b]Final Check [/b]:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-20 21:13:57
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]
"s1"=dword:2df9c43f
"s2"=dword:110480d0
"h0"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\Program Files\DAEMON Tools Lite\"
"h0"=dword:00000000
"khjeh"=hex:49,00,ed,d9,85,b1,8d,2e,dd,47,92,34,03,77,fb,b5,3f,17,34,16,0c,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,9b,a5,55,3d,91,1a,1d,bf,df,45,e4,7f,7d,86,0b,35,8d,..
"khjeh"=hex:df,0a,93,f9,71,80,75,46,ce,d2,0e,dc,bb,d1,f1,f7,d7,cb,19,14,42,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:54,ed,6f,eb,ad,c6,21,ff,f6,0e,ee,95,50,83,3e,25,69,76,db,62,cc,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\Program Files\DAEMON Tools Lite\"
"h0"=dword:00000000
"khjeh"=hex:49,00,ed,d9,85,b1,8d,2e,dd,47,92,34,03,77,fb,b5,3f,17,34,16,0c,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,9b,a5,55,3d,91,1a,1d,bf,df,45,e4,7f,7d,86,0b,35,8d,..
"khjeh"=hex:df,0a,93,f9,71,80,75,46,ce,d2,0e,dc,bb,d1,f1,f7,d7,cb,19,14,42,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:54,ed,6f,eb,ad,c6,21,ff,f6,0e,ee,95,50,83,3e,25,69,76,db,62,cc,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\Program Files\DAEMON Tools Lite\"
"h0"=dword:00000000
"khjeh"=hex:49,00,ed,d9,85,b1,8d,2e,dd,47,92,34,03,77,fb,b5,3f,17,34,16,0c,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,9b,a5,55,3d,91,1a,1d,bf,df,45,e4,7f,7d,86,0b,35,8d,..
"khjeh"=hex:df,0a,93,f9,71,80,75,46,ce,d2,0e,dc,bb,d1,f1,f7,d7,cb,19,14,42,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:54,ed,6f,eb,ad,c6,21,ff,f6,0e,ee,95,50,83,3e,25,69,76,db,62,cc,..
scanning hidden registry entries ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
[b]Remaining Services [/b]:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\CyberLink\\PowerCinema\\PowerCinema.exe"="C:\\Program Files\\CyberLink\\PowerCinema\\PowerCinema.exe:*:Enabled:CyberLink PowerCinema"
"C:\\Program Files\\CyberLink\\PowerCinema\\PCMService.exe"="C:\\Program Files\\CyberLink\\PowerCinema\\PCMService.exe:*:Enabled:CyberLink PowerCinema Resident Program"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\DNA\\btdna.exe"="C:\\Program Files\\DNA\\btdna.exe:*:Enabled:DNA"
"C:\\Program Files\\IEPro\\MiniDM.exe"="C:\\Program Files\\IEPro\\MiniDM.exe:*:Enabled:MiniDM"
"C:\\Program Files\\ShareazaPlus\\ShareazaPlus.exe"="C:\\Program Files\\ShareazaPlus\\ShareazaPlus.exe:*:Enabled:ShareazaPlus"
"C:\\Documents and Settings\\All Users\\Application Data\\Kaspersky Lab Setup Files\\Kaspersky Anti-Virus 2009\\english\\setup.exe"="C:\\Documents and Settings\\All Users\\Application Data\\Kaspersky Lab Setup Files\\Kaspersky Anti-Virus 2009\\english\\setup.exe:*:Enabled:Kaspersky Anti-Virus 2009 Setup"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[b]Remaining Files [/b]:
File Backups: - C:\DOCUME~1\COMPAQ~1\Bureau\SDFix\SDFix\backups\backups.zip
[b]Files with Hidden Attributes [/b]:
Fri 30 May 2008 218 A.SHR --- "C:\BOOT.BAK"
Sat 13 Jan 2001 36,999 A..H. --- "C:\FAUXVIRUS\Prog.exe"
Sat 24 Nov 2007 0 ..SH. --- "C:\WINDOWS\S2AA5509C.tmp"
Sun 6 Aug 2006 22 A.SH. --- "C:\WINDOWS\SMINST\HPCD.SYS"
Thu 16 Aug 2007 4,348 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Tue 14 Aug 2007 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Thu 1 May 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\02a4f2fd7d9c575c80786d5284ddaf44\BITF.tmp"
Wed 17 Oct 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\b8426e25532eb668f59dd4d969b4a550\BIT6.tmp"
[b]Finished![/b]
Run by Compaq_Propri‚taire on 20/09/2008 at 21:03
Microsoft Windows XP [version 5.1.2600]
Running From: C:\Documents and Settings\Compaq_Propri‚taire\Bureau\SDFix\SDFix
[b]Checking Services [/b]:
Restoring Default Security Values
Restoring Default Hosts File
Rebooting
[b]Checking Files [/b]:
Trojan Files Found:
C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\My Documents.url - Deleted
C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Ma musique\My Music.url - Deleted
C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Mes images\My Pictures.url - Deleted
C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Mes vid‚os\My Video.url - Deleted
Removing Temp Files
[b]ADS Check [/b]:
[b]Final Check [/b]:
catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-20 21:13:57
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden services & system hive ...
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg]
"s1"=dword:2df9c43f
"s2"=dword:110480d0
"h0"=dword:00000001
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\Program Files\DAEMON Tools Lite\"
"h0"=dword:00000000
"khjeh"=hex:49,00,ed,d9,85,b1,8d,2e,dd,47,92,34,03,77,fb,b5,3f,17,34,16,0c,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,9b,a5,55,3d,91,1a,1d,bf,df,45,e4,7f,7d,86,0b,35,8d,..
"khjeh"=hex:df,0a,93,f9,71,80,75,46,ce,d2,0e,dc,bb,d1,f1,f7,d7,cb,19,14,42,..
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:54,ed,6f,eb,ad,c6,21,ff,f6,0e,ee,95,50,83,3e,25,69,76,db,62,cc,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\Program Files\DAEMON Tools Lite\"
"h0"=dword:00000000
"khjeh"=hex:49,00,ed,d9,85,b1,8d,2e,dd,47,92,34,03,77,fb,b5,3f,17,34,16,0c,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,9b,a5,55,3d,91,1a,1d,bf,df,45,e4,7f,7d,86,0b,35,8d,..
"khjeh"=hex:df,0a,93,f9,71,80,75,46,ce,d2,0e,dc,bb,d1,f1,f7,d7,cb,19,14,42,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:54,ed,6f,eb,ad,c6,21,ff,f6,0e,ee,95,50,83,3e,25,69,76,db,62,cc,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4]
"p0"="C:\Program Files\DAEMON Tools Lite\"
"h0"=dword:00000000
"khjeh"=hex:49,00,ed,d9,85,b1,8d,2e,dd,47,92,34,03,77,fb,b5,3f,17,34,16,0c,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001]
"a0"=hex:20,01,00,00,9b,a5,55,3d,91,1a,1d,bf,df,45,e4,7f,7d,86,0b,35,8d,..
"khjeh"=hex:df,0a,93,f9,71,80,75,46,ce,d2,0e,dc,bb,d1,f1,f7,d7,cb,19,14,42,..
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet003\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40]
"khjeh"=hex:54,ed,6f,eb,ad,c6,21,ff,f6,0e,ee,95,50,83,3e,25,69,76,db,62,cc,..
scanning hidden registry entries ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0
[b]Remaining Services [/b]:
Authorized Application Key Export:
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\CyberLink\\PowerCinema\\PowerCinema.exe"="C:\\Program Files\\CyberLink\\PowerCinema\\PowerCinema.exe:*:Enabled:CyberLink PowerCinema"
"C:\\Program Files\\CyberLink\\PowerCinema\\PCMService.exe"="C:\\Program Files\\CyberLink\\PowerCinema\\PCMService.exe:*:Enabled:CyberLink PowerCinema Resident Program"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\DNA\\btdna.exe"="C:\\Program Files\\DNA\\btdna.exe:*:Enabled:DNA"
"C:\\Program Files\\IEPro\\MiniDM.exe"="C:\\Program Files\\IEPro\\MiniDM.exe:*:Enabled:MiniDM"
"C:\\Program Files\\ShareazaPlus\\ShareazaPlus.exe"="C:\\Program Files\\ShareazaPlus\\ShareazaPlus.exe:*:Enabled:ShareazaPlus"
"C:\\Documents and Settings\\All Users\\Application Data\\Kaspersky Lab Setup Files\\Kaspersky Anti-Virus 2009\\english\\setup.exe"="C:\\Documents and Settings\\All Users\\Application Data\\Kaspersky Lab Setup Files\\Kaspersky Anti-Virus 2009\\english\\setup.exe:*:Enabled:Kaspersky Anti-Virus 2009 Setup"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
[b]Remaining Files [/b]:
File Backups: - C:\DOCUME~1\COMPAQ~1\Bureau\SDFix\SDFix\backups\backups.zip
[b]Files with Hidden Attributes [/b]:
Fri 30 May 2008 218 A.SHR --- "C:\BOOT.BAK"
Sat 13 Jan 2001 36,999 A..H. --- "C:\FAUXVIRUS\Prog.exe"
Sat 24 Nov 2007 0 ..SH. --- "C:\WINDOWS\S2AA5509C.tmp"
Sun 6 Aug 2006 22 A.SH. --- "C:\WINDOWS\SMINST\HPCD.SYS"
Thu 16 Aug 2007 4,348 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Tue 14 Aug 2007 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Thu 1 May 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\02a4f2fd7d9c575c80786d5284ddaf44\BITF.tmp"
Wed 17 Oct 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\b8426e25532eb668f59dd4d969b4a550\BIT6.tmp"
[b]Finished![/b]
ok vivi
fait ceci:
Télécharge LopSD.exe sur ton Bureau
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
Clique-droit sur le raccourci LopSD présent sur le Bureau et choisis "Exécuter en tant qu'administrateur" pour lancer LopSD.
Choisis la langue F pour Français puis valide par Entrée.
Choisis l'option Recherche en saisissant 1 puis valide par Entrée
.
* Patiente jusqu'à la fin du scan
* Poste le rapport généré qui se trouve ici => (C:\lopR.txt)
(Si le Bureau ne réapparait pas, presse Ctrl+Alt+Suppr, Onglet Fichier, Nouvelle tâche, tape explorer.exe et valide)
Si tu as un problème pour utiliser Lop S&D, regarde ce tutorial
fait ceci:
Télécharge LopSD.exe sur ton Bureau
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
Clique-droit sur le raccourci LopSD présent sur le Bureau et choisis "Exécuter en tant qu'administrateur" pour lancer LopSD.
Choisis la langue F pour Français puis valide par Entrée.
Choisis l'option Recherche en saisissant 1 puis valide par Entrée
.
* Patiente jusqu'à la fin du scan
* Poste le rapport généré qui se trouve ici => (C:\lopR.txt)
(Si le Bureau ne réapparait pas, presse Ctrl+Alt+Suppr, Onglet Fichier, Nouvelle tâche, tape explorer.exe et valide)
Si tu as un problème pour utiliser Lop S&D, regarde ce tutorial
Bonjour, voila
--------------------\\ Lop S&D 4.2.4-4 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) Processor 3000+ )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Compaq_Propriétaire ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.15 (Activated)
C:\ (Local Disk) - NTFS - Total : 180 Go Free : 104 Go
D:\ (Local Disk) - FAT32 - Total : 5 Go Free : 0 Go
E:\ (CD or DVD)
F:\ (CD or DVD)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)
K:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [1] ( 21/09/2008|11:14 )
--------------------\\ Listing des dossiers dans APPLIC~1
[19/04/2006|15:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[18/11/2007|18:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[13/12/2007|20:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[25/12/2005|18:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg7
[25/08/2008|20:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[17/08/2007|09:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[17/09/2008|15:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Azureus
[16/09/2008|08:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Book Slow Axis Web
[29/12/2007|22:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[19/04/2006|15:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[30/05/2008|20:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[29/12/2007|23:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ESET
[07/09/2007|20:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\F-Secure
[07/09/2007|20:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\fssg
[04/04/2008|18:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[31/12/2007|23:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[14/08/2007|10:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[29/03/2008|10:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HPSSUPPLY
[19/04/2006|15:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[05/07/2008|22:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\iolo
[25/08/2008|20:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab
[25/08/2008|19:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files
[29/04/2008|15:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
[15/11/2007|15:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LightScribe
[18/08/2008|17:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[14/03/2008|20:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Martau(2)
[18/09/2008|08:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[29/08/2008|19:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[29/12/2007|22:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MumboJumbo
[03/04/2008|19:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[19/04/2006|14:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[19/04/2006|15:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[29/04/2008|17:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[21/09/2008|11:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spyware Terminator
[14/07/2008|16:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SweetIM
[17/08/2008|21:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[23/09/2007|10:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
[14/03/2008|20:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
[14/08/2007|11:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[22/08/2007|21:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[13/08/2007|20:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WindowsLiveInstaller
[26/07/2008|19:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WinZip
[29/08/2008|18:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[09/09/2007|13:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[17/09/2007|11:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom
[06/04/2008|16:31] C:\DOCUME~1\COMPAQ~4\APPLIC~1\Adobe
[06/04/2008|16:31] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Adobe
[31/05/2008|21:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AdobeUM
[29/08/2007|12:05] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Ahead
[25/12/2005|16:33] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AVG7
[17/08/2007|09:53] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AVS4YOU
[02/12/2007|17:04] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Azureus
[14/12/2007|17:24] C:\DOCUME~1\COMPAQ~1\APPLIC~1\COWON
[02/06/2008|14:01] C:\DOCUME~1\COMPAQ~1\APPLIC~1\CyberLink
[22/07/2008|09:58] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DAEMON Tools
[15/10/2007|18:43] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DAEMON Tools Pro
[17/08/2007|09:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DivX
[26/11/2007|11:51] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DMCache
[01/09/2008|20:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DNA
[16/09/2008|08:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdebugcopy
[31/08/2007|13:35] C:\DOCUME~1\COMPAQ~1\APPLIC~1\EoRezo
[29/12/2007|23:04] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ESET
[27/10/2007|09:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\F-Secure
[13/08/2007|19:43] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Google
[13/08/2007|20:53] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Help
[14/08/2007|15:12] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HP
[22/08/2007|20:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HPQ
[30/05/2008|17:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Identities
[23/11/2007|21:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\IDM
[05/05/2008|15:01] C:\DOCUME~1\COMPAQ~1\APPLIC~1\IEPro
[23/08/2007|19:40] C:\DOCUME~1\COMPAQ~1\APPLIC~1\InstallShield
[05/07/2008|22:13] C:\DOCUME~1\COMPAQ~1\APPLIC~1\iolo
[30/08/2007|20:22] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Lavasoft
[18/09/2007|15:29] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Leadertech
[03/12/2007|00:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ma-config.com
[06/05/2008|19:30] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Macromedia
[18/08/2008|17:32] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Malwarebytes
[13/12/2007|20:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Media Player Classic
[13/06/2008|09:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Microsoft
[23/05/2008|10:02] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MiniDm
[18/11/2007|18:13] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Move Networks
[26/08/2008|20:33] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Mozilla
[22/09/2007|12:21] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MSN Pictures Displayer
[20/04/2008|17:35] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MSNInstaller
[08/09/2007|14:41] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MxBoost
[03/04/2008|11:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Nero
[26/11/2007|20:52] C:\DOCUME~1\COMPAQ~1\APPLIC~1\OtakuSoftware
[30/08/2007|17:13] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Radios Media Player
[30/05/2008|17:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Real
[02/12/2007|13:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\SecuROM
[04/08/2008|13:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ShareazaPlus
[13/07/2008|14:05] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Sonic
[13/12/2007|19:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\SopCast
[21/09/2008|11:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Spyware Terminator
[14/08/2007|21:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Sun
[02/09/2007|12:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Talkback
[29/03/2008|13:09] C:\DOCUME~1\COMPAQ~1\APPLIC~1\teamspeak2
[26/08/2007|20:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Template
[24/01/2008|11:26] C:\DOCUME~1\COMPAQ~1\APPLIC~1\TuneUp Software
[03/12/2007|12:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Uniblue
[03/08/2008|04:53] C:\DOCUME~1\COMPAQ~1\APPLIC~1\vghd
[21/04/2008|18:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\vlc
[29/08/2007|13:09] C:\DOCUME~1\COMPAQ~1\APPLIC~1\WinRAR
[29/08/2008|20:49] C:\DOCUME~1\COMPAQ~1\APPLIC~1\XnView
[17/09/2007|11:07] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Zylom
[03/04/2008|14:18] C:\DOCUME~1\COMPAQ~3\APPLIC~1\nero
[27/10/2005|00:34] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[19/04/2006|15:40] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[19/04/2006|15:08] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Real
[19/04/2006|15:35] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec
[25/12/2005|16:33] C:\DOCUME~1\LOCALS~1\APPLIC~1\AVG7
[05/07/2008|22:08] C:\DOCUME~1\LOCALS~1\APPLIC~1\iolo
[19/04/2006|14:39] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[22/12/2007|13:30] C:\DOCUME~1\NETWOR~1\APPLIC~1\Adobe
[22/12/2007|13:07] C:\DOCUME~1\NETWOR~1\APPLIC~1\Google
[19/04/2006|14:39] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[21/09/2008 11:00][--ah-----] C:\WINDOWS\tasks\AE87CE80918843C8.job
[21/09/2008 11:12][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[19/09/2008 12:00][--ah-----] C:\WINDOWS\tasks\MP Scheduled Scan.job
[21/09/2008 11:00][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job
[21/09/2008 08:00][--a------] C:\WINDOWS\tasks\HPpromotions journeysoftware.job
[20/09/2008 21:11][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 13:00][-rah-----] C:\WINDOWS\tasks\desktop.ini
( AE87CE80918843C8.job )=( c:\docume~1\compaq~1\applic~1\encdeb~1\stylesaveexit.exe )
--------------------\\ Listing des dossiers dans C:\Program Files
[19/04/2006|15:12] C:\Program Files\Adobe
[24/11/2007|21:12] C:\Program Files\AGEIA Technologies
[18/11/2007|18:14] C:\Program Files\Ahead
[30/05/2008|20:02] C:\Program Files\AlienGUIse
[18/01/2008|11:57] C:\Program Files\Alwil Software
[06/05/2008|09:25] C:\Program Files\AnalogX
[18/08/2008|19:06] C:\Program Files\Applications
[01/06/2008|16:09] C:\Program Files\Ashampoo
[01/05/2008|16:54] C:\Program Files\a-squared Free
[12/10/2007|18:35] C:\Program Files\Astro Gemini Software
[19/04/2006|15:00] C:\Program Files\ATI Technologies
[25/08/2008|20:18] C:\Program Files\Avira
[17/08/2007|11:04] C:\Program Files\AviSynth 2.5
[17/08/2007|10:02] C:\Program Files\AVS4YOU
[22/09/2007|17:23] C:\Program Files\Azureus
[19/04/2008|17:53] C:\Program Files\BitDefender
[29/12/2007|22:02] C:\Program Files\BoontyGames
[16/09/2007|15:06] C:\Program Files\Chama Digital Media
[29/11/2007|18:48] C:\Program Files\ClearIP
[09/09/2007|14:22] C:\Program Files\Common Files
[20/10/2005|21:06] C:\Program Files\ComPlus Applications
[16/05/2008|11:53] C:\Program Files\Crux Calculator v5
[19/04/2006|15:12] C:\Program Files\CyberLink
[04/01/2008|16:56] C:\Program Files\DAEMON Tools
[22/07/2008|10:52] C:\Program Files\DAEMON Tools Lite
[30/08/2008|21:25] C:\Program Files\DAEMON Tools Toolbar
[15/06/2008|19:41] C:\Program Files\DivX
[30/08/2008|19:13] C:\Program Files\DNA
[29/06/2008|12:19] C:\Program Files\DSL Speed
[06/04/2008|19:08] C:\Program Files\EA SPORTS
[24/11/2007|17:29] C:\Program Files\Elaborate Bytes
[24/03/2008|22:17] C:\Program Files\eMule
[16/09/2008|08:02] C:\Program Files\encdebugcopy
[31/08/2007|13:35] C:\Program Files\EoRezo
[22/12/2007|16:43] C:\Program Files\ERUNT
[29/12/2007|23:02] C:\Program Files\ESET
[20/09/2008|16:33] C:\Program Files\Everest Poker
[29/06/2008|12:08] C:\Program Files\Everest Poker.net
[19/04/2006|15:29] C:\Program Files\Fichiers communs
[14/02/2008|19:48] C:\Program Files\FlashGet
[14/03/2008|20:11] C:\Program Files\Free Audio Pack
[06/08/2008|18:50] C:\Program Files\Full Tilt Poker
[30/05/2008|18:24] C:\Program Files\Google
[31/12/2007|23:54] C:\Program Files\Grisoft
[03/06/2008|15:20] C:\Program Files\Guitar Pro 5
[19/04/2006|15:38] C:\Program Files\Hewlett-Packard
[19/04/2006|15:11] C:\Program Files\HP
[06/08/2008|16:50] C:\Program Files\HyCam2
[14/06/2008|13:04] C:\Program Files\IEPro
[25/12/2005|04:30] C:\Program Files\IESuper
[07/08/2008|05:19] C:\Program Files\InstallShield Installation Information
[23/11/2007|22:54] C:\Program Files\Internet Download Manager
[12/08/2008|19:59] C:\Program Files\Internet Explorer
[29/11/2007|12:27] C:\Program Files\IP Changer
[11/07/2008|08:34] C:\Program Files\Java
[31/08/2007|13:31] C:\Program Files\JCA2000
[25/08/2008|20:17] C:\Program Files\Kaspersky Lab
[30/08/2007|14:28] C:\Program Files\Lavasoft
[18/11/2007|18:14] C:\Program Files\LightScribe
[20/09/2008|17:59] C:\Program Files\Lopxp
[03/12/2007|00:19] C:\Program Files\ma-config.com
[19/08/2008|14:46] C:\Program Files\Malwarebytes' Anti-Malware
[26/08/2007|19:12] C:\Program Files\MastaLine Software
[08/09/2007|14:42] C:\Program Files\Maxthon2
[20/08/2007|14:21] C:\Program Files\MediaInfo
[26/08/2007|11:56] C:\Program Files\Meegos Creator
[29/08/2008|18:03] C:\Program Files\Messenger
[17/09/2008|17:21] C:\Program Files\Messenger Plus! Live
[01/07/2008|16:08] C:\Program Files\MessengerDiscovery
[26/07/2008|19:30] C:\Program Files\Micro Application
[14/08/2007|11:46] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[27/10/2005|00:36] C:\Program Files\microsoft frontpage
[19/04/2006|15:14] C:\Program Files\Microsoft Office
[19/04/2006|15:14] C:\Program Files\Microsoft Works
[12/08/2008|19:26] C:\Program Files\Movie Maker
[20/09/2008|21:46] C:\Program Files\Mozilla Firefox
[27/10/2005|00:36] C:\Program Files\MSN
[17/09/2007|11:06] C:\Program Files\MSN Games
[27/10/2005|00:36] C:\Program Files\MSN Gaming Zone
[26/08/2007|19:03] C:\Program Files\MSN Reaper
[14/08/2007|11:45] C:\Program Files\MSXML 4.0
[29/11/2007|14:26] C:\Program Files\MultiProxy
[20/09/2008|17:32] C:\Program Files\Navilog1
[03/04/2008|19:32] C:\Program Files\Nero
[12/08/2008|19:22] C:\Program Files\NetMeeting
[13/08/2007|18:14] C:\Program Files\Neuf
[23/04/2008|23:21] C:\Program Files\Norton AntiVirus
[12/02/2008|13:40] C:\Program Files\Nouvelle Cible Studio
[05/10/2007|23:11] C:\Program Files\Odebit Multim‚dia
[27/10/2005|00:36] C:\Program Files\Online Services
[12/08/2008|19:22] C:\Program Files\Outlook Express
[07/09/2007|20:18] C:\Program Files\Pack Securite
[30/12/2007|14:55] C:\Program Files\Panda Antivirus 2008
[20/04/2008|14:00] C:\Program Files\Panda Security
[31/08/2007|13:28] C:\Program Files\Panicware
[19/04/2006|15:22] C:\Program Files\PC-Doctor 5 for Windows
[05/05/2008|14:01] C:\Program Files\PDFCreator
[19/04/2008|21:07] C:\Program Files\PokerRNG
[20/09/2008|11:34] C:\Program Files\Pool Sharks
[23/09/2007|11:31] C:\Program Files\Prima Games
[30/09/2007|21:06] C:\Program Files\Prime Poker
[15/08/2007|20:40] C:\Program Files\RawFlow
[19/04/2006|15:08] C:\Program Files\Real
[14/01/2008|18:23] C:\Program Files\ReflexiveArcade
[26/08/2007|15:41] C:\Program Files\Rocket Division Software
[25/02/2008|14:16] C:\Program Files\Rockstar Games
[05/12/2007|20:03] C:\Program Files\SC
[19/04/2006|15:25] C:\Program Files\Services en ligne
[04/08/2008|13:23] C:\Program Files\Shareaza
[30/05/2008|18:46] C:\Program Files\Shareaza Applications
[04/08/2008|13:16] C:\Program Files\ShareazaPlus
[14/02/2008|19:48] C:\Program Files\Simulateur de conduite 3D
[19/04/2006|15:10] C:\Program Files\Sonic
[01/05/2008|11:57] C:\Program Files\Spybot - Search & Destroy
[21/09/2008|11:04] C:\Program Files\Spyware Terminator
[15/12/2007|13:19] C:\Program Files\Stajelof
[13/05/2008|15:57] C:\Program Files\Stardock
[11/07/2008|08:34] C:\Program Files\Sun
[23/01/2008|23:12] C:\Program Files\SuperCopier2
[24/03/2008|14:06] C:\Program Files\Team ICE
[26/07/2008|20:30] C:\Program Files\TGTSoft
[22/07/2008|10:59] C:\Program Files\THQ
[20/09/2008|17:50] C:\Program Files\Trend Micro
[29/08/2008|19:53] C:\Program Files\TRENDnet
[16/09/2008|08:23] C:\Program Files\TuneUp Utilities 2008
[23/04/2008|21:15] C:\Program Files\TVAnts
[20/10/2005|21:06] C:\Program Files\Uninstall Information
[26/11/2007|14:23] C:\Program Files\Velneo
[03/08/2008|15:51] C:\Program Files\vghd
[12/07/2008|14:42] C:\Program Files\VideoLAN
[01/12/2007|15:58] C:\Program Files\Web Hottest Videos Personal Player
[20/09/2008|19:57] C:\Program Files\WinamaxPoker
[19/04/2008|22:59] C:\Program Files\Windows Defender
[20/04/2008|18:18] C:\Program Files\Windows Live
[29/08/2008|18:50] C:\Program Files\Windows Live Favorites
[29/08/2008|18:50] C:\Program Files\Windows Live Toolbar
[14/02/2008|19:47] C:\Program Files\Windows Media Connect 2
[12/08/2008|19:22] C:\Program Files\Windows Media Player
[12/08/2008|19:22] C:\Program Files\Windows NT
[20/04/2008|15:51] C:\Program Files\Windows Sidebar
[20/10/2005|21:05] C:\Program Files\WindowsUpdate
[15/07/2008|16:49] C:\Program Files\WinDS PRO
[26/07/2008|20:53] C:\Program Files\WinRAR
[21/10/2007|16:00] C:\Program Files\Wolfenstein - Enemy Territory
[20/08/2007|14:50] C:\Program Files\worldTVRT
[27/10/2005|00:37] C:\Program Files\xerox
[02/08/2008|20:21] C:\Program Files\XnView
[09/09/2007|14:22] C:\Program Files\Yahoo!
