Virus Antispyware

emi -  
 emi -
Bonjour,

Meme probleme à l'instant : mon ordi a commencé par s'eteindre tout seul, et au redemerrage, croix rouge me disant que j'avais un virus etc... J'ai tout de suite fait une recherche, mais ai compris que ca devenait louche... j'ai relancé mon antivirus avast qui trouvait le virus... J'ai supprimé plusieurs fichiers... Entre temps, je n'arrivais pas executer le fichier hijackthis... J'ai redémarré : un message me disant qu'un fichier a été supprimé et que donc l' antispyware ne pouvait plus se mettre en marche... En attendant, j'ai plus la croix rouge. Je viens d'executer hijackthis.exe :
voici le rapport :

Si qqn peut me dire si j'ai encore un pb, et ce que je dois faire...
Merci d'avance!!!

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 22:12:01, on 26/10/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\Program Files\D-Link\AirPlus XtremeG\AirPlusCFG.exe
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\WINDOWS\system32\drivers\svchost.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HT.exe
C:\Program Files\Mozilla Firefox\firefox.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /nodetect
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] CHDAudPropShortcut.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\Hewlett-Packard\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [RecGuard] C:\Windows\SMINST\RecGuard.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKLM\..\Run: [D-Link AirPlus XtremeG] C:\Program Files\D-Link\AirPlus XtremeG\AirPlusCFG.exe
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [AntiSpywareXP 2009] "C:\Program Files\AntiSpywareXP2009\AntiSpywareXP2009.exe" /hide
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [SVCHOST.EXE] C:\WINDOWS\system32\drivers\svchost.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Yahoo! Widget Engine.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
O4 - Global Startup: BlueSoleil.lnk = ?
O4 - Global Startup: Démarrage rapide de HP Photosmart Premier.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://emmi08.spaces.live.com/PhotoUpload/MsnPUpld.cab?10,0,916,0
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Alpha Networks Inc. - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
A voir également:

5 réponses

Utilisateur anonyme
 
bonjour

relance ToolBar S&D et fait option 2

ensuite

1) Télécharge et installe Malwarebyte's Anti-Malware:

http://www.malwarebytes.org/mbam/program/mbam-setup.exe

A la fin de l'installation, veille à ce que l'option « mettre a jour Malwarebyte's Anti-Malware » soit cochée. >>> clique sur OK
Lance Malwarebyte's Anti-Malware en double-cliquant sur l'icône sur ton Bureau.

Au premier lancement, une fenêtre t'annonce que la version est Free >>> clique sur OK

Laisse les Mises à jour se télécharger
*** Referme le programme ***

2) Redémarre en "Mode sans échec"

Au redémarrage de l'ordinateur, une fois le chargement du BIOS terminé, il y a un écran noir qui apparaît rapidement, appuie sur la touche [F8] (ou [F5] sur certains pc) jusqu'à l'affichage du menu des options avancées de Windows.
Sélectionner "Mode sans échec" et appuie sur [Entrée]
Il faudra choisir ta session habituelle, pas le compte "Administrateur" ou une autre.
Regarde ici si besoin : https://www.malekal.com/demarrer-windows-mode-sans-echec/

Ouvre le fichier texte sauvegardé sur le Bureau afin de suivre les instructions comme il faut.

3) Scan avec Malwarebyte's Anti-Malware

Lance Malwarebyte's Anti-Malware
Onglet "Recherche" >>> coche Executer un exame complet >>> Rechercher sélectionne tes disques durs puis clique sur Lancer l’examen
A la fin du scan >>> clique sur Afficher les résultats puis sur Enregistrer le rapport
Suppression des éléments détectés >>>>
supprime ce qu'il a trouvé vide également les éléments de la quarantaine
S'il t'es demandé de redémarrer >>> clique sur "Yes"

--> Un rapport de scan s'ouvre, enregistre sur ton Bureau et poste ce rapport en réponse.

quand tu demande une analyse, demande en mode sans échec.

