Win32:Spyware-gen [Trj]

Fermé
phil - 22 nov. 2008 à 19:04
 phil - 23 nov. 2008 à 15:22
Bonjour,
Avast a detecte Win32:Spyware-gen [Trj] dans mon PC.
j ai suivi les conseils trouves sur le forum, installe hijackthis, dont j ai copie le bilan ci dessous, si quelqu un peut m aider...
sachant que malawarebytes n a rien detecte, en tous cas en mode "examen rapide". je suis en train de scanner avec spyware cleaner, et CCleaner.

merci d'avance pour vos precieux conseils.
Phil

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:59:27, on 22/11/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\InterVideo\RegMgr\iviRegMgr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Elantech\ETDCtrl.exe
C:\Program Files\EeePC\ACPI\AsTray.exe
C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\EeePC\ACPI\AsEPCMon.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\igfxext.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Asus\EeePC\Super Hybrid Engine\SuperHybridEngine.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\Documents and Settings\Philippe\Bureau\nouvelles applications\LimeWire\LimeWire.exe
C:\Documents and Settings\Philippe\Local Settings\Temporary Internet Files\Content.IE5\GCE9LHK6\mp3codec[1].exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Fighters\configservice.exe
C:\Program Files\Fighters\licenseservice.exe
C:\Program Files\Fighters\ScannerService.exe
C:\Program Files\Fighters\updateservice.exe
C:\Program Files\Fighters\Spywarefighter\SpywarefighterUser.exe
c:\program files\fighters\spywarefighter\SPYWAREfighterTray.exe
c:\program files\fighters\product.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://eeepc.asus.com/global
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = LRI Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\wscript.exe C:\WINDOWS\system32\SemiAntiVirus.vbs
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [AsusTray] C:\Program Files\EeePC\ACPI\AsTray.exe
O4 - HKLM\..\Run: [AsusACPIServer] C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe
O4 - HKLM\..\Run: [AsusEPCMonitor] C:\Program Files\EeePC\ACPI\AsEPCMon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [RavAV] C:\WINDOWS\AdobeR.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [spywarefighterguard] C:\Program Files\Fighters\spywarefighter\SpywarefighterUser.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: SuperHybridEngine.lnk = ?
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Envoyer à Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files\Fichiers communs\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: PTK License-FIGHTERS-297811811 - SPAMfighter - C:\Program Files\Fighters\licenseservice.exe
O23 - Service: PTK Live Update-FIGHTERS-297811811 - SPAMfighter - C:\Program Files\Fighters\updateservice.exe
O23 - Service: PTK Scanner-FIGHTERS-297811811 - SPAMfighter - C:\Program Files\Fighters\ScannerService.exe
O23 - Service: PTK SharedAccess-FIGHTERS-297811811 - SPAMfighter - C:\Program Files\Fighters\configservice.exe

2 réponses

jlpjlp Messages postés 51580 Date d'inscription vendredi 18 mai 2007 Statut Contributeur sécurité Dernière intervention 3 mai 2022 5 040
22 nov. 2008 à 19:30
slt effectivement tu as ét infecté par un disque externe (clé usb ...) ici

F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\wscript.exe C:\WINDOWS\system32\SemiAntiVirus.vbs
O4 - HKLM\..\Run: [RavAV] C:\WINDOWS\AdobeR.exe


________________




Telecharge UsbFix sur ton bureau
http://sd-1.archive-host.com/membres/up/116615172019703188/UsbFix.exe

--> Lance l installation avec les parametres par default

Branche tes sources de données externes à ton PC, (clé USB, disque dur externe, etc...) suceptible d avoir été infectés sans les ouvrir

--> Double clic sur le raccourci UsbFix sur ton bureau

--> Le pc va redémarer

-->Apres redémarrage post le rapport UsbFix.txt

Note : le rapport UsbFix.txt est sauvegardé a la racine du disque
Note : Si le Bureau ne réapparait pas presse Ctrl + Alt + Suppr , Onglet "Fichier" , "Nouvelle tâche" , tapes explorer.exe et valides
0
Merci beaucoup,

je reponds un peu tard car je suis en inde, avec 4h30 de decalage horaire...

je ne trouve pas le rapport. desole pour mon ignorance mais c est ou la racine du disque?

par ailleurs, spywarefighter detecte plein de tracking cookies. la fenetre s ouvre sans cesse. je coche la case "detecter toujours les cookies traceurs sans m avertir"?

enfin, j'ai copie ci dessous le rapport de CCleaner. est ce que je peux lancer le nettoyage? je ne risque pas de perdre de supprimer des fichiers importants?

merci encore,
Phil

ANALYSE COMPLETE - (319.434 secs)
------------------------------------------------------------------------------------------
133,1MB ont été supprimés. (Taille approximative)
------------------------------------------------------------------------------------------

