Ouverture de fenêtres intempestive + divers

Résolu
Bonjour,
Depuis quelques temps, je rencontre pas mal de souci. Selon les moments de la journée, plutôt le soir, Firefox se met à ouvrir des fenêtres comme si l'en pleuvait, lorsque je clic sur un lien, celui-ci s'ouvre dans une autre fenêtre au lieu de s'ouvrir dans un onglet différent, mon clavier est dérégler (minuscules en majuscule et inversement), pavé numérique qui ne marche plus, et lorsque je clic sur un dossier pour l'ouvrir (en dehors d'internet), l'ensemble des dossiers situés précédemment sont sélectionné pour l'ouverture; ce qui me fait un beau bordel.
Lorsque cela arrive (plusieurs fois par jour), je redémarre mon ordi et çà remarche, mais çà se reproduit un peu plus tard.
Pour mon système, je suis sous XP, protégé par F-SECURE et j'utilise fréquemment CCLEANER.

Je vous post le rapport d'analyse de F-SECURE que j'ai fait hier soir, ainsi que Hijackthis.
Merci pour votre aide.

Rapport d'analyse
samedi 27 septembre 2008 22:57:17 - 00:46:11

Nom de l'ordinateur: FABIEN
Type d'analyse: Effectuer une analyse complète de l'ordinateur
Cible : C:\ E:\ + système + rootkits
Résultat
Aucun antiprogramme détecté

Statistiques
Analysés:

* Fichiers: 182688
* Non analysés: 267

Résultat:

* Virus: 0
* Spyware: 0
* Eléments suspects: 0
* Programme à risque: 0

Actions:

* Nettoyés: 0
* Renommés: 0
* Supprimés: 0
* Quarantaine: 0
* Echec: 0

Secteurs d'amorçage:

* Analysés: 1
* Infectés: 0
* Eléments suspects: 0
* Nettoyés: 0

Fichiers non analysés:

* Erreur d'ouverture du fichier (cliquez ici pour plus d'infos) . C:\HIBERFIL.SYS
* Erreur d'ouverture du fichier (cliquez ici pour plus d'infos) . C:\PAGEFILE.SYS
* Erreur d'ouverture du fichier (cliquez ici pour plus d'infos) . C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT
* Impossible d'ouvrir le fichier dans l'archive C:\MYSQL\DATA\IB_LOGFILE1.
* Le fichier C:\DRIVERS\OTHER.EXE\BIOSLOCK.PIF est crypté.
* Le fichier C:\DRIVERS\MCDBF\SOURCE1\OTHER.EXE\BIOSLOCK.PIF est crypté.
* Le fichier C:\DRIVERS\MCDBF\SOURCE1\TSADDON.EXE\UNISHHS.ARJ\UPDTAT.BAT est crypté.
* Impossible d'ouvrir le fichier dans l'archive com/lowagie/text/pdf/fonts/UniCNS-UCS2-V.cmap.
* Impossible d'ouvrir le fichier dans l'archive com/lowagie/text/pdf/fonts/UniGB-UCS2-V.cmap.
* Impossible d'ouvrir le fichier dans l'archive com/lowagie/text/pdf/fonts/UniKS-UCS2-V.cmap.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\013021.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017035.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017072.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017085.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017241.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017301.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017321.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017326.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\032004.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\032050.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\032103.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\032107.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\032123.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\052530.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\052534.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\062061.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\111025.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112024.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112062.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112303.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112501.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112601.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112632.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112641.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112701.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112814.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112835.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\113525.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\114104.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\114145.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\114147.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\115004.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\115060.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\115210.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116020.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116025.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116050.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116201.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116231.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116430.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116501.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116512.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\118111.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\118302.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120081.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120411.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120435.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120455.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120901.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120904.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120910.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120912.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120918.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120920.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120925.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120930.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\121009.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\121030.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\125050.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\130311.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\140005.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\140105.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\140201.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\140203.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\140205.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\140206.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141002.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141006.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141010.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141020.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141030.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141105.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141115.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150110.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150151.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150205.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150225.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150230.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150310.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150312.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150320.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150410.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150425.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150460.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150465.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150471.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150475.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150476.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150480.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150501.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150502.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150505.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150510.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\154011.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\154020.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\154050.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\161001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166084.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166103.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166130.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166135.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166142.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166150.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166160.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166170.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166500.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166700.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\215155.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\215409.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\215532.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\250105.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\250108.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\250112.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\250330.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\250520.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\250606.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\251001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\251101.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\251505.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\252001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\260320.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\260401.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\260430.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\261901.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262012.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262201.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262225.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262230.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262265.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262270.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262290.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262540.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262560.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\263001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\263501.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\263701.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\264001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\310103.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\310401.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\310710.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\310711.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\311001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\312101.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\312221.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\312511.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\312521.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\313001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\313501.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\320401.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\321001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\322005.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\330102.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\330111.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\330121.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\331071.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\331091.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\331101.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\331111.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332111.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332151.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332171.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332211.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332232.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332251.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332271.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\340001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\340421.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\340447.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\340521.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\340601.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\340691.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\341010.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\341101.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\341121.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\341221.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\371001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\371102.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\371201.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\371401.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\371490.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\371601.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\372201.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\372406.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\373104.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375007.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375012.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375018.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375031.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375035.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375040.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375045.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375070.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375075.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\380105.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\381052.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\382022.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\386009.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\391008.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\630203.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\MOULE.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\REFRACTO.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\1.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\10.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\11.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\12.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\13.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\14.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\15.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\16.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\17.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\18.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\19.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\2.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\20.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\21.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\22.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\23.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\24.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\25.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\26.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\27.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\28.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\29.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\3.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\30.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\31.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\32.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\33.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\34.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\35.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\36.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\37.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\38.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\39.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\4.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\40.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\41.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\42.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\43.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\44.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\45.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\46.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\47.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\48.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\49.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\5.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\50.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\51.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\52.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\53.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\54.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\55.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\6.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\7.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\8.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\9.PCT.

Options
Version des définitions:

* Virus: 2008-09-27_02
* Spyware: 2008-09-27_01

Moteurs d'analyse :

* F-Secure AVP: 7.00.171, 2008-09-26
* F-Secure Libra: 2.04.04, 2008-09-19
* F-Secure Orion: 1.02.37, 2008-09-27
* F-Secure Draco: 1.00.35, 2008-09-08
* F-Secure BlackLight: 1.00.68

Options d'analyse :

* Analyser les fichiers définis : COM EXE SYS OV? BIN SCR DLL SHS HTM HTML HTT VBS JS INF VXD DO? XL? RTF CPL WIZ HTA PP? PWZ P?T MSO PIF . ACM ASP AX CNV CSC DRV INI MDB MPD MPP MPT OBD OBT OCX PCI TLB TSP WBK WBT WPC WSH VWP WML BOO HLP TD0 TT6 MSG ASD JSE VBE WSC CHM EML PRC SHB LNK WSF {* PDF ZL? XML ANI AVB BAT CEO CMD JPG LSP MAP MHT MIF PHP POT SWF WMF NWS TAR TGZ ZIP JAR ARJ LZH TAR TGZ GZ CAB RAR BZ2 HQX
* Analyser le contenu des archives

Actions:

* Virus: Interroger après analyse
* Spyware: Interroger après analyse

Erreur d'informations
Une erreur "Impossible d'ouvrir le fichier" s'est produite :
Le message d'erreur "Impossible d'ouvrir le fichier" signifie que le moteur d'analyse n'a pas pu ouvrir de fichier et que ce dernier n'a pas pu être analysé. Vous pouvez généralement ignorer ce message d'erreur car il peut être dû à de nombreuses causes autres qu'une menace de sécurité, notamment :

* Le fichier est un fichier système. Par principe, les fichiers système sont protégés par le système d'exploitation. Dans ce cas, ignorez le message.
* Vous n'êtes pas autorisé à lire le fichier. Pour analyser le fichier, connectez-vous avec un compte utilisateur disposant des autorisations suffisantes (le compte administrateur de l'ordinateur par exemple) et réexécutez l'analyse.
* Le fichier était utilisé par une application pendant la tentative d'analyse. Pour l'analyser, fermez toutes les applications et réessayez.

Copyright © 1998-2007 Assistance produit | Envoi d'un échantillon de virus à F-Secure
F-Secure n'assume aucune responsabilité quant au matériel créé ou publié par une tierce partie et référencé par un lien dans les pages Web de F-Secure. Sauf mention contraire explicite, vous acceptez qu'en soumettant du matériel sur l'un de nos serveurs, par exemple via courrier électronique ou formulaire CGI de F-Secure, le matériel mis à disposition peut dès lors être publié sur les pages Web de F-Secure ou sur support papier. Vous accéderez au site web public de F-Secure en cliquant sur les liens soulignés. Ainsi, votre accès est enregistré dans nos statistiques privées avec votre nom de domaine. Ces informations ne sont communiquées à aucune tierce partie. Vous vous engagez à ne pas intenter de procédure judiciaire contre notre société en relation avec le matériel soumis. Sauf mention contraire explicite, F-Secure peut inclure dans ses propres produits/publications tout concept relatif au matériel mis à sa disposition, sans aucun engagement de responsabilité.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:52:03, on 28/09/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Pack Securite\Common\FSM32.EXE
C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE
C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
C:\Program Files\Pack Securite\Common\FSMA32.EXE
C:\Program Files\Pack Securite\Anti-Virus\FSGK32.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Pack Securite\Common\FSMB32.EXE
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Pack Securite\Common\FCH32.EXE
C:\Program Files\Pack Securite\Common\FAMEH32.EXE
C:\Program Files\Pack Securite\Anti-Virus\fsqh.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
C:\Program Files\Pack Securite\FSGUI\fsguidll.exe
C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
C:\Program Files\Pack Securite\Anti-Virus\fssm32.exe
C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
C:\Program Files\Pack Securite\FSAUA\program\fsus.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Pack Securite\Anti-Virus\fsav32.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

--
End of file - 1663 bytes
Configuration: Windows XP
Firefox 3.0.3

33 réponses

Résumé de la discussion

Des symptômes persistants mêlent des fenêtres Firefox qui s'ouvrent en grand et des clics qui ouvrent une nouvelle fenêtre au lieu d'un onglet, des dysfonctionnements clavier et pavé numérique sous Windows XP. La situation est accompagnée de sollicitations répétées malgré des redémarrages, CCLEANER et F-Secure installés, et l'analyse HijackThis citée dans le message priorise une vérification approfondie pour déceler un éventuel malware ou rootkit. Le rapport d'analyse signale de nombreux fichiers illisibles ou chiffrés, et l'absence d'antivirus détectant des éléments malveillants, un indice potentiel mais insuffisant pour conclure, laissant place à une suspicion de compromission du système.