[15/03/2008|12:18] C:\Program Files\Zeallsoft
[17/09/2007|11:09] C:\Program Files\Zylom Games
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[19/04/2006|15:13] C:\Program Files\Fichiers communs\Adobe
[17/11/2007|13:54] C:\Program Files\Fichiers communs\Ahead
[17/08/2007|10:01] C:\Program Files\Fichiers communs\AVSMedia
[19/04/2008|17:53] C:\Program Files\Fichiers communs\BitDefender
[29/12/2007|22:04] C:\Program Files\Fichiers communs\BOONTY Shared
[14/08/2007|10:07] C:\Program Files\Fichiers communs\Hewlett-Packard
[19/04/2006|15:04] C:\Program Files\Fichiers communs\HP
[19/04/2006|15:23] C:\Program Files\Fichiers communs\InstallShield
[19/04/2006|14:49] C:\Program Files\Fichiers communs\Java
[18/11/2007|18:24] C:\Program Files\Fichiers communs\LightScribe
[19/04/2006|15:14] C:\Program Files\Fichiers communs\Microsoft Shared
[27/10/2005|00:35] C:\Program Files\Fichiers communs\MSSoap
[03/04/2008|19:32] C:\Program Files\Fichiers communs\Nero
[27/10/2005|00:35] C:\Program Files\Fichiers communs\ODBC
[19/04/2006|15:08] C:\Program Files\Fichiers communs\Real
[27/10/2005|00:35] C:\Program Files\Fichiers communs\Services
[08/08/2008|17:33] C:\Program Files\Fichiers communs\snpstd
[19/04/2006|15:09] C:\Program Files\Fichiers communs\Sonic Shared
[27/10/2005|00:35] C:\Program Files\Fichiers communs\SpeechEngines
[14/05/2008|08:06] C:\Program Files\Fichiers communs\Stardock
[19/04/2006|15:09] C:\Program Files\Fichiers communs\SureThing Shared
[30/05/2008|18:54] C:\Program Files\Fichiers communs\Symantec Shared
[23/04/2008|23:55] C:\Program Files\Fichiers communs\Synacast
[12/08/2008|19:22] C:\Program Files\Fichiers communs\System
[19/04/2006|15:10] C:\Program Files\Fichiers communs\TiVo Shared
[10/01/2008|10:55] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[29/04/2008|16:21] C:\Program Files\Fichiers communs\Wise Installation Wizard
[19/04/2006|15:08] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 54 Processes )
IEXPLORE.EXE ~ [PID:268]
IEXPLORE.EXE ~ [PID:172]
IEXPLORE.EXE ~ [PID:2496]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Book Slow Axis Web
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Book Slow Axis Web\DEFAULT REMOTE.exe
C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1
C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\bcvjngzg.exe
C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\Curb Cash.exe
C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\nameeqdeadonce.exe
C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\pyjknmwn.exe
C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\style save exit.exe
C:\Program Files\encdeb~1
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@advertstream[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@bigpoint[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@fr.xblaster.bigpoint[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@banner.casinoking[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@casinoking[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@banner.cotedazurpalace[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@cotedazurpalace[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@adopt.euroclick[1].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@pacificpoker[1].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@partypoker[1].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@32vegas[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@banner.32vegas[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@888[2].txt
C:\WINDOWS\Tasks\AE87CE80918843C8.job
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GplOne"="C:\\DOCUME~1\\COMPAQ~1\\APPLIC~1\\ENCDEB~1\\Curb Cash.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"axis web cake second"="C:\\Documents and Settings\\All Users\\Application Data\\Book Slow Axis Web\\DEFAULT REMOTE.exe"
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-21 11:15:29
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 25
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\COMPAQ~1\Application Data\Real\RealPlayer\History\(full version) crack rapidshare by CH....lnk
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Ashampoo Magical Snap v2.30 Multilangages Incl-Keygen.rar
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD2
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Crack
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Instructions.txt
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\S‚rial - Num‚ro de S‚rie
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1\autorun6e.exe
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1\NBA LIVE 06 - CD1.mdf
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1\NBA LIVE 06 - CD1.mds
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD2\NBA LIVE 06 - CD2.mdf
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD2\NBA LIVE 06 - CD2.mds
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\CD1.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\CD2.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\Pochette Avant - ArriŠre.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\Pochette Pour CD2.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Crack\NBA Live 06 - Crack.mdf
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Crack\NBA Live 06 - Crack.mds
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Couverture Avant - ArriŠre.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 01.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 02 - 03.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 04 - 05.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 06 - 07.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 08 - 09.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 10 - 11.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 12 - 13.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 14 - 15.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 16.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\S‚rial - Num‚ro de S‚rie\Serial - Num‚ro de S‚rie.txt
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack.rar
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack\www.eMule-Island.com.url
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\AppInitialization.bpl
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\CommonForms.bpl
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\TU2008TrialFR.exe
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\tuneup.utilities.2008.v7.0.7986-patch.exe
C:\DOCUME~1\COMPAQ~1\Favoris\[RS] Need for Speed - Prostreet (fr) crack‚ ¯ Movizdb.com Telechargement gratuit des Films,E-book,Logiciel,crack.url
C:\DOCUME~1\COMPAQ~1\Mes documents\Downloads\Metadata\Nero.8.Ultra.Edition.v8.2.8.0.FR.Incl-Keygen.cap-divx.com.rar.xml
C:\DOCUME~1\COMPAQ~1\Recent\Ashampoo Magical Snap v2.30 Multilangages Incl-Keygen.lnk
[F:10][D:2]-> C:\DOCUME~1\COMPAQ~1\LOCALS~1\Temp
[F:255][D:0]-> C:\DOCUME~1\COMPAQ~1\Cookies
[F:4451][D:12]-> C:\DOCUME~1\COMPAQ~1\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 21/09/2008|11:21 - Option : [1]
--------------------\\ Fin du rapport a 11:21:40
--------------------\\ Lop S&D 4.2.4-4 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) Processor 3000+ )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Compaq_Propriétaire ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.15 (Activated)
C:\ (Local Disk) - NTFS - Total : 180 Go Free : 104 Go
D:\ (Local Disk) - FAT32 - Total : 5 Go Free : 0 Go
E:\ (CD or DVD)
F:\ (CD or DVD)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)
K:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [1] ( 21/09/2008|11:14 )
--------------------\\ Listing des dossiers dans APPLIC~1
[19/04/2006|15:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[18/11/2007|18:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[13/12/2007|20:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[25/12/2005|18:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg7
[25/08/2008|20:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[17/08/2007|09:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[17/09/2008|15:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Azureus
[16/09/2008|08:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Book Slow Axis Web
[29/12/2007|22:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[19/04/2006|15:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[30/05/2008|20:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[29/12/2007|23:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ESET
[07/09/2007|20:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\F-Secure
[07/09/2007|20:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\fssg
[04/04/2008|18:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[31/12/2007|23:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[14/08/2007|10:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[29/03/2008|10:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HPSSUPPLY
[19/04/2006|15:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[05/07/2008|22:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\iolo
[25/08/2008|20:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab
[25/08/2008|19:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files
[29/04/2008|15:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
[15/11/2007|15:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LightScribe
[18/08/2008|17:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[14/03/2008|20:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Martau(2)
[18/09/2008|08:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[29/08/2008|19:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[29/12/2007|22:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MumboJumbo
[03/04/2008|19:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[19/04/2006|14:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[19/04/2006|15:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[29/04/2008|17:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[21/09/2008|11:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spyware Terminator
[14/07/2008|16:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SweetIM
[17/08/2008|21:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[23/09/2007|10:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
[14/03/2008|20:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
[14/08/2007|11:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[22/08/2007|21:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[13/08/2007|20:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WindowsLiveInstaller
[26/07/2008|19:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WinZip
[29/08/2008|18:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[09/09/2007|13:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[17/09/2007|11:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom
[06/04/2008|16:31] C:\DOCUME~1\COMPAQ~4\APPLIC~1\Adobe
[06/04/2008|16:31] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Adobe
[31/05/2008|21:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AdobeUM
[29/08/2007|12:05] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Ahead
[25/12/2005|16:33] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AVG7
[17/08/2007|09:53] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AVS4YOU
[02/12/2007|17:04] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Azureus
[14/12/2007|17:24] C:\DOCUME~1\COMPAQ~1\APPLIC~1\COWON
[02/06/2008|14:01] C:\DOCUME~1\COMPAQ~1\APPLIC~1\CyberLink
[22/07/2008|09:58] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DAEMON Tools
[15/10/2007|18:43] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DAEMON Tools Pro
[17/08/2007|09:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DivX
[26/11/2007|11:51] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DMCache
[01/09/2008|20:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DNA
[16/09/2008|08:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdebugcopy
[31/08/2007|13:35] C:\DOCUME~1\COMPAQ~1\APPLIC~1\EoRezo
[29/12/2007|23:04] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ESET
[27/10/2007|09:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\F-Secure
[13/08/2007|19:43] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Google
[13/08/2007|20:53] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Help
[14/08/2007|15:12] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HP
[22/08/2007|20:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HPQ
[30/05/2008|17:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Identities
[23/11/2007|21:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\IDM
[05/05/2008|15:01] C:\DOCUME~1\COMPAQ~1\APPLIC~1\IEPro
[23/08/2007|19:40] C:\DOCUME~1\COMPAQ~1\APPLIC~1\InstallShield
[05/07/2008|22:13] C:\DOCUME~1\COMPAQ~1\APPLIC~1\iolo
[30/08/2007|20:22] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Lavasoft
[18/09/2007|15:29] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Leadertech
[03/12/2007|00:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ma-config.com
[06/05/2008|19:30] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Macromedia
[18/08/2008|17:32] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Malwarebytes
[13/12/2007|20:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Media Player Classic
[13/06/2008|09:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Microsoft
[23/05/2008|10:02] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MiniDm
[18/11/2007|18:13] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Move Networks
[26/08/2008|20:33] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Mozilla
[22/09/2007|12:21] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MSN Pictures Displayer
[20/04/2008|17:35] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MSNInstaller
[08/09/2007|14:41] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MxBoost
[03/04/2008|11:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Nero
[26/11/2007|20:52] C:\DOCUME~1\COMPAQ~1\APPLIC~1\OtakuSoftware
[30/08/2007|17:13] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Radios Media Player
[30/05/2008|17:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Real
[02/12/2007|13:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\SecuROM
[04/08/2008|13:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ShareazaPlus
[13/07/2008|14:05] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Sonic
[13/12/2007|19:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\SopCast
[21/09/2008|11:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Spyware Terminator
[14/08/2007|21:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Sun
[02/09/2007|12:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Talkback
[29/03/2008|13:09] C:\DOCUME~1\COMPAQ~1\APPLIC~1\teamspeak2
[26/08/2007|20:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Template
[24/01/2008|11:26] C:\DOCUME~1\COMPAQ~1\APPLIC~1\TuneUp Software
[03/12/2007|12:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Uniblue
[03/08/2008|04:53] C:\DOCUME~1\COMPAQ~1\APPLIC~1\vghd
[21/04/2008|18:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\vlc
[29/08/2007|13:09] C:\DOCUME~1\COMPAQ~1\APPLIC~1\WinRAR
[29/08/2008|20:49] C:\DOCUME~1\COMPAQ~1\APPLIC~1\XnView
[17/09/2007|11:07] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Zylom
[03/04/2008|14:18] C:\DOCUME~1\COMPAQ~3\APPLIC~1\nero
[27/10/2005|00:34] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[19/04/2006|15:40] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[19/04/2006|15:08] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Real
[19/04/2006|15:35] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec
[25/12/2005|16:33] C:\DOCUME~1\LOCALS~1\APPLIC~1\AVG7
[05/07/2008|22:08] C:\DOCUME~1\LOCALS~1\APPLIC~1\iolo
[19/04/2006|14:39] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[22/12/2007|13:30] C:\DOCUME~1\NETWOR~1\APPLIC~1\Adobe
[22/12/2007|13:07] C:\DOCUME~1\NETWOR~1\APPLIC~1\Google
[19/04/2006|14:39] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[21/09/2008 11:00][--ah-----] C:\WINDOWS\tasks\AE87CE80918843C8.job
[21/09/2008 11:12][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[19/09/2008 12:00][--ah-----] C:\WINDOWS\tasks\MP Scheduled Scan.job
[21/09/2008 11:00][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job
[21/09/2008 08:00][--a------] C:\WINDOWS\tasks\HPpromotions journeysoftware.job
[20/09/2008 21:11][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 13:00][-rah-----] C:\WINDOWS\tasks\desktop.ini
( AE87CE80918843C8.job )=( c:\docume~1\compaq~1\applic~1\encdeb~1\stylesaveexit.exe )
--------------------\\ Listing des dossiers dans C:\Program Files
[19/04/2006|15:12] C:\Program Files\Adobe
[24/11/2007|21:12] C:\Program Files\AGEIA Technologies
[18/11/2007|18:14] C:\Program Files\Ahead
[30/05/2008|20:02] C:\Program Files\AlienGUIse
[18/01/2008|11:57] C:\Program Files\Alwil Software
[06/05/2008|09:25] C:\Program Files\AnalogX
[18/08/2008|19:06] C:\Program Files\Applications
[01/06/2008|16:09] C:\Program Files\Ashampoo
[01/05/2008|16:54] C:\Program Files\a-squared Free
[12/10/2007|18:35] C:\Program Files\Astro Gemini Software
[19/04/2006|15:00] C:\Program Files\ATI Technologies
[25/08/2008|20:18] C:\Program Files\Avira
[17/08/2007|11:04] C:\Program Files\AviSynth 2.5
[17/08/2007|10:02] C:\Program Files\AVS4YOU
[22/09/2007|17:23] C:\Program Files\Azureus
[19/04/2008|17:53] C:\Program Files\BitDefender
[29/12/2007|22:02] C:\Program Files\BoontyGames
[16/09/2007|15:06] C:\Program Files\Chama Digital Media
[29/11/2007|18:48] C:\Program Files\ClearIP
[09/09/2007|14:22] C:\Program Files\Common Files
[20/10/2005|21:06] C:\Program Files\ComPlus Applications
[16/05/2008|11:53] C:\Program Files\Crux Calculator v5
[19/04/2006|15:12] C:\Program Files\CyberLink
[04/01/2008|16:56] C:\Program Files\DAEMON Tools
[22/07/2008|10:52] C:\Program Files\DAEMON Tools Lite
[30/08/2008|21:25] C:\Program Files\DAEMON Tools Toolbar
[15/06/2008|19:41] C:\Program Files\DivX
[30/08/2008|19:13] C:\Program Files\DNA
[29/06/2008|12:19] C:\Program Files\DSL Speed
[06/04/2008|19:08] C:\Program Files\EA SPORTS
[24/11/2007|17:29] C:\Program Files\Elaborate Bytes
[24/03/2008|22:17] C:\Program Files\eMule
[16/09/2008|08:02] C:\Program Files\encdebugcopy
[31/08/2007|13:35] C:\Program Files\EoRezo
[22/12/2007|16:43] C:\Program Files\ERUNT
[29/12/2007|23:02] C:\Program Files\ESET
[20/09/2008|16:33] C:\Program Files\Everest Poker
[29/06/2008|12:08] C:\Program Files\Everest Poker.net
[19/04/2006|15:29] C:\Program Files\Fichiers communs
[14/02/2008|19:48] C:\Program Files\FlashGet
[14/03/2008|20:11] C:\Program Files\Free Audio Pack
[06/08/2008|18:50] C:\Program Files\Full Tilt Poker
[30/05/2008|18:24] C:\Program Files\Google
[31/12/2007|23:54] C:\Program Files\Grisoft
[03/06/2008|15:20] C:\Program Files\Guitar Pro 5
[19/04/2006|15:38] C:\Program Files\Hewlett-Packard
[19/04/2006|15:11] C:\Program Files\HP
[06/08/2008|16:50] C:\Program Files\HyCam2
[14/06/2008|13:04] C:\Program Files\IEPro
[25/12/2005|04:30] C:\Program Files\IESuper
[07/08/2008|05:19] C:\Program Files\InstallShield Installation Information
[23/11/2007|22:54] C:\Program Files\Internet Download Manager
[12/08/2008|19:59] C:\Program Files\Internet Explorer
[29/11/2007|12:27] C:\Program Files\IP Changer
[11/07/2008|08:34] C:\Program Files\Java
[31/08/2007|13:31] C:\Program Files\JCA2000
[25/08/2008|20:17] C:\Program Files\Kaspersky Lab
[30/08/2007|14:28] C:\Program Files\Lavasoft
[18/11/2007|18:14] C:\Program Files\LightScribe
[20/09/2008|17:59] C:\Program Files\Lopxp
[03/12/2007|00:19] C:\Program Files\ma-config.com
[19/08/2008|14:46] C:\Program Files\Malwarebytes' Anti-Malware
[26/08/2007|19:12] C:\Program Files\MastaLine Software
[08/09/2007|14:42] C:\Program Files\Maxthon2
[20/08/2007|14:21] C:\Program Files\MediaInfo
[26/08/2007|11:56] C:\Program Files\Meegos Creator
[29/08/2008|18:03] C:\Program Files\Messenger
[17/09/2008|17:21] C:\Program Files\Messenger Plus! Live
[01/07/2008|16:08] C:\Program Files\MessengerDiscovery
[26/07/2008|19:30] C:\Program Files\Micro Application
[14/08/2007|11:46] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[27/10/2005|00:36] C:\Program Files\microsoft frontpage
[19/04/2006|15:14] C:\Program Files\Microsoft Office
[19/04/2006|15:14] C:\Program Files\Microsoft Works
[12/08/2008|19:26] C:\Program Files\Movie Maker
[20/09/2008|21:46] C:\Program Files\Mozilla Firefox
[27/10/2005|00:36] C:\Program Files\MSN
[17/09/2007|11:06] C:\Program Files\MSN Games
[27/10/2005|00:36] C:\Program Files\MSN Gaming Zone
[26/08/2007|19:03] C:\Program Files\MSN Reaper
[14/08/2007|11:45] C:\Program Files\MSXML 4.0
[29/11/2007|14:26] C:\Program Files\MultiProxy
[20/09/2008|17:32] C:\Program Files\Navilog1
[03/04/2008|19:32] C:\Program Files\Nero
[12/08/2008|19:22] C:\Program Files\NetMeeting
[13/08/2007|18:14] C:\Program Files\Neuf
[23/04/2008|23:21] C:\Program Files\Norton AntiVirus
[12/02/2008|13:40] C:\Program Files\Nouvelle Cible Studio
[05/10/2007|23:11] C:\Program Files\Odebit Multim‚dia
[27/10/2005|00:36] C:\Program Files\Online Services
[12/08/2008|19:22] C:\Program Files\Outlook Express
[07/09/2007|20:18] C:\Program Files\Pack Securite
[30/12/2007|14:55] C:\Program Files\Panda Antivirus 2008
[20/04/2008|14:00] C:\Program Files\Panda Security
[31/08/2007|13:28] C:\Program Files\Panicware
[19/04/2006|15:22] C:\Program Files\PC-Doctor 5 for Windows
[05/05/2008|14:01] C:\Program Files\PDFCreator
[19/04/2008|21:07] C:\Program Files\PokerRNG
[20/09/2008|11:34] C:\Program Files\Pool Sharks
[23/09/2007|11:31] C:\Program Files\Prima Games
[30/09/2007|21:06] C:\Program Files\Prime Poker
[15/08/2007|20:40] C:\Program Files\RawFlow
[19/04/2006|15:08] C:\Program Files\Real
[14/01/2008|18:23] C:\Program Files\ReflexiveArcade
[26/08/2007|15:41] C:\Program Files\Rocket Division Software
[25/02/2008|14:16] C:\Program Files\Rockstar Games
[05/12/2007|20:03] C:\Program Files\SC
[19/04/2006|15:25] C:\Program Files\Services en ligne
[04/08/2008|13:23] C:\Program Files\Shareaza
[30/05/2008|18:46] C:\Program Files\Shareaza Applications
[04/08/2008|13:16] C:\Program Files\ShareazaPlus
[14/02/2008|19:48] C:\Program Files\Simulateur de conduite 3D
[19/04/2006|15:10] C:\Program Files\Sonic
[01/05/2008|11:57] C:\Program Files\Spybot - Search & Destroy
[21/09/2008|11:04] C:\Program Files\Spyware Terminator
[15/12/2007|13:19] C:\Program Files\Stajelof
[13/05/2008|15:57] C:\Program Files\Stardock
[11/07/2008|08:34] C:\Program Files\Sun
[23/01/2008|23:12] C:\Program Files\SuperCopier2
[24/03/2008|14:06] C:\Program Files\Team ICE
[26/07/2008|20:30] C:\Program Files\TGTSoft
[22/07/2008|10:59] C:\Program Files\THQ
[20/09/2008|17:50] C:\Program Files\Trend Micro
[29/08/2008|19:53] C:\Program Files\TRENDnet
[16/09/2008|08:23] C:\Program Files\TuneUp Utilities 2008
[23/04/2008|21:15] C:\Program Files\TVAnts
[20/10/2005|21:06] C:\Program Files\Uninstall Information
[26/11/2007|14:23] C:\Program Files\Velneo
[03/08/2008|15:51] C:\Program Files\vghd
[12/07/2008|14:42] C:\Program Files\VideoLAN
[01/12/2007|15:58] C:\Program Files\Web Hottest Videos Personal Player
[20/09/2008|19:57] C:\Program Files\WinamaxPoker
[19/04/2008|22:59] C:\Program Files\Windows Defender
[20/04/2008|18:18] C:\Program Files\Windows Live
[29/08/2008|18:50] C:\Program Files\Windows Live Favorites
[29/08/2008|18:50] C:\Program Files\Windows Live Toolbar
[14/02/2008|19:47] C:\Program Files\Windows Media Connect 2
[12/08/2008|19:22] C:\Program Files\Windows Media Player
[12/08/2008|19:22] C:\Program Files\Windows NT
[20/04/2008|15:51] C:\Program Files\Windows Sidebar
[20/10/2005|21:05] C:\Program Files\WindowsUpdate
[15/07/2008|16:49] C:\Program Files\WinDS PRO
[26/07/2008|20:53] C:\Program Files\WinRAR
[21/10/2007|16:00] C:\Program Files\Wolfenstein - Enemy Territory
[20/08/2007|14:50] C:\Program Files\worldTVRT
[27/10/2005|00:37] C:\Program Files\xerox
[02/08/2008|20:21] C:\Program Files\XnView
[09/09/2007|14:22] C:\Program Files\Yahoo!