Détails des fichiers à supprimer (Note: AUCUN fichier n'a pour l'instant été supprimé)
------------------------------------------------------------------------------------------
Fichiers Temporaires d'Internet Explorer (fichiers 8589) 128,6MB
C:\Documents and Settings\Philippe\Cookies\philippe@01net[1].txt 704 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@209.85.175[1].txt 809 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@64.233.169[2].txt 158 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@72.14.205[1].txt 710 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@a2dfp[1].txt 184 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@abmr[1].txt 196 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@actustar[2].txt 338 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@adcentriconline[2].txt 93 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@adobe[1].txt 107 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@ads.muaythaitv[2].txt 110 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@ads.namx[2].txt 104 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@ads.ozonemedia.co[1].txt 209 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@ads.pointroll[2].txt 951 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@ads1.namx[2].txt 106 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@adserver.aol[1].txt 108 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@adv.surinter[2].txt 399 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@afp.google[2].txt 423 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@agi[2].txt 374 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@amgdgt[2].txt 666 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@apmebf[2].txt 97 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@arretsurimages[2].txt 441 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@atraxio[1].txt 122 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@avast[1].txt 129 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@away[1].txt 64 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@babel[1].txt 252 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@bakchich[1].txt 290 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@bbc.co[1].txt 510 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@bidvertiser[2].txt 187 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@blogger[1].txt 302 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@bonnenouvelle[1].txt 392 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@canoe[1].txt 84 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@canoe[2].txt 99 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@co107w.col107.mail.live[1].txt 153 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@commentcamarche[2].txt 117 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@criteo[1].txt 106 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@cybermonitor[1].txt 87 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@dailymotion[2].txt 169 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@dna[1].txt 69 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@doubleclick[2].txt 101 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@edgb2b[2].txt 491 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@edt02[2].txt 598 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@espace.netavenir[1].txt 394 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@eucharistiemisericor.free[1].txt 99 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@facebook[2].txt 997 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@fb.ilike[1].txt 432 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@flickr[2].txt 172 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@fr.a2dfp[1].txt 94 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@fr.msn[1].txt 263 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@fr.yahoo[1].txt 69 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@france24[1].txt 270 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@ftv-publicite[2].txt 210 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@google.com[1].txt 344 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@google.co[2].txt 145 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@googlemail[2].txt 372 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@google[2].txt 325 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@google[3].txt 396 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@google[4].txt 353 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@google[5].txt 486 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@google[6].txt 130 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@google[7].txt 131 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@google[8].txt 292 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@guardian.co[2].txt 1,03KB
C:\Documents and Settings\Philippe\Cookies\philippe@guardian.sophus3[1].txt 116 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@himedia.individuad[1].txt 244 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@hits.gureport.co[2].txt 2,49KB
C:\Documents and Settings\Philippe\Cookies\philippe@hotmail.msn[1].txt 71 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@i2as.idregie[2].txt 101 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@ibnlive[1].txt 279 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@idot[1].txt 85 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@idregie[2].txt 152 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@ilike[1].txt 490 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@imgfarm[1].txt 68 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@imrworldwide[2].txt 225 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@in.reuters[1].txt 140 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@indextools[1].txt 712 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@infogm[2].txt 399 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@insightexpressai[1].txt 720 