Bobot (l’IA à votre service)
  1. Depuis que j'ai redémarré, plus de problème, tout marche bien.
    Voici le nouveau rapport:

    [b]SDFix: Version 1.230 [/b]
    Run by FC on 03/10/2008 at 22:58

    Microsoft Windows XP [version 5.1.2600]
    Running From: C:\SDFix

    [b]Checking Services [/b]:

    Restoring Default Security Values
    Restoring Default Hosts File

    Rebooting

    [b]Checking Files [/b]:

    No Trojan Files Found

    Removing Temp Files

    [b]ADS Check [/b]:

    [b]Final Check [/b]:

    catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-10-03 23:06:22
    Windows 5.1.2600 Service Pack 3 NTFS

    scanning hidden processes ...

    scanning hidden services & system hive ...

    scanning hidden registry entries ...

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher]
    "TracesProcessed"=dword:0000004b
    "TracesSuccessful"=dword:00000014

    scanning hidden files ...

    scan completed successfully
    hidden processes: 0
    hidden services: 0
    hidden files: 0

    [b]Remaining Services [/b]:

    Authorized Application Key Export:

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
    "%ProgramFiles%\\AOL 9.0\\aol.exe"="%ProgramFiles%\\AOL 9.0\\aol.exe:*:Enabled:AOL"
    "%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\logo_ubi.exe"="%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\logo_ubi.exe:*:Enabled:SPLINTER CELL PANDORA"
    "%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\pandora.exe"="%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\pandora.exe:*:Enabled:PANDORA"
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
    "C:\\APPS\\Inventime\\my.exe"="C:\\APPS\\Inventime\\my.exe:*:Enabled:INVENTIME"
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
    "C:\\Program Files\\Neuf\\Media Center\\httpd\\httpd.exe"="C:\\Program Files\\Neuf\\Media Center\\httpd\\httpd.exe:172.16.255.0/255.255.255.0,192.168.1.2/255.255.255.255:Enabled:Serveur de partage Media Center (Player Neuf Cegetel)"
    "C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
    "C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
    "C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
    "C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
    "C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
    "C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"

    [b]Remaining Files [/b]:

    [b]Files with Hidden Attributes [/b]:

    Sat 20 Sep 2008 215 A.SHR --- "C:\BOOT.BAK"
    Sat 20 Sep 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
    Wed 4 Oct 2006 4,348 A..H. --- "C:\Documents and Settings\FC\Mes documents\Ma musique\Sauvegarde de la licence\drmv1key.bak"
    Mon 8 Jan 2007 20 A..H. --- "C:\Documents and Settings\FC\Mes documents\Ma musique\Sauvegarde de la licence\drmv1lic.bak"
    Mon 11 Dec 2006 11,630 A.SH. --- "C:\Documents and Settings\FC\Mes documents\Ma musique\Sauvegarde de la licence\drmv2key.bak"

    [b]Finished![/b]
    1
    1. "Depuis que j'ai redémarré, plus de problème, tout marche bien. "
      Je voulais dire que le simple fait d'éteindre puis de rallumer mon ordi, le problème était résolu, mais uniquement pour quelques instants; cela peut revenir d'une minute à l'autre, ou bien uniquement demain.

      Voici le rapport:

      Script execute en mode sans echec
      Rapport clean par Malekal_morte - http://www.malekal.com
      Script execute en mode sans echec 03/10/2008 a 23:39:30,06

      Microsoft Windows XP [version 5.1.2600]

      *** Suppression des fichiers dans C:

      *** Suppression des fichiers dans C:\WINDOWS\

      *** Suppression des fichiers dans C:\WINDOWS\system32

      *** Suppression des fichiers dans C:\Program Files
      tentative de suppression de "C:\Program Files\Viewpoint\"

      *** Suppression des clefs du registre effectuee..
      *** Fin du rapport !
      1
      1. Contributeur sécurité
        Salut,

        Une fois de plus , le rapport est vierge ...

        Essayes de te proccurer une souris , fait des tests et dis moi ...
        1
        1. OK, merci pour tout le temps que tu m'as consacré.
          Je te tiendrai au courant.
          Salut.
          1
          1. Contributeur sécurité
            Salut,

            fais ceci pour voir ce qui ce passe :

            Télécharges Random's System Information Tool (RSIT) de random/random et enregistre l'exécutable sur ton Bureau.

            -> http://images.malwareremoval.com/random/RSIT.exe

            ! Déconnecte toi et fermes toutes tes applications en cours !

            Double-clique sur " RSIT.exe " pour le lancer .

            -> Une première fenêtre s'ouvre avec en titre : " Disclaimer of warranty " .

            * Devant l'option "List files/folders created ..." , tu choisis : 3 months

            * cliques ensuite sur " Continue " pour lancer l'analyse ...

            ( Note : Si la dernière version de HijackThis n'est pas détectée sur ton PC, RSIT le téléchargera et te demandera d'accepter la licence.)

            -> laisses faire le scan et ne touche pas au PC ...

            Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront (probablement avec le bloc-note).

            Postes le contenu de " log.txt " (c'est celui qui apparait à l'écran), ainsi que de " info.txt " (que tu verras dans la barre des tâches), pour analyse et attends la suite ...

            ( Note : les rapports seront en outre sauvegardés dans ce dossier -> C:\rsit )

            0
            1. Salut et merci de ton aide,

              Voici le rapports log, mais je n'ai pas le rapports info.txt:

              Logfile of random's system information tool 1.02 (written by random/random)
              Run by FC at 2008-09-28 11:30:36
              Microsoft Windows XP Édition familiale Service Pack 3
              System drive C: has 37 GB (49%) free of 76 GB
              Total RAM: 1023 MB (56% free)

              Logfile of Trend Micro HijackThis v2.0.2
              Scan saved at 11:30:39, on 28/09/2008
              Platform: Windows XP SP3 (WinNT 5.01.2600)
              MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
              Boot mode: Normal

              Running processes:
              C:\WINDOWS\System32\smss.exe
              C:\WINDOWS\system32\winlogon.exe
              C:\WINDOWS\system32\services.exe
              C:\WINDOWS\system32\lsass.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\system32\spoolsv.exe
              C:\WINDOWS\Explorer.EXE
              C:\Program Files\Pack Securite\Common\FSM32.EXE
              C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe
              C:\Program Files\Microsoft IntelliPoint\point32.exe
              C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE
              C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
              C:\Program Files\Pack Securite\Common\FSMA32.EXE
              C:\Program Files\Pack Securite\Anti-Virus\FSGK32.EXE
              C:\WINDOWS\system32\svchost.exe
              C:\Program Files\Pack Securite\Common\FSMB32.EXE
              C:\Program Files\Microsoft ActiveSync\wcescomm.exe
              C:\Program Files\Pack Securite\Common\FCH32.EXE
              C:\Program Files\Pack Securite\Common\FAMEH32.EXE
              C:\Program Files\Pack Securite\Anti-Virus\fsqh.exe
              C:\PROGRA~1\MI3AA1~1\rapimgr.exe
              C:\Program Files\Pack Securite\FSGUI\fsguidll.exe
              C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
              C:\Program Files\Pack Securite\Anti-Virus\fssm32.exe
              C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
              C:\Program Files\Pack Securite\FSAUA\program\fsus.exe
              C:\WINDOWS\System32\svchost.exe
              C:\Program Files\Pack Securite\Anti-Virus\fsav32.exe
              C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
              C:\Documents and Settings\FC\Bureau\RSIT.exe
              C:\Program Files\Trend Micro\HijackThis\FC.exe

              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
              R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.neuf.fr/
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = file://C:\APPS\IE\offline\fr.htm
              R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
              R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
              O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
              O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
              O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
              O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
              O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
              O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
              O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
              O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
              O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Pack Securite\Common\FSM32.EXE" /splash
              O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Pack Securite\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
              O4 - HKLM\..\Run: [ClickMe] C:\apps\ClickMe\ClickMe.exe
              O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe"
              O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
              O4 - HKLM\..\Run: [EPSON Stylus Photo RX420 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE /P31 "EPSON Stylus Photo RX420 Series" /O6 "USB001" /M "Stylus Photo RX420"
              O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
              O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
              O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
              O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
              O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
              O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
              O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
              O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
              O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
              O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
              O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
              O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
              O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
              O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
              O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
              O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
              O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
              O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
              O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
              O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
              O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Pack Securite\Common\FSMA32.EXE
              0
              1. Contributeur sécurité
                re,

                ton prb vient surement de là : tu as de grosses traces de Norton + F-secure sur ton PC ... il faut absolument nettoyer Norton comme il faut ...

                Donc dans l'ordre :

                1- Télécharges Norton removal tool sur ton bureau :
                ftp://ftp.symantec.com/public/francais/removal_tools/Norton_Removal_Tool.exe

                Déconnectes toi .
                Ensuite désinstalles Norton avec "Norton removal tool": tu doubles click dessus et laisses toi guider ... il faut le désinstaller correctement ( fait la manipe 2 fois si possible ).