[15/03/2008|12:18] C:\Program Files\Zeallsoft
[17/09/2007|11:09] C:\Program Files\Zylom Games
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[19/04/2006|15:13] C:\Program Files\Fichiers communs\Adobe
[17/11/2007|13:54] C:\Program Files\Fichiers communs\Ahead
[17/08/2007|10:01] C:\Program Files\Fichiers communs\AVSMedia
[19/04/2008|17:53] C:\Program Files\Fichiers communs\BitDefender
[29/12/2007|22:04] C:\Program Files\Fichiers communs\BOONTY Shared
[14/08/2007|10:07] C:\Program Files\Fichiers communs\Hewlett-Packard
[19/04/2006|15:04] C:\Program Files\Fichiers communs\HP
[19/04/2006|15:23] C:\Program Files\Fichiers communs\InstallShield
[19/04/2006|14:49] C:\Program Files\Fichiers communs\Java
[18/11/2007|18:24] C:\Program Files\Fichiers communs\LightScribe
[19/04/2006|15:14] C:\Program Files\Fichiers communs\Microsoft Shared
[27/10/2005|00:35] C:\Program Files\Fichiers communs\MSSoap
[03/04/2008|19:32] C:\Program Files\Fichiers communs\Nero
[27/10/2005|00:35] C:\Program Files\Fichiers communs\ODBC
[19/04/2006|15:08] C:\Program Files\Fichiers communs\Real
[27/10/2005|00:35] C:\Program Files\Fichiers communs\Services
[08/08/2008|17:33] C:\Program Files\Fichiers communs\snpstd
[19/04/2006|15:09] C:\Program Files\Fichiers communs\Sonic Shared
[27/10/2005|00:35] C:\Program Files\Fichiers communs\SpeechEngines
[14/05/2008|08:06] C:\Program Files\Fichiers communs\Stardock
[19/04/2006|15:09] C:\Program Files\Fichiers communs\SureThing Shared
[30/05/2008|18:54] C:\Program Files\Fichiers communs\Symantec Shared
[23/04/2008|23:55] C:\Program Files\Fichiers communs\Synacast
[12/08/2008|19:22] C:\Program Files\Fichiers communs\System
[19/04/2006|15:10] C:\Program Files\Fichiers communs\TiVo Shared
[10/01/2008|10:55] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[29/04/2008|16:21] C:\Program Files\Fichiers communs\Wise Installation Wizard
[19/04/2006|15:08] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 54 Processes )
IEXPLORE.EXE ~ [PID:268]
IEXPLORE.EXE ~ [PID:172]
IEXPLORE.EXE ~ [PID:2496]
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Book Slow Axis Web
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Book Slow Axis Web\DEFAULT REMOTE.exe
C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1
C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\bcvjngzg.exe
C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\Curb Cash.exe
C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\nameeqdeadonce.exe
C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\pyjknmwn.exe
C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\style save exit.exe
C:\Program Files\encdeb~1
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@advertstream[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@bigpoint[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@fr.xblaster.bigpoint[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@banner.casinoking[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@casinoking[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@banner.cotedazurpalace[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@cotedazurpalace[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@adopt.euroclick[1].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@pacificpoker[1].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@partypoker[1].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@32vegas[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@banner.32vegas[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@888[2].txt
C:\WINDOWS\Tasks\AE87CE80918843C8.job
--------------------\\ Verification du Registre
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GplOne"="C:\\DOCUME~1\\COMPAQ~1\\APPLIC~1\\ENCDEB~1\\Curb Cash.exe"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"axis web cake second"="C:\\Documents and Settings\\All Users\\Application Data\\Book Slow Axis Web\\DEFAULT REMOTE.exe"
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-21 11:15:29
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 25
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\COMPAQ~1\Application Data\Real\RealPlayer\History\(full version) crack rapidshare by CH....lnk
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Ashampoo Magical Snap v2.30 Multilangages Incl-Keygen.rar
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD2
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Crack
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Instructions.txt
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\S‚rial - Num‚ro de S‚rie
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1\autorun6e.exe
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1\NBA LIVE 06 - CD1.mdf
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1\NBA LIVE 06 - CD1.mds
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD2\NBA LIVE 06 - CD2.mdf
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD2\NBA LIVE 06 - CD2.mds
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\CD1.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\CD2.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\Pochette Avant - ArriŠre.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\Pochette Pour CD2.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Crack\NBA Live 06 - Crack.mdf
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Crack\NBA Live 06 - Crack.mds
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Couverture Avant - ArriŠre.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 01.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 02 - 03.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 04 - 05.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 06 - 07.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 08 - 09.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 10 - 11.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 12 - 13.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 14 - 15.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 16.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\S‚rial - Num‚ro de S‚rie\Serial - Num‚ro de S‚rie.txt
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack.rar
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack\www.eMule-Island.com.url
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\AppInitialization.bpl
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\CommonForms.bpl
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\TU2008TrialFR.exe
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\tuneup.utilities.2008.v7.0.7986-patch.exe
C:\DOCUME~1\COMPAQ~1\Favoris\[RS] Need for Speed - Prostreet (fr) crack‚ ¯ Movizdb.com Telechargement gratuit des Films,E-book,Logiciel,crack.url
C:\DOCUME~1\COMPAQ~1\Mes documents\Downloads\Metadata\Nero.8.Ultra.Edition.v8.2.8.0.FR.Incl-Keygen.cap-divx.com.rar.xml
C:\DOCUME~1\COMPAQ~1\Recent\Ashampoo Magical Snap v2.30 Multilangages Incl-Keygen.lnk
[F:10][D:2]-> C:\DOCUME~1\COMPAQ~1\LOCALS~1\Temp
[F:255][D:0]-> C:\DOCUME~1\COMPAQ~1\Cookies
[F:4451][D:12]-> C:\DOCUME~1\COMPAQ~1\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 21/09/2008|11:21 - Option : [1]
--------------------\\ Fin du rapport a 11:21:40
Mon pc ram de plus en plus peut meme pas lancer deux programmes c'est quoi ce bordel jai fait plein des scan : antivir malwarebytes, terminator, nettoyage avec tune up et scan en ligne et rien, les pub CID sont toujours la et jai retirer le sponsor de msn indiquer dans le tutorial de Comment ca marche !! Je doit faire quoi pour ne plus avoir ces m***e...
SVP merci.
SVP merci.
Lyonnais92
Messages postés
25159
Date d'inscription
vendredi 23 juin 2006
Statut
Contributeur sécurité
Dernière intervention
16 septembre 2016
1 536
21 sept. 2008 à 17:43
21 sept. 2008 à 17:43
Bonjour,
pour avancer archet9 :
Relance Lop S&D
Choisis cette fois ci l'Option 2 ( Suppression )
Ne ferme pas la fenêtre lors de la suppression !
Poste le rapport généré ( C:\lopR.txt )
( Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr, Onglet Fichier,
Nouvelle tâche, tape explorer.exe et valide )
Tu as une liste impressionnante de cracks et keygens.
C'est extrêmement risqué.
Je ne peux que te conseiller de les supprimer et de chercher des équivalents gratuits.
Remets un rapport Hijackthis.
pour avancer archet9 :
Relance Lop S&D
Choisis cette fois ci l'Option 2 ( Suppression )
Ne ferme pas la fenêtre lors de la suppression !
Poste le rapport généré ( C:\lopR.txt )
( Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr, Onglet Fichier,
Nouvelle tâche, tape explorer.exe et valide )
Tu as une liste impressionnante de cracks et keygens.
C'est extrêmement risqué.
Je ne peux que te conseiller de les supprimer et de chercher des équivalents gratuits.
Remets un rapport Hijackthis.
Re.. Merci baucoup !! voila les raport
Ah oui j ai auttant de ces truc lol^^ en quoi c'est risquer? que peut il m arriver?
--------------------\\ Lop S&D 4.2.4-4 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) Processor 3000+ )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Compaq_Propriétaire ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.15 (Activated)
C:\ (Local Disk) - NTFS - Total : 180 Go Free : 104 Go
D:\ (Local Disk) - FAT32 - Total : 5 Go Free : 0 Go
E:\ (CD or DVD)
F:\ (CD or DVD)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)
K:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [2] ( 21/09/2008|17:53 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Book Slow Axis Web\DEFAULT REMOTE.exe
Supprime! - C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\bcvjngzg.exe
Supprime! - C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\Curb Cash.exe
Supprime! - C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\nameeqdeadonce.exe
Supprime! - C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\pyjknmwn.exe
Supprime! - C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\style save exit.exe
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@bigpoint[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@fr.xblaster.bigpoint[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@banner.casinoking[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@casinoking[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@banner.cotedazurpalace[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@cotedazurpalace[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@pacificpoker[1].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@banner.32vegas[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@888[2].txt
Supprime! - C:\WINDOWS\Tasks\AE87CE80918843C8.job
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Book Slow Axis Web
Supprime! - C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1
Supprime! - C:\Program Files\encdeb~1
-
[ Fichier Hosts ] .. Restaure!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[19/04/2006|15:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[18/11/2007|18:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[13/12/2007|20:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[25/12/2005|18:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg7
[25/08/2008|20:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[17/08/2007|09:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[17/09/2008|15:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Azureus
[29/12/2007|22:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[19/04/2006|15:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[30/05/2008|20:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[29/12/2007|23:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ESET
[07/09/2007|20:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\F-Secure
[07/09/2007|20:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\fssg
[04/04/2008|18:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[31/12/2007|23:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[14/08/2007|10:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[29/03/2008|10:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HPSSUPPLY
[19/04/2006|15:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[05/07/2008|22:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\iolo
[25/08/2008|20:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab
[25/08/2008|19:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files
[29/04/2008|15:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
[15/11/2007|15:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LightScribe
[18/08/2008|17:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[14/03/2008|20:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Martau(2)
[18/09/2008|08:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[29/08/2008|19:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[29/12/2007|22:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MumboJumbo
[03/04/2008|19:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[19/04/2006|14:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[19/04/2006|15:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[29/04/2008|17:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[21/09/2008|11:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spyware Terminator
[14/07/2008|16:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SweetIM
[17/08/2008|21:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[23/09/2007|10:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
[14/03/2008|20:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
[14/08/2007|11:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[22/08/2007|21:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[13/08/2007|20:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WindowsLiveInstaller
[26/07/2008|19:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WinZip
[29/08/2008|18:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[09/09/2007|13:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[17/09/2007|11:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom
[06/04/2008|16:31] C:\DOCUME~1\COMPAQ~4\APPLIC~1\Adobe
[06/04/2008|16:31] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Adobe
[31/05/2008|21:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AdobeUM
[29/08/2007|12:05] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Ahead
[25/12/2005|16:33] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AVG7
[17/08/2007|09:53] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AVS4YOU
[02/12/2007|17:04] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Azureus
[14/12/2007|17:24] C:\DOCUME~1\COMPAQ~1\APPLIC~1\COWON
[02/06/2008|14:01] C:\DOCUME~1\COMPAQ~1\APPLIC~1\CyberLink
[22/07/2008|09:58] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DAEMON Tools
[15/10/2007|18:43] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DAEMON Tools Pro
[17/08/2007|09:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DivX
[26/11/2007|11:51] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DMCache
[01/09/2008|20:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DNA
[31/08/2007|13:35] C:\DOCUME~1\COMPAQ~1\APPLIC~1\EoRezo
[29/12/2007|23:04] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ESET
[27/10/2007|09:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\F-Secure
[13/08/2007|19:43] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Google
[13/08/2007|20:53] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Help
[14/08/2007|15:12] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HP
[22/08/2007|20:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HPQ
[30/05/2008|17:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Identities
[23/11/2007|21:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\IDM
[05/05/2008|15:01] C:\DOCUME~1\COMPAQ~1\APPLIC~1\IEPro
[23/08/2007|19:40] C:\DOCUME~1\COMPAQ~1\APPLIC~1\InstallShield
[05/07/2008|22:13] C:\DOCUME~1\COMPAQ~1\APPLIC~1\iolo
[30/08/2007|20:22] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Lavasoft
[18/09/2007|15:29] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Leadertech
[03/12/2007|00:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ma-config.com
[06/05/2008|19:30] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Macromedia
[18/08/2008|17:32] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Malwarebytes
[13/12/2007|20:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Media Player Classic
[13/06/2008|09:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Microsoft
[23/05/2008|10:02] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MiniDm
[18/11/2007|18:13] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Move Networks
[26/08/2008|20:33] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Mozilla
[22/09/2007|12:21] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MSN Pictures Displayer
[20/04/2008|17:35] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MSNInstaller
[08/09/2007|14:41] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MxBoost
[03/04/2008|11:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Nero
[26/11/2007|20:52] C:\DOCUME~1\COMPAQ~1\APPLIC~1\OtakuSoftware
[30/08/2007|17:13] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Radios Media Player
[30/05/2008|17:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Real
[02/12/2007|13:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\SecuROM
[04/08/2008|13:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ShareazaPlus
[13/07/2008|14:05] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Sonic
[13/12/2007|19:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\SopCast
[21/09/2008|11:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Spyware Terminator
[14/08/2007|21:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Sun
[02/09/2007|12:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Talkback
[29/03/2008|13:09] C:\DOCUME~1\COMPAQ~1\APPLIC~1\teamspeak2
[26/08/2007|20:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Template
[24/01/2008|11:26] C:\DOCUME~1\COMPAQ~1\APPLIC~1\TuneUp Software
[03/12/2007|12:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Uniblue
[03/08/2008|04:53] C:\DOCUME~1\COMPAQ~1\APPLIC~1\vghd
[21/04/2008|18:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\vlc
[29/08/2007|13:09] C:\DOCUME~1\COMPAQ~1\APPLIC~1\WinRAR
[29/08/2008|20:49] C:\DOCUME~1\COMPAQ~1\APPLIC~1\XnView
[17/09/2007|11:07] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Zylom
[03/04/2008|14:18] C:\DOCUME~1\COMPAQ~3\APPLIC~1\nero
[27/10/2005|00:34] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[19/04/2006|15:40] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[19/04/2006|15:08] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Real
[19/04/2006|15:35] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec
[25/12/2005|16:33] C:\DOCUME~1\LOCALS~1\APPLIC~1\AVG7
[05/07/2008|22:08] C:\DOCUME~1\LOCALS~1\APPLIC~1\iolo
[19/04/2006|14:39] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[22/12/2007|13:30] C:\DOCUME~1\NETWOR~1\APPLIC~1\Adobe
[22/12/2007|13:07] C:\DOCUME~1\NETWOR~1\APPLIC~1\Google
[19/04/2006|14:39] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[21/09/2008 17:12][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[19/09/2008 12:00][--ah-----] C:\WINDOWS\tasks\MP Scheduled Scan.job
[21/09/2008 17:00][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job
[21/09/2008 16:00][--a------] C:\WINDOWS\tasks\HPpromotions journeysoftware.job
[20/09/2008 21:11][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 13:00][-rah-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[19/04/2006|15:12] C:\Program Files\Adobe
[24/11/2007|21:12] C:\Program Files\AGEIA Technologies
[18/11/2007|18:14] C:\Program Files\Ahead
[30/05/2008|20:02] C:\Program Files\AlienGUIse
[18/01/2008|11:57] C:\Program Files\Alwil Software
[06/05/2008|09:25] C:\Program Files\AnalogX
[18/08/2008|19:06] C:\Program Files\Applications
[01/06/2008|16:09] C:\Program Files\Ashampoo
[01/05/2008|16:54] C:\Program Files\a-squared Free
[12/10/2007|18:35] C:\Program Files\Astro Gemini Software
[19/04/2006|15:00] C:\Program Files\ATI Technologies
[25/08/2008|20:18] C:\Program Files\Avira
[17/08/2007|11:04] C:\Program Files\AviSynth 2.5
[17/08/2007|10:02] C:\Program Files\AVS4YOU
[22/09/2007|17:23] C:\Program Files\Azureus
[19/04/2008|17:53] C:\Program Files\BitDefender
[29/12/2007|22:02] C:\Program Files\BoontyGames
[16/09/2007|15:06] C:\Program Files\Chama Digital Media
[29/11/2007|18:48] C:\Program Files\ClearIP
[09/09/2007|14:22] C:\Program Files\Common Files
[20/10/2005|21:06] C:\Program Files\ComPlus Applications
[16/05/2008|11:53] C:\Program Files\Crux Calculator v5
[19/04/2006|15:12] C:\Program Files\CyberLink
[04/01/2008|16:56] C:\Program Files\DAEMON Tools
[22/07/2008|10:52] C:\Program Files\DAEMON Tools Lite
[30/08/2008|21:25] C:\Program Files\DAEMON Tools Toolbar
[15/06/2008|19:41] C:\Program Files\DivX
[30/08/2008|19:13] C:\Program Files\DNA
[29/06/2008|12:19] C:\Program Files\DSL Speed
[06/04/2008|19:08] C:\Program Files\EA SPORTS
[24/11/2007|17:29] C:\Program Files\Elaborate Bytes
[24/03/2008|22:17] C:\Program Files\eMule
[31/08/2007|13:35] C:\Program Files\EoRezo
[22/12/2007|16:43] C:\Program Files\ERUNT
[29/12/2007|23:02] C:\Program Files\ESET
[21/09/2008|13:27] C:\Program Files\Everest Poker
[29/06/2008|12:08] C:\Program Files\Everest Poker.net
[19/04/2006|15:29] C:\Program Files\Fichiers communs
[14/02/2008|19:48] C:\Program Files\FlashGet
[14/03/2008|20:11] C:\Program Files\Free Audio Pack
[06/08/2008|18:50] C:\Program Files\Full Tilt Poker
[30/05/2008|18:24] C:\Program Files\Google
[31/12/2007|23:54] C:\Program Files\Grisoft
[03/06/2008|15:20] C:\Program Files\Guitar Pro 5
[19/04/2006|15:38] C:\Program Files\Hewlett-Packard
[19/04/2006|15:11] C:\Program Files\HP
[06/08/2008|16:50] C:\Program Files\HyCam2
[14/06/2008|13:04] C:\Program Files\IEPro
[25/12/2005|04:30] C:\Program Files\IESuper
[07/08/2008|05:19] C:\Program Files\InstallShield Installation Information
[23/11/2007|22:54] C:\Program Files\Internet Download Manager
[12/08/2008|19:59] C:\Program Files\Internet Explorer
[29/11/2007|12:27] C:\Program Files\IP Changer
[11/07/2008|08:34] C:\Program Files\Java
[31/08/2007|13:31] C:\Program Files\JCA2000
[25/08/2008|20:17] C:\Program Files\Kaspersky Lab
[30/08/2007|14:28] C:\Program Files\Lavasoft
[18/11/2007|18:14] C:\Program Files\LightScribe
[20/09/2008|17:59] C:\Program Files\Lopxp
[03/12/2007|00:19] C:\Program Files\ma-config.com
[19/08/2008|14:46] C:\Program Files\Malwarebytes' Anti-Malware
[26/08/2007|19:12] C:\Program Files\MastaLine Software
[08/09/2007|14:42] C:\Program Files\Maxthon2
[20/08/2007|14:21] C:\Program Files\MediaInfo
[26/08/2007|11:56] C:\Program Files\Meegos Creator
[29/08/2008|18:03] C:\Program Files\Messenger
[17/09/2008|17:21] C:\Program Files\Messenger Plus! Live
[01/07/2008|16:08] C:\Program Files\MessengerDiscovery
[26/07/2008|19:30] C:\Program Files\Micro Application
[14/08/2007|11:46] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[27/10/2005|00:36] C:\Program Files\microsoft frontpage
[19/04/2006|15:14] C:\Program Files\Microsoft Office
[19/04/2006|15:14] C:\Program Files\Microsoft Works
[12/08/2008|19:26] C:\Program Files\Movie Maker
[21/09/2008|11:24] C:\Program Files\Mozilla Firefox
[27/10/2005|00:36] C:\Program Files\MSN
[17/09/2007|11:06] C:\Program Files\MSN Games
[27/10/2005|00:36] C:\Program Files\MSN Gaming Zone
[26/08/2007|19:03] C:\Program Files\MSN Reaper
[14/08/2007|11:45] C:\Program Files\MSXML 4.0
[29/11/2007|14:26] C:\Program Files\MultiProxy
[20/09/2008|17:32] C:\Program Files\Navilog1
[03/04/2008|19:32] C:\Program Files\Nero
[12/08/2008|19:22] C:\Program Files\NetMeeting
[13/08/2007|18:14] C:\Program Files\Neuf
[23/04/2008|23:21] C:\Program Files\Norton AntiVirus
[12/02/2008|13:40] C:\Program Files\Nouvelle Cible Studio
[05/10/2007|23:11] C:\Program Files\Odebit Multim‚dia
[27/10/2005|00:36] C:\Program Files\Online Services
[12/08/2008|19:22] C:\Program Files\Outlook Express
[07/09/2007|20:18] C:\Program Files\Pack Securite
[30/12/2007|14:55] C:\Program Files\Panda Antivirus 2008
[20/04/2008|14:00] C:\Program Files\Panda Security
[31/08/2007|13:28] C:\Program Files\Panicware
[19/04/2006|15:22] C:\Program Files\PC-Doctor 5 for Windows
[05/05/2008|14:01] C:\Program Files\PDFCreator
[19/04/2008|21:07] C:\Program Files\PokerRNG
[21/09/2008|12:33] C:\Program Files\Pool Sharks
[23/09/2007|11:31] C:\Program Files\Prima Games
[30/09/2007|21:06] C:\Program Files\Prime Poker
[15/08/2007|20:40] C:\Program Files\RawFlow
[19/04/2006|15:08] C:\Program Files\Real
[14/01/2008|18:23] C:\Program Files\ReflexiveArcade
[26/08/2007|15:41] C:\Program Files\Rocket Division Software
[25/02/2008|14:16] C:\Program Files\Rockstar Games
[05/12/2007|20:03] C:\Program Files\SC
[19/04/2006|15:25] C:\Program Files\Services en ligne
[04/08/2008|13:23] C:\Program Files\Shareaza
[30/05/2008|18:46] C:\Program Files\Shareaza Applications
[04/08/2008|13:16] C:\Program Files\ShareazaPlus
[14/02/2008|19:48] C:\Program Files\Simulateur de conduite 3D
[19/04/2006|15:10] C:\Program Files\Sonic
[01/05/2008|11:57] C:\Program Files\Spybot - Search & Destroy
[21/09/2008|11:04] C:\Program Files\Spyware Terminator
[15/12/2007|13:19] C:\Program Files\Stajelof
[13/05/2008|15:57] C:\Program Files\Stardock
[11/07/2008|08:34] C:\Program Files\Sun
[23/01/2008|23:12] C:\Program Files\SuperCopier2
[24/03/2008|14:06] C:\Program Files\Team ICE
[26/07/2008|20:30] C:\Program Files\TGTSoft
[22/07/2008|10:59] C:\Program Files\THQ
[20/09/2008|17:50] C:\Program Files\Trend Micro
[29/08/2008|19:53] C:\Program Files\TRENDnet
[16/09/2008|08:23] C:\Program Files\TuneUp Utilities 2008
[23/04/2008|21:15] C:\Program Files\TVAnts
[20/10/2005|21:06] C:\Program Files\Uninstall Information
[26/11/2007|14:23] C:\Program Files\Velneo
[03/08/2008|15:51] C:\Program Files\vghd
[12/07/2008|14:42] C:\Program Files\VideoLAN
[01/12/2007|15:58] C:\Program Files\Web Hottest Videos Personal Player
[21/09/2008|12:25] C:\Program Files\WinamaxPoker
[19/04/2008|22:59] C:\Program Files\Windows Defender
[20/04/2008|18:18] C:\Program Files\Windows Live
[29/08/2008|18:50] C:\Program Files\Windows Live Favorites
[29/08/2008|18:50] C:\Program Files\Windows Live Toolbar
[14/02/2008|19:47] C:\Program Files\Windows Media Connect 2
[12/08/2008|19:22] C:\Program Files\Windows Media Player
[12/08/2008|19:22] C:\Program Files\Windows NT
[20/04/2008|15:51] C:\Program Files\Windows Sidebar
[20/10/2005|21:05] C:\Program Files\WindowsUpdate
[15/07/2008|16:49] C:\Program Files\WinDS PRO
[26/07/2008|20:53] C:\Program Files\WinRAR
[21/10/2007|16:00] C:\Program Files\Wolfenstein - Enemy Territory
[20/08/2007|14:50] C:\Program Files\worldTVRT
[27/10/2005|00:37] C:\Program Files\xerox
[02/08/2008|20:21] C:\Program Files\XnView
[09/09/2007|14:22] C:\Program Files\Yahoo!
[15/03/2008|12:18] C:\Program Files\Zeallsoft
[17/09/2007|11:09] C:\Program Files\Zylom Games
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[19/04/2006|15:13] C:\Program Files\Fichiers communs\Adobe
[17/11/2007|13:54] C:\Program Files\Fichiers communs\Ahead
[17/08/2007|10:01] C:\Program Files\Fichiers communs\AVSMedia
[19/04/2008|17:53] C:\Program Files\Fichiers communs\BitDefender
[29/12/2007|22:04] C:\Program Files\Fichiers communs\BOONTY Shared
[14/08/2007|10:07] C:\Program Files\Fichiers communs\Hewlett-Packard
[19/04/2006|15:04] C:\Program Files\Fichiers communs\HP
[19/04/2006|15:23] C:\Program Files\Fichiers communs\InstallShield
[19/04/2006|14:49] C:\Program Files\Fichiers communs\Java
[18/11/2007|18:24] C:\Program Files\Fichiers communs\LightScribe
[19/04/2006|15:14] C:\Program Files\Fichiers communs\Microsoft Shared
[27/10/2005|00:35] C:\Program Files\Fichiers communs\MSSoap
[03/04/2008|19:32] C:\Program Files\Fichiers communs\Nero
[27/10/2005|00:35] C:\Program Files\Fichiers communs\ODBC
[19/04/2006|15:08] C:\Program Files\Fichiers communs\Real
[27/10/2005|00:35] C:\Program Files\Fichiers communs\Services
[08/08/2008|17:33] C:\Program Files\Fichiers communs\snpstd
[19/04/2006|15:09] C:\Program Files\Fichiers communs\Sonic Shared
[27/10/2005|00:35] C:\Program Files\Fichiers communs\SpeechEngines
[14/05/2008|08:06] C:\Program Files\Fichiers communs\Stardock
[19/04/2006|15:09] C:\Program Files\Fichiers communs\SureThing Shared
[30/05/2008|18:54] C:\Program Files\Fichiers communs\Symantec Shared
[23/04/2008|23:55] C:\Program Files\Fichiers communs\Synacast
[12/08/2008|19:22] C:\Program Files\Fichiers communs\System
[19/04/2006|15:10] C:\Program Files\Fichiers communs\TiVo Shared
[10/01/2008|10:55] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[29/04/2008|16:21] C:\Program Files\Fichiers communs\Wise Installation Wizard
[19/04/2006|15:08] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 51 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@advertstream[1].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@advertising[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@adopt.euroclick[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@partypoker[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@32vegas[1].txt
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-21 17:54:43
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 25
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\COMPAQ~1\Application Data\Real\RealPlayer\History\(full version) crack rapidshare by CH....lnk
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Ashampoo Magical Snap v2.30 Multilangages Incl-Keygen.rar
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD2
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Crack
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Instructions.txt
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\S‚rial - Num‚ro de S‚rie
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1\autorun6e.exe
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1\NBA LIVE 06 - CD1.mdf
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1\NBA LIVE 06 - CD1.mds
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD2\NBA LIVE 06 - CD2.mdf
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD2\NBA LIVE 06 - CD2.mds
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\CD1.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\CD2.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\Pochette Avant - ArriŠre.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\Pochette Pour CD2.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Crack\NBA Live 06 - Crack.mdf
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Crack\NBA Live 06 - Crack.mds
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Couverture Avant - ArriŠre.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 01.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 02 - 03.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 04 - 05.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 06 - 07.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 08 - 09.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 10 - 11.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 12 - 13.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 14 - 15.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 16.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\S‚rial - Num‚ro de S‚rie\Serial - Num‚ro de S‚rie.txt
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack.rar
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack\www.eMule-Island.com.url
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\AppInitialization.bpl
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\CommonForms.bpl
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\TU2008TrialFR.exe
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\tuneup.utilities.2008.v7.0.7986-patch.exe
C:\DOCUME~1\COMPAQ~1\Favoris\[RS] Need for Speed - Prostreet (fr) crack‚ ¯ Movizdb.com Telechargement gratuit des Films,E-book,Logiciel,crack.url
C:\DOCUME~1\COMPAQ~1\Mes documents\Downloads\Metadata\Nero.8.Ultra.Edition.v8.2.8.0.FR.Incl-Keygen.cap-divx.com.rar.xml
C:\DOCUME~1\COMPAQ~1\Recent\Ashampoo Magical Snap v2.30 Multilangages Incl-Keygen.lnk
[F:16][D:2]-> C:\DOCUME~1\COMPAQ~1\LOCALS~1\Temp
[F:285][D:0]-> C:\DOCUME~1\COMPAQ~1\Cookies
[F:4055][D:12]-> C:\DOCUME~1\COMPAQ~1\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 21/09/2008|11:21 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 21/09/2008|17:56 - Option : [2]
--------------------\\ Fin du rapport a 17:56:32
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:59:01, on 21/09/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe
C:\WINDOWS\vsnpstd.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\TRENDnet\TEW-424UB\WlanCU.exe
C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\WINDOWS\System32\svchost.exe
C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
c:\windows\system\hpsysdrv.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\WinamaxPoker\WinamaxPoker.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: IE7Pro - {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Program Files\IEPro\iepro.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [ISUSPM] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -scheduler
O4 - HKLM\..\Run: [snpstd] C:\WINDOWS\vsnpstd.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_1_0
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - Startup: ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE
O4 - Startup: Outil de notification Live Search.lnk = ?
O4 - Global Startup: Démarrage rapide de HP Photosmart Premier.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Wireless Configuration Utility.lnk = C:\Program Files\TRENDnet\TEW-424UB\WlanCU.exe
O9 - Extra button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll
O9 - Extra 'Tools' menuitem: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O20 - AppInit_DLLs: wbsys.dllC:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iolo FileInfoList Service (ioloFileInfoList) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe (file missing)
O23 - Service: iolo System Service (ioloSystemService) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe (file missing)
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
Ah oui j ai auttant de ces truc lol^^ en quoi c'est risquer? que peut il m arriver?
--------------------\\ Lop S&D 4.2.4-4 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) Processor 3000+ )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Compaq_Propriétaire ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.15 (Activated)
C:\ (Local Disk) - NTFS - Total : 180 Go Free : 104 Go
D:\ (Local Disk) - FAT32 - Total : 5 Go Free : 0 Go
E:\ (CD or DVD)
F:\ (CD or DVD)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (USB)
K:\ (CD or DVD)
"C:\Lop SD" ( MAJ : 19-09-2008|22:20 )
Option : [2] ( 21/09/2008|17:53 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Book Slow Axis Web\DEFAULT REMOTE.exe
Supprime! - C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\bcvjngzg.exe
Supprime! - C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\Curb Cash.exe
Supprime! - C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\nameeqdeadonce.exe
Supprime! - C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\pyjknmwn.exe
Supprime! - C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1\style save exit.exe
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@bigpoint[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@fr.xblaster.bigpoint[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@banner.casinoking[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@casinoking[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@banner.cotedazurpalace[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@cotedazurpalace[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@pacificpoker[1].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@banner.32vegas[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@888[2].txt
Supprime! - C:\WINDOWS\Tasks\AE87CE80918843C8.job
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Book Slow Axis Web
Supprime! - C:\DOCUME~1\COMPAQ~1\APPLIC~1\encdeb~1
Supprime! - C:\Program Files\encdeb~1
-
[ Fichier Hosts ] .. Restaure!
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[19/04/2006|15:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[18/11/2007|18:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[13/12/2007|20:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[25/12/2005|18:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg7
[25/08/2008|20:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[17/08/2007|09:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[17/09/2008|15:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Azureus
[29/12/2007|22:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[19/04/2006|15:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[30/05/2008|20:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[29/12/2007|23:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ESET
[07/09/2007|20:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\F-Secure
[07/09/2007|20:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\fssg
[04/04/2008|18:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[31/12/2007|23:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[14/08/2007|10:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[29/03/2008|10:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HPSSUPPLY
[19/04/2006|15:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[05/07/2008|22:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\iolo
[25/08/2008|20:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab
[25/08/2008|19:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files
[29/04/2008|15:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
[15/11/2007|15:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LightScribe
[18/08/2008|17:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[14/03/2008|20:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Martau(2)
[18/09/2008|08:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[29/08/2008|19:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[29/12/2007|22:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MumboJumbo
[03/04/2008|19:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[19/04/2006|14:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[19/04/2006|15:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[29/04/2008|17:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[21/09/2008|11:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spyware Terminator
[14/07/2008|16:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SweetIM
[17/08/2008|21:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[23/09/2007|10:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
[14/03/2008|20:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software
[14/08/2007|11:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[22/08/2007|21:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[13/08/2007|20:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WindowsLiveInstaller
[26/07/2008|19:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WinZip
[29/08/2008|18:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[09/09/2007|13:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[17/09/2007|11:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom
[06/04/2008|16:31] C:\DOCUME~1\COMPAQ~4\APPLIC~1\Adobe
[06/04/2008|16:31] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Adobe
[31/05/2008|21:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AdobeUM
[29/08/2007|12:05] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Ahead
[25/12/2005|16:33] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AVG7
[17/08/2007|09:53] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AVS4YOU
[02/12/2007|17:04] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Azureus
[14/12/2007|17:24] C:\DOCUME~1\COMPAQ~1\APPLIC~1\COWON
[02/06/2008|14:01] C:\DOCUME~1\COMPAQ~1\APPLIC~1\CyberLink
[22/07/2008|09:58] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DAEMON Tools
[15/10/2007|18:43] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DAEMON Tools Pro
[17/08/2007|09:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DivX
[26/11/2007|11:51] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DMCache
[01/09/2008|20:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DNA
[31/08/2007|13:35] C:\DOCUME~1\COMPAQ~1\APPLIC~1\EoRezo
[29/12/2007|23:04] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ESET
[27/10/2007|09:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\F-Secure
[13/08/2007|19:43] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Google
[13/08/2007|20:53] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Help
[14/08/2007|15:12] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HP
[22/08/2007|20:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HPQ
[30/05/2008|17:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Identities
[23/11/2007|21:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\IDM
[05/05/2008|15:01] C:\DOCUME~1\COMPAQ~1\APPLIC~1\IEPro
[23/08/2007|19:40] C:\DOCUME~1\COMPAQ~1\APPLIC~1\InstallShield
[05/07/2008|22:13] C:\DOCUME~1\COMPAQ~1\APPLIC~1\iolo
[30/08/2007|20:22] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Lavasoft
[18/09/2007|15:29] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Leadertech
[03/12/2007|00:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ma-config.com
[06/05/2008|19:30] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Macromedia
[18/08/2008|17:32] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Malwarebytes
[13/12/2007|20:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Media Player Classic
[13/06/2008|09:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Microsoft
[23/05/2008|10:02] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MiniDm
[18/11/2007|18:13] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Move Networks
[26/08/2008|20:33] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Mozilla
[22/09/2007|12:21] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MSN Pictures Displayer
[20/04/2008|17:35] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MSNInstaller
[08/09/2007|14:41] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MxBoost
[03/04/2008|11:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Nero
[26/11/2007|20:52] C:\DOCUME~1\COMPAQ~1\APPLIC~1\OtakuSoftware
[30/08/2007|17:13] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Radios Media Player
[30/05/2008|17:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Real
[02/12/2007|13:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\SecuROM
[04/08/2008|13:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ShareazaPlus
[13/07/2008|14:05] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Sonic
[13/12/2007|19:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\SopCast
[21/09/2008|11:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Spyware Terminator
[14/08/2007|21:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Sun
[02/09/2007|12:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Talkback
[29/03/2008|13:09] C:\DOCUME~1\COMPAQ~1\APPLIC~1\teamspeak2
[26/08/2007|20:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Template
[24/01/2008|11:26] C:\DOCUME~1\COMPAQ~1\APPLIC~1\TuneUp Software
[03/12/2007|12:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Uniblue
[03/08/2008|04:53] C:\DOCUME~1\COMPAQ~1\APPLIC~1\vghd
[21/04/2008|18:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\vlc
[29/08/2007|13:09] C:\DOCUME~1\COMPAQ~1\APPLIC~1\WinRAR
[29/08/2008|20:49] C:\DOCUME~1\COMPAQ~1\APPLIC~1\XnView
[17/09/2007|11:07] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Zylom
[03/04/2008|14:18] C:\DOCUME~1\COMPAQ~3\APPLIC~1\nero
[27/10/2005|00:34] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[19/04/2006|15:40] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[19/04/2006|15:08] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Real
[19/04/2006|15:35] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec
[25/12/2005|16:33] C:\DOCUME~1\LOCALS~1\APPLIC~1\AVG7
[05/07/2008|22:08] C:\DOCUME~1\LOCALS~1\APPLIC~1\iolo
[19/04/2006|14:39] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[22/12/2007|13:30] C:\DOCUME~1\NETWOR~1\APPLIC~1\Adobe
[22/12/2007|13:07] C:\DOCUME~1\NETWOR~1\APPLIC~1\Google
[19/04/2006|14:39] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[21/09/2008 17:12][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job
[19/09/2008 12:00][--ah-----] C:\WINDOWS\tasks\MP Scheduled Scan.job
[21/09/2008 17:00][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job
[21/09/2008 16:00][--a------] C:\WINDOWS\tasks\HPpromotions journeysoftware.job
[20/09/2008 21:11][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 13:00][-rah-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[19/04/2006|15:12] C:\Program Files\Adobe
[24/11/2007|21:12] C:\Program Files\AGEIA Technologies
[18/11/2007|18:14] C:\Program Files\Ahead
[30/05/2008|20:02] C:\Program Files\AlienGUIse
[18/01/2008|11:57] C:\Program Files\Alwil Software
[06/05/2008|09:25] C:\Program Files\AnalogX
[18/08/2008|19:06] C:\Program Files\Applications
[01/06/2008|16:09] C:\Program Files\Ashampoo
[01/05/2008|16:54] C:\Program Files\a-squared Free
[12/10/2007|18:35] C:\Program Files\Astro Gemini Software
[19/04/2006|15:00] C:\Program Files\ATI Technologies
[25/08/2008|20:18] C:\Program Files\Avira
[17/08/2007|11:04] C:\Program Files\AviSynth 2.5
[17/08/2007|10:02] C:\Program Files\AVS4YOU
[22/09/2007|17:23] C:\Program Files\Azureus
[19/04/2008|17:53] C:\Program Files\BitDefender
[29/12/2007|22:02] C:\Program Files\BoontyGames
[16/09/2007|15:06] C:\Program Files\Chama Digital Media
[29/11/2007|18:48] C:\Program Files\ClearIP
[09/09/2007|14:22] C:\Program Files\Common Files
[20/10/2005|21:06] C:\Program Files\ComPlus Applications
[16/05/2008|11:53] C:\Program Files\Crux Calculator v5
[19/04/2006|15:12] C:\Program Files\CyberLink
[04/01/2008|16:56] C:\Program Files\DAEMON Tools
[22/07/2008|10:52] C:\Program Files\DAEMON Tools Lite
[30/08/2008|21:25] C:\Program Files\DAEMON Tools Toolbar
[15/06/2008|19:41] C:\Program Files\DivX
[30/08/2008|19:13] C:\Program Files\DNA
[29/06/2008|12:19] C:\Program Files\DSL Speed
[06/04/2008|19:08] C:\Program Files\EA SPORTS
[24/11/2007|17:29] C:\Program Files\Elaborate Bytes
[24/03/2008|22:17] C:\Program Files\eMule
[31/08/2007|13:35] C:\Program Files\EoRezo
[22/12/2007|16:43] C:\Program Files\ERUNT
[29/12/2007|23:02] C:\Program Files\ESET
[21/09/2008|13:27] C:\Program Files\Everest Poker
[29/06/2008|12:08] C:\Program Files\Everest Poker.net
[19/04/2006|15:29] C:\Program Files\Fichiers communs
[14/02/2008|19:48] C:\Program Files\FlashGet
[14/03/2008|20:11] C:\Program Files\Free Audio Pack
[06/08/2008|18:50] C:\Program Files\Full Tilt Poker
[30/05/2008|18:24] C:\Program Files\Google
[31/12/2007|23:54] C:\Program Files\Grisoft
[03/06/2008|15:20] C:\Program Files\Guitar Pro 5
[19/04/2006|15:38] C:\Program Files\Hewlett-Packard
[19/04/2006|15:11] C:\Program Files\HP
[06/08/2008|16:50] C:\Program Files\HyCam2
[14/06/2008|13:04] C:\Program Files\IEPro
[25/12/2005|04:30] C:\Program Files\IESuper
[07/08/2008|05:19] C:\Program Files\InstallShield Installation Information
[23/11/2007|22:54] C:\Program Files\Internet Download Manager
[12/08/2008|19:59] C:\Program Files\Internet Explorer
[29/11/2007|12:27] C:\Program Files\IP Changer
[11/07/2008|08:34] C:\Program Files\Java
[31/08/2007|13:31] C:\Program Files\JCA2000
[25/08/2008|20:17] C:\Program Files\Kaspersky Lab
[30/08/2007|14:28] C:\Program Files\Lavasoft
[18/11/2007|18:14] C:\Program Files\LightScribe
[20/09/2008|17:59] C:\Program Files\Lopxp
[03/12/2007|00:19] C:\Program Files\ma-config.com
[19/08/2008|14:46] C:\Program Files\Malwarebytes' Anti-Malware
[26/08/2007|19:12] C:\Program Files\MastaLine Software
[08/09/2007|14:42] C:\Program Files\Maxthon2
[20/08/2007|14:21] C:\Program Files\MediaInfo
[26/08/2007|11:56] C:\Program Files\Meegos Creator
[29/08/2008|18:03] C:\Program Files\Messenger
[17/09/2008|17:21] C:\Program Files\Messenger Plus! Live
[01/07/2008|16:08] C:\Program Files\MessengerDiscovery
[26/07/2008|19:30] C:\Program Files\Micro Application
[14/08/2007|11:46] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[27/10/2005|00:36] C:\Program Files\microsoft frontpage
[19/04/2006|15:14] C:\Program Files\Microsoft Office
[19/04/2006|15:14] C:\Program Files\Microsoft Works
[12/08/2008|19:26] C:\Program Files\Movie Maker
[21/09/2008|11:24] C:\Program Files\Mozilla Firefox
[27/10/2005|00:36] C:\Program Files\MSN
[17/09/2007|11:06] C:\Program Files\MSN Games
[27/10/2005|00:36] C:\Program Files\MSN Gaming Zone
[26/08/2007|19:03] C:\Program Files\MSN Reaper
[14/08/2007|11:45] C:\Program Files\MSXML 4.0
[29/11/2007|14:26] C:\Program Files\MultiProxy
[20/09/2008|17:32] C:\Program Files\Navilog1
[03/04/2008|19:32] C:\Program Files\Nero
[12/08/2008|19:22] C:\Program Files\NetMeeting
[13/08/2007|18:14] C:\Program Files\Neuf
[23/04/2008|23:21] C:\Program Files\Norton AntiVirus
[12/02/2008|13:40] C:\Program Files\Nouvelle Cible Studio
[05/10/2007|23:11] C:\Program Files\Odebit Multim‚dia
[27/10/2005|00:36] C:\Program Files\Online Services
[12/08/2008|19:22] C:\Program Files\Outlook Express
[07/09/2007|20:18] C:\Program Files\Pack Securite
[30/12/2007|14:55] C:\Program Files\Panda Antivirus 2008
[20/04/2008|14:00] C:\Program Files\Panda Security
[31/08/2007|13:28] C:\Program Files\Panicware
[19/04/2006|15:22] C:\Program Files\PC-Doctor 5 for Windows
[05/05/2008|14:01] C:\Program Files\PDFCreator
[19/04/2008|21:07] C:\Program Files\PokerRNG
[21/09/2008|12:33] C:\Program Files\Pool Sharks
[23/09/2007|11:31] C:\Program Files\Prima Games
[30/09/2007|21:06] C:\Program Files\Prime Poker
[15/08/2007|20:40] C:\Program Files\RawFlow
[19/04/2006|15:08] C:\Program Files\Real
[14/01/2008|18:23] C:\Program Files\ReflexiveArcade
[26/08/2007|15:41] C:\Program Files\Rocket Division Software
[25/02/2008|14:16] C:\Program Files\Rockstar Games
[05/12/2007|20:03] C:\Program Files\SC
[19/04/2006|15:25] C:\Program Files\Services en ligne
[04/08/2008|13:23] C:\Program Files\Shareaza
[30/05/2008|18:46] C:\Program Files\Shareaza Applications
[04/08/2008|13:16] C:\Program Files\ShareazaPlus
[14/02/2008|19:48] C:\Program Files\Simulateur de conduite 3D
[19/04/2006|15:10] C:\Program Files\Sonic
[01/05/2008|11:57] C:\Program Files\Spybot - Search & Destroy
[21/09/2008|11:04] C:\Program Files\Spyware Terminator
[15/12/2007|13:19] C:\Program Files\Stajelof
[13/05/2008|15:57] C:\Program Files\Stardock
[11/07/2008|08:34] C:\Program Files\Sun
[23/01/2008|23:12] C:\Program Files\SuperCopier2
[24/03/2008|14:06] C:\Program Files\Team ICE
[26/07/2008|20:30] C:\Program Files\TGTSoft
[22/07/2008|10:59] C:\Program Files\THQ
[20/09/2008|17:50] C:\Program Files\Trend Micro
[29/08/2008|19:53] C:\Program Files\TRENDnet
[16/09/2008|08:23] C:\Program Files\TuneUp Utilities 2008
[23/04/2008|21:15] C:\Program Files\TVAnts
[20/10/2005|21:06] C:\Program Files\Uninstall Information
[26/11/2007|14:23] C:\Program Files\Velneo
[03/08/2008|15:51] C:\Program Files\vghd
[12/07/2008|14:42] C:\Program Files\VideoLAN
[01/12/2007|15:58] C:\Program Files\Web Hottest Videos Personal Player
[21/09/2008|12:25] C:\Program Files\WinamaxPoker
[19/04/2008|22:59] C:\Program Files\Windows Defender
[20/04/2008|18:18] C:\Program Files\Windows Live
[29/08/2008|18:50] C:\Program Files\Windows Live Favorites
[29/08/2008|18:50] C:\Program Files\Windows Live Toolbar
[14/02/2008|19:47] C:\Program Files\Windows Media Connect 2
[12/08/2008|19:22] C:\Program Files\Windows Media Player
[12/08/2008|19:22] C:\Program Files\Windows NT
[20/04/2008|15:51] C:\Program Files\Windows Sidebar
[20/10/2005|21:05] C:\Program Files\WindowsUpdate
[15/07/2008|16:49] C:\Program Files\WinDS PRO
[26/07/2008|20:53] C:\Program Files\WinRAR
[21/10/2007|16:00] C:\Program Files\Wolfenstein - Enemy Territory
[20/08/2007|14:50] C:\Program Files\worldTVRT
[27/10/2005|00:37] C:\Program Files\xerox
[02/08/2008|20:21] C:\Program Files\XnView
[09/09/2007|14:22] C:\Program Files\Yahoo!