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@intellitxt[1].txt 113 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@irinnews[1].txt 286 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@jeanmarcmorandini.tele7[1].txt 315 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@lamanchelibre[2].txt 272 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@lefigaro[2].txt 360 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@lemonde[2].txt 331 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@leparisien[1].txt 75 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@lepoint[1].txt 72 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@limewire[1].txt 683 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@livemint[2].txt 388 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@live[2].txt 692 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@login.live[1].txt 341 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@mail.google[1].txt 109 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@maxhavelaarfrance[1].txt 383 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@mediaplex[1].txt 80 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@messenger.msn[1].txt 96 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@metaffiliation[2].txt 151 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@metrixlablw.customers.luna[1].txt 157 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@microsoft[1].txt 395 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@msf[1].txt 70 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@msn.co[2].txt 101 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@msn[1].txt 564 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@msn[3].txt 345 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@mybloglog[1].txt 93 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@myroitracking[2].txt 91 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@netavenir[1].txt 112 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@newamericamedia[1].txt 102 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@news.newamericamedia[2].txt 389 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@newstatesman[1].txt 376 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@nouvelobs[2].txt 149 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@office.microsoft[2].txt 393 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@onlinestores.metaservices.microsoft[1].txt 147 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@optimize.indieclick[1].txt 115 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@outside.away[1].txt 370 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@overture[1].txt 101 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@ozap[1].txt 76 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@p.live[2].txt 104 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@partners.gallery.live[1].txt 181 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@pcastuces[1].txt 96 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@peopollywood[1].txt 368 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@planetfinancegroup[1].txt 292 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@planetfinancegroup[3].txt 319 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@playback.rhapsody[1].txt 109 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@presstv[2].txt 287 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@pro-market[1].txt 103 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@promobenef[2].txt 922 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@quantserve[2].txt 187 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@queries.adwitserver[2].txt 101 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@questionmarket[2].txt 170 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@rad.live[1].txt 787 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@rad.msn[2].txt 712 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@radio[1].txt 371 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@redcats.122.2o7[1].txt 123 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@reuters[1].txt 81 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@reverso[2].txt 285 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@revsci[1].txt 3,21KB
C:\Documents and Settings\Philippe\Cookies\philippe@romandie-online[1].txt 94 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@rubiconproject[2].txt 86 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@rue89[1].txt 399 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@s2d6[2].txt 110 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@sdv[1].txt 158 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@search.live[2].txt 447 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@search.msn[1].txt 288 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@serv.clicksor[2].txt 92 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@serving-sys[2].txt 1,79KB
C:\Documents and Settings\Philippe\Cookies\philippe@site.skype[1].txt 94 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@skype[2].txt 480 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@sl15[2].txt 100 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@smartadserver[2].txt 400 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@snap[1].txt 104 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@sourceforge[2].txt 330 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@spamfighter.112.2o7[1].txt 127 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@specificclick[2].txt 1,57KB