                2- CCleaner :
                Un tuto ( aide ):
                http://perso.orange.fr/jesses/Docs/Logiciels/CCleaner.htm

                ---> Utilisation:
                ! déconnectes toi et fermes toutes applications en cours !
                * vas dans "nettoyeur" : fait analyse puis nettoyage
                * vas dans "registre" : fait chercher les erreurs et réparer ( plusieurs fois jusqu'à ce qu'il n'y est plus d'erreur ) .

                3- Télécharges GenProc (de Jean-Chretien1 et Narco4) sur ton bureau (et pas ailleur !) :
                http://www.alt-shift-return.org/Info/Fichiers/GenProc.zip

                !!Déconnectes toi et fermes tes application en cours !!

                Dézippes (=extraire tout) le contenu de ce que tu viens de télécharger sur ton bureau .

                Ouvres le dossier Genproc :
                double-cliques sur GenProc.bat et laisses faire ...

                Une fois terminé, postes le contenu du rapport qui s'ouvre ...

                Aide en images ici : http://www.alt-shift-return.org/Info/GenProc-HowTo.html

                IMPORTANT : postes le rapport et ne fait rien d'autre pour l'instant ( souvant il faut ajouter des consignes à la manipe indiquée pour que cela fonctionne parfaitement ) .
                0
                1. J'ai retrouvé le rapport info.txt, le voici:

                  info.txt logfile of random's system information tool 1.02 2008-09-28 11:25:57

                  ======Uninstall list======

                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Spyware Scanner"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Spyware"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus Client Security Installer"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Automatic Update Agent"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure DAAS"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Diagnostics"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure E-mail Scanning"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure FWES"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure GateKeeper Interface"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Gemini"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure GUI"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Help"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure HIPS"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Internet Shield"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Localization API"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Management Agent"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Pegasus Engine"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Protocol Scanner"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Spam Control"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Spam Scanner"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure TNB"
                  -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Uninstall"
                  -->"C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
                  -->c:\apps\skype\phone\unins000.exe
                  -->C:\Program Files\Fichiers communs\AOL\Screensaver\uninst_ygpss.exe
                  -->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
                  -->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
                  -->C:\Program Files\Fichiers communs\Symantec Shared\LiveReg\VCSetup.exe /REMOVE
                  -->C:\Program Files\Fichiers communs\Symantec Shared\SymSetup\{A93C9E60-29B6-49da-BA21-F70AC6AADE20}.exe /X
                  -->C:\Program Files\Learn2.com\StRunner\stuninst.exe
                  -->C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE /U
                  -->C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
                  -->C:\WINDOWS\IsUn040c.exe -fC:\WINDOWS\orun32.isu
                  -->C:\WINDOWS\Modio\SLAMR2KO\Setup.exe /Remove /NONGUI
                  -->C:\WINDOWS\system32\\MSIEXEC.EXE /x {9541FED0-327F-4df0-8B96-EF57EF622F19}
                  -->C:\WINDOWS\system32\drivers\UnRMC.exe
                  -->C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
                  -->C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log
                  -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe"
                  -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{23EFDB58-0874-4883-9810-EDA510B19FAE}\setup.exe" -l0x9
                  -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2637C347-9DAD-11D6-9EA2-00055D0CA761}\Setup.EXE" -uninstall
                  -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2BB79C8D-9DCC-4861-8A23-AE1B0B45E2B6}\setup.exe" -l0x9
                  -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3C1B8CBC-9118-11D7-86D3-00055DF3561E}\setup.exe" -l0x9
                  -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{775FFF70-4A8C-4500-908D-3C34DBEB11D5}\setup.exe" -l0x9
                  -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{83021AC3-086F-4B77-ACCD-1BD7C9AB211E}\setup.exe" -l0x9
                  -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B14F9B26-D695-4C4A-8B11-0FE6CDCC797B}\setup.exe" -l0x9
                  -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E213C271-AEFA-481D-A9B4-914D88925B8D}\setup.exe" -l0x9
                  -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe" -l0x40c
                  -->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
                  -->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
                  -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
                  Adobe Flash Player Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
                  Adobe Reader 9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A90000000001}
                  CC_ccProxyExt-->MsiExec.exe /I{DA42FDCA-7C5A-43EF-9A05-CCE148ADF919}
                  ccCommon-->MsiExec.exe /I{DC367608-64A7-4BF7-92F4-8BAA25BA02DB}
                  CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
                  ccPxyCore-->MsiExec.exe /I{FC08587A-4F01-4188-819F-F55880022917}
                  Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
                  Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
                  EPSON CardMonitor-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{109D28C7-FB38-483A-9C91-001CB59E2699}\SETUP.EXE" -l0x40c uninst
                  EPSON Copy Utility 3-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{67EDD823-135A-4D59-87BD-950616D6E857}\Setup.exe" -l0x40c -UnInstall
                  EPSON PhotoQuicker3.5-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{65F5B7AF-3363-11D7-BB6B-00018021113F}\SETUP.EXE" -l0x40c uninst
                  EPSON PhotoStarter3.1-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C48817E7-AA05-4151-A99D-1E1E550CE801}\SETUP.EXE" -l0x40c uninst
                  EPSON PRINT Image Framer Tool2.1-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{23B59ED4-C360-11D7-875B-0090CC005647}\SETUP.EXE" -l0x40c anything
                  EPSON Scan-->C:\Program Files\epson\escndv\setup\setup.exe /r
                  EPSON Smart Panel-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6C11D561-620B-47DA-A693-4C597F3CDF40}\SETUP.EXE" -l0x40c Uninstall
                  EPSON Web-To-Page-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7F14F68C-17FA-4F88-B3FD-7F449C1EBF32}\SETUP.EXE" -l0x40c -anything
                  EPSON-Drucker-Software-->C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R
                  ESPRX420 Guide de réf.-->C:\Program Files\EPSON\TPMANUAL\ESPRX420\REF_G\DOCUNINS.EXE
                  ESPRX420 Guide des logiciels-->C:\Program Files\EPSON\TPMANUAL\ESPRX420\PQU_G\DOCUNINS.EXE
                  HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
                  Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
                  Java 2 Runtime Environment, SE v1.4.2_05-->MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142050}
                  Java(TM) 6 Update 4-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160040}
                  Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
                  Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
                  Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
                  Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
                  Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
                  Microsoft ActiveSync 4.0-->MsiExec.exe /I{B208806F-A231-4FA0-AB3F-5C1B8979223E}
                  Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
                  Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
                  Microsoft Word 2002-->MsiExec.exe /I{911B040C-6000-11D3-8CFE-0050048383C9}
                  Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Step by Step Interactive Training (KB923723)-->"C:\WINDOWS\$NtUninstallKB923723$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Windows XP (KB953838)-->"C:\WINDOWS\$NtUninstallKB953838$\spuninst\spuninst.exe"
                  Mise à jour de sécurité pour Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
                  Mise à jour pour Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
                  Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
                  Mozilla Firefox (3.0.3)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
                  Mozilla Thunderbird (2.0.0.16)-->C:\Program Files\Mozilla Thunderbird\uninstall\helper.exe
                  MSRedist-->MsiExec.exe /I{B7C61755-DB48-4003-948F-3D34DB8EAF69}
                  MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
                  Neuf - Kit de connexion-->C:\Program Files\Neuf\Kit\uninstall.exe
                  Neuf - Media Center-->C:\Program Files\Neuf\Media Center\uninstall.exe
                  Norton AntiSpam-->MsiExec.exe /I{3B29A786-5803-4e9e-9B58-3014A5B4E519}
                  Norton AntiSpam-->MsiExec.exe /I{5677563D-0CB1-485f-9E18-C5025306BB3F}
                  Norton AntiVirus 2005-->MsiExec.exe /X{C6F5B6CF-609C-428E-876F-CA83176C021B}
                  Norton Internet Security-->MsiExec.exe /I{12E2B9E9-05B1-407d-B0FD-B5F350535125}
                  Norton Internet Security-->MsiExec.exe /I{449F3A9E-9903-4a0d-A209-08030D45A935}
                  Norton Internet Security-->MsiExec.exe /I{48185814-A224-447a-81DA-71BD20580E1B}
                  Norton Internet Security-->MsiExec.exe /I{526AD5DC-CFC4-4f2a-8442-C84CC91D6C7F}
                  Norton Internet Security-->MsiExec.exe /I{A93C9E60-29B6-49da-BA21-F70AC6AADE20}
                  Norton Internet Security-->MsiExec.exe /I{C9D599E1-6B68-4a1f-8A4F-A1DB433DB1BF}
                  Norton Internet Security-->MsiExec.exe /I{E3EFA461-EB83-4C3B-9C47-2C1D58A01555}
                  Norton Internet Security-->MsiExec.exe /I{E5EE9939-259F-4DE2-8023-5C49E16A4F43}
                  Norton Internet Security-->MsiExec.exe /I{FC2C0536-583C-46c0-844A-62CECAE01F22}
                  Norton WMI Update-->MsiExec.exe /X{E85FA9A1-C241-4698-893B-DD99509B8DB0}
                  Norton WMI Update-->MsiExec.exe /X{F64306A5-4C32-41bb-B153-53986527FAB4}
                  OpenOffice.org 2.4-->MsiExec.exe /I{A122962F-331A-4C2E-93DB-AD92D8A4FB14}
                  Pack Securite Plus-->"C:\Program Files\Pack Securite\FSGUI\PostInstall.exe" /tUnInstall
                  Packard Bell InfoCentre-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B04AC0A3-7A0F-4E38-9DE7-FD1E4CE47D8C}\setup.exe"
                  Packard Bell Toolbar 1.0-->"C:\Program Files\Dynamic Toolbar\unins000.exe"
                  PhotoImpression 5-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{66C8BE35-8BBB-472B-96C7-C7C9A499F988}\SETUP.EXE" -l0x40c
                  PIF DESIGNER2.1-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7BD0A2D8-4EA0-43C6-BDF8-DDA87B8031C6}\SETUP.EXE" -l0x40c anything
                  ScanToWeb-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EBAE381B-60A6-4863-AA9F-FCAB755BC9E5}\SETUP.EXE" ADDREMOVEDLG
                  Sonic MyDVD-->MsiExec.exe /I{21657574-BD54-48A2-9450-EB03B2C7FC29}
                  Sonic RecordNow!-->MsiExec.exe /I{9541FED0-327F-4DF0-8B96-EF57EF622F19}
                  SPBBC-->MsiExec.exe /I{77772678-817F-4401-9301-ED1D01A8DA56}
                  SymNet-->MsiExec.exe /I{2DA85B02-13C0-4E6D-9A76-22E6B3DD0CB2}
                  ViaMichelin Navigation PND-->"C:\Program Files\InstallShield Installation Information\{47FF921C-E834-47A6-8CE4-F0A99CDE347F}\setup.exe" -runfromtemp -l0x040c -removeonly
                  VLC media player 0.9.2-->C:\Program Files\VideoLAN\VLC\uninstall.exe
                  Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
                  Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
                  Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
                  Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"

