Problême de lag

Gabriel -  
 Gabriel -
Bonjour,
Depuis qu'un virus ait infecté mon ordinateur, j'ai des problême de "Lag" constant,
J'ai reussi a supprimer le Virus grâce a l'aide d'autres personnes sur le forum.
Mais j'éprouve toujours des problême avec mon ordi...

Les lags sont constants et c'est carrément tout qui arrête pendant une seconde dont la souris.
Puis c'est constant, même y voir jusqu'à ce que la souris ce deconnecte.

j'ai fait un scan avec HiJackthis d'avance,

alors voici le rendu :::

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 16:56:14, on 2008-11-18
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Intel\IDU\awServ.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Intel\IDU\iptray.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Steam\Steam.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Documents and Settings\Administrator\Desktop\Jack.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [ipTray.exe] "C:\Program Files\Intel\IDU\iptray.exe"
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Unknown owner - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe (file missing)
O23 - Service: Planificateur Avira AntiVir Personal - Free Antivirus (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Admin Works Agent X8 (AWService) - OSA Technologies Inc., An Avocent Company - C:\Program Files\Intel\IDU\awServ.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
A voir également:

15 réponses

Utilisateur anonyme
 
je pense UE TU DEVRAIS DONNER PLUS DE DETAILS SUR TA CONFIG;
0
Gabriel
 
Bon okay,

J'ai été infecter par le Virus TR/Spy.Agent.AHAB

depuis l'appration du virus j'ai des lag et ...... ( Ça, j'ai deja écris )

mais bon voila, les lags fréquents sont toujours la même après..

alors juste m'aider pour régler ça...

je pense ne pas avoir bien saisi ta question, peux-tu me dire comment te donner plus de config*
si besion
0
Utilisateur anonyme
 
tu joues en reseau deja........

fais ceci :

http://siri.urz.free.fr/Fix/SmitfraudFix.php

Télécharger Smitfraudfix par S!RI :
Décompresser l'archive
Exécuter le en double cliquant sur Smitfraudfix.cmd
Appuyer sur une touche pour continuer
Arriver à l'invite de commande, saisir la lettre L afin de basculer le fix en langue française
Au menu, choisir l’option 4 puis 1 : Recherche
Poster le rapport ainsi généré dans le forum Virus/Sécurité (ou le cas échéant à la suite de votre message) :
0
Gabriel
 
Voici le rapport De SmithFraudix

Et Avira Le detecte comme un dropper* mais je l'ai ignorer parce que je pense que c,est un faux positif ;)

:::

SmitFraudFix v2.375

Rapport fait à 17:55:10,67, 2008-11-18
Executé à partir de C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Rar$EX00.625\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
Le type du système de fichiers est NTFS
Fix executé en mode normal

»»»»»»»»»»»»»»»»»»»»»»»» Process

C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Intel\IDU\awServ.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\Intel\IDU\iptray.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Steam\Steam.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\WINDOWS\system32\cmd.exe

»»»»»»»»»»»»»»»»»»»»»»»» hosts

»»»»»»»»»»»»»»»»»»»»»»»» C:\

»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS

»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system

»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web

»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32

»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles

»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Administrator

»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp

»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Administrator\Application Data

»»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer

»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\ADMINI~1\FAVORI~1

»»»»»»»»»»»»»»»»»»»»»»»» Bureau

»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files

»»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues

»»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"

»»»»»»»»»»»»»»»»»»»»»»»» o4Patch
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

»»»»»»»»»»»»»»»»»»»»»»»» IEDFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

IEDFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri

»»»»»»»»»»»»»»»»»»»»»»»» VACFix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

VACFix
Credits: Malware Analysis & Diagnostic
Code: S!Ri

»»»»»»»»»»»»»»»»»»»»»»»» 404Fix
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

404Fix
Credits: Malware Analysis & Diagnostic
Code: S!Ri

»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""

»»»»»»»»»»»»»»»»»»»»»»»» Winlogon
!!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"
"System"=""

»»»»»»»»»»»»»»»»»»»»»»»» RK

»»»»»»»»»»»»»»»»»»»»»»»» DNS

Description: Intel(R) 82566DM-2 Gigabit Network Connection - Packet Scheduler Miniport
DNS Server Search Order: 24.200.77.136
DNS Server Search Order: 24.201.245.77