Pourquoi en mode sans échec:

*Car déjà l'analyse cherche plus de fichiers en mode sans échec que en mode normal.
*Et aussi en mode normal les virus ( trojans, cheval de troie, vers, spywares , malwares et autres ... sont actif) donc ne se supprimes pas donc ils faut le faire en mode sans échec .1) Imprime ces instructions car il faudra fermer toutes les fenêtres et applications lors de l'installation et de l'analyse.

1
emi
 
Merci encore de votre aide,

voici le rapport Malware...

Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1326
Windows 5.1.2600 Service Pack 2

27/10/2008 12:55:25
mbam-log-2008-10-27 (12-55-25).txt

Type de recherche: Examen complet (C:\|D:\|)
Eléments examinés: 157798
Temps écoulé: 34 minute(s), 1 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 3
Valeur(s) du Registre infectée(s): 2
Elément(s) de données du Registre infecté(s): 1
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 23

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\antispywarexp2009 (Rogue.AntispywareXP) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\tdssdata (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\tdss (Trojan.Agent) -> Quarantined and deleted successfully.

Valeur(s) du Registre infectée(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\svchost.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\antispywarexp 2009 (Rogue.AntispywareXP) -> Quarantined and deleted successfully.

Elément(s) de données du Registre infecté(s):
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\StartMenuLogOff (Hijack.StartMenu) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
C:\WINDOWS\system32\drivers\svchost.exe (Trojan.FakeAlert.H) -> Quarantined and deleted successfully.
C:\WINDOWS\karna.dat (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\TDSSlxwp.dll (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\delself.bat (Malware.Trace) -> Quarantined and deleted successfully.
C:\WINDOWS\brastk.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\wini10801.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Emeline\Local Settings\Temp\wrdwn2 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Emeline\Local Settings\Temp\wrdwn3 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Emeline\Local Settings\Temp\wrdwn4 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Emeline\Local Settings\Temp\wrdwn5 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Emeline\Local Settings\Temp\wrdwn6 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Emeline\Local Settings\Temp\wrdwn7 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Emeline\Local Settings\Temp\TDSS15b3.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Emeline\Local Settings\Temp\TDSS15c3.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\TDSSbubv.log (Trojan.TDSS) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\TDSShrsr.dll (Rootkit.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\TDSSnmxh.log (Trojan.TDSS) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\TDSSoiqh.dll (Rootkit.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\TDSSoiqt.dll (Rootkit.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\TDSSrhyp.dll (Rootkit.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\TDSSrtqp.dll (Rootkit.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\TDSSxfum.dll (Rootkit.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\drivers\TDSSpqlt.sys (Rootkit.Agent) -> Quarantined and deleted successfully.
0
Utilisateur anonyme
 
ok reposte un log hijackthis

comment va ton pc ?

0
Emi
 
Ne suis pas sur mon PC pour le moment. relancerai un Hijackthis en rentrant chez moi... Mais dans tous les cas, la croix rouge antispyware 2009 a disparu depuis hier, et il semblerait dans le dernier rapport que tout a effectivement été supprimé.

Verdict ce soir!
0
Utilisateur anonyme
 
ok
0
emi
 
Voila le dernier log Hijackthis que je viens de faire...

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:13:44, on 27/10/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\D-Link\AirPlus XtremeG\AirPlusCFG.exe
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\aMSN\bin\wish.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Trend Micro\HijackThis\HT.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /nodetect
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] CHDAudPropShortcut.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\Hewlett-Packard\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [RecGuard] C:\Windows\SMINST\RecGuard.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [D-Link AirPlus XtremeG] C:\Program Files\D-Link\AirPlus XtremeG\AirPlusCFG.exe
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Yahoo! Widget Engine.lnk = C:\Program Files\Yahoo!\Widgets\YahooWidgetEngine.exe
O4 - Global Startup: BlueSoleil.lnk = ?
O4 - Global Startup: Démarrage rapide de HP Photosmart Premier.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://emmi08.spaces.live.com/PhotoUpload/MsnPUpld.cab?10,0,916,0
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Alpha Networks Inc. - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
 
bonsoir

Télécharges ToolBar S&D ( de Eric_71 ) :
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2

( Tuto : https://sites.google.com/site/toolbarsd/aideenimages )

!! Déconnectes toi et fermes toute tes applications en cours le temps de la manipe !!