                  ======Security center information======

                  AV: Norton Internet Security (outdated)
                  AV: Pack Securite Plus 7.00
                  FW: Pack Securite Plus 7.00
                  FW: Norton Internet Security

                  ======Environment variables======

                  "ComSpec"=%SystemRoot%\system32\cmd.exe
                  "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI Control Panel;C:\PROGRA~1\FICHIE~1\SONICS~1\
                  "windir"=%SystemRoot%
                  "FP_NO_HOST_CHECK"=NO
                  "OS"=Windows_NT
                  "PROCESSOR_ARCHITECTURE"=x86
                  "PROCESSOR_LEVEL"=15
                  "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 36 Stepping 2, AuthenticAMD
                  "PROCESSOR_REVISION"=2402
                  "NUMBER_OF_PROCESSORS"=1
                  "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
                  "TEMP"=%SystemRoot%\TEMP
                  "TMP"=%SystemRoot%\TEMP

                  -----------------EOF-----------------
                  0
                  1. Voilà le rapport de GenProc:

                    GenProc 2.100 [1] 28/09/2008 - Windows [XP] : Aucune infection caractéristique trouvée
                    0
                    1. Contributeur sécurité
                      Bien ...

                      refais un scan RSIT et postes le nouveau rapport obtenu stp ....

                      y a du mieux avec ton PC après le nettoyage de Norton ? ...
                      0
                      1. Le problème se produit en général le soir, donc pour le moment tout va bien; je verrai ce soir.
                        Voici le nouveau rapport:

                        Logfile of random's system information tool 1.02 (written by random/random)
                        Run by FC at 2008-09-28 12:16:57
                        Microsoft Windows XP Édition familiale Service Pack 3
                        System drive C: has 37 GB (49%) free of 76 GB
                        Total RAM: 1023 MB (63% free)

                        Logfile of Trend Micro HijackThis v2.0.2
                        Scan saved at 12:17:00, on 28/09/2008
                        Platform: Windows XP SP3 (WinNT 5.01.2600)
                        MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
                        Boot mode: Normal

                        Running processes:
                        C:\WINDOWS\System32\smss.exe
                        C:\WINDOWS\system32\winlogon.exe
                        C:\WINDOWS\system32\services.exe
                        C:\WINDOWS\system32\lsass.exe
                        C:\WINDOWS\system32\svchost.exe
                        C:\WINDOWS\System32\svchost.exe
                        C:\WINDOWS\Explorer.EXE
                        C:\WINDOWS\system32\spoolsv.exe
                        C:\Program Files\Pack Securite\Common\FSM32.EXE
                        C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe
                        C:\Program Files\Microsoft IntelliPoint\point32.exe
                        C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE
                        C:\Program Files\Microsoft ActiveSync\wcescomm.exe
                        C:\PROGRA~1\MI3AA1~1\rapimgr.exe
                        C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
                        C:\Program Files\Pack Securite\Common\FSMA32.EXE
                        C:\Program Files\Pack Securite\Anti-Virus\FSGK32.EXE
                        C:\WINDOWS\system32\svchost.exe
                        C:\Program Files\Pack Securite\Common\FSMB32.EXE
                        C:\Program Files\Pack Securite\Common\FCH32.EXE
                        C:\Program Files\Pack Securite\Common\FAMEH32.EXE
                        C:\Program Files\Pack Securite\Anti-Virus\fsqh.exe
                        C:\Program Files\Pack Securite\FSGUI\fsguidll.exe
                        C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
                        C:\Program Files\Pack Securite\Anti-Virus\fssm32.exe
                        C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
                        C:\Program Files\Pack Securite\FSAUA\program\fsus.exe
                        C:\WINDOWS\System32\svchost.exe
                        C:\Program Files\Pack Securite\Anti-Virus\fsav32.exe
                        C:\Documents and Settings\FC\Bureau\RSIT.exe
                        C:\Program Files\Trend Micro\HijackThis\FC.exe

                        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
                        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.neuf.fr/
                        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = file://C:\APPS\IE\offline\fr.htm
                        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
                        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                        R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
                        O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
                        O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
                        O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
                        O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
                        O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Pack Securite\Common\FSM32.EXE" /splash
                        O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Pack Securite\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
                        O4 - HKLM\..\Run: [ClickMe] C:\apps\ClickMe\ClickMe.exe
                        O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe"
                        O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
                        O4 - HKLM\..\Run: [EPSON Stylus Photo RX420 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE /P31 "EPSON Stylus Photo RX420 Series" /O6 "USB001" /M "Stylus Photo RX420"
                        O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
                        O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
                        O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
                        O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
                        O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
                        O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
                        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
                        O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
                        O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
                        O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
                        O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
                        O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
                        O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                        O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                        O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                        O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                        O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
                        O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
                        O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
                        O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
                        O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Pack Securite\Common\FSMA32.EXE
                        0
                        1. Contributeur sécurité
                          Si cela n'arrive que le soir, donc une fois que le PC a bien tourné ... Cela semble resemblé à une surchauffe du système ... Tu as pensé à ouvrir le PC et de fair " la pousière " ? ....

                          Sinon fais ceci en attendant :

                          Télécharges MalwareByte's :
                          ici ftp://ftp.commentcamarche.com/download/mbam-setup.exe
                          ou ici : http://www.malwarebytes.org/mbam.php

                          Installes le ( choisis bien "francais" ; ne modifies pas les paramètres d'installe ) et mets le à jour .

                          (NB : S'il te manque "COMCTL32.OCX" lors de l'installe, alors télécharges le ici : https://www.malekal.com/tutorial-aboutbuster/ )

                          Potasses le tuto pour te familiariser avec le prg : https://forum.pcastuces.com/sujet.asp?f=31&s=3
                          ( cela dis, il est très simple d'utilisation ).

                          Impératif : redémarres en mode sans échec :
                          Comment aller en Mode sans échec
                          1) Redémarres ton ordi
                          2) Tapote la touche F8 immédiatement, (F5 sur certains PC) juste après le "Bip"
                          3) Tu verras un écran avec options de démarrage apparaître
                          4) Choisis la première option : Sans Échec, et valide avec "Entrée"
                          5) Choisis ton compte habituel, et non Administrateur (si besoin ... )
                          (attention : pas de connexion possible en mode sans échec , donc copies ou imprimes bien la manipe pour éviter les erreurs ...)

                          Lances Malwarebyte's .

                          Fais un scan dit "complet" ( sélectionnes bien tous tes disks avant le scan ! ) et supprimes tout ce qu'il peut trouver, c'est à dire :
                          -->Laisses le scan se terminer,puis à la fin tu cliques sur "résultat" .
                          -->Vérifies que tous les objets infectés soient validés, puis cliques sur " suppression " .

                          Redémarres ton PC ( mode normal ).

                          Postes le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwarebytes, le dernier en date) ...
                          0
                      2. Ça y est, voici le rapport:

                        Malwarebytes' Anti-Malware 1.28
                        Version de la base de données: 1217
                        Windows 5.1.2600 Service Pack 3

                        28/09/2008 17:29:20
                        mbam-log-2008-09-28 (17-29-20).txt

                        Type de recherche: Examen complet (C:\|E:\|F:\|)
                        Eléments examinés: 127938
                        Temps écoulé: 4 hour(s), 51 minute(s), 32 second(s)

                        Processus mémoire infecté(s): 0
                        Module(s) mémoire infecté(s): 0
                        Clé(s) du Registre infectée(s): 0
                        Valeur(s) du Registre infectée(s): 0
                        Elément(s) de données du Registre infecté(s): 0
                        Dossier(s) infecté(s): 4
                        Fichier(s) infecté(s): 44

                        Processus mémoire infecté(s):
                        (Aucun élément nuisible détecté)

                        Module(s) mémoire infecté(s):
                        (Aucun élément nuisible détecté)

                        Clé(s) du Registre infectée(s):
                        (Aucun élément nuisible détecté)

                        Valeur(s) du Registre infectée(s):
                        (Aucun élément nuisible détecté)

                        Elément(s) de données du Registre infecté(s):
                        (Aucun élément nuisible détecté)

                        Dossier(s) infecté(s):
                        C:\Program Files\dynamic toolbar (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2 (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache (Adware.2020search) -> Quarantined and deleted successfully.

                        Fichier(s) infecté(s):
                        C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP12\A0003150.dll (Adware.2020Search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\batch.bat (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\unins000.dat (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\unins000.exe (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\go.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\home.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\logo_pb.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\parent_off.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\parent_on.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\pbfrv2tb0200.cfg (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\popup_off.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\popup_on.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\search.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\services.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\skin.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\skin1.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\skin2.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\skin3.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\skin4.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\skin5.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\store.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\style.css (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\support.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\Cache\ticker.xml (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\go.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\home.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\logo_pb.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\parent_off.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\parent_on.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\pbfrv2tb0200.cfg (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\popup_off.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\popup_on.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\search.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\services.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\skin.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\skin1.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\skin2.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\skin3.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\skin4.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\skin5.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\store.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\style.css (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\support.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                        C:\Program Files\dynamic toolbar\PBFRV2\Cache\ticker.xml (Adware.2020search) -> Quarantined and deleted successfully.
                        0
                        1. Contributeur sécurité
                          bien ...

                          1-supprimes tout ce qui se trouve dans la quarantaine de Malwarebytes ( via celle-ci ).

                          2- refais un coup de CCleaner( registre compris ) .

                          3- Télécharges ToolBar S&D ( de Eric_71/Team IDN ) :
                          https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2

                          ( Tuto : https://sites.google.com/site/toolbarsd/aideenimages )

                          !! Déconnectes toi et fermes toute tes applications en cours le temps de la manipe !!

                          * double-cliques sur l'.exe pour lancer l'installe et laisses toi guider ...
                          * Une fois fait, cliques sur le raccourci créé sur ton bureau pour lancer l'outil .
                          * Choisis l'option 1 ( "recherche") et tapes "entrée" .
                          * Une fois le scan finit , un rapport va apparaître, copie/colles l'intégralité
                          de son contenu dans ta prochaine réponse ...
                          ( le rapport est en outre sauvegardé ici -> C:\TB.txt )
                          0
                          1. Voici le rapport:

                            -----------\\ ToolBar S&D 1.2.1 XP/Vista

                            Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
                            X86-based PC ( Uniprocessor Free : AMD Turion(tm) 64 Mobile Technology ML-32 )
                            BIOS : Insyde Software MobilePRO BIOS Version 4.20.10
                            USER : FC ( Administrator )
                            BOOT : Normal boot
                            Antivirus : Pack Securite Plus 7.00 7.00 (Activated)
                            Firewall : Pack Securite Plus 7.00 7.00 (Activated)
                            C:\ (Local Disk) - NTFS - Total : 74 Go Free : 36 Go
                            D:\ (CD or DVD)
                            E:\ (Local Disk) - NTFS - Total : 149 Go Free : 119 Go

                            "C:\ToolBar SD" ( MAJ : 24-09-2008|21:50 )
                            Option : [1] ( 28/09/2008|17:55 )

                            -----------\\ Recherche de Fichiers / Dossiers ...

                            -----------\\ Extensions

                            (FC) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar

                            -----------\\ [..\Internet Explorer\Main]

                            [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
                            "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
                            "Start Page"="http://home.neuf.fr/"
                            "Search Bar"="https://actus.sfr.fr"
                            "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"

                            [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
                            "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
                            "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home"
                            "Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"

                            --------------------\\ Recherche d'autres infections

                            Aucune autre infection trouvée !

                            1 - "C:\ToolBar SD\TB_1.txt" - 28/09/2008|17:56 - Option : [1]

                            -----------\\ Fin du rapport a 17:56:53,84
                            0
                            1. Contributeur sécurité
                              Ok ,
                              Malwarebytes à bien tout supprimer ...

                              Fais ce scan en ligne pour voir :

                              Fais un scan en ligne avec Kaspersky : https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
                              - Sous Démonstration en ligne, on t'explique la marche à suivre, et pour lancer le scan il faut sélectionner < Exécuter l'analyse en ligne >.
                              Le scan ne marche que sous Internet Explorer(et pas sous firefox ou autre...).
                              - On va te demander de télécharger un contôle active x, accepte .
                              - Dans le menu Choisissez la cible de l'analyse, sélectionne Poste de travail. Le scan va commencer.
                              - Sauvegardes le rapport qui sera généré, puis copies/colles le dans ta prochaine réponse pour analyse et attends la suite ...

                              S'il y a un problème, assure toi que les contrôles active x sont bien configurés dans les options internet comme décrit sur ce lien : http://www.inoculer.com/activex.php3
                              Rappel : le scan est à faire sous Internet Explorer !

                              --> tuto :
                              https://www.malekal.com/scan-antivirus-ligne-nod32/#mozTocId291566

                              0
                              1. ÇA y est, l'analyse est finie, et de plus mon ordi vient de se mettre à déconner.
                                Mais je dois partir; voici le rapport, je reprendrai tes instructions demain soir.
                                Encore merci.

                                KASPERSKY ON-LINE SCANNER REPORT
                                Sunday, September 28, 2008 8:20:38 PM
                                Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 3 (Build 2600)
                                Kaspersky On-line Scanner version : 5.0.84.2
                                Dernière mise à jour de la base antivirus Kaspersky : 28/09/2008
                                Enregistrements dans la base antivirus Kaspersky : 1133526
                                Paramètres d'analyse
                                Analyser avec la base antivirus suivante standard
                                Analyser les archives vrai
                                Analyser les bases de messagerie vrai
                                Cible de l'analyse Poste de travail
                                C:\
                                D:\
                                E:\
                                Statistiques de l'analyse
                                Total d'objets analysés 94668
                                Nombre de virus trouvés 0
                                Nombre d'objets infectés 0 / 0
                                Nombre d'objets suspects 0
                                Durée de l'analyse 01:48:28

                                Nom de l'objet infecté Nom du virus Dernière action
                                C:\Documents and Settings\All Users\Application Data\F-Secure\logs\FSMA\fsma.log L'objet est verrouillé ignoré
                                C:\Documents and Settings\FC\Application Data\$_hpcst$.hpc L'objet est verrouillé ignoré
                                C:\Documents and Settings\FC\Cookies\index.dat L'objet est verrouillé ignoré
                                C:\Documents and Settings\FC\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
                                C:\Documents and Settings\FC\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
                                C:\Documents and Settings\FC\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
                                C:\Documents and Settings\FC\Local Settings\Temp\WCESLog.log L'objet est verrouillé ignoré
                                C:\Documents and Settings\FC\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
                                C:\Documents and Settings\FC\NTUSER.DAT L'objet est verrouillé ignoré
                                C:\Documents and Settings\FC\ntuser.dat.LOG L'objet est verrouillé ignoré
                                C:\Documents and Settings\LocalService\Cookies\index.dat L'objet est verrouillé ignoré
                                C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
                                C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
                                C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
                                C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
                                C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
                                C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
                                C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré
                                C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
                                C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
                                C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
                                C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
                                C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
                                C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
                                C:\Program Files\Pack Securite\Anti-Virus\dbupdate.log L'objet est verrouillé ignoré
                                C:\Program Files\Pack Securite\Anti-Virus\deleteme_msg.log L'objet est verrouillé ignoré
                                C:\Program Files\Pack Securite\Anti-Virus\fsqh.exe.Qrt.log L'objet est verrouillé ignoré
                                C:\Program Files\Pack Securite\Anti-Virus\perf.dat L'objet est verrouillé ignoré
                                C:\Program Files\Pack Securite\Anti-Virus\power.dat L'objet est verrouillé ignoré
                                C:\Program Files\Pack Securite\Common\policy.bpf L'objet est verrouillé ignoré
                                C:\Program Files\Pack Securite\Common\policy.ipf L'objet est verrouillé ignoré
                                C:\Program Files\Pack Securite\FSAUA\fsbwupst.log L'objet est verrouillé ignoré
                                C:\Program Files\Pack Securite\FSAUA\program\fsaua.dbg L'objet est verrouillé ignoré
                                C:\Program Files\Pack Securite\FSAUA\program\fsaua.log L'objet est verrouillé ignoré
                                C:\Program Files\Pack Securite\Spam Control\log\fs_sa_log.txt L'objet est verrouillé ignoré
                                C:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré
                                C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP38\change.log L'objet est verrouillé ignoré
                                C:\WINDOWS\Debug\PASSWD.LOG L'objet est verrouillé ignoré
                                C:\WINDOWS\SchedLgU.Txt L'objet est verrouillé ignoré
                                C:\WINDOWS\SoftwareDistribution\ReportingEvents.log L'objet est verrouillé ignoré
                                C:\WINDOWS\Sti_Trace.log L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\CatRoot2\edb.log L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\CatRoot2\tmp.edb L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\config\AppEvent.Evt L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\config\DEFAULT L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\config\default.LOG L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\config\SAM L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\config\SAM.LOG L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\config\SecEvent.Evt L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\config\SECURITY L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\config\SECURITY.LOG L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\config\SOFTWARE L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\config\software.LOG L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\config\SysEvent.Evt L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\config\SYSTEM L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\config\system.LOG L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\h323log.txt L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA L'objet est verrouillé ignoré
                                C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP L'objet est verrouillé ignoré
                                C:\WINDOWS\wiadebug.log L'objet est verrouillé ignoré
                                C:\WINDOWS\wiaservc.log L'objet est verrouillé ignoré
                                C:\WINDOWS\WindowsUpdate.log L'objet est verrouillé ignoré
                                E:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré
                                E:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP38\change.log L'objet est verrouillé ignoré
                                Analyse terminée.
                                0
                                1. Contributeur sécurité
                                  le rapport est vierge ... ^^"

                                  bizard ton prb ...

                                  Fais exactement ce qui suit :

                                  Télécharges ComboFix (par sUBs) sur ton Bureau (et pas ailleurs !):

                                  http://download.bleepingcomputer.com/sUBs/ComboFix.exe

                                  --------------------------------------------- [ ! ATTENTION ! ] ----------------------------------------------------------
                                  !! Déconnectes toi,fermes tes applications en cours et DESACTIVES TOUTES TES DEFENSES (anti-virus, guardes anti spy-ware, pare-feu) le temps de la manipe :
                                  en effet , activés, ils pourraient gêner fortement la procédure de recherche et de nettoyage de l'outil ( voir planter le PC )...Tu les réactiveras donc après !!
                                  --->Important : si tu rencontres des difficultés à ce niveau là, fais m'en part avant de poursuivre ...
                                  Tuto ( aide ) ici : https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix

                                  ---------------------------------------------------------------------------------------------------------------------------------

                                  Ensuite :
                                  double-cliques sur l'icône "combofix.exe" pour lancer l'outil .