HKLM\SYSTEM\CCS\Services\Tcpip\..\{83CCFDF9-56EC-4AF0-8E99-D334A654903A}: DhcpNameServer=24.200.77.136 24.201.245.77
HKLM\SYSTEM\CS1\Services\Tcpip\..\{83CCFDF9-56EC-4AF0-8E99-D334A654903A}: DhcpNameServer=24.200.77.136 24.201.245.77
HKLM\SYSTEM\CS2\Services\Tcpip\..\{83CCFDF9-56EC-4AF0-8E99-D334A654903A}: DhcpNameServer=24.200.77.136 24.201.245.77
HKLM\SYSTEM\CS3\Services\Tcpip\..\{83CCFDF9-56EC-4AF0-8E99-D334A654903A}: DhcpNameServer=24.200.77.136 24.201.245.77
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=24.200.77.136 24.201.245.77
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=24.200.77.136 24.201.245.77

»»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll

»»»»»»»»»»»»»»»»»»»»»»»» Fin
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
 
ok desinstalle Avast et renvoies hijackthis stp
0
Gabriel
 
Okay, C'est fait,

mais avant je vient de mappercevoir que j'ai toujours un virus que je coryais supprimer qui est resté dans dans les quarantaine de mon anti-virus Avira et j'ai pas été capable de le supprimer, le nom du Virus est :TR/Spy.Agent.AHAB

:S... il est situer dans le dossier :
C:\Documents and Settings\Administrator\Local Settings\temp\_avast4_...

Il y a une suite, mais je ne suis pas capable d'y acceder, Alors la *vrai emplacement est :
C:\Documents and Settings\Administrator\Local Settings\temp\_avast4_\unp218435614.tmp\22.exe

mais il marque que l'emplacement ne peut pas être trouvé.
0
Gabriel
 
Oups :S

j'ai oublier de poster le rapport de hijackThis xD

le voici :::

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:06:32, on 2008-11-18
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Intel\IDU\awServ.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\IDU\iptray.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\Steam\Steam.exe
C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avcenter.exe
C:\Documents and Settings\Administrator\Desktop\Jack.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [ipTray.exe] "C:\Program Files\Intel\IDU\iptray.exe"
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear
O4 - HKCU\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/...
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Unknown owner - C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe (file missing)
O23 - Service: Planificateur Avira AntiVir Personal - Free Antivirus (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Admin Works Agent X8 (AWService) - OSA Technologies Inc., An Avocent Company - C:\Program Files\Intel\IDU\awServ.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
0
Utilisateur anonyme
 
1)Telecharge :
-------------

https://www.clubic.com/telecharger-fiche262022-purera.html

coche tout a droite et "clean"

ensuite :
-----------

http://www.commentcamarche.net/telecharger/cleanafterme 34056612 avis opinions.php3

meme chose tu coches tout et "clean selected items"

2)

---> Télécharge ToolsCleaner2 sur ton Bureau.
* Double-clique sur ToolsCleaner2.exe pour le lancer.
* Clique sur Recherche et laisse le scan agir.
* Clique sur Suppression pour finaliser.
* Tu peux, si tu le souhaites, te servir des Options Facultatives.
* Clique sur Quitter pour obtenir le rapport.
* Poste le rapport (TCleaner.txt) qui se trouve à la racine de ton disque dur (C:\).

3/

---> Télécharge et installe CCleaner (N'installe pas la Yahoo Toolbar) :
* Lance-le. Va dans Options puis Avancé et décoche la case Effacer uniquement les fichiers etc....
* Va dans Nettoyeur, choisis Analyse. Une fois terminé, lance le nettoyage.
* Ensuite, choisis Registre, puis Chercher des erreurs. Une fois terminé, répare toutes les erreurs tant de fois qu il en trouve a l analyse(Sauvegarde la base de registre).

4/

---> Il est nécessaire de désactiver puis réactiver la restauration système pour la purger :
http://www.infos-du-net.com/forum/272480-11-desactiver-activer-restauration-systeme

---> Je te conseille de créer un point de restauration que tu pourras utiliser plus tard si tu as un problème :
https://www.vulgarisation-informatique.com/creer-point-restauration.php

stp poste tous les rapports delivrés....merci.....

si tu as deja Ccleaner ne tiens pas compte du N°3.....mais fais ce qu il est demande avec
(desole le canned est pour tout le monde....lol)

Attention : ne pas toucher au PC pendant qu'il travaille !

B-Nettoyage et Défragmentation de tes Disques
*Nettoyage :
Clic droit sur "poste de travail" ==>"ouvrir" ==>clic droit sur le disque C ==>Propriétés ==>onglet "Général"
Cliques sur le bouton "nettoyage de disque", OK
tu le fais pour chacun de tes disques

*Vérifications des erreurs :
Clic droit sur "poste de travail" ==>"ouvrir" ==>clic droit sur le disque C ==>Propriétés ==>onglet "Outil"
"Vérifier maintenant", une boîte s'ouvre, cocher les cases :
-réparer automatiquement les erreurs...
-rechercher et tenter une récupération...
--->Démarrer, ok
Note : s'il te dis de redémarrer ton Pc pour le faire , tu redémarres et tu laisses faire, cela prend un peu de temps c'est normal
tu le fais pour chacun de tes disques

ensuite toujours dans le même onglet tu choisis :
*Défragmentation :
"défragmenter maintenant", OK
une boîte s'ouvre, tu sélectionnes le disque à défragmenter, et tu cliques sur "analyser", puis après l'analyse, "défragmenter" . OK
tu le fais pour chacun de tes disques

Note : si tu as un utilitaire pour défragmenter , utilises le à la place ...

C-Crées un point de restauration de ton PC :

Aller dans le Menu Démarrer puis dans Programmes,
- Ensuite dans Accessoires et enfin dans Outils système,
- Choisir "Restauration du système",
- Sélectionner "Créer un point de restauration",
- Cliquer sur "Suivant",
- Entrer un nom pour le point de restauration (ce nom doit être assez évocateur), exemple :
<< Point restauration sain >> .

--> Cliquer sur "Créer" et le point de restauration se créé automatiquement.

ensuite :

Télécharges MalwareByte's :
ici ftp://ftp.commentcamarche.com/download/mbam-setup.exe
ou ici : http://www.malwarebytes.org/mbam.php

* Installes le ( choisis bien "francais" ; ne modifies pas les paramètres d'installe ) et mets le à jour .

(NB : S'il te manque "COMCTL32.OCX" lors de l'installe, alors télécharges le ici : https://www.malekal.com/tutorial-aboutbuster/ )

* Potasses le tuto pour te familiariser avec le prg :
https://forum.pcastuces.com/sujet.asp?f=31&s=3
( cela dis, il est très simple d'utilisation ).

! Déconnectes toi et fermes toutes applications en cours !

* Lances Malwarebyte's .

Fais un examen dit "complet" ( sélectionnes bien tous tes disks avant le scan ! ).

--> Laisses le programme travailler ( et ne rien faire d'autre avec le PC durant le scan ).
--> à la fin tu cliques sur "résultat" .
--> Vérifies que tous les objets infectés soient validés, puis cliques sur " suppression " .

Note : si il faut redémarrer ton PC pour finir le nettoyage, fais le !

Postes le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwarebytes, le dernier en date)
accompagné d'un nouveau rapport hijackthis pour analyse ...

0
Gabriel
 
Bon... okay alors la je me suis rendu jusqu'a faire la défragmentation des deux disques C et D...

Je pense bien que ça va être long, alors je vais tout de suite poster le rendu de ToolsCleaner

( :D )... PS: Je trouve qu'il n,y a pas beaucoup de chose dans le rapport, je pense que c'est une bonne chose car le reste des programmes avant ont surement fait un bon travail......

::::

[ Rapport ToolsCleaner version 2.2.6 (par A.Rothstein & dj QUIOU) ]

-->- Recherche:

C:\Combofix.txt: trouvé !
C:\Qoobox: trouvé !
C:\Documents and Settings\Administrator\Desktop\hijackthis.log: trouvé !
C:\Documents and Settings\Administrator\Desktop\Anti-Virus\HijackThis.lnk: trouvé !
C:\Documents and Settings\Administrator\Desktop\Anti-Virus\ComboFix.exe: trouvé !
C:\Documents and Settings\Administrator\Desktop\Anti-Virus\HJTInstall.exe: trouvé !
C:\Documents and Settings\Administrator\Desktop\Anti-Virus\hijackthis.log: trouvé !
C:\Documents and Settings\All Users\Start Menu\Programs\HijackThis: trouvé !
C:\Documents and Settings\All Users\Start Menu\Programs\HijackThis\HijackThis.lnk: trouvé !

---------------------------------
-->- Suppression:

C:\Documents and Settings\Administrator\Desktop\Anti-Virus\HijackThis.lnk: supprimé !
C:\Documents and Settings\Administrator\Desktop\Anti-Virus\ComboFix.exe: ERREUR DE SUPPRESSION !!
C:\Documents and Settings\Administrator\Desktop\Anti-Virus\HJTInstall.exe: supprimé !
C:\Documents and Settings\All Users\Start Menu\Programs\HijackThis\HijackThis.lnk: supprimé !
C:\Combofix.txt: supprimé !
C:\Documents and Settings\Administrator\Desktop\hijackthis.log: supprimé !
C:\Documents and Settings\Administrator\Desktop\Anti-Virus\hijackthis.log: supprimé !
C:\Qoobox: supprimé !
C:\Documents and Settings\All Users\Start Menu\Programs\HijackThis: supprimé !

Sauvegarde du registre crée !
0
Utilisateur anonyme
 
je peux avoir les autres rapports???5PureRa + CleanAfterMe ) ?
0
Gabriel
 
J'ai faite un scan complet du C:\ avec malwerbyte et il a bugger a :13 min et 22 sec...
le Fichier ou il sait arrêter est : C:\Swsetup\Monitors\SP31621\32bit\hp_L1530.icm

Voivi tout les rapport...

Rapport PureRa ::::::

PureRa v1.1 from RaProducts
Log created at 20:35 on 18/11/2008
===================================

C:\Documents and Settings\Administrator\Application Data\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\Internet Explorer\Quick Launch\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt00.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt01.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt02.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt03.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt04.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt05.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt06.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt07.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt08.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt09.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt10.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt11.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt12.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt13.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt14.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt15.sqm << Deleted.
C:\Documents and Settings\Administrator\Application Data\Microsoft\MSN Messenger\3057105815\sqmnoopt16.sqm << Deleted.
C:\Documents and Settings\Administrator\Contacts\Desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Desktop\Jeux BattleField\Desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Desktop\Jeux Blizzard\Desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Desktop\Jeux CallOfDuty4\Desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Desktop\Jeux TmNation\Desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Favorites\Desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Local Settings\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\IconCache.db << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live\SqmApi\SqmData196608_00.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Contacts\Desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata00.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata01.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata02.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata03.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata04.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata05.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata06.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata07.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata08.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata09.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata10.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata11.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata12.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata13.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata14.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata15.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata16.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata17.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata18.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmdata19.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live Mail\sqmnoopt00.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc00.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc01.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc02.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc03.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc04.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc05.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc06.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc07.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc08.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc09.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc10.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft\Windows Live OneCare safety scanner\SQM\MSVS\wlsc11.sqm << Deleted.
C:\Documents and Settings\Administrator\Local Settings\History\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Local Settings\History\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\I72BQ9OH\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\LYQUJZ34\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\QRSTUVEF\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\UFAJ2BCB\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\NetHood\Mes images on ELAINE (Jamigag)\Desktop.ini << Deleted.
C:\Documents and Settings\Administrator\NetHood\My Pictures on gaby (Gaby)\Desktop.ini << Deleted.
C:\Documents and Settings\Administrator\NetHood\SharedDocs on ELAINE (Jamigag)\Desktop.ini << Deleted.
C:\Documents and Settings\Administrator\NetHood\SharedDocs on gaby (Gaby)\Desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Recent\Desktop.ini << Deleted.
C:\Documents and Settings\Administrator\SendTo\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Start Menu\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Start Menu\Programs\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Start Menu\Programs\Accessories\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Start Menu\Programs\Accessories\Accessibility\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Start Menu\Programs\Accessories\Entertainment\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Start Menu\Programs\Administrative Tools\desktop.ini << Deleted.
C:\Documents and Settings\Administrator\Start Menu\Programs\Startup\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Application Data\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\jeux manouk\wormsarm\DATA\Resource\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\jeux manouk\wormsarm\graphics\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\jeux manouk\wormsarm\graphics\CreateTeam\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\jeux manouk\wormsarm\graphics\CreateTeam\Graves\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\jeux manouk\wormsarm\graphics\GrafittiBrushSize.seq\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\jeux manouk\wormsarm\graphics\Graphics\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\jeux manouk\wormsarm\graphics\Graphics\WeaponEditor\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\jeux manouk\wormsarm\graphics\MapedMisc\Borders\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\jeux manouk\wormsarm\graphics\WeaponEditor\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\jeux manouk\wormsarm\MapedMisc\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\jeux manouk\wormsarm\MapedMisc\MapedMisc\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\jeux manouk\wormsarm\User\Graves\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\My Music\Desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\My Music\Sample Music\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\My Pictures\Desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\My Pictures\Sample Pictures\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Documents\My Pictures\Sample Pictures\Thumbs.db << Deleted.
C:\Documents and Settings\All Users\Documents\My Videos\Desktop.ini << Deleted.
C:\Documents and Settings\All Users\Start Menu\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Start Menu\Programs\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Start Menu\Programs\Accessories\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Start Menu\Programs\Accessories\Accessibility\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Start Menu\Programs\Accessories\Communications\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Start Menu\Programs\Accessories\Entertainment\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Start Menu\Programs\Accessories\System Tools\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Start Menu\Programs\Administrative Tools\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Start Menu\Programs\Games\desktop.ini << Deleted.
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Application Data\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\History\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\History\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\381S8T7Z\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\J3YULC6E\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\KY2HH0BR\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\Y397FAB2\desktop.ini << Deleted.
C:\Documents and Settings\Default User\SendTo\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Start Menu\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Start Menu\Programs\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Start Menu\Programs\Accessories\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Start Menu\Programs\Accessories\Accessibility\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Start Menu\Programs\Accessories\Entertainment\desktop.ini << Deleted.
C:\Documents and Settings\Default User\Start Menu\Programs\Startup\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\History\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\History\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\History\History.IE5\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\IHYBYOZE\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\N38ORXK0\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\QV4HQ389\desktop.ini << Deleted.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\UHYPOJUV\desktop.ini << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\airmaps\levels\air_combat_training\info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\airmaps\levels\boat_racing_stunts\info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\icons\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Adh_Oasis_Revisited\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Basrahs_Edge_BFDS\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Desert_Rats\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Desert_Storm\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Dragon_Valley\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Gazala_BFDS_V2\info\Thumbs.db << Unable to Delete.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Heaven_and_Hell\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Invasion_Of_The_Philippines\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Iraq_Oilfields\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Iwo_Jima\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Kandahar_River_Valley\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Kirkuk_basin\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Midway\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Morning_Star\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\None_but_the_brave\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Philippine_Sea\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Prologue\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Strike_at_Karkand_2\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Village_Lost\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Waterfront\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\Waylaid\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\mods\naw\Levels\zblankmap\Info\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\Support\European Help Files\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\Support\European Help Files\De\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\Support\European Help Files\es\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\Support\European Help Files\fr-fr\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\Support\European Help Files\NL\Thumbs.db << Deleted.
C:\Program Files\EA GAMES\Battlefield 2\Support\European Help Files\Sv\Thumbs.db << Deleted.
C:\Program Files\Image-Line\FL Studio 8\Plugins\Fruity\Generators\Chrome\Tex\Thumbs.db << Deleted.
C:\Program Files\Windows Live\Mail\Stationery\Desktop.ini << Deleted.
C:\Program Files\Xfire\desktop.ini << Unable to Delete.
C:\RECYCLER\S-1-5-21-1960408961-1682526488-839522115-500\desktop.ini << Deleted.
C:\WINDOWS\desktop.ini << Deleted.
C:\WINDOWS\assembly\Desktop.ini << Unable to Delete.
C:\WINDOWS\Downloaded Program Files\desktop.ini << Deleted.
C:\WINDOWS\Fonts\desktop.ini << Deleted.
C:\WINDOWS\Offline Web Pages\desktop.ini << Deleted.
C:\WINDOWS\system32\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Application Data\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\History\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\History\History.IE5\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\C1234TUV\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\JB0PZOD5\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\W9YN0D2R\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\WHQ7ODE7\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\SendTo\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Start Menu\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Start Menu\Programs\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Start Menu\Programs\Accessories\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Start Menu\Programs\Accessories\Accessibility\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Start Menu\Programs\Accessories\Entertainment\desktop.ini << Deleted.
C:\WINDOWS\system32\config\systemprofile\Start Menu\Programs\Startup\desktop.ini << Deleted.
C:\WINDOWS\Tasks\desktop.ini << Unable to Delete.
C:\WINDOWS\Temp\History\History.IE5\desktop.ini << Deleted.
C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\desktop.ini << Deleted.
C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\DDX4UOMU\desktop.ini << Deleted.
C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\KY9BBW4Q\desktop.ini << Deleted.
C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\T0DEE3F7\desktop.ini << Deleted.
C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\T1MKZIIM\desktop.ini << Deleted.

===================================
-EOF-

-----------------------------------------------------------------------------------------------------------------------------------------------------------

je n'ai malheureusement pas pensé enregistrer le rapport the CleanAfterME ......
mais j'ai refaite un Scan et

voici le rapport :::::::::

Delete file: C:\Documents and Settings\Administrator\Recent\Desktop.ini - Succeeded
Delete file: C:\Documents and Settings\Administrator\Recent\LevelParTimes.csv.lnk - Succeeded
Delete file: C:\Documents and Settings\Administrator\Recent\LGSInst.Log.lnk - Succeeded
Delete file: C:\Documents and Settings\Administrator\Recent\Local Disk (C).lnk - Succeeded
Delete file: C:\Documents and Settings\Administrator\Recent\mbam-log-2008-11-17 (18-01-52).txt.lnk - Succeeded
Delete file: C:\Documents and Settings\Administrator\Recent\PureRa.txt.lnk - Succeeded
Delete file: C:\Documents and Settings\Administrator\Recent\rapport.txt.lnk - Succeeded
Delete file: C:\Documents and Settings\Administrator\Recent\TCleaner.txt.lnk - Succeeded
Delete registry value: 'a' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU - Succeeded
Delete registry value: 'MRUList' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RunMRU - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '1' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '2' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '3' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '4' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '5' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '6' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.csv - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.csv - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.Log - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.Log - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.txt - Succeeded
Delete registry value: '1' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.txt - Succeeded
Delete registry value: '2' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.txt - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.txt - Succeeded
Delete registry value: '3' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\.txt - Succeeded
Delete registry value: 'MRUListEx' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder - Succeeded
Delete registry value: '0' in HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs\Folder - Succeeded
Delete registry value: 'LangID' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12691' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\netshell.dll,-1200' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Mozilla Firefox\firefox.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Java\jre6\lib\deploy\jqs\ff\..\..\..\..\bin\jqsnotify.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp2res.dll,-6100' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22051' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-9319' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-9227' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21779' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-21790' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-9216' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-9217' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-10077' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7021' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7020' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7023' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-8503' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mycomput.dll,-400' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31232' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31294' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31327' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31312' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31272' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31274' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\Explorer.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\SHELL32.dll,-22913' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\Program Files\Common Files\Ahead\Lib\MediaLibraryNSE.dll,-11111' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31317' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31321' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31292' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31233' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31236' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31260' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31374' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\notepad.exe,-469' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\inf\unregmp2.exe,-9925' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31242' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31244' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31246' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31248' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31370' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31250' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-31252' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\NOTEPAD.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\vbexpress.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\VCExpress.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Windows NT\Accessories\WORDPAD.EXE' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7024' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@explorer.exe,-7025' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\rundll32.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\Restore\rstrui.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\restore\rstrui.exe,-2048' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\shell32.dll,-22553' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\mmc.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mmcbase.dll,-13349' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mmcbase.dll,-13351' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@C:\WINDOWS\system32\mmcbase.dll,-13350' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-22027' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shdoclc.dll,-880' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@%SystemRoot%\system32\shell32.dll,-22539' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-11005' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@xpsp1res.dll,-11002' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\taskmgr.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: '@shell32.dll,-12710' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\WINDOWS\system32\shutdown.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'C:\Documents and Settings\Administrator\Desktop\cleanafterme.exe' in HKCU\Software\Microsoft\Windows\ShellNoRoam\MUICache - Succeeded
Delete registry value: 'HRZR_PGYFRFFVBA' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{5E6AB780-7743-11CF-A12B-00AA004AE837}\Count - Succeeded
Delete registry value: 'HRZR_EHACNGU' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACNGU:P:\JVAQBJF\flfgrz32\ABGRCNQ.RKR' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACNGU:P:\JVAQBJF\ertrqvg.rkr' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_HVFPHG' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACNGU:PPyrnare.yax' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACNGU:P:\Cebtenz Svyrf\PPyrnare\PPyrnare.rkr' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_HVDPHG' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACNGU:::{20Q04SR0-3NRN-1069-N2Q8-08002O30309Q}' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHAPCY' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHAPCY:FLFQZ.PCY' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACVQY' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACVQY:%pfvqy2%\Npprffbevrf\Flfgrz Gbbyf\Flfgrz Erfgber.yax' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACVQY:%pfvqy2%\Npprffbevrf\Flfgrz Gbbyf' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACVQY:%pfvqy2%\Npprffbevrf' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACNGU:P:\JVAQBJF\flfgrz32\Erfgber\efgehv.rkr' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACVQY:%pfvqy2%\Npprffbevrf\Flfgrz Gbbyf\Qvfx Qrsentzragre.yax' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACNGU:P:\JVAQBJF\flfgrz32\zzp.rkr' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACVQY:%pfvqy2%' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACNGU:P:\Cebtenz Svyrf\Znyjnerolgrf' Nagv-Znyjner\zonz.rkr' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_PGYFRFFVBA' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACVQY:P:\Qbphzragf naq Frggvatf\Nqzvavfgengbe\Qrfxgbc\Nagv-Ivehf\Znyjnerolgrf' Nagv-Znyjner.yax' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACVQY:P:\Qbphzragf naq Frggvatf\Nqzvavfgengbe\Qrfxgbc\Nagv-Ivehf' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACVQY:P:\Qbphzragf naq Frggvatf\Nqzvavfgengbe\Qrfxgbc' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACNGU:P:\JVAQBJF\flfgrz32\fuhgqbja.rkr' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACVQY:%pfvqy2%\Znyjnerolgrf' Nagv-Znyjner\Znyjnerolgrf' Nagv-Znyjner.yax' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete registry value: 'HRZR_EHACNGU:P:\Qbphzragf naq Frggvatf\Nqzvavfgengbe\Qrfxgbc\pyrnansgrezr.rkr' in HKCU\HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\UserAssist\{75048700-EF1F-11D0-9888-006097DEACF9}\Count - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\index.dat - Failed
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temp\History\History.IE5\desktop.ini - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temp\History\History.IE5\index.dat - Failed
Delete folder: C:\Documents and Settings\Administrator\Local Settings\Temp\History\History.IE5 - Failed
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temp\Temporary Internet Files\Content.IE5\desktop.ini - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat - Failed
Delete folder: C:\Documents and Settings\Administrator\Local Settings\Temp\Temporary Internet Files\Content.IE5 - Failed
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temp\etilqs_Ppj52QBjgy2dakPdisdA - Failed
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temp\~DF310F.tmp - Failed
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temp\~DF9852.tmp - Succeeded
Delete folder: C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies - Failed
Delete folder: C:\Documents and Settings\Administrator\Local Settings\Temp\History - Failed
Delete folder: C:\Documents and Settings\Administrator\Local Settings\Temp\Temporary Internet Files - Failed
Empty the Recycle Bin - Succeeded
Clean the clipboard - Succeeded
Clean event log: Application - Succeeded
Clean event log: Security - Succeeded
Clean event log: System - Succeeded
Uninstall USB Devices - Succeeded
Clean index.dat file: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\index.dat - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\53VNLLG6\desktop.ini - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\CBLV6ARP\desktop.ini - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\FMKV3PWH\desktop.ini - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\FMKV3PWH\e0e62581f75fc35153cf4b144fe6e75610373ef3[1].tga - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\QPDI7Y5K\desktop.ini - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\desktop.ini - Succeeded
Delete folder: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\53VNLLG6 - Succeeded
Delete folder: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\CBLV6ARP - Succeeded
Delete folder: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\FMKV3PWH - Succeeded
Delete folder: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\QPDI7Y5K - Succeeded
Clean index.dat file: C:\Documents and Settings\Administrator\Cookies\index.dat - Succeeded
Clean index.dat file: C:\Documents and Settings\Administrator\Local Settings\History\History.IE5\index.dat - Succeeded
Clean index.dat file: C:\Documents and Settings\Administrator\Local Settings\History\History.IE5\MSHist012008111920081120\index.dat - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\History\History.IE5\MSHist012008111920081120\index.dat - Failed
Delete folder: C:\Documents and Settings\Administrator\Local Settings\History\History.IE5\MSHist012008111920081120 - Failed
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\0B0049DEd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\0DBBF1C0d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\125ED51Dd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\14111747d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\1FE60C6Ed01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\2763F07Cd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\304E36CEd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\314C54B0d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\3998BB97d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\3A386A04d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\419A5641d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\4CDAD60Cd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\4E8ABB3Bd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\58BA2B59d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\5C1A54CCd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\605772B0d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\6174DC9Fd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\61974517d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\646280E6d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\6471F621d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\753645C2d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\7A699C93d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\7CE5BB95d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\7CFF0220d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\8239CD00d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\8FF5794Ad01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\91D85705d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\9C2F537Ed01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\9C937E82d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\9CEDF2CDd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\A51554E8d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\B0945E63d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\B12D26D9d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\B441357Cd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\B6039A0Ed01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\C01157A6d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\C11C3B29d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\C3EB74EFd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\C50DA7B0d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\C809ACA9d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\C9EE6C20d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\CB09E8B4d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\CC08D8BEd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\D0ACDC7Ad01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\D20D9F16d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\D4DA469Dd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\D5365E3Ad01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\DEED147Ad01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\E13172BCd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\F1AC95B2d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\F2B359A3d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\FB060BD2d01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\FB8E077Bd01 - Succeeded
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\_CACHE_001_ - Failed
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\_CACHE_002_ - Failed
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\_CACHE_003_ - Failed
Delete file: C:\Documents and Settings\Administrator\Local Settings\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cache\_CACHE_MAP_ - Failed
Delete file: C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\formhistory.sqlite - Failed
Delete file: C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\htcvo9o9.default\cookies.sqlite - Failed

