Fenêtre intempestive Spyware

Résolu
Bonjour,

J'ai un pb de fenêtre intempestive qui s'affiche lorsque je navigue sur le net. Du genre Spyware secure ou votre pc est infecté etc.
Pourtant j'ai un antivirus mais celui-ci ne semble pas le détecté ?
J'aimerais un conseil pour éliminer cette fenêtre.

Merci par avance de votre réponse

Unbibi

17 réponses

  1. Tu peux supprimer tout ce que l'on a utilisé. Regarde avant dans ajout/supp des programmes puis supprime le reste manuellement.

    Ensuite change le statut de ton topic en "résolu".

    Concernant "la perte de tes données", selon les rapports, rien n'a été supprimé des autres disques.
    Pense de temps en temps, à la fin de ta naviguation internet, à supprimer les fichiers temporaires et les cookies.

    Bonne journée.
    1. le PC fonctionne mais il y a eu des données que j'ai perdu je crois sur les autres disques dur. Je ne vois plus de fenêtre intempestive qui s'affiche... pour le moment.

      Après je ne suis pas très douée sur l'ordi ... :)
      1. bonjour,

        je vous remericie encore pour votre conseil... infiniment.

        Voici les rapports :

        ---------------------------------------------------------
        AVG Anti-Spyware - Rapport d'analyse
        ---------------------------------------------------------

        + Créé à: 11:14:09 16/10/2007

        + Résultat de l'analyse:

        C:\Documents and Settings\madmax\Cookies\madmax@247realmedia[1].txt -> TrackingCookie.247realmedia : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@2o7[2].txt -> TrackingCookie.2o7 : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@fnac.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@mistergooddeal.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@msnaccountservices.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@adtech[2].txt -> TrackingCookie.Adtech : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@advertising[2].txt -> TrackingCookie.Advertising : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@adviva[2].txt -> TrackingCookie.Adviva : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@bluestreak[1].txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@estat[1].txt -> TrackingCookie.Estat : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@search.live[2].txt -> TrackingCookie.Live : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@mediaplex[1].txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@ssl-hints.netflame[2].txt -> TrackingCookie.Netflame : Aucune action entreprise.
        C:\Documents and Settings\madmax.MAX-ZRUT1QCWJI3\Cookies\madmax@ads.planetactive[1].txt -> TrackingCookie.Planetactive : Aucune action entreprise.
        C:\Documents and Settings\madmax.MAX-ZRUT1QCWJI3\Cookies\madmax@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
        C:\Documents and Settings\madmax.MAX-ZRUT1QCWJI3\Cookies\madmax@serving-sys[1].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@bs.serving-sys[2].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@serving-sys[2].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@smartadserver[2].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@weborama[1].txt -> TrackingCookie.Weborama : Aucune action entreprise.
        C:\Documents and Settings\madmax.MAX-ZRUT1QCWJI3\Cookies\madmax@m.webtrends[1].txt -> TrackingCookie.Webtrends : Aucune action entreprise.
        C:\Documents and Settings\madmax\Cookies\madmax@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.

        Fin du rapport

        Script execute en mode sans echec
        Rapport clean par Malekal_morte - http://www.malekal.com
        Script execute en mode sans echec 16/10/2007 a 11:37:50,68

        Microsoft Windows XP [version 5.1.2600]

        *** Suppression des fichiers dans C:

        *** Suppression des fichiers dans C:\WINDOWS.3\

        *** Suppression des fichiers dans C:\WINDOWS.3\system32

        *** Suppression des fichiers dans C:\Program Files
        tentative de suppression de "C:\Program Files\MyWay\"

        *** Suppression des clefs du registre effectuee..
        *** Fin du rapport !

        Logfile of Trend Micro HijackThis v2.0.2
        Scan saved at 11:54:40, on 16/10/2007
        Platform: Windows XP (WinNT 5.01.2600)
        MSIE: Internet Explorer v6.00 (6.00.2600.0000)
        Boot mode: Normal