[15/03/2008|12:18] C:\Program Files\Zeallsoft
[17/09/2007|11:09] C:\Program Files\Zylom Games
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[19/04/2006|15:13] C:\Program Files\Fichiers communs\Adobe
[17/11/2007|13:54] C:\Program Files\Fichiers communs\Ahead
[17/08/2007|10:01] C:\Program Files\Fichiers communs\AVSMedia
[19/04/2008|17:53] C:\Program Files\Fichiers communs\BitDefender
[29/12/2007|22:04] C:\Program Files\Fichiers communs\BOONTY Shared
[14/08/2007|10:07] C:\Program Files\Fichiers communs\Hewlett-Packard
[19/04/2006|15:04] C:\Program Files\Fichiers communs\HP
[19/04/2006|15:23] C:\Program Files\Fichiers communs\InstallShield
[19/04/2006|14:49] C:\Program Files\Fichiers communs\Java
[18/11/2007|18:24] C:\Program Files\Fichiers communs\LightScribe
[19/04/2006|15:14] C:\Program Files\Fichiers communs\Microsoft Shared
[27/10/2005|00:35] C:\Program Files\Fichiers communs\MSSoap
[03/04/2008|19:32] C:\Program Files\Fichiers communs\Nero
[27/10/2005|00:35] C:\Program Files\Fichiers communs\ODBC
[19/04/2006|15:08] C:\Program Files\Fichiers communs\Real
[27/10/2005|00:35] C:\Program Files\Fichiers communs\Services
[08/08/2008|17:33] C:\Program Files\Fichiers communs\snpstd
[19/04/2006|15:09] C:\Program Files\Fichiers communs\Sonic Shared
[27/10/2005|00:35] C:\Program Files\Fichiers communs\SpeechEngines
[14/05/2008|08:06] C:\Program Files\Fichiers communs\Stardock
[19/04/2006|15:09] C:\Program Files\Fichiers communs\SureThing Shared
[30/05/2008|18:54] C:\Program Files\Fichiers communs\Symantec Shared
[23/04/2008|23:55] C:\Program Files\Fichiers communs\Synacast
[12/08/2008|19:22] C:\Program Files\Fichiers communs\System
[19/04/2006|15:10] C:\Program Files\Fichiers communs\TiVo Shared
[10/01/2008|10:55] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[29/04/2008|16:21] C:\Program Files\Fichiers communs\Wise Installation Wizard
[19/04/2006|15:08] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 51 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@advertstream[1].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@advertising[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@adopt.euroclick[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@partypoker[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@32vegas[1].txt
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-21 17:54:43
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 25
--------------------\\ Recherche d'autres infections
--------------------\\ Cracks & Keygens ..
C:\DOCUME~1\COMPAQ~1\Application Data\Real\RealPlayer\History\(full version) crack rapidshare by CH....lnk
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Ashampoo Magical Snap v2.30 Multilangages Incl-Keygen.rar
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD2
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Crack
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Instructions.txt
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\S‚rial - Num‚ro de S‚rie
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1\autorun6e.exe
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1\NBA LIVE 06 - CD1.mdf
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD1\NBA LIVE 06 - CD1.mds
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD2\NBA LIVE 06 - CD2.mdf
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\CD2\NBA LIVE 06 - CD2.mds
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\CD1.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\CD2.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\Pochette Avant - ArriŠre.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Covers\Pochette Pour CD2.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Crack\NBA Live 06 - Crack.mdf
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Crack\NBA Live 06 - Crack.mds
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Couverture Avant - ArriŠre.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 01.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 02 - 03.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 04 - 05.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 06 - 07.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 08 - 09.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 10 - 11.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 12 - 13.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 14 - 15.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\Manuel\Page 16.jpg
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\jeux pc\NBA Live 06 - Crack - Pochettes - Manuel\S‚rial - Num‚ro de S‚rie\Serial - Num‚ro de S‚rie.txt
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack.rar
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\Steganos.Safe.2008.v10.1.4694.Multilangages.Incl-Crack\www.eMule-Island.com.url
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\AppInitialization.bpl
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\CommonForms.bpl
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\TU2008TrialFR.exe
C:\DOCUME~1\COMPAQ~1\Bureau\divers dossiers\tune up 2008\Tune.Up.Utilities.2008.FR.CRACK.Serial-CR7\tuneup.utilities.2008.v7.0.7986-patch.exe
C:\DOCUME~1\COMPAQ~1\Favoris\[RS] Need for Speed - Prostreet (fr) crack‚ ¯ Movizdb.com Telechargement gratuit des Films,E-book,Logiciel,crack.url
C:\DOCUME~1\COMPAQ~1\Mes documents\Downloads\Metadata\Nero.8.Ultra.Edition.v8.2.8.0.FR.Incl-Keygen.cap-divx.com.rar.xml
C:\DOCUME~1\COMPAQ~1\Recent\Ashampoo Magical Snap v2.30 Multilangages Incl-Keygen.lnk
[F:16][D:2]-> C:\DOCUME~1\COMPAQ~1\LOCALS~1\Temp
[F:285][D:0]-> C:\DOCUME~1\COMPAQ~1\Cookies
[F:4055][D:12]-> C:\DOCUME~1\COMPAQ~1\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 21/09/2008|11:21 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 21/09/2008|17:56 - Option : [2]
--------------------\\ Fin du rapport a 17:56:32
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:59:01, on 21/09/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Spyware Terminator\sp_rsser.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
C:\Program Files\CyberLink\PowerCinema\PCMService.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe
C:\WINDOWS\vsnpstd.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\TRENDnet\TEW-424UB\WlanCU.exe
C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\WINDOWS\System32\svchost.exe
C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
c:\windows\system\hpsysdrv.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\WinamaxPoker\WinamaxPoker.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: IE7Pro - {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Program Files\IEPro\iepro.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\CyberLink\PowerCinema\PCMService.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [ISUSPM] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -scheduler
O4 - HKLM\..\Run: [snpstd] C:\WINDOWS\vsnpstd.exe
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SpywareTerminator] "C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_1_0
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2008\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - Startup: ERUNT AutoBackup.lnk = C:\Program Files\ERUNT\AUTOBACK.EXE
O4 - Startup: Outil de notification Live Search.lnk = ?
O4 - Global Startup: Démarrage rapide de HP Photosmart Premier.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Wireless Configuration Utility.lnk = C:\Program Files\TRENDnet\TEW-424UB\WlanCU.exe
O9 - Extra button: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll
O9 - Extra 'Tools' menuitem: IE7Pro Preferences - {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - C:\Program Files\IEPro\iepro.dll
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
O20 - AppInit_DLLs: wbsys.dllC:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O23 - Service: Avira AntiVir Personal – Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal – Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iolo FileInfoList Service (ioloFileInfoList) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe (file missing)
O23 - Service: iolo System Service (ioloSystemService) - Unknown owner - C:\Program Files\iolo\common\lib\ioloServiceManager.exe (file missing)
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe
O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
Lyonnais92
Messages postés
25159
Date d'inscription
vendredi 23 juin 2006
Statut
Contributeur sécurité
Dernière intervention
16 septembre 2016
1 536
21 sept. 2008 à 18:47
21 sept. 2008 à 18:47
Bonjour,
parce que tu ne sais jamais ce que tu télécharges et les failles de sécurité que cela introduit sur ton PC.
Comment va l'ordi déormais ?
parce que tu ne sais jamais ce que tu télécharges et les failles de sécurité que cela introduit sur ton PC.
Comment va l'ordi déormais ?
ok ben pour le moment je vois pas de page cid mais mon pc ram toujours et je peut pas faire grand chose sinon que me conseil tu comme programme en remplacement ex de tune up qui est un tres bon logiciel lol merci a toi
Lyonnais92
Messages postés
25159
Date d'inscription
vendredi 23 juin 2006
Statut
Contributeur sécurité
Dernière intervention
16 septembre 2016
1 536
21 sept. 2008 à 19:06
21 sept. 2008 à 19:06
Re,
fais ça et dit moi si la vitesse est meilleure :
Lis bien et exécute cette manip dans l’ordre.
#Télécharge et installe ces logiciels (si tu ne les as pas) pour les 3 premiers
mets les à jour, comme indiqué dans les démos ou tutos.
Ne les utilise pas tout de suite.
Antispywares et autres :
Télécharge Malwarebytes' Anti-Malware (MBAM) et enregistre le sur ton bureau à partir de ce lien :
https://www.malwarebytes.com/
A la fin du téléchargement, ferme toutes les fenêtres et programmes, y compris celui-ci.
Double-clique sur l'icône Download_mbam-setup.exe sur ton bureau pour démarrer le programme d'installation.
Pendant l'installation, suis les indications (en particulier le choix de la langue et l'autorisation d'accession à Internet). N'apporte aucune modification aux réglages par défaut et, en fin d'installation, vérifie que les options Update Malwarebytes' Anti-Malware et Launch Malwarebytes' Anti-Malware sont cochées.
MBAM démarrera automatiquement et enverra un message demandant à mettre à jour le programme avant de lancer une analyse. Comme MBAM se met automatiquement à jour en fin d'installation, clique sur OK pour fermer la boîte de dialogue.
Nettoyeurs (de fichiers inutiles) et autres :
*Ccleaner (gratuit)
Téléchargement :
https://www.01net.com/telecharger/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/32599.html
Tuto :
https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php
Lors de l’installation, [décoche] l’option qui t’installerait la barre Yahoo !
========================================
->Affiche tous les fichiers et dossiers :
clique sur démarrer/panneau de configuration (en affichage classique)/option des dossiers/affichage
[Coche] « afficher les dossiers et fichiers cachés »
[Décoche] la case « Masquer les fichiers protégés du système d'exploitation (recommandé) »
[Décoche] « masquer les extensions dont le type est connu »
Puis fais [appliquer] pour valider les changements.
Et [Ok]
.
=======================================
->Démarre en mode sans échec :
Pour cela, tu tapotes la touche F8 dès le début de l’allumage du pc sans t’arrêter
Une fenêtre va s’ouvrir tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec
puis tape « entrée ».
Une fois sur le bureau s’il n’y a pas toutes les couleurs et autres c’est normal !
(Si F8 ne marche pas utilise la touche F5).
========================================
->Lance CCleaner.
Suppression des fichiers temporaires
Va dans la section "Options" situé dans la marge gauche.
Décoche "Avancé"
Retourne ensuite dans la section "Nettoyeur"
Fais bien attention de cocher toutes ces cases dans la marge gauche (Internet Explorer/Windows Explorer/Système)
• Clique sur [Analyse]
• Patiente le temps du scan, qui peut prendre un peu de temps si c'est la première fois.
• Une fois le scan terminé, clique sur [Lancer le Nettoyage]
========================================
Lance Malwarebytes AntiMalware
Dans l'onglet analyse, vérifie que "Exécuter un examen complet" est coché et clique sur le bouton Rechercher pour démarrer l'analyse.
MBAM analyse ton ordinateur. L'analyse peut prendre un certain teps. Il suffit de vérifier de temps en temps son avancement.
A la fin de l'analyse, un message s'affiche indiquant la fin de l'analyse. Clique sur OK pour poursuivre.
Si des malwares ont été détectés, leur liste s'affiche.
En cliquant sur Suppression (?) , MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
MBAM va ouvrir le bloc-notes et y copier le rapport d'analyse. Ferme le bloc-note. (Le rapport peut être retrouvé sous l'onglet Rapports/logs)
Ferme MBAM en cliquant sur Quitter.
========================================
->Relance CCleaner.
Suppression des incohérences du registre
• Clique sur l'icône [Registre] situés dans la marge à gauche
• Puis clique sur [Analyser les erreurs]
• Patiente pendant que CCleaner scan ton registre.
• Une fois le scan terminé, coche toutes les entrèes qu'il t'aura trouvée.
• Tu peux cliquer ensuite sur [Corriger les erreurs].
Si tu n'est pas sur de ce que tu fais, tu peux choisir de sauvegarder les entrées cochées pour les restaurer ultérieurement.
========================================
->Vide ta Corbeille.
========================================
->Redémarre en mode normal,
- > Ouvre ce lien pour scanner ton PC avec un BitDefender en ligne (uniquement sous Internet Explorer) :
https://www.bitdefender.com/toolbox/
Utilisation :
Cliquer sur "J'accepte" puis accepter également l'ActiveX bloqué par la barre anti-popup du SP2 qui clignotera en haut et l'installer.
Ensuite, cliquer sur "Cliquez ici pour scanner".
Patienter jusqu'à la fin du scan qui peut durer assez longtemps...
Copier/coller le rapport entier sur le forum.
Tutoriel en images ici : http://pageperso.aol.fr/rginformatique/mapage/defender.htm (merci à Balltrap34 pour cette réalisation)
[Recoche] la case « Masquer les fichiers protégés du système d'exploitation (recommandé) »
fais ça et dit moi si la vitesse est meilleure :
Lis bien et exécute cette manip dans l’ordre.
#Télécharge et installe ces logiciels (si tu ne les as pas) pour les 3 premiers
mets les à jour, comme indiqué dans les démos ou tutos.
Ne les utilise pas tout de suite.
Antispywares et autres :
Télécharge Malwarebytes' Anti-Malware (MBAM) et enregistre le sur ton bureau à partir de ce lien :
https://www.malwarebytes.com/
A la fin du téléchargement, ferme toutes les fenêtres et programmes, y compris celui-ci.
Double-clique sur l'icône Download_mbam-setup.exe sur ton bureau pour démarrer le programme d'installation.
Pendant l'installation, suis les indications (en particulier le choix de la langue et l'autorisation d'accession à Internet). N'apporte aucune modification aux réglages par défaut et, en fin d'installation, vérifie que les options Update Malwarebytes' Anti-Malware et Launch Malwarebytes' Anti-Malware sont cochées.
MBAM démarrera automatiquement et enverra un message demandant à mettre à jour le programme avant de lancer une analyse. Comme MBAM se met automatiquement à jour en fin d'installation, clique sur OK pour fermer la boîte de dialogue.
Nettoyeurs (de fichiers inutiles) et autres :
*Ccleaner (gratuit)
Téléchargement :
https://www.01net.com/telecharger/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/32599.html
Tuto :
https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php
Lors de l’installation, [décoche] l’option qui t’installerait la barre Yahoo !
========================================
->Affiche tous les fichiers et dossiers :
clique sur démarrer/panneau de configuration (en affichage classique)/option des dossiers/affichage
[Coche] « afficher les dossiers et fichiers cachés »
[Décoche] la case « Masquer les fichiers protégés du système d'exploitation (recommandé) »
[Décoche] « masquer les extensions dont le type est connu »
Puis fais [appliquer] pour valider les changements.
Et [Ok]
.
=======================================
->Démarre en mode sans échec :
Pour cela, tu tapotes la touche F8 dès le début de l’allumage du pc sans t’arrêter
Une fenêtre va s’ouvrir tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec
puis tape « entrée ».
Une fois sur le bureau s’il n’y a pas toutes les couleurs et autres c’est normal !
(Si F8 ne marche pas utilise la touche F5).
========================================
->Lance CCleaner.
Suppression des fichiers temporaires
Va dans la section "Options" situé dans la marge gauche.
Décoche "Avancé"
Retourne ensuite dans la section "Nettoyeur"
Fais bien attention de cocher toutes ces cases dans la marge gauche (Internet Explorer/Windows Explorer/Système)
• Clique sur [Analyse]
• Patiente le temps du scan, qui peut prendre un peu de temps si c'est la première fois.
• Une fois le scan terminé, clique sur [Lancer le Nettoyage]
========================================
Lance Malwarebytes AntiMalware
Dans l'onglet analyse, vérifie que "Exécuter un examen complet" est coché et clique sur le bouton Rechercher pour démarrer l'analyse.
MBAM analyse ton ordinateur. L'analyse peut prendre un certain teps. Il suffit de vérifier de temps en temps son avancement.
A la fin de l'analyse, un message s'affiche indiquant la fin de l'analyse. Clique sur OK pour poursuivre.
Si des malwares ont été détectés, leur liste s'affiche.
En cliquant sur Suppression (?) , MBAM va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
MBAM va ouvrir le bloc-notes et y copier le rapport d'analyse. Ferme le bloc-note. (Le rapport peut être retrouvé sous l'onglet Rapports/logs)
Ferme MBAM en cliquant sur Quitter.
========================================
->Relance CCleaner.
Suppression des incohérences du registre
• Clique sur l'icône [Registre] situés dans la marge à gauche
• Puis clique sur [Analyser les erreurs]
• Patiente pendant que CCleaner scan ton registre.
• Une fois le scan terminé, coche toutes les entrèes qu'il t'aura trouvée.
• Tu peux cliquer ensuite sur [Corriger les erreurs].
Si tu n'est pas sur de ce que tu fais, tu peux choisir de sauvegarder les entrées cochées pour les restaurer ultérieurement.
========================================
->Vide ta Corbeille.
========================================
->Redémarre en mode normal,
- > Ouvre ce lien pour scanner ton PC avec un BitDefender en ligne (uniquement sous Internet Explorer) :
https://www.bitdefender.com/toolbox/
Utilisation :
Cliquer sur "J'accepte" puis accepter également l'ActiveX bloqué par la barre anti-popup du SP2 qui clignotera en haut et l'installer.
Ensuite, cliquer sur "Cliquez ici pour scanner".
Patienter jusqu'à la fin du scan qui peut durer assez longtemps...
Copier/coller le rapport entier sur le forum.
Tutoriel en images ici : http://pageperso.aol.fr/rginformatique/mapage/defender.htm (merci à Balltrap34 pour cette réalisation)
[Recoche] la case « Masquer les fichiers protégés du système d'exploitation (recommandé) »
ok je fait tout ca mais je colle les raport tous en meme temps? ou 1 par 1 en comme indiquer sur la liste qui commence par ccleaner.
Lyonnais92
Messages postés
25159
Date d'inscription
vendredi 23 juin 2006
Statut
Contributeur sécurité
Dernière intervention
16 septembre 2016
1 536
21 sept. 2008 à 19:30
21 sept. 2008 à 19:30
Re,
je ne veux que les rapports de MBAM et Bit defender.
Mets les ensemble.
je ne veux que les rapports de MBAM et Bit defender.
Mets les ensemble.
Bonjour, un grand MERCI!!! mon pc va baucoup mieux, mais moi pas j ai une creve d'enfer ( grrr )
je fait quoi pour enlever tout ces petit programme ( lopxp, sdfix, lopsd )
Malwarebytes' Anti-Malware 1.28
Version de la base de données: 1186
Windows 5.1.2600 Service Pack 3
22/09/2008 07:41:48
mbam-log-2008-09-22 (07-41-48).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 155379
Temps écoulé: 4 hour(s), 22 minute(s), 22 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders (Broken.SecurityProviders) -> Bad: (msapsspc.dll schannel.dll digest.dll msnsspc.dll) Good: (msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\scrfile\shell\open\command\ (Broken.OpenCommand) -> Bad: ("%1" %*) Good: ("%1" /S) -> Quarantined and deleted successfully.
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
Statistiques
Temps
00:41:23
Fichiers
146527
Directoires
9449
Secteurs de boot
0
Archives
2636
Paquets programmes
11712
Résultats
Virus identifiés
2
Fichiers infectés
3
Fichiers suspects
0
Avertissements
0
Désinfectés
0
Fichiers effacés
3
Info sur les moteurs
Définition virus
1773752
Version des moteurs
AVCORE v1.7 (build 8314.19) (i386) (Sep 10 2008 19:37:42)
Analyse des plugins
16
Archive des plugins
43
Unpack des plugins
7
E-mail plugins
6
Système plugins
4
Paramètres d'analyse
Première action
Désinfecté
Seconde Action
Supprimé
Heuristique
Oui
Acceptez les avertissements
Oui
Extensions analysées
exe;com;dll;ocx;scr;bin;dat;386;vxd;sys;wdm;cla;class;ovl;ole;hlp;doc;dot;xls;ppt;wbk;wiz;pot;ppa;xla;xlt;vbs;vbe;mdb;rtf;htm;hta;html;xml;xtp;php;asp;js;shs;chm;lnk;pif;prc;url;smm;pfd;msi;ini;csc;cmd;bas;
Excludez les extensions
Analyse d'emails
Oui
Analyse des Archives
Oui
Analyser paquets programmes
Oui
Analyse des fichiers
Oui
Analyse de boot
Oui
Fichier analysé
Statut
C:\Program Files\IESuper\iesuper.dll
Détecté avec: Application.Generic.13175
C:\Program Files\IESuper\iesuper.dll
Echec de la désinfection
C:\Program Files\IESuper\iesuper.dll
Supprimé
C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP2\A0000435.dll
Détecté avec: Application.Generic.13175
C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP2\A0000435.dll
Echec de la désinfection
C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP2\A0000435.dll
Supprimé
C:\WINDOWS\wt\wtupdates\wtwebdriver\files\3.0.0.173\npwthost.dll
Détecté avec: Spyware.945
C:\WINDOWS\wt\wtupdates\wtwebdriver\files\3.0.0.173\npwthost.dll
Supprimé
je fait quoi pour enlever tout ces petit programme ( lopxp, sdfix, lopsd )
Malwarebytes' Anti-Malware 1.28
Version de la base de données: 1186
Windows 5.1.2600 Service Pack 3
22/09/2008 07:41:48
mbam-log-2008-09-22 (07-41-48).txt
Type de recherche: Examen complet (C:\|)
Eléments examinés: 155379
Temps écoulé: 4 hour(s), 22 minute(s), 22 second(s)
Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 2
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0
Processus mémoire infecté(s):
(Aucun élément nuisible détecté)
Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)
Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)
Elément(s) de données du Registre infecté(s):
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\SecurityProviders (Broken.SecurityProviders) -> Bad: (msapsspc.dll schannel.dll digest.dll msnsspc.dll) Good: (msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\scrfile\shell\open\command\ (Broken.OpenCommand) -> Bad: ("%1" %*) Good: ("%1" /S) -> Quarantined and deleted successfully.
Dossier(s) infecté(s):
(Aucun élément nuisible détecté)
Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
Statistiques
Temps
00:41:23
Fichiers
146527
Directoires
9449
Secteurs de boot
0
Archives
2636
Paquets programmes
11712
Résultats
Virus identifiés
2
Fichiers infectés
3
Fichiers suspects
0
Avertissements
0
Désinfectés
0
Fichiers effacés
3
Info sur les moteurs
Définition virus
1773752
Version des moteurs
AVCORE v1.7 (build 8314.19) (i386) (Sep 10 2008 19:37:42)
Analyse des plugins
16
Archive des plugins
43
Unpack des plugins
7
E-mail plugins
6
Système plugins
4
Paramètres d'analyse
Première action
Désinfecté
Seconde Action
Supprimé
Heuristique
Oui
Acceptez les avertissements
Oui
Extensions analysées
exe;com;dll;ocx;scr;bin;dat;386;vxd;sys;wdm;cla;class;ovl;ole;hlp;doc;dot;xls;ppt;wbk;wiz;pot;ppa;xla;xlt;vbs;vbe;mdb;rtf;htm;hta;html;xml;xtp;php;asp;js;shs;chm;lnk;pif;prc;url;smm;pfd;msi;ini;csc;cmd;bas;
Excludez les extensions
Analyse d'emails
Oui
Analyse des Archives
Oui
Analyser paquets programmes
Oui
Analyse des fichiers
Oui
Analyse de boot
Oui
Fichier analysé
Statut
C:\Program Files\IESuper\iesuper.dll
Détecté avec: Application.Generic.13175
C:\Program Files\IESuper\iesuper.dll
Echec de la désinfection
C:\Program Files\IESuper\iesuper.dll
Supprimé
C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP2\A0000435.dll
Détecté avec: Application.Generic.13175
C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP2\A0000435.dll
Echec de la désinfection
C:\System Volume Information\_restore{F75EEC69-6E97-419B-93B4-6A3A275301C4}\RP2\A0000435.dll
Supprimé
C:\WINDOWS\wt\wtupdates\wtwebdriver\files\3.0.0.173\npwthost.dll
Détecté avec: Spyware.945
C:\WINDOWS\wt\wtupdates\wtwebdriver\files\3.0.0.173\npwthost.dll
Supprimé
Lyonnais92
Messages postés
25159
Date d'inscription
vendredi 23 juin 2006
Statut
Contributeur sécurité
Dernière intervention
16 septembre 2016
1 536
22 sept. 2008 à 11:52
22 sept. 2008 à 11:52
Bonjour,
le ralentissement a disparu ?
Tu peux aussi faire une défragmentation de tes partitions (pour améliorer un peu la vitesse).
Pour les outils :
Télécharge ToolsCleaner par A.Rothstein & dj QUIOU sur ton Bureau.
http://pc-system.fr/
hxxp://a-rothstein.changelog.fr/TC/ToolsCleaner2.exe
hxxp://pagesperso-orange.fr/AceRothstein/ToolsCleaner2.exe
Clique sur Recherche et laisse le scan se terminer.
Clique, sur Suppression pour finaliser.
Tu peux, si tu le souhaites, te servir des Options facultatives.
Clique sur Quitter, pour que le rapport puisse se créer.
Poste moi le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur( C:\).
le ralentissement a disparu ?
Tu peux aussi faire une défragmentation de tes partitions (pour améliorer un peu la vitesse).
Pour les outils :
Télécharge ToolsCleaner par A.Rothstein & dj QUIOU sur ton Bureau.
http://pc-system.fr/
hxxp://a-rothstein.changelog.fr/TC/ToolsCleaner2.exe
hxxp://pagesperso-orange.fr/AceRothstein/ToolsCleaner2.exe
Clique sur Recherche et laisse le scan se terminer.
Clique, sur Suppression pour finaliser.
Tu peux, si tu le souhaites, te servir des Options facultatives.
Clique sur Quitter, pour que le rapport puisse se créer.
Poste moi le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur( C:\).
Oui plus de ralentissement j avais deja fais la defrag:) je pense que c'est bon plus de probleme tu veux un rapport hijackthis? voila le rapport:
[ Rapport ToolsCleaner version 2.2.3 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\Combofix.txt: trouvé !
C:\fixnavi.txt: trouvé !
C:\cleannavi.txt: trouvé !
C:\rapport_clean.txt: trouvé !
C:\lopR.txt: trouvé !
C:\kaflog.txt: trouvé !
C:\SDFIX: trouvé !
C:\Lop SD: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Navilog1: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Navilog1\Navilog1.lnk: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\SdFix.exe: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\HijackThis.lnk: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\LopSD.exe: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\lopxp.lnk: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\SDFIX: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\divers dossiers\Navilog1.lnk: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\divers dossiers\HJTInstall.exe: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\SDFix\SDFIX: trouvé !
C:\Program Files\Navilog1: trouvé !
C:\Program Files\lopxp: trouvé !
C:\Program Files\Navilog1\Navilog1.bat: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\RECYCLER\S-1-5-21-2241466167-925409466-627502504-1008\Dc4\fixnavi.txt: trouvé !
C:\RECYCLER\S-1-5-21-2241466167-925409466-627502504-1008\Dc4\cleannavi.txt: trouvé !
---------------------------------
-->- Suppression:
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Navilog1\Navilog1.lnk: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\SdFix.exe: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\HijackThis.lnk: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\LopSD.exe: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\lopxp.lnk: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\divers dossiers\Navilog1.lnk: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\divers dossiers\HJTInstall.exe: supprimé !
C:\Program Files\Navilog1\Navilog1.bat: supprimé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\Combofix.txt: supprimé !
C:\fixnavi.txt: supprimé !
C:\cleannavi.txt: supprimé !
C:\rapport_clean.txt: supprimé !
C:\lopR.txt: supprimé !
C:\kaflog.txt: supprimé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\RECYCLER\S-1-5-21-2241466167-925409466-627502504-1008\Dc4\fixnavi.txt: supprimé !
C:\RECYCLER\S-1-5-21-2241466167-925409466-627502504-1008\Dc4\cleannavi.txt: supprimé !
C:\SDFIX: supprimé !
C:\Lop SD: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Navilog1: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\SDFIX: supprimé !
C:\Program Files\Navilog1: supprimé !
C:\Program Files\lopxp: supprimé !
C:\Program Files\Trend Micro\HijackThis: supprimé !
[ Rapport ToolsCleaner version 2.2.3 (par A.Rothstein & dj QUIOU) ]
-->- Recherche:
C:\Combofix.txt: trouvé !
C:\fixnavi.txt: trouvé !
C:\cleannavi.txt: trouvé !
C:\rapport_clean.txt: trouvé !
C:\lopR.txt: trouvé !
C:\kaflog.txt: trouvé !
C:\SDFIX: trouvé !
C:\Lop SD: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Navilog1: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: trouvé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Navilog1\Navilog1.lnk: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\SdFix.exe: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\HijackThis.lnk: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\LopSD.exe: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\lopxp.lnk: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\SDFIX: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\divers dossiers\Navilog1.lnk: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\divers dossiers\HJTInstall.exe: trouvé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\SDFix\SDFIX: trouvé !
C:\Program Files\Navilog1: trouvé !
C:\Program Files\lopxp: trouvé !
C:\Program Files\Navilog1\Navilog1.bat: trouvé !
C:\Program Files\Trend Micro\HijackThis: trouvé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé !
C:\RECYCLER\S-1-5-21-2241466167-925409466-627502504-1008\Dc4\fixnavi.txt: trouvé !
C:\RECYCLER\S-1-5-21-2241466167-925409466-627502504-1008\Dc4\cleannavi.txt: trouvé !
---------------------------------
-->- Suppression:
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis\HijackThis.lnk: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Navilog1\Navilog1.lnk: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\SdFix.exe: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\HijackThis.lnk: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\LopSD.exe: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\lopxp.lnk: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\divers dossiers\Navilog1.lnk: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\divers dossiers\HJTInstall.exe: supprimé !
C:\Program Files\Navilog1\Navilog1.bat: supprimé !
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé !
C:\Combofix.txt: supprimé !
C:\fixnavi.txt: supprimé !
C:\cleannavi.txt: supprimé !
C:\rapport_clean.txt: supprimé !
C:\lopR.txt: supprimé !
C:\kaflog.txt: supprimé !
C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé !
C:\RECYCLER\S-1-5-21-2241466167-925409466-627502504-1008\Dc4\fixnavi.txt: supprimé !
C:\RECYCLER\S-1-5-21-2241466167-925409466-627502504-1008\Dc4\cleannavi.txt: supprimé !
C:\SDFIX: supprimé !
C:\Lop SD: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\HijackThis: supprimé !
C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Navilog1: supprimé !
C:\Documents and Settings\Compaq_Propriétaire\Bureau\SDFIX: supprimé !
C:\Program Files\Navilog1: supprimé !
C:\Program Files\lopxp: supprimé !
C:\Program Files\Trend Micro\HijackThis: supprimé !
Bon ben je presume que c est ok Merci pour ton aide et Merci d avoir repris le brobleme pour que ca aille plus vite !
Bonne fin de journée bye grand merci
Bonne fin de journée bye grand merci