                                  Appuyes sur la touche Y (Yes) pour démarrer le scan .

                                  Notes importantes :
                                  --> n'utilise pas ta souris ni ton clavier (ni un autre système de pointage) pendant que le programme tourne. Cela pourrait figer l'ordi .
                                  --> Il se peut que le PC redémarre de lui même ( pour finaliser le nettoyage ) , laisses le faire .
                                  --> si un message d'erreur windows apparait à un momment : clik sur la croix rouge en haut à droite de la fenêtre pour la fermer ( et pas sur autre chose ! sinon pas de rapport ... )

                                  Le rapport sera crée dans: C:\Combofix.txt

                                  Postes le rapport Combofix pour analyse ...
                                  0
                                  1. Salut, je suis de retour.
                                    Voici le nouveau rapport.

                                    ComboFix 08-09-28.01 - FC 2008-09-29 19:47:28.1 - NTFSx86
                                    Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.676 [GMT 2:00]
                                    Lancé depuis: C:\Documents and Settings\FC\Bureau\ComboFix.exe
                                    * Un nouveau point de restauration a été créé
                                    .

                                    ((((((((((((((((((((((((((((( Fichiers créés du 2008-08-28 au 2008-09-29 ))))))))))))))))))))))))))))))))))))
                                    .

                                    2008-09-28 18:17 . 2008-09-28 18:17 <REP> d-------- C:\WINDOWS\system32\Kaspersky Lab
                                    2008-09-28 17:56 . 2008-09-28 17:56 2,480 --a------ C:\Documents and Settings\Orph.egd
                                    2008-09-28 17:53 . 2008-09-28 17:56 <REP> d-------- C:\ToolBar SD
                                    2008-09-28 12:29 . 2008-09-28 12:29 <REP> d-------- C:\Program Files\Malwarebytes' Anti-Malware
                                    2008-09-28 12:29 . 2008-09-28 12:29 <REP> d-------- C:\Documents and Settings\FC\Application Data\Malwarebytes
                                    2008-09-28 12:29 . 2008-09-28 12:29 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
                                    2008-09-28 12:29 . 2008-09-10 00:04 38,528 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys
                                    2008-09-28 12:29 . 2008-09-10 00:03 17,200 --a------ C:\WINDOWS\system32\drivers\mbam.sys
                                    2008-09-28 11:58 . 2008-09-28 11:58 <REP> d-------- C:\Documents and Settings\All Users\Application Data\NortonInstaller
                                    2008-09-28 11:25 . 2008-09-28 11:25 <REP> d-------- C:\rsit
                                    2008-09-28 00:50 . 2008-09-28 00:50 <REP> d-------- C:\Program Files\Trend Micro
                                    2008-09-27 16:38 . 2008-09-27 16:38 <REP> d-------- C:\Documents and Settings\All Users\Application Data\ViaMichelin
                                    2008-09-27 16:32 . 2008-09-27 16:32 <REP> d-------- C:\Program Files\ViaMichelin
                                    2008-09-27 13:38 . 2008-09-27 13:38 <REP> d-------- C:\Program Files\Microsoft ActiveSync
                                    2008-09-27 13:37 . 2008-09-27 13:37 <REP> d-------- C:\WINDOWS\Downloaded Installations
                                    2008-09-27 13:05 . 2008-04-14 03:57 32,128 --a------ C:\WINDOWS\system32\drivers\wceusbsh.sys
                                    2008-09-21 11:14 . 2008-09-21 11:14 <REP> d-------- C:\Program Files\Fichiers communs\Adobe
                                    2008-09-21 11:11 . 2008-09-21 15:02 <REP> d-------- C:\Program Files\NOS
                                    2008-09-21 11:11 . 2008-09-21 15:02 <REP> d-------- C:\Documents and Settings\All Users\Application Data\NOS
                                    2008-09-21 10:37 . 2008-09-21 10:37 <REP> d-------- C:\WINDOWS\EPSON CardMonitor Essential
                                    2008-09-21 10:36 . 2008-09-21 10:36 <REP> d-------- C:\WINDOWS\EPSON PhotoStarter Essential
                                    2008-09-21 10:36 . 2008-09-21 10:36 <REP> d-------- C:\Documents and Settings\All Users\Application Data\UDL
                                    2008-09-21 10:35 . 2003-07-02 01:00 131,072 --a------ C:\WINDOWS\system32\Epcmlib.dll
                                    2008-09-21 10:31 . 2008-09-21 10:31 <REP> d-------- C:\Program Files\ArcSoft
                                    2008-09-21 10:31 . 1995-07-31 12:44 212,480 --a------ C:\WINDOWS\PCDLIB32.DLL
                                    2008-09-21 10:25 . 2008-09-21 10:30 <REP> d-------- C:\Program Files\Smart Panel
                                    2008-09-21 10:25 . 1999-06-15 11:31 96,768 --a------ C:\WINDOWS\SlantAdj.dll
                                    2008-09-21 10:25 . 1999-12-07 02:03 73,216 --a------ C:\WINDOWS\ADE.DLL
                                    2008-09-21 10:25 . 1999-04-27 00:17 3,136 --a------ C:\WINDOWS\Ade001.bin
                                    2008-09-21 10:25 . 1999-08-09 23:50 72 --------- C:\WINDOWS\system32\epDPE.ini
                                    2008-09-21 10:16 . 2004-02-01 02:00 413,696 --a------ C:\WINDOWS\system32\PICSDK.dll
                                    2008-09-21 10:16 . 2002-11-15 00:00 114,688 --a------ C:\WINDOWS\system32\EpPicPrt.dll
                                    2008-09-21 10:16 . 2002-11-15 00:00 65,536 --a------ C:\WINDOWS\system32\EPPicMgr.dll
                                    2008-09-21 10:16 . 2004-02-01 02:00 34,782 --a------ C:\WINDOWS\system32\EPPICPrinterDB.dat
                                    2008-09-21 10:16 . 2004-02-01 02:00 27,030 --a------ C:\WINDOWS\system32\EPPICPattern1.dat
                                    2008-09-21 10:16 . 2004-02-01 02:00 5,978 --a------ C:\WINDOWS\system32\EPPICLocal_FR.cfg
                                    2008-09-21 10:16 . 2004-02-01 02:00 22 --a------ C:\WINDOWS\system32\PICSDK.ini
                                    2008-09-21 10:03 . 2008-09-21 10:03 8,284 --a------ C:\WINDOWS\system32\eps_icon.avi
                                    2008-09-21 10:02 . 2008-09-21 10:02 25 --a------ C:\WINDOWS\CDE RX420FG.ini
                                    2008-09-21 10:01 . 2008-09-21 10:38 <REP> d-------- C:\Program Files\EPSON
                                    2008-09-21 10:01 . 2004-04-20 07:03 79,654 --a------ C:\WINDOWS\system32\E_FLM9CE.DLL
                                    2008-09-21 10:01 . 2003-05-21 04:27 64,000 --a------ C:\WINDOWS\system32\E_FBCB9CE.DLL
                                    2008-09-21 10:01 . 2000-06-07 03:01 34,304 --a------ C:\WINDOWS\system32\E_FBCH9CE.DLL
                                    2008-09-21 10:01 . 2003-04-10 07:40 31,744 --a------ C:\WINDOWS\system32\E_DCINST.DLL
                                    2008-09-21 09:59 . 2003-07-01 00:00 46,080 --a------ C:\WINDOWS\system32\escimgd.dll
                                    2008-09-21 09:59 . 2003-08-06 00:00 29,184 --a------ C:\WINDOWS\system32\escwiadn.dll
                                    2008-09-21 09:59 . 2008-04-13 20:47 25,856 --a------ C:\WINDOWS\system32\drivers\usbprint.sys
                                    2008-09-21 09:59 . 2008-04-13 20:47 25,856 --a------ C:\WINDOWS\system32\dllcache\usbprint.sys
                                    2008-09-21 09:59 . 2003-07-01 00:00 22,528 --a------ C:\WINDOWS\system32\esccmd.dll
                                    2008-09-21 09:59 . 2008-04-13 20:45 15,104 --a------ C:\WINDOWS\system32\drivers\usbscan.sys
                                    2008-09-21 09:59 . 2008-04-13 20:45 15,104 --a------ C:\WINDOWS\system32\dllcache\usbscan.sys
                                    2008-09-21 09:10 . 2008-09-21 09:10 2 --a------ C:\WINDOWS\msoffice.ini
                                    2008-09-21 08:50 . 2008-09-21 08:50 <REP> d-------- C:\WINDOWS\system32\fr-fr
                                    2008-09-21 08:50 . 2008-09-21 08:50 <REP> d-------- C:\WINDOWS\system32\fr
                                    2008-09-21 08:50 . 2008-09-21 08:50 <REP> d-------- C:\WINDOWS\system32\bits
                                    2008-09-21 08:50 . 2008-09-21 08:50 <REP> d-------- C:\WINDOWS\l2schemas
                                    2008-09-21 08:46 . 2008-09-21 08:51 <REP> d-------- C:\WINDOWS\ServicePackFiles
                                    2008-09-21 08:37 . 2008-09-21 08:37 <REP> d-------- C:\WINDOWS\EHome
                                    2008-09-20 22:53 . 2008-09-20 22:53 <REP> d-------- C:\Program Files\Microsoft IntelliPoint
                                    2008-09-20 22:50 . 2008-09-20 22:50 <REP> d-------- C:\Documents and Settings\FC\Application Data\vlc
                                    2008-09-20 22:47 . 2008-09-20 22:47 <REP> d-------- C:\Program Files\VideoLAN
                                    2008-09-20 22:45 . 2008-09-20 22:45 <REP> d-------- C:\Documents and Settings\FC\Application Data\Talkback
                                    2008-09-20 22:44 . 2008-09-28 17:48 <REP> d-------- C:\Program Files\Mozilla Thunderbird
                                    2008-09-20 22:44 . 2008-09-20 22:44 <REP> d-------- C:\Documents and Settings\FC\Application Data\Thunderbird
                                    2008-09-20 22:32 . 2008-09-20 22:32 <REP> d-------- C:\Program Files\MSXML 4.0