        Running processes:
        C:\WINDOWS.3\System32\smss.exe
        C:\WINDOWS.3\system32\winlogon.exe
        C:\WINDOWS.3\system32\services.exe
        C:\WINDOWS.3\system32\lsass.exe
        C:\WINDOWS.3\system32\svchost.exe
        C:\WINDOWS.3\System32\svchost.exe
        C:\WINDOWS.3\system32\spoolsv.exe
        C:\WINDOWS.3\Explorer.EXE
        C:\WINDOWS.3\System32\ctfmon.exe
        C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe
        C:\PROGRA~1\Wanadoo\ComComp.exe
        C:\PROGRA~1\Wanadoo\PollingModule.exe
        C:\Program Files\AVG Anti-Spyware 7.5\guard.exe
        C:\PROGRA~1\Wanadoo\Watch.exe
        C:\WINDOWS.3\System32\wuauclt.exe
        C:\Program Files\MSN Messenger\msnmsgr.exe
        C:\Program Files\MSN Messenger\usnsvc.exe
        C:\Program Files\Internet Explorer\iexplore.exe
        C:\WINDOWS.3\system32\NOTEPAD.EXE
        C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
        R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://www.orange.fr/portail
        R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
        R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
        O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
        O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
        O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS.3\System32\msdxm.ocx
        O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
        O4 - HKLM\..\Run: [F-Secure Manager] "F:\Documents and Settings\Common\FSM32.EXE" /splash
        O4 - HKLM\..\Run: [F-Secure TNB] "F:\Documents and Settings\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
        O4 - HKLM\..\Run: [F-Secure Startup Wizard] "F:\Documents and Settings\FSGUI\FSSW.EXE" /reboot
        O4 - HKLM\..\Run: [News Service] "F:\Documents and Settings\FSGUI\ispnews.exe"
        O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "F:\Mes téléchargements\Reader\Reader_sl.exe"
        O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS.3\System32\ctfmon.exe
        O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
        O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS.3\System32\CTFMON.EXE (User 'SERVICE LOCAL')
        O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS.3\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
        O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS.3\System32\CTFMON.EXE (User 'SYSTEM')
        O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS.3\System32\CTFMON.EXE (User 'Default user')
        O8 - Extra context menu item: &Bloquer cette fenêtre publicitaire - F:\Documents and Settings\Anti-Spyware\blockpopups.htm
        O9 - Extra button: Protection Internet Explorer - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - F:\Documents and Settings\Anti-Spyware\ieshield.dll (file missing)
        O9 - Extra 'Tools' menuitem: Protection Internet Explorer... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - F:\Documents and Settings\Anti-Spyware\ieshield.dll (file missing)
        O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
        O12 - Plugin for .pdf: C:\Program Files\Internet Explorer\PLUGINS\nppdf32.dll
        O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\AVG Anti-Spyware 7.5\guard.exe
        O23 - Service: Antivirus Firewall (BackWeb Plug-in - 6588780) - Unknown owner - F:\DOCUME~1\backweb\6588780\Program\SERVIC~1.EXE (file missing)
        O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - Unknown owner - F:\Documents and Settings\Anti-Virus\fsgk32st.exe (file missing)
        O23 - Service: fsbwsys - Unknown owner - F:\Documents and Settings\backweb\6588780\program\fsbwsys.exe (file missing)
        O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - Unknown owner - F:\Documents and Settings\FWES\Program\fsdfwd.exe (file missing)
        O23 - Service: F-Secure Management Agent (FSMA) - Unknown owner - F:\Documents and Settings\Common\FSMA32.EXE (file missing)
        1. 1) Télécharge et installe AVG anti-spyware:
          http://downloads.grisoft.cz/softw/70/filedir/inst/avgas-setup-7.5.0.50.exe
          Tutorial : http://www.malekal.com/tutorial_AVG_AntiSpyware.html
          Mets le à jour à partir du menu Mise à jour en haut. C'est tout pour l'instant.

          Redémarre en mode sans échec. Si tu sais pas comment regardes le lien ci dessous. Privilégies la méthode avec la touche F8:
          https://docs.microsoft.com/en-us/?mfr=true

          2) Ouvre AVG Anti-Spyware et clic sur l'onglet Analyse, puis le sous-onglet Paramètres
          - Sélectionne dans Comment Réagir ? Quarantine. (voir l'aide l'aide AVG Anti-Spyware)
          - Reviens au sous-onglet Analyser puis clique sur Analyse complète du système.
          ---> Le scan démarre.

          A la fin clique sur Appliquer toutes les actions, les éléments doivent alors être déplacés en quarantaine.
          Puis clique sur Enregistrer le rapport d'analyse et enregistre le rapport sur le Bureau.