* double-cliques sur l'.exe pour lancer l'installe et laisses toi guider ...
* Une fois fait, cliques sur le raccourci créé sur ton bureau pour lancer l'outil .
* Choisis l'option 1 ( "recherche") et tapes "entrée" .
* Une fois le scan finit , un rapport va apparaître, copie/colles l'intégralité
de son contenu dans ta prochaine réponse ...
( le rapport est en outre sauvegardé ici -> C:\TB.txt )
-1
emi
 
Bonsoir, Merci...

voici le rapport :

-----------\\ ToolBar S&D 1.2.3 XP/Vista

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
X86-based PC ( Uniprocessor Free : AMD Turion(tm) 64 Mobile Technology MK-36 )
BIOS : PhoenixBIOS 4.0 Release 6.1
USER : Emeline ( Administrator )
BOOT : Normal boot
Antivirus : avast! antivirus 4.8.1229 [VPS 081025-1] 4.8.1229 (Activated)
C:\ (Local Disk) - NTFS - Total : 65 Go Free : 12 Go
D:\ (Local Disk) - FAT32 - Total : 8 Go Free : 1 Go
E:\ (CD or DVD)

"C:\ToolBar SD" ( MAJ : 23-10-2008|0:25 )
Option : [1] ( 26/10/2008|22:26 )

-----------\\ Recherche de Fichiers / Dossiers ...

C:\Program Files\Dealio
C:\Program Files\Dealio\kb127
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\CONTENT\searchsettingsplugin.js
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\CONTENT\searchsettingsplugin.xul
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\LOCALE\EN-US\searchsettingsplugin.dtd
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\LOCALE\EN-US\searchsettingsplugin.properties
C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\COMPONENTS\SearchSettingsFF.dll
C:\DOCUME~1\Emeline\APPLIC~1\Search Settings
C:\DOCUME~1\Emeline\APPLIC~1\Search Settings\kb127
C:\Program Files\Search Settings
C:\Program Files\Search Settings\kb127
C:\Program Files\Search Settings\SearchSettings.exe

-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="https://www.google.com/?gws_rd=ssl"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Search Bar"="http://www.google.com/toolbar/ie8/sidebar.html"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="https://www.msn.com/fr-fr?cobrand=hp-notebook.msn.com&ocid=HPDHP&pc=HPNTDF"
"Default_Search_URL"="http://www.google.com/toolbar/ie8/sidebar.html"
"Search Page"="https://www.google.com/?gws_rd=ssl"
"Start Page"="https://www.google.com/?gws_rd=ssl"
"Search Bar"="https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm"