                                    2008-09-20 22:21 . 2008-09-28 00:38 <REP> d-------- C:\Documents and Settings\FC\Application Data\OpenOffice.org2
                                    2008-09-20 22:20 . 2004-08-03 22:41 1,041,536 --------- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
                                    2008-09-20 22:20 . 2004-08-03 22:41 685,056 --------- C:\WINDOWS\system32\drivers\hsfcxts2.sys
                                    2008-09-20 22:20 . 2004-08-03 22:41 220,032 --------- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
                                    2008-09-20 22:20 . 2004-07-17 22:55 129,045 --------- C:\WINDOWS\system32\drivers\cxthsfs2.cty
                                    2008-09-20 22:20 . 2004-08-03 22:41 11,868 --------- C:\WINDOWS\system32\drivers\mdmxsdk.sys
                                    2008-09-20 22:16 . 2008-09-20 22:16 <REP> d-------- C:\Program Files\OpenOffice.org 2.4
                                    2008-09-20 22:07 . 2008-09-20 22:08 <REP> d-------- C:\Program Files\CCleaner
                                    2008-09-20 21:48 . 2008-09-20 21:48 <REP> d-------- C:\Program Files\Windows Media Connect 2
                                    2008-09-20 21:46 . 2008-09-27 18:42 <REP> d-------- C:\WINDOWS\system32\LogFiles
                                    2008-09-20 21:46 . 2008-09-20 21:47 <REP> d-------- C:\WINDOWS\system32\drivers\UMDF
                                    2008-09-20 21:42 . 2008-06-14 19:33 272,768 --------- C:\WINDOWS\system32\drivers\bthport.sys
                                    2008-09-20 21:42 . 2008-06-14 19:33 272,768 --------- C:\WINDOWS\system32\dllcache\bthport.sys
                                    2008-09-20 21:41 . 2008-04-11 21:05 691,712 --------- C:\WINDOWS\system32\dllcache\inetcomm.dll
                                    2008-09-20 21:41 . 2008-06-20 13:51 361,600 --------- C:\WINDOWS\system32\dllcache\tcpip.sys
                                    2008-09-20 21:41 . 2008-05-01 16:36 331,776 --------- C:\WINDOWS\system32\dllcache\msadce.dll
                                    2008-09-20 21:41 . 2008-06-20 19:47 247,808 --------- C:\WINDOWS\system32\dllcache\mswsock.dll
                                    2008-09-20 21:41 . 2008-06-20 13:08 225,856 --------- C:\WINDOWS\system32\dllcache\tcpip6.sys
                                    2008-09-20 21:41 . 2008-05-08 16:02 203,136 --------- C:\WINDOWS\system32\dllcache\rmcast.sys
                                    2008-09-20 21:41 . 2008-06-20 19:47 147,968 --------- C:\WINDOWS\system32\dllcache\dnsapi.dll
                                    2008-09-20 21:41 . 2008-06-20 13:40 138,496 --------- C:\WINDOWS\system32\dllcache\afd.sys
                                    2008-09-20 21:30 . 2008-06-24 18:44 74,240 --------- C:\WINDOWS\system32\dllcache\mscms.dll
                                    2008-09-20 21:20 . 2008-09-28 17:53 <REP> d-------- C:\Documents and Settings\FC\Application Data\F-Secure
                                    2008-09-20 21:14 . 2008-09-20 21:14 <REP> d-------- C:\Documents and Settings\All Users\Application Data\F-Secure
                                    2008-09-20 21:14 . 2008-09-20 21:23 51,072 --a------ C:\WINDOWS\system32\drivers\fsdfw.sys
                                    2008-09-20 21:14 . 2008-09-20 21:23 30,016 --a------ C:\WINDOWS\system32\drivers\fsndis5.sys
                                    2008-09-20 21:12 . 2008-09-20 21:12 <REP> d-------- C:\Documents and Settings\All Users\Application Data\fssg
                                    2008-09-20 20:55 . 2008-09-20 21:28 <REP> d-------- C:\Program Files\Pack Securite
                                    2008-09-20 20:50 . 2008-09-20 20:51 2,308 --a------ C:\WINDOWS\mozver.dat
                                    2008-09-20 19:59 . 2008-09-21 09:49 <REP> d-------- C:\Program Files\Neuf
                                    2008-09-20 19:54 . 2004-08-16 17:55 <REP> d--h----- C:\Documents and Settings\FC\Voisinage r‚seau
                                    2008-09-20 19:54 . 2004-08-16 17:55 <REP> d--h----- C:\Documents and Settings\FC\Voisinage d'impression
                                    2008-09-20 19:54 . 2004-08-16 17:55 <REP> d--h----- C:\Documents and Settings\FC\ModŠles
                                    2008-09-20 19:54 . 2008-09-21 19:42 <REP> dr------- C:\Documents and Settings\FC\Mes documents
                                    2008-09-20 19:54 . 2004-08-16 17:55 <REP> dr------- C:\Documents and Settings\FC\Menu D‚marrer
                                    2008-09-20 19:54 . 2008-09-21 09:00 <REP> dr------- C:\Documents and Settings\FC\Favoris
                                    2008-09-20 19:54 . 2008-09-29 19:42 <REP> dr------- C:\Documents and Settings\FC\Bureau
                                    2008-09-20 19:54 . 2008-09-20 19:33 <REP> d-------- C:\Documents and Settings\FC\Application Data\You've Got Pictures Screensaver
                                    2008-09-20 19:54 . 2008-09-28 17:51 <REP> d-------- C:\Documents and Settings\FC
                                    2008-09-20 19:54 . 2004-08-05 14:00 221,184 --a------ C:\WINDOWS\system32\wmpns.dll
                                    2008-09-20 19:48 . 2008-09-20 19:48 8,192 --a------ C:\WINDOWS\REGLOCS.OLD
                                    2008-09-20 19:47 . 2008-09-20 19:47 333 --a------ C:\WINDOWS\system32\$ncsp$.inf
                                    2008-09-20 19:47 . 2008-09-20 19:47 61 --a------ C:\WINDOWS\smscfg.ini
                                    2008-09-20 19:46 . 2008-09-20 19:46 795,821 --a------ C:\WINDOWS\system\RESTORE.INS
                                    2008-09-20 19:46 . 2008-09-20 19:46 795,821 --a------ C:\WINDOWS\RESTORE.INS
                                    2008-09-20 19:42 . 2008-09-20 19:42 <REP> d-------- C:\Program Files\Fichiers communs\Sonic Shared
                                    2008-09-20 19:41 . 2008-09-20 19:41 <REP> d-------- C:\mysql
                                    2008-09-20 19:41 . 2001-11-02 02:12 36,864 --a------ C:\WINDOWS\jRegistryKey.dll
                                    2008-09-20 19:41 . 2008-09-20 19:41 289 --a------ C:\WINDOWS\my.ini
                                    2008-09-20 19:40 . 2008-09-20 19:40 <REP> d-------- C:\WINDOWS\ShellNew
                                    2008-09-20 19:40 . 2008-09-20 19:40 385 --a------ C:\WINDOWS\ODBC.INI
                                    2008-09-20 19:38 . 2008-09-20 19:38 <REP> d-------- C:\Program Files\Fichiers communs\xing shared
                                    2008-09-20 19:34 . 2008-09-28 11:56 <REP> d-------- C:\Program Files\Fichiers communs\Symantec Shared
                                    2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\WINDOWS\system32\QuickTime
                                    2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\WINDOWS\occache
                                    2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\Program Files\Viewpoint
                                    2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\Program Files\QuickTime
                                    2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\Program Files\Learn2.com
                                    2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\Program Files\Fichiers communs\Nullsoft
                                    2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Viewpoint

                                    .
                                    (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
                                    .
                                    2008-09-20 17:32 8,552 ----a-w C:\WINDOWS\system32\drivers\asctrm.sys
                                    2008-07-18 20:10 94,920 ----a-w C:\WINDOWS\system32\dllcache\cdm.dll
                                    2008-07-18 20:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll
                                    2008-07-18 20:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe
                                    2008-07-18 20:10 53,448 ----a-w C:\WINDOWS\system32\dllcache\wuauclt.exe
                                    2008-07-18 20:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll
                                    2008-07-18 20:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll
                                    2008-07-18 20:10 36,552 ----a-w C:\WINDOWS\system32\dllcache\wups.dll
                                    2008-07-18 20:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll
                                    2008-07-18 20:09 563,912 ----a-w C:\WINDOWS\system32\dllcache\wuapi.dll
                                    2008-07-18 20:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll
                                    2008-07-18 20:09 325,832 ----a-w C:\WINDOWS\system32\dllcache\wucltui.dll
                                    2008-07-18 20:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll
                                    2008-07-18 20:09 205,000 ----a-w C:\WINDOWS\system32\dllcache\wuweb.dll
                                    2008-07-18 20:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll
                                    2008-07-18 20:09 1,811,656 ----a-w C:\WINDOWS\system32\dllcache\wuaueng.dll
                                    2008-07-07 20:28 253,952 ----a-w C:\WINDOWS\system32\es.dll
                                    2008-07-07 20:28 253,952 ------w C:\WINDOWS\system32\dllcache\es.dll
                                    .

                                    ((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
                                    .
                                    .
                                    *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
                                    REGEDIT4

                                    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                                    "H/PC Connection Agent"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe" [2006-06-26 1211176]

                                    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                                    "F-Secure Manager"="C:\Program Files\Pack Securite\Common\FSM32.EXE" [2007-04-26 183208]
                                    "F-Secure TNB"="C:\Program Files\Pack Securite\FSGUI\TNBUtil.exe" [2007-04-26 740208]
                                    "ClickMe"="C:\apps\ClickMe\ClickMe.exe" [2004-02-23 135168]
                                    "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe" [2007-12-14 144784]
                                    "IntelliPoint"="C:\Program Files\Microsoft IntelliPoint\point32.exe" [2005-03-24 217088]
                                    "EPSON Stylus Photo RX420 Series"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE" [2004-04-09 98304]
                                    "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]

                                    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
                                    "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2008-04-14 15360]

                                    [HKLM\~\startupfolder\C:^Documents and Settings^FC^Menu Démarrer^Programmes^Démarrage^OpenOffice.org 2.4.lnk]
                                    path=C:\Documents and Settings\FC\Menu Démarrer\Programmes\Démarrage\OpenOffice.org 2.4.lnk
                                    backup=C:\WINDOWS\pss\OpenOffice.org 2.4.lnkStartup

                                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATIPTA]
                                    --a------ 2005-03-22 21:05 339968 C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe

                                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
                                    --a------ 2004-08-05 14:00 208952 C:\WINDOWS\ime\IMJP8_1\imjpmig.exe

                                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
                                    --a------ 2008-04-14 04:34 1695232 C:\Program Files\Messenger\msmsgs.exe

                                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCMService]
                                    --------- 2005-05-11 13:48 127118 c:\APPS\Powercinema\PCMService.exe

                                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A]
                                    --a------ 2004-08-05 14:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE

                                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync]
                                    --a------ 2004-08-05 14:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE

                                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RMC]
                                    --a------ 2005-03-28 17:55 24576 C:\WINDOWS\system32\drivers\RMC.exe

                                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
                                    --a------ 2004-06-03 22:05 32881 C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe

                                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
                                    --a------ 2005-03-04 11:12 708698 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

                                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPLpr]
                                    --a------ 2005-03-04 11:13 102490 C:\Program Files\Synaptics\SynTP\SynTPLpr.exe

                                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raccourci vers la page des propriétés de High Definition Audio]
                                    --a------ 2005-01-07 17:07 61952 C:\WINDOWS\system32\HdAShCut.exe

                                    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
                                    "SPBBCSvc"=3 (0x3)
                                    "SNDSrvc"=3 (0x3)
                                    "SLService"=2 (0x2)
                                    "SAVScan"=3 (0x3)
                                    "navapsvc"=2 (0x2)
                                    "MySqlInventime"=3 (0x3)
                                    "MDM"=2 (0x2)
                                    "ISSVC"=3 (0x3)
                                    "GenericHidService"=2 (0x2)
                                    "CyberLink Media Library Service"=2 (0x2)
                                    "CLSched"=2 (0x2)
                                    "CLCapSvc"=2 (0x2)
                                    "ccSetMgr"=2 (0x2)
                                    "ccPwdSvc"=3 (0x3)
                                    "ccProxy"=2 (0x2)
                                    "ccEvtMgr"=2 (0x2)
                                    "Ati HotKey Poller"=2 (0x2)
                                    "AOL ACS"=2 (0x2)

                                    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
                                    "DisableMonitoring"=dword:00000001

                                    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
                                    "DisableMonitoring"=dword:00000001

                                    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
                                    "EnableFirewall"= 0 (0x0)

                                    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
                                    "%ProgramFiles%\\AOL 9.0\\aol.exe"=
                                    "%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\logo_ubi.exe"=
                                    "%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\pandora.exe"=
                                    "%windir%\\system32\\sessmgr.exe"=
                                    "C:\\APPS\\Inventime\\my.exe"=
                                    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
                                    "C:\Program Files\Neuf\Media Center\httpd\httpd.exe"= C:\Program Files\Neuf\Media Center\httpd\httpd.exe:172.16.255.0/255.255.255.0,192.168.1.2/255.255.255.255:Enabled:Serveur de partage Media Center (Player Neuf Cegetel)
                                    "C:\Program Files\Microsoft ActiveSync\rapimgr.exe"= C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
                                    "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"= C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager
                                    "C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"= C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application

                                    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
                                    "26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

                                    R0 FSFW;F-Secure Firewall Driver;C:\WINDOWS\system32\drivers\fsdfw.sys [2008-09-20 51072]
                                    R1 F-Secure HIPS;F-Secure HIPS;C:\Program Files\Pack Securite\HIPS\fshs.sys [2008-09-20 41184]
                                    R2 MTC0001_RMC;Remove Control Device;C:\WINDOWS\system32\drivers\RMC.sys [2005-04-22 13912]
                                    R3 F-Secure Gatekeeper;F-Secure Gatekeeper;C:\Program Files\Pack Securite\Anti-Virus\minifilter\fsgk.sys [2007-04-26 59760]
                                    R3 Slazldrv;SmartLink AMR_PCI Driver;C:\WINDOWS\system32\DRIVERS\SLDRV\slazldrv.sys [2005-01-05 226768]
                                    S3 PALLADIA;Palladia 300/400 Usb Adsl Modem;C:\WINDOWS\system32\DRIVERS\usbiad.sys [2005-06-13 31579]
                                    S3 ULI5261;ULi Based Ethernet NT Driver;C:\WINDOWS\system32\DRIVERS\ULILAN.SYS [2004-12-31 28160]
                                    S4 F-Secure Filter;F-Secure File System Filter;C:\Program Files\Pack Securite\Anti-Virus\Win2K\FSfilter.sys [2007-04-26 40048]
                                    S4 F-Secure Recognizer;F-Secure File System Recognizer;C:\Program Files\Pack Securite\Anti-Virus\Win2K\FSrec.sys [2007-04-26 25456]

                                    *Newly Created Service* - PROCEXP90
                                    .
                                    Contenu du dossier 'Tâches planifiées'
                                    .
                                    - - - - ORPHELINS SUPPRIMES - - - -

                                    MSConfigStartUp-ccApp - C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
                                    MSConfigStartUp-IS CfgWiz - C:\Program Files\Norton Internet Security\cfgwiz.exe
                                    MSConfigStartUp-SSC_UserPrompt - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\UsrPrmpt.exe

                                    .
                                    ------- Examen supplémentaire -------
                                    .
                                    FireFox -: Profile - C:\Documents and Settings\FC\Application Data\Mozilla\Firefox\Profiles\m4cpo2qw.default\
                                    FireFox -: prefs.js - SEARCH.DEFAULTURL - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
                                    FireFox -: prefs.js - STARTUP.HOMEPAGE - hxxp://www.neufportail.fr/
                                    FF -: plugin - C:\Program Files\Mozilla Firefox\plugins\np_gp.dll
                                    FF -: plugin - C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
                                    .

                                    **************************************************************************

                                    catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
                                    Rootkit scan 2008-09-29 19:49:31
                                    Windows 5.1.2600 Service Pack 3 NTFS

                                    Recherche de processus cachés ...

                                    Recherche d'éléments en démarrage automatique cachés ...

                                    Recherche de fichiers cachés ...

                                    Scan terminé avec succès
                                    Fichiers cachés: 0

                                    **************************************************************************

                                    [HKEY_LOCAL_MACHINE\system\ControlSet001\Services\MySqlInventime]
                                    "ImagePath"="c:\mysql\bin\mysqld-max-nt MySqlInventime"
                                    .
                                    Heure de fin: 2008-09-29 19:50:31
                                    ComboFix-quarantined-files.txt 2008-09-29 17:50:26

                                    Avant-CF: 38ÿ768ÿ144ÿ384 octets libres
                                    Après-CF: 38,800,003,072 octets libres

                                    277 --- E O F --- 2008-09-21 08:55:21
                                    0
                                    1. Contributeur sécurité
                                      Bein...

                                      1-Avoir accès aux fichiers cachés :

                                      Vas dans Menu Démarrer->Poste de travail->Outils->Options des dossiers...->Affichage
                                      * "Afficher les fichiers et dossiers cachés" ---> coché
                                      * "Masquer les extensions des fichiers dont le type est connu" ---> décoché
                                      * "masquer les fichiers du système" ---> décoché
                                      -> valides la modif ( "appliquer" puis "ok" ).
                                      ( tu remetteras les paramètres de départ une fois la désinfection terminée , pas avant ... )

                                      2-Rends toi sur ce site :

                                      https://www.virustotal.com/gui/

                                      Copies ce qui suit et colles le dans l'espace pour la recherche :
                                      C:\Program Files\Mozilla Firefox\plugins\np_gp.dll

                                      Cliques sur Send File ( = " Envoyer le fichier " ).

                                      Un rapport va s'élaborer ligne à ligne.

                                      Attends bien la fin ... Il doit comprendre la taille du fichier envoyé.

                                      Sauvegarde le rapport avec le bloc-note.

                                      Copies le dans ta prochaine réponse ...

                                      ( Si VirusTotal indique que le fichier a déjà été analysé, clique sur le bouton Ré-analyse le fichier maintenant )

                                      Fais de même pour :
                                      C:\WINDOWS\REGLOCS.OLD
                                      C:\WINDOWS\smscfg.ini
                                      C:\WINDOWS\system\RESTORE.INS
                                      C:\WINDOWS\jRegistryKey.dll
                                      C:\WINDOWS\my.ini

                                      postes moi donc ces 6 rapports ( surtout le début avec le listing des AV , et en précisant bien au début de chacuns à quel fichier ils correspondent ) et attends la suite ...

                                      0
                                      • 1
                                      • 2