200 actions succeeded.
18 actions failed.

--------------------------------------------------------------------------------------------------------------------------------------------------------------

mais j'ai fait un Scan Rapide de MalwerBytes

Et voici son rapport ::::::::::

Malwarebytes' Anti-Malware 1.30
Version de la base de données: 1405
Windows 5.1.2600 Service Pack 3

2008-11-19 16:14:24
mbam-log-2008-11-19 (16-14-24).txt

Type de recherche: Examen rapide
Eléments examinés: 46583
Temps écoulé: 2 minute(s), 24 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)
0
Utilisateur anonyme
 
Depuis qu'un virus ait infecté mon ordinateur, j'ai des problême de "Lag" constant,
J'ai reussi a supprimer le Virus grâce a l'aide d'autres personnes sur le forum.
Mais j'éprouve toujours des problême avec mon ordi...


tu eprouves toujours ce soucis ?
0
Gabriel
 
OUi, c'est comme si la souris bugger constament après un certain temps :S
je pense fortement ne plus avoir de virus en me fiant aux plusieurs rapports de Avira
mais la souris gèle constament apres peut - etre 5 min,
dans le fond, c'est comme si ma souris serais devenu fatigué a un certain temps...

J'ai essayer de changer de port Usb,
Et elle devient correct, mais cependant au bout de 5 autres min, elle recommence a bugger....

c'est plus ma souris qui a des problème...

Peut-être, que le virus avant son éradication, avait causé des dommages a certains fichiers....
ou je ne sais quoi

mais normalement, mon anti-virus n'aurais pas du détecter cela ???
0
Utilisateur anonyme
 
un fichier infecte peut attaquer les pilotes......nottemment ceux du disque dut et ports usb.....
0
Gabriel
 
OKay, et comment je fait pour réparer ca ?
0