          3) Double-clic sur clean. Cela va ouvrir une fenêtre noire.
          Un menu va apparaître, choisis l'option 2 en appuyant sur la touche 2 de ton clavier.
          Clean va travailler.
          Un rapport Va etre généré, sauvegarde-le

          4) Redémarre normalement et poste les deux rapports ainsi qu'un nouveau log Hijackthis
          1. je suis désolée cela à pris du temps pour le scan... mais voici le rapport totalscan:

            ;***********************************************************************************************************************************************************************************
            ANALYSIS: 2007-10-15 18:31:10
            PROTECTIONS: 2
            MALWARE: 74
            SUSPECTS: 1
            ;***********************************************************************************************************************************************************************************
            PROTECTIONS
            Description Version Active Updated
            ;===================================================================================================================================================================================
            F-Secure Antivirus 6.11 No Yes
            F-Secure Internet Security 5.91 No Yes
            ;===================================================================================================================================================================================
            MALWARE
            Id Description Type Active Severity Disinfectable Disinfected Location
            ;===================================================================================================================================================================================
            00041446 application/myway HackTools No 0 Yes No c:\program files\myway
            00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.casalemedia.com/]
            00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@doubleclick[1].txt
            00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@atdmt[2].txt
            00139535 Application/Processor HackTools No 0 Yes No C:\System Volume Information\_restore{C16F61EC-5BDD-4D33-A82F-04FAE9BD8F56}\RP9\A0001000.exe
            00139535 Application/Processor HackTools No 0 Yes No C:\WINDOWS.3\system32\Process.exe
            00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.tradedoubler.com/]
            00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.tradedoubler.com/]
            00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.tradedoubler.com/]
            00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.tradedoubler.com/]
            00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@tradedoubler[1].txt
            00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.tradedoubler.com/]
            00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.tradedoubler.com/]
            00145405 Cookie/RealMedia TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.247realmedia.com/]
            00145405 Cookie/RealMedia TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.247realmedia.com/]
            00145405 Cookie/RealMedia TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.247realmedia.com/]
            00145405 Cookie/RealMedia TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@247realmedia[1].txt
            00145405 Cookie/RealMedia TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.247realmedia.com/]
            00145405 Cookie/RealMedia TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.247realmedia.com/]
            00145405 Cookie/RealMedia TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.247realmedia.com/]
            00145405 Cookie/RealMedia TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.247realmedia.com/]
            00145405 Cookie/RealMedia TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.247realmedia.com/]
            00145427 Cookie/Kazaa Networks TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@desktop.kazaa[1].txt
            00145457 Cookie/FastClick TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.fastclick.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@2o7[2].txt
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145460 Cookie/2o7 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.2o7.net/]
            00145732 Cookie/Falkag TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.as-eu.falkag.net/]
            00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@mediaplex[1].txt
            00145745 Cookie/OfferOptimizer TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.offeroptimizer.com/]
            00145745 Cookie/OfferOptimizer TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.offeroptimizer.com/]
            00145745 Cookie/OfferOptimizer TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@offeroptimizer[2].txt
            00145745 Cookie/OfferOptimizer TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.offeroptimizer.com/]
            00145745 Cookie/OfferOptimizer TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@offeroptimizer[1].txt
            00145745 Cookie/OfferOptimizer TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.offeroptimizer.com/]
            00145745 Cookie/OfferOptimizer TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@offeroptimizer[3].txt
            00145758 Cookie/Mysearch TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@mysearch[2].txt
            00145758 Cookie/Mysearch TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@mysearch[1].txt
            00147814 Cookie/AspinallsOnlineCasino TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@pacificpoker[1].txt
            00149046 Cookie/Casinotropez TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.casinotropez.com/]
            00149046 Cookie/Casinotropez TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.casinotropez.com/]
            00149046 Cookie/Casinotropez TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.casinotropez.com/]
            00149046 Cookie/Casinotropez TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.casinotropez.com/]
            00149116 Cookie/Ccbill TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@ccbill[1].txt
            00152401 Cookie/Belnk TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@belnk[2].txt
            00152401 Cookie/Belnk TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@belnk[4].txt
            00152401 Cookie/Belnk TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.belnk.com/]
            00152401 Cookie/Belnk TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@belnk[1].txt
            00152401 Cookie/Belnk TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.belnk.com/]
            00152401 Cookie/Belnk TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.belnk.com/]
            00152401 Cookie/Belnk TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@belnk[3].txt
            00152401 Cookie/Belnk TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.belnk.com/]
            00161883 Cookie/Twain-Tech TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@cliks[2].txt