--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\Emeline\Mes documents\log\2 Dreamweaver MX 2004 Keygenerator.exe
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.CS3.Fireworks.crack
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.CS3.Fireworks.crack.rar
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.Dreamweaver.CS3.Crack + Keygen
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.Dreamweaver.CS3.Crack + Keygen.rar
C:\DOCUME~1\Emeline\Mes documents\log\Macromedia Studio MX 2004 (Dreamweaver, Flash, Fireworks etc) Crack.zip
C:\DOCUME~1\Emeline\Mes documents\log\WinRar.v3.61.FR.Incl-Crack
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T.rar
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.CS3.Fireworks.crack\Adobe.Fireworks.CS3.Keymaker.Only-ZWT
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.CS3.Fireworks.crack\Adobe.Fireworks.CS3.Keymaker.Only-ZWT\Adobe.Fireworks.CS3.Keymaker.Only-ZWT.nfo
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.CS3.Fireworks.crack\Adobe.Fireworks.CS3.Keymaker.Only-ZWT\zwt.nfo
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.Dreamweaver.CS3.Crack + Keygen\Adobe.Dreamweaver.CS3.Crack - MKDEV TEAM
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.Dreamweaver.CS3.Crack + Keygen\Keygen
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.Dreamweaver.CS3.Crack + Keygen\Adobe.Dreamweaver.CS3.Crack - MKDEV TEAM\Dreamweaver
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.Dreamweaver.CS3.Crack + Keygen\Adobe.Dreamweaver.CS3.Crack - MKDEV TEAM\Dreamweaver.rar
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.Dreamweaver.CS3.Crack + Keygen\Adobe.Dreamweaver.CS3.Crack - MKDEV TEAM\_MKDEV TEAM serial.NFO
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.Dreamweaver.CS3.Crack + Keygen\Adobe.Dreamweaver.CS3.Crack - MKDEV TEAM\Dreamweaver\Dreamweaver2.exe
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.Dreamweaver.CS3.Crack + Keygen\Adobe.Dreamweaver.CS3.Crack - MKDEV TEAM\Dreamweaver\MKDEV TEAM serial.NFO
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.Dreamweaver.CS3.Crack + Keygen\Keygen\adw3kg.exe
C:\DOCUME~1\Emeline\Mes documents\log\Adobe.Dreamweaver.CS3.Crack + Keygen\Keygen\ssg.nfo
C:\DOCUME~1\Emeline\Mes documents\log\Macromedia\Dreamweaver MX 2004\Configuration\Content\Reference\HTML\KEYGEN.html
C:\DOCUME~1\Emeline\Mes documents\log\Macromedia\Dreamweaver MX 2004\Configuration\Content\Reference\PHP\CrackF.html
C:\DOCUME~1\Emeline\Mes documents\log\WinRar.v3.61.FR.Incl-Crack\Crack
C:\DOCUME~1\Emeline\Mes documents\log\WinRar.v3.61.FR.Incl-Crack\wrar361fr.exe
C:\DOCUME~1\Emeline\Mes documents\log\WinRar.v3.61.FR.Incl-Crack\Crack\Consignes D'installation.txt
C:\DOCUME~1\Emeline\Mes documents\log\WinRar.v3.61.FR.Incl-Crack\Crack\Patch.exe
C:\DOCUME~1\Emeline\Mes documents\log\WinRar.v3.61.FR.Incl-Crack\Crack\rarreg.key
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Acrobat 8.0
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe After Effects CS3
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Contribute CS3
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Dreamweaver CS3
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Encore CS3
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Fireworks CS3
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Flash CS3
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Flash CS3 Video Encoder
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Illustrator CS3
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe InDesign CS3
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Photoshop CS3
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Premiere Pro CS3
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Soundbooth CS3
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\asneu.dll
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\desktop.ini
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\[ReadMe].txt
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\©_.ico
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Acrobat 8.0\Acrobat
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Acrobat 8.0\Acrobat\Acrobat.dll
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe After Effects CS3\Support Files
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe After Effects CS3\Support Files\AfterFX.dll
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Contribute CS3\Contribute.exe
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Dreamweaver CS3\Dreamweaver.exe
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Encore CS3\Adobe Encore.exe
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Fireworks CS3\Fireworks.exe
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Flash CS3\Flash.exe
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Flash CS3 Video Encoder\Flash Video Encoder.exe
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Illustrator CS3\Support Files
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Illustrator CS3\Support Files\Contents
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Illustrator CS3\Support Files\Contents\Windows
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Illustrator CS3\Support Files\Contents\Windows\Illustrator.exe
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe InDesign CS3\Public.dll
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Photoshop CS3\Photoshop.exe
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Premiere Pro CS3\Premiere.dll
C:\DOCUME~1\Emeline\Mes documents\log\[Crack] Adobe CS3 [Acrobat_After Effects_Contribute_Dreamweaver_Encore_Fireworks_Flash_Illustrator_InDesign_Photoshop_Premiere Pro_Soundbooth]T\[camp@gnese]T\Adobe Soundbooth CS3\AppModule.dll
C:\DOCUME~1\Emeline\Mes documents\Ma musique\Original Swing & Boogie For Dancing 3 Ance Ballroomdancing (Lindy Hop, Boogie)\Boogie 3 - 11 - 39,1 The Wobble - Jimmy McCracklin.mp3



1 - "C:\ToolBar SD\TB_1.txt" - 26/10/2008|22:27 - Option : [1]

-----------\\ Fin du rapport a 22:27:19,98
0