C:\Documents and Settings\Philippe\Cookies\philippe@ssl-hints.netflame[1].txt 164 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@stat.onestat[2].txt 179 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@statcounter[2].txt 201 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@statse.webtrendslive[2].txt 195 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@support.microsoft[2].txt 524 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@t.msn[2].txt 393 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@t836.trafiz[1].txt 831 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@tacoda[2].txt 627 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@tag.contextweb[1].txt 88 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@telechargement.zebulon[2].txt 588 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@terra-economica[1].txt 399 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@topix[2].txt 973 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@tracking.lsfinteractive[1].txt 135 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@tracking.veille-referencement[1].txt 119 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@tradedoubler[2].txt 225 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@trafiz[1].txt 1,26KB
C:\Documents and Settings\Philippe\Cookies\philippe@tribalfusion[1].txt 201 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@twenga[1].txt 86 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@uniprix.nouvelobs[2].txt 180 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@update.microsoft[1].txt 146 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@verify[3].txt 134 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@visahq[1].txt 99 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@voyageforum[2].txt 108 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@weborama[1].txt 168 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@wemfbox[1].txt 90 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@windowsmarketplace[2].txt 258 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@wordpress[2].txt 396 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@wunderloop[1].txt 117 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.01net[1].txt 233 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.actustar[1].txt 414 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.afp-direct[1].txt 88 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.agi[1].txt 92 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.avast[2].txt 318 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.bakchich[1].txt 282 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.dailymotion[2].txt 78 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.edgb2b[1].txt 81 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.googleadservices[3].txt 309 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.gowindowslive[1].txt 364 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.grameenfoundation[2].txt 325 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.guardian.co[1].txt 75 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.irinnews[1].txt 89 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.lepoint[1].txt 130 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.livemint[1].txt 740 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.msn[1].txt 416 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.muaythaitv[1].txt 373 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.presstv[1].txt 71 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.reverso[2].txt 163 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.revresda[1].txt 100 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.spamfighter[1].txt 117 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.spamfighter[2].txt 125 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.studiocabrelli[2].txt 130 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.windowslive[1].txt 81 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@www.zebulon[2].txt 114 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@xiti[1].txt 101 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@yahoo[2].txt 816 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@yourmedia[1].txt 93 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@youtube[1].txt 301 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@zedo[2].txt 169 bytes
C:\Documents and Settings\Philippe\Cookies\philippe@zune[2].txt 230 bytes
Marqué pour l'effacement: C:\Documents and Settings\Philippe\Local Settings\Temporary Internet Files\Content.IE5\index.dat
Marqué pour l'effacement: C:\Documents and Settings\Philippe\Cookies\index.dat
Marqué pour l'effacement: C:\Documents and Settings\Philippe\Local Settings\Historique\History.IE5\desktop.ini
Marqué pour l'effacement: C:\Documents and Settings\Philippe\Local Settings\Historique\History.IE5\index.dat
Marqué pour l'effacement: C:\Documents and Settings\Philippe\Local Settings\Historique\History.IE5\MSHist012009070720090708\index.dat
C:\Documents and Settings\Philippe\Recent\04 EK PAL KE LIYE.lnk 372 bytes
C:\Documents and Settings\Philippe\Recent\685CANON.lnk 308 bytes
C:\Documents and Settings\Philippe\Recent\686CANON.lnk 308 bytes
C:\Documents and Settings\Philippe\Recent\687CANON.lnk 308 bytes
C:\Documents and Settings\Philippe\Recent\688CANON.lnk 308 bytes
C:\Documents and Settings\Philippe\Recent\a 3.lnk 444 bytes
C:\Documents and Settings\Philippe\Recent\accred nepal 1'.lnk 522 bytes
C:\Documents and Settings\Philippe\Recent\accred nepal 1.lnk 522 bytes
C:\Documents and Settings\Philippe\Recent\accred nepal 2'.lnk 522 bytes
C:\Documents and Settings\Philippe\Recent\accred nepal 2.lnk 522 bytes
C:\Documents and Settings\Philippe\Recent\Anand.lnk 360 bytes
C:\Documents and Settings\Philippe\Recent\BHUTAN-NEPAL.lnk 263 bytes
C:\Documents and Settings\Philippe\Recent\BJP-immigration.lnk 522 bytes
C:\Documents and Settings\Philippe\Recent\Bombay def pour F5.lnk 305 bytes
C:\Documents and Settings\Philippe\Recent\bouthan fr3.lnk 502 bytes
C:\Documents and Settings\Philippe\Recent\brief.lnk 468 bytes
C:\Documents and Settings\Philippe\Recent\chitwan.lnk 480 bytes
C:\Documents and Settings\Philippe\Recent\comm tigres f24.lnk 522 bytes
C:\Documents and Settings\Philippe\Recent\comm tigres wordpad.lnk 542 bytes
C:\Documents and Settings\Philippe\Recent\comm tigres wordpad2.lnk 547 bytes
C:\Documents and Settings\Philippe\Recent\comm tigres.lnk 502 bytes
C:\Documents and Settings\Philippe\Recent\contacts IOM.lnk 396 bytes
C:\Documents and Settings\Philippe\Recent\contacts micro credit 2.lnk 429 bytes
C:\Documents and Settings\Philippe\Recent\contacts tibetains.lnk 454 bytes
C:\Documents and Settings\Philippe\Recent\cv_aymeric_barrault.lnk 542 bytes
C:\Documents and Settings\Philippe\Recent\Debt-indebtedness-and-crises-25-05-06-fr.lnk 583 bytes
C:\Documents and Settings\Philippe\Recent\delhibabies.lnk 284 bytes
C:\Documents and Settings\Philippe\Recent\Disque amovible (E).lnk 179 bytes
C:\Documents and Settings\Philippe\Recent\EPW_Yunus_article_Kalpana.lnk 572 bytes
C:\Documents and Settings\Philippe\Recent\famille de jobra.lnk 439 bytes
C:\Documents and Settings\Philippe\Recent\Filming schedule.lnk 408 bytes
C:\Documents and Settings\Philippe\Recent\Group 5.lnk 468 bytes
C:\Documents and Settings\Philippe\Recent\ian baker.lnk 492 bytes
C:\Documents and Settings\Philippe\Recent\id bangla.lnk 384 bytes
C:\Documents and Settings\Philippe\Recent\IMG_8582.lnk 431 bytes
C:\Documents and Settings\Philippe\Recent\IMG_8601.lnk 431 bytes
C:\Documents and Settings\Philippe\Recent\IMG_8701.lnk 431 bytes
C:\Documents and Settings\Philippe\Recent\IMG_8705.lnk 431 bytes
C:\Documents and Settings\Philippe\Recent\IMG_8801.lnk 431 bytes
C:\Documents and Settings\Philippe\Recent\Jenny and Baby.lnk 511 bytes
C:\Documents and Settings\Philippe\Recent\La Tribune 21dec06.lnk 545 bytes
C:\Documents and Settings\Philippe\Recent\Lebateaudetouslesdangers.lnk 567 bytes
C:\Documents and Settings\Philippe\Recent\lettre banques.lnk 427 bytes
C:\Documents and Settings\Philippe\Recent\LETTRE GREGOIRE.lnk 522 bytes
C:\Documents and Settings\Philippe\Recent\LE_PERIL_HINDOU.lnk 432 bytes
C:\Documents and Settings\Philippe\Recent\Liberation 14oct06.lnk 545 bytes
C:\Documents and Settings\Philippe\Recent\Libé-itv JMServet.lnk 554 bytes
C:\Documents and Settings\Philippe\Recent\mag en cours.lnk 512 bytes
C:\Documents and Settings\Philippe\Recent\MFI chaise.lnk 772 bytes
C:\Documents and Settings\Philippe\Recent\Micro Crédit.lnk 263 bytes
C:\Documents and Settings\Philippe\Recent\Microfinance_-_suisse_04022007.lnk 523 bytes
C:\Documents and Settings\Philippe\Recent\nepal maoist displaced.lnk 557 bytes
C:\Documents and Settings\Philippe\Recent\New doc to print.lnk 360 bytes
C:\Documents and Settings\Philippe\Recent\norvegian report on bhutan.lnk 499 bytes
C:\Documents and Settings\Philippe\Recent\octave.lnk 475 bytes
C:\Documents and Settings\Philippe\Recent\peak_oil_12_min_france_2.lnk 487 bytes
C:\Documents and Settings\Philippe\Recent\Peblisa Final 110607.lnk 547 bytes
C:\Documents and Settings\Philippe\Recent\Petition soutien Deniau Coq[1].lnk 523 bytes
C:\Documents and Settings\Philippe\Recent\phil.lnk 367 bytes
C:\Documents and Settings\Philippe\Recent\pitch bangladesh.lnk 532 bytes
C:\Documents and Settings\Philippe\Recent\planning noel.lnk 512 bytes
C:\Documents and Settings\Philippe\Recent\PressPass_1.lnk 777 bytes
C:\Documents and Settings\Philippe\Recent\PressPass_1_jpg - Gmail.lnk 562 bytes
C:\Documents and Settings\Philippe\Recent\prevision.lnk 492 bytes
C:\Documents and Settings\Philippe\Recent\Propositons en interne.lnk 317 bytes
C:\Documents and Settings\Philippe\Recent\Rapport_Peblisa-juin_07.lnk 396 bytes
C:\Documents and Settings\Philippe\Recent\Refugees warn of Bhutan.lnk 567 bytes
C:\Documents and Settings\Philippe\Recent\Reserves_petrolieres_le_grand_mensonge_DOSSIER_Matthieu_Auzanneau.lnk 446 bytes
C:\Documents and Settings\Philippe\Recent\reunion vendredi.lnk 603 bytes
C:\Documents and Settings\Philippe\Recent\Rickshaw Puller New Music Idol in Bangladesh.lnk 788 bytes
C:\Documents and Settings\Philippe\Recent\schedule (2).lnk 275 bytes
C:\Documents and Settings\Philippe\Recent\schedule.lnk 492 bytes
C:\Documents and Settings\Philippe\Recent\script tigres f24.lnk 444 bytes
C:\Documents and Settings\Philippe\Recent\Servet_et_alii_1bis.lnk 456 bytes
C:\Documents and Settings\Philippe\Recent\Socio-economic & cultural factors_CCHP-1-chap-3-2-3 (2).lnk 648 bytes
C:\Documents and Settings\Philippe\Recent\Socio-economic & cultural factors_CCHP-1-chap-3-2-3.lnk 702 bytes
C:\Documents and Settings\Philippe\Recent\songs.lnk 238 bytes
C:\Documents and Settings\Philippe\Recent\Srinagar.lnk 275 bytes
C:\Documents and Settings\Philippe\Recent\synops cachemire.lnk 603 bytes
C:\Documents and Settings\Philippe\Recent\synops diamants.lnk 527 bytes
C:\Documents and Settings\Philippe\Recent\synops mere theresa.lnk 547 bytes
C:\Documents and Settings\Philippe\Recent\synops MICRO CREDIT.lnk 308 bytes
C:\Documents and Settings\Philippe\Recent\synops microcredit (2).lnk 537 bytes
C:\Documents and Settings\Philippe\Recent\synops microcredit.lnk 537 bytes
C:\Documents and Settings\Philippe\Recent\synops microcredit2.lnk 542 bytes
C:\Documents and Settings\Philippe\Recent\synops microcredit3.lnk 542 bytes
C:\Documents and Settings\Philippe\Recent\talleu.lnk 482 bytes
C:\Documents and Settings\Philippe\Recent\to do 16.11 (2).lnk 507 bytes
C:\Documents and Settings\Philippe\Recent\to do 16.11.lnk 502 bytes
C:\Documents and Settings\Philippe\Recent\to do 19.9.lnk 497 bytes
C:\Documents and Settings\Philippe\Recent\to do 27.9 (2).lnk 281 bytes
C:\Documents and Settings\Philippe\Recent\to do 27.9.lnk 497 bytes
C:\Documents and Settings\Philippe\Recent\to do phil works.lnk 448 bytes
C:\Documents and Settings\Philippe\Recent\to do phil.lnk 430 bytes
C:\Documents and Settings\Philippe\Recent\to do vendredi 17-10.lnk 311 bytes
C:\Documents and Settings\Philippe\Recent\todo nepal.lnk 390 bytes
C:\Documents and Settings\Philippe\Recent\UJJIVAN schedule.lnk 408 bytes
C:\Documents and Settings\Philippe\Recent\visa bhutan.lnk 408 bytes
C:\Documents and Settings\Philippe\Recent\Visiting_Bhutan_Pre-Departure_document.lnk 637 bytes
C:\Documents and Settings\Philippe\Recent\WINDOWS.lnk 392 bytes
C:\Documents and Settings\Philippe\Recent\word_ppt_excel.lnk 278 bytes
C:\Documents and Settings\Philippe\Recent\~$nops microcredit.lnk 537 bytes
C:\WINDOWS\TEMP\Historique\History.IE5\desktop.ini 113 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\0XIJW56V\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\41UVOT2B\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\C5QV85IF\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\desktop.ini 67 bytes
C:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\W5MB0LQ3\desktop.ini 67 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\11399031.od 134 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\15096375.od 134 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\17555375.od 134 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\4101031.od 134 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\Google Toolbar\gtbD1.tmp 0 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\h2r12.tmp 0 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\h2r1C.tmp 0 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\h2r2.tmp 0 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\h2r2C.tmp 0 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\h2r2F.tmp 0 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\h2r3.tmp 0 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\java_install.log 0 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\MSIe37d9.LOG 2 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\PatchByFile.tmp 0 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\WLTB Custom Button Feeds\microsoft.msn.mymsn.btn upgrade status 109 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\WLTB Custom Button Feeds\microsoft.windowslive.addbtn.btn upgrade status 109 bytes
C:\Documents and Settings\Philippe\Local Settings\Temp\WLTB Custom Button Feeds\microsoft.windowslive.news.btn upgrade status 109 bytes
C:\WINDOWS\system32\wbem\Logs\FrameWork.log 256 bytes
C:\WINDOWS\system32\wbem\Logs\mofcomp.log 10,02KB
C:\WINDOWS\system32\wbem\Logs\replog.log 400 bytes
C:\WINDOWS\system32\wbem\Logs\setup.log 4,77KB
C:\WINDOWS\system32\wbem\Logs\wbemcore.log 54,82KB
C:\WINDOWS\system32\wbem\Logs\wbemess.log 5,17KB
C:\WINDOWS\system32\wbem\Logs\wbemprox.log 75 bytes
C:\WINDOWS\system32\wbem\Logs\wmiadap.log 691 bytes
C:\WINDOWS\system32\wbem\Logs\wmiprov.log 6,39KB
C:\WINDOWS\system32\wbem\Logs\wbemcore.lo_ 64,04KB
C:\WINDOWS\system32\wbem\Logs\wbemess.lo_ 64,10KB
C:\WINDOWS\system32\wbem\Logs\wmiprov.lo_ 64,06KB
C:\WINDOWS\0.log 0 bytes
C:\WINDOWS\AsusInstantKey.log 162 bytes
C:\WINDOWS\AsusUpdate.log 175 bytes
C:\WINDOWS\cmsetacl.log 200 bytes
C:\WINDOWS\COM+.log 1,51KB
C:\WINDOWS\comsetup.log 92,19KB
C:\WINDOWS\DirectX.log 58,88KB
C:\WINDOWS\DPINST.LOG 6,16KB
C:\WINDOWS\DtcInstall.log 626 bytes
C:\WINDOWS\FaxSetup.log 0,24MB
C:\WINDOWS\IDNMitigationAPIs.log 8,04KB
C:\WINDOWS\ie7.log 51,07KB
C:\WINDOWS\ie7_main.log 15,09KB
C:\WINDOWS\iis6.log 38,85KB
C:\WINDOWS\imsins.log 1,36KB
C:\WINDOWS\KB892130.log 8,24KB
C:\WINDOWS\KB893803v2.log 730 bytes
C:\WINDOWS\KB898461.log 6,63KB
C:\WINDOWS\KB915865.log 2,61KB
C:\WINDOWS\KB932823-v3.log 729 bytes
C:\WINDOWS\KB938127-v2-IE7.log 15,00KB
C:\WINDOWS\KB938464.log 48,24KB
C:\WINDOWS\KB942763.log 15,03KB
C:\WINDOWS\KB946648.log 49,66KB
C:\WINDOWS\KB949269.log 1,30KB
C:\WINDOWS\KB950749.log 722 bytes
C:\WINDOWS\KB950759.log 7,20KB
C:\WINDOWS\KB950760.log 6,17KB
C:\WINDOWS\KB950762.log 6,66KB
C:\WINDOWS\KB950974.log 55,17KB
C:\WINDOWS\KB951066.log 10,96KB
C:\WINDOWS\KB951072-v2.log 68,15KB
C:\WINDOWS\KB951376-v2.log 49,88KB
C:\WINDOWS\KB951376.log 6,46KB
C:\WINDOWS\KB951698.log 6,33KB
C:\WINDOWS\KB951748.log 15,52KB
C:\WINDOWS\KB951978.log 16,98KB
C:\WINDOWS\KB952287.log 50,51KB
C:\WINDOWS\KB952954.log 54,17KB
C:\WINDOWS\KB953838-IE7.log 20,50KB
C:\WINDOWS\KB953838.log 56,54KB
C:\WINDOWS\KB953839.log 10,83KB
C:\WINDOWS\KB954211.log 6,73KB
C:\WINDOWS\KB954459.log 10,86KB
C:\WINDOWS\KB955069.log 7,41KB
C:\WINDOWS\KB956390-IE7.log 25,11KB
C:\WINDOWS\KB956391.log 11,96KB
C:\WINDOWS\KB956803.log 12,47KB
C:\WINDOWS\KB956841.log 7,93KB
C:\WINDOWS\KB957095.log 12,48KB
C:\WINDOWS\KB957097.log 7,06KB
C:\WINDOWS\KB958644.log 7,32KB
C:\WINDOWS\log.log 188 bytes
C:\WINDOWS\MSCompPackV1.log 6,26KB
C:\WINDOWS\msgsocm.log 12,32KB
C:\WINDOWS\NLSDownlevelMapping.log 7,73KB
C:\WINDOWS\ntdtcsetup.log 54,03KB
C:\WINDOWS\ocgen.log 0,12MB
C:\WINDOWS\ocmsn.log 13,51KB
C:\WINDOWS\regopt.log 2,95KB
C:\WINDOWS\sessmgr.setup.log 3,85KB
C:\WINDOWS\setupact.log 0,21MB
C:\WINDOWS\setupapi.log 0,78MB
C:\WINDOWS\setuperr.log 0 bytes
C:\WINDOWS\spupdsvc.log 52,60KB
C:\WINDOWS\SuperHybridEngine.log 166 bytes
C:\WINDOWS\tsoc.log 99,40KB
C:\WINDOWS\updspapi.log 46,61KB
C:\WINDOWS\WIC.log 865 bytes
C:\WINDOWS\WMFDist11.log 26,08KB
C:\WINDOWS\wmp11.log 18,93KB
C:\WINDOWS\wmsetup.log 26,92KB
C:\WINDOWS\wmsetup10.log 514 bytes
C:\WINDOWS\Wudf01000Inst.log 11,48KB
C:\WINDOWS\imsins.BAK 1,36KB
C:\WINDOWS\OEWABLog.txt 2,16KB
C:\WINDOWS\setuplog.txt 0,87MB
C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\drwtsn32.log 0,37MB
C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\user.dmp 91,32KB
C:\WINDOWS\Debug\blastcln.log 286 bytes
C:\WINDOWS\Debug\mrt.log 2,29KB
C:\WINDOWS\Debug\mrteng.log 1,71KB
C:\WINDOWS\Debug\NetSetup.LOG 2,44KB
C:\WINDOWS\security\logs\backup.log 3,59KB
C:\WINDOWS\security\logs\SceRoot.log 622 bytes
C:\WINDOWS\security\logs\scesetup.log 0,14MB
C:\WINDOWS\security\logs\scecomp.old 240 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\BHUTAN-NEPAL.LNK 263 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\BJP-immigration.LNK 456 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\Bureau (2).LNK 306 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\Bureau.LNK 306 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\cv_aymeric_barrault.LNK 476 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\Desktop.ini 95 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\Disque amovible (E).LNK 179 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\Filming schedule.LNK 376 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\id bangla.LNK 402 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\index.dat 577 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\Lebateaudetouslesdangers.LNK 501 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\LETTRE GREGOIRE.LNK 456 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\mag en cours.LNK 446 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\Mes documents.LNK 363 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\Micro Crédit.LNK 263 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\nepal maoist displaced.LNK 491 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\planning noel (2).LNK 446 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\planning noel.LNK 446 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\prevision.LNK 426 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\Rickshaw Puller New Music Idol in Bangladesh.LNK 702 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\synops microcredit.LNK 471 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\Templates.LNK 779 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\to do vendredi 1710.LNK 371 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\Visiting_Bhutan_Pre-Departure_document.LNK 571 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\Office\Recent\Word.LNK 750 bytes
C:\Documents and Settings\Philippe\Application Data\Google\Local Search History\google%2Enews.w 82 bytes
C:\Documents and Settings\Philippe\Application Data\Google\Local Search History\google%2Eweb.w 494 bytes
C:\Documents and Settings\Philippe\Application Data\Sun\Java\Deployment\cache\6.0\17\2849791-2747eb60 5,37KB
C:\Documents and Settings\Philippe\Application Data\Sun\Java\Deployment\cache\6.0\17\2849791-2747eb60.idx 518 bytes
C:\Documents and Settings\Philippe\Application Data\Sun\Java\Deployment\cache\6.0\host\756d45d0-11ad4cf8.hst 13 bytes
C:\Documents and Settings\Philippe\Application Data\Sun\Java\Deployment\cache\6.0\lastAccessed 1 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\MSN Messenger\783912004\sqmnoopt00.sqm 328 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\MSN Messenger\783912004\sqmnoopt01.sqm 244 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\MSN Messenger\783912004\sqmnoopt02.sqm 368 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\MSN Messenger\783912004\sqmnoopt03.sqm 244 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\MSN Messenger\783912004\sqmnoopt04.sqm 476 bytes
C:\Documents and Settings\Philippe\Application Data\Microsoft\MSN Messenger\783912004\sqmnoopt05.sqm 244 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\bin.clearspring.com\clearspring.sol 61 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\d.yimg.com\COSMOSPrefs.sol 76 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\d.yimg.com\COSMOS_FOP.sol 86 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\login.yahoo.com\loginCache.sol 158 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\mail.google.com\wakeup.sol 37 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\msn.serving-sys.com\EB_FR_1150315.sol 104 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\playback.rhapsody.com\-static\players\engine\som_1_0_2.swf\userData1.sol 66 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\s.ytimg.com\soundData.sol 58 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\s3.amazonaws.com\adcCookie.sol 65 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\skype.com\#ui\preferences.sol 233 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\swfs.ilike.com\audioPlayer.sol 76 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\swfs.ilike.com\cm_audioPlayer.sol 86 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\swfs.ilike.com\cm_mediaPlayer.sol 86 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\www.dailymotion.com\flash\dmplayer\dmplayer-fr.swf\dmplayer.sol 89 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\www.dailymotion.com\flash\dmplayer\dmplayer.swf\dmplayer.sol 89 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\www.france-info.com\player.swf\player.sol 118 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\www.france-info.fr\player.swf\player.sol 118 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\#SharedObjects\BCBCLQSC\www.france24.com\com.jeroenwijering.sol 50 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#bin.clearspring.com\settings.sol 89 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#d.yimg.com\settings.sol 80 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#login.yahoo.com\settings.sol 85 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mail.google.com\settings.sol 85 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#msn.serving-sys.com\settings.sol 89 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#playback.rhapsody.com\settings.sol 91 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s.ytimg.com\settings.sol 81 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#s3.amazonaws.com\settings.sol 86 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#skype.com\settings.sol 79 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#swfs.ilike.com\settings.sol 84 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#tele7.fr\settings.sol 78 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.dailymotion.com\settings.sol 89 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.france-info.com\settings.sol 89 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.france-info.fr\settings.sol 88 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.france24.com\settings.sol 86 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol 708 bytes
C:\Documents and Settings\Philippe\Application Data\Macromedia\Flash Player\skype.com\test.sol 44 bytes
------------------------------------------------------------------------------------------
0
jlpjlp Messages postés 51580 Date d'inscription vendredi 18 mai 2007 Statut Contributeur sécurité Dernière intervention 3 mai 2022 5 040
23 nov. 2008 à 09:57
non tu peux faire ccleaner


Télécharge RavAntivirus d'Evosla :
http://ww25.evosla.com/compteur.php?soft=rav_antivirus

# Si tu as une clé USB, disque dur externe, etc, branche-les sans les ouvrir avant de lancer ce FIX
# Fais un clic droit sur le fichier .ZIP > Extraire sur > le Bureau
# Doucle-clique sur >> RAV.exe << afin de lancer l'outil.
# Une fois RAV ANTIVIRUS lancé, laisse-le réagir , il scanne automatiquement tout les lecteurs (disques fixes et amovibles)
# Si infection > un log s'établira, sinon le soft affichera (très rapide) ==>Votre Ordinateur est sain .
# Retire tes disques amovibles et redémarrez votre ordinateur.
# Poste le rapport, si infection!


puis


remets un hijakchits pour verifier
0
ok j ai fait ce que tu disais et RAV dit que mon ordi est sain.

voici le bilan du nouveau hijackthis:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:31:11, on 23/11/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\InterVideo\RegMgr\iviRegMgr.exe
C:\Program Files\Fighters\configservice.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fighters\licenseservice.exe
C:\Program Files\Fighters\updateservice.exe
C:\Program Files\Fighters\ScannerService.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Elantech\ETDCtrl.exe
C:\Program Files\EeePC\ACPI\AsTray.exe
C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe
C:\Program Files\EeePC\ACPI\AsEPCMon.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe
C:\Program Files\Fighters\spywarefighter\SpywarefighterUser.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\igfxext.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Asus\EeePC\Super Hybrid Engine\SuperHybridEngine.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
c:\program files\fighters\spywarefighter\SPYWAREfighterTray.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://eeepc.asus.com/global
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = LRI Internet Explorer
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\wscript.exe,userinit.exe
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [ETDWare] C:\Program Files\Elantech\ETDCtrl.exe
O4 - HKLM\..\Run: [AsusTray] C:\Program Files\EeePC\ACPI\AsTray.exe
O4 - HKLM\..\Run: [AsusACPIServer] C:\Program Files\EeePC\ACPI\AsAcpiSvr.exe
O4 - HKLM\..\Run: [AsusEPCMonitor] C:\Program Files\EeePC\ACPI\AsEPCMon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [RavAV] C:\WINDOWS\AdobeR.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [spywarefighterguard] C:\Program Files\Fighters\spywarefighter\SpywarefighterUser.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: SuperHybridEngine.lnk = ?
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Envoyer au périphérique &Bluetooth... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Envoyer à Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: IviRegMgr - InterVideo - C:\Program Files\Fichiers communs\InterVideo\RegMgr\iviRegMgr.exe
O23 - Service: PTK License-FIGHTERS-297811811 - SPAMfighter - C:\Program Files\Fighters\licenseservice.exe
O23 - Service: PTK Live Update-FIGHTERS-297811811 - SPAMfighter - C:\Program Files\Fighters\updateservice.exe
O23 - Service: PTK Scanner-FIGHTERS-297811811 - SPAMfighter - C:\Program Files\Fighters\ScannerService.exe
O23 - Service: PTK SharedAccess-FIGHTERS-297811811 - SPAMfighter - C:\Program Files\Fighters\configservice.exe
0