            00161883 Cookie/Twain-Tech TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@cliks[3].txt
            00162730 Cookie/Belnk TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@dist.belnk[3].txt
            00162730 Cookie/Belnk TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@dist.belnk[2].txt
            00167430 Cookie/myaffiliateprogram TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@www.myaffiliateprogram[1].txt
            00167647 Cookie/Yadro TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@yadro[1].txt
            00167647 Cookie/Yadro TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@yadro[3].txt
            00167647 Cookie/Yadro TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@yadro[2].txt
            00167704 Cookie/Xiti TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@xiti[1].txt
            00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@xiti[1].txt
            00167704 Cookie/Xiti TrackingCookie No 0 Yes No C:\Documents and Settings\madmax.MAX-ZRUT1QCWJI3\Cookies\madmax@xiti[1].txt
            00167709 Cookie/fe.lea.lycos TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@fe.lea.lycos[1].txt
            00167714 Cookie/64.62.232 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@64.62.232[1].txt
            00167747 Cookie/Azjmp TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@azjmp[1].txt
            00167747 Cookie/Azjmp TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@azjmp[2].txt
            00167749 Cookie/Toplist TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@toplist[1].txt
            00167749 Cookie/Toplist TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@toplist[2].txt
            00167749 Cookie/Toplist TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Application Data\Mozilla\Firefox\Profiles\hhgnu88b.default\cookies.txt[.toplist.cz/]
            00167765 Cookie/Hitbox TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.hg1.hitbox.com/]
            00167765 Cookie/Hitbox TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.hg1.hitbox.com/]
            00168056 Cookie/YieldManager TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.ad.yieldmanager.com/]
            00168056 Cookie/YieldManager TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.ad.yieldmanager.com/]
            00168056 Cookie/YieldManager TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.ad.yieldmanager.com/]
            00168056 Cookie/YieldManager TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.ad.yieldmanager.com/]
            00168056 Cookie/YieldManager TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@ad.yieldmanager[2].txt
            00168056 Cookie/YieldManager TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.ad.yieldmanager.com/]
            00168061 Cookie/Apmebf TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.apmebf.com/]
            00168061 Cookie/Apmebf TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.apmebf.com/]
            00168076 Cookie/BurstNet TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@burstnet[1].txt
            00168076 Cookie/BurstNet TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@burstnet[2].txt
            00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.serving-sys.com/]
            00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.serving-sys.com/]
            00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@serving-sys[2].txt
            00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.serving-sys.com/]
            00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.serving-sys.com/]
            00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.serving-sys.com/]
            00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.serving-sys.com/]
            00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@bs.serving-sys[2].txt
            00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.bs.serving-sys.com/]
            00168095 Cookie/888 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@888[5].txt
            00168095 Cookie/888 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.888.com/]
            00168095 Cookie/888 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.888.com/]
            00168095 Cookie/888 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@888[4].txt
            00168095 Cookie/888 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@888[6].txt
            00168095 Cookie/888 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@888[2].txt
            00168102 Cookie/Falkag TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.as1.falkag.de/]
            00168102 Cookie/Falkag TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.as1.falkag.de/]
            00168102 Cookie/Falkag TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.as1.falkag.de/]
            00168102 Cookie/Falkag TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.as1.falkag.de/]
            00168106 Cookie/Weborama TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.weborama.fr/]
            00168106 Cookie/Weborama TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.weborama.fr/]
            00168106 Cookie/Weborama TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.weborama.fr/]
            00168106 Cookie/Weborama TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@weborama[1].txt
            00168106 Cookie/Weborama TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.weborama.fr/]
            00168106 Cookie/Weborama TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.weborama.fr/]
            00168109 Cookie/Adtech TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@adtech[2].txt
            00168110 Cookie/Server.iad.Liveperson TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.server.iad.liveperson.net/]
            00168110 Cookie/Server.iad.Liveperson TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.server.iad.liveperson.net/hc/35639228]
            00168110 Cookie/Server.iad.Liveperson TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.server.iad.liveperson.net/hc/35639228]
            00168113 Cookie/fe.lea.lycos TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@fe.lea.lycos[2].txt
            00168116 Cookie/Comclick TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.fl01.ct2.comclick.com/]
            00168116 Cookie/Comclick TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.fl01.ct2.comclick.com/]
            00168116 Cookie/Comclick TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.fl01.ct2.comclick.com/]
            00168116 Cookie/Comclick TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@fl01.ct2.comclick[1].txt
            00168116 Cookie/Comclick TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.fl01.ct2.comclick.com/]
            00169190 Cookie/Advertising TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.advertising.com/]
            00169190 Cookie/Advertising TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.advertising.com/]
            00169190 Cookie/Advertising TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.advertising.com/]
            00169190 Cookie/Advertising TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@advertising[2].txt
            00169190 Cookie/Advertising TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.advertising.com/]
            00169190 Cookie/Advertising TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.advertising.com/]
            00170087 Cookie/Hbmediapro TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.adopt.hbmediapro.com/]
            00170087 Cookie/Hbmediapro TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@adopt.hbmediapro[4].txt
            00170087 Cookie/Hbmediapro TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@adopt.hbmediapro[2].txt
            00170087 Cookie/Hbmediapro TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@adopt.hbmediapro[3].txt
            00170087 Cookie/Hbmediapro TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.adopt.hbmediapro.com/]
            00170087 Cookie/Hbmediapro TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.adopt.hbmediapro.com/]
            00170087 Cookie/Hbmediapro TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.adopt.hbmediapro.com/]
            00170087 Cookie/Hbmediapro TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@adopt.hbmediapro[1].txt
            00170554 Cookie/Overture TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.overture.com/]
            00170554 Cookie/Overture TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.overture.com/]
            00170557 Cookie/Com.com TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@terra.com[1].txt
            00171633 Cookie/Cgi-bin TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@cgi-bin[6].txt
            00171718 Cookie/Enhance TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@c.enhance[1].txt
            00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.questionmarket.com/]
            00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.questionmarket.com/]
            00172221 Cookie/Zedo TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.zedo.com/]
            00172221 Cookie/Zedo TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.zedo.com/]
            00172449 Cookie/MetriWeb TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.metriweb.be/]
            00172483 Cookie/888 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@888[1].txt
            00172484 Cookie/Cassava TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@cassava[1].txt
            00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.bluestreak.com/]
            00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@bluestreak[1].txt
            00173545 Cookie/Rn11 TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@rn11[2].txt
            00173987 Cookie/Itrack TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@ilead.itrack[2].txt
            00184846 Cookie/Adrevolver TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.adrevolver.com/]
            00186561 Cookie/Banner TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@banner[1].txt
            00194327 Cookie/Go TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@go[2].txt
            00199981 Cookie/Seeq TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.www48.seeq.com/]
            00199983 Cookie/Valueclick TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.valueclick.com/]
            00199984 Cookie/Searchportal TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.searchportal.information.com/]
            00200862 Cookie/Btgrab TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@btg.btgrab[3].txt
            00200862 Cookie/Btgrab TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@btg.btgrab[1].txt
            00207936 Cookie/Adviva TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.adviva.net/]
            00207936 Cookie/Adviva TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@adviva[2].txt
            00216065 Cookie/Screensavers TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@i.screensavers[1].txt
            00262020 Cookie/Atwola TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@atwola[3].txt
            00262020 Cookie/Atwola TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@atwola[5].txt
            00262020 Cookie/Atwola TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.atwola.com/]
            00262020 Cookie/Atwola TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@atwola[2].txt
            00262020 Cookie/Atwola TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@atwola[6].txt
            00262020 Cookie/Atwola TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@atwola[1].txt
            00262024 Cookie/ErrorSafe TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@www.errorsafe[1].txt
            00262026 Cookie/BestOffersNetworks TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@bestoffersnetworks[1].txt
            00262026 Cookie/BestOffersNetworks TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@bestoffersnetworks[2].txt
            00273339 Cookie/Smartadserver TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@smartadserver[2].txt
            00286732 Cookie/Cgi-bin TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@cgi-bin[1].txt
            00286736 Cookie/Cgi-bin TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@www6.addfreestats[3].txt
            00286736 Cookie/Cgi-bin TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@www6.addfreestats[1].txt
            00320977 Cookie/Winantivirus TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.www.winantivirus.com/]
            00320977 Cookie/Winantivirus TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@www.winantivirus[1].txt
            00320977 Cookie/Winantivirus TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Application Data\Mozilla\Firefox\Profiles\l0po0jn9.default\COOKIES.TXT[.www.winantivirus.com/]
            00320978 Cookie/Winantivirus TrackingCookie No 0 Yes No F:\Documents and Settings\PREAP\Cookies\preap@winantivirus[2].txt
            00517584 Application/SuperFast HackTools No 0 Yes No C:\System Volume Information\_restore{C16F61EC-5BDD-4D33-A82F-04FAE9BD8F56}\RP9\A0001002.exe
            01606636 Cookie/Adserver TrackingCookie No 0 Yes No C:\Documents and Settings\madmax\Cookies\madmax@adserver.easyad[2].txt
            02197130 Trj/Rebooter.J Virus/Trojan No 1 Yes No C:\System Volume Information\_restore{C16F61EC-5BDD-4D33-A82F-04FAE9BD8F56}\RP9\A0001001.exe
            ;===================================================================================================================================================================================
            SUSPECTS
            Location
            ;===================================================================================================================================================================================
            C:\SOPHTEMP\resolve.com
            ;===================================================================================================================================================================================

            Le rapport clean :

            15/10/2007 a 18:34:02,71

            *** Recherche des fichiers dans C:

            *** Recherche des fichiers dans C:\WINDOWS.3\

            *** Recherche des fichiers dans C:\WINDOWS.3\system32

            *** Recherche des fichiers dans C:\Program Files
            "C:\Program Files\MyWay\" FOUND
            *** Fin du rapport !
            1. Bon rien non plus, on continue :

              1)Fais un scan en ligne chez Panda et postes le rapport dans une réponse :
              https://www.pandasecurity.com/?ref=www.pandasoftware.com/activescan/fr/activescan_principal.htm
              "Analyser votre pc" -> "suivant" -> remplir adresse mail -> Pays/Etat-région -> envoyer -> laisser se dérouler le téléchargement du contrôle ActiveX -> sélectionner "Poste de Travail" -> fermer la popup
              Lorsque c'est terminé, sauvegarde et dépose le rapport dans ta prochaine réponse.

              2)Télécharge sur ton bureau : http://www.malekal.com/download/clean.zip
              Une fois sur le bureau, tu fais un clic droit sur ton fichier clean.zip et dans le menu déroulant, tu clics sur extrait tout ou extraire ici.
              Cela va créer un dossier clean.
              Double-clic sur ce dossier clean, tu y trouveras dedans plusieurs fichiers.
              Double-clic sur clean. Cela va ouvrir une fenêtre noire.
              Un menu va apparaître, choisis l'option 1 en appuyant sur la touche 1 de ton clavier.
              Clean va travailler.
              Un rapport Va etre généré, colle le contenu entier ici.
              1. Oui en effet les programmes sont sur F:/ car sur le disque C:/ il n'y a pas assé de mémoire 7Go...

                ci-joint le rapport :

                catchme 0.2 W2K/XP/Vista - userland rootkit detector by Gmer, 17 October 2006
                http://www.gmer.net

                scanning hidden processes ...

                scanning hidden services ...

                scanning hidden autostart entries ...

                scanning hidden files ...

                scan completed successfully
                hidden processes: 0
                hidden services: 0
                hidden files: 0
                1. Juste un truc en voyant ton rapport, tu as réinstallé Windows comment car beaucoup de tes programmes sont installés dans F:\Documents and Settings ?

                  Celà expliquerait que les outils classiques ne trouvent rien de suspect.

                  Télécharge Catchme de Gmer sur le bureau :

                  http://www2.gmer.net/catchme.php

                  Double cliquer sur le fichier catchme.exe pour lancer l'utilitaire.
                  Cliquer sur Scan, Une fenêtre DOS s'ouvrira pour commencer l'analyse.
                  Attendre jusqu'au message « scan completed successfully », puis ferme la fenêtre.
                  Un fichier catchme.log est alors créé sur le bureau contenant le résultat de l'analyse.

                  Poste le rapport
                  1. En fait mon ordi a complètement planté à cause de ses fenêtres de pub intempestive ( j'ai réussi a réinstaller windows XP et me reconnecter sur le net car avant impossible de rentrer dans windows...une page bleue s'affichait puis plus rien sa s'arrêtait à la page du mode sans échec) et a partir de là j'ai préféré demandé sur le forum des conseils. Et là en naviguant de nouveau, il y a cette page qui s'affiche d'abord "internet exploreur" qui dit que le PC est infecté et dès que je la ferme une autre fenêtre qui s'ouvre. J'ai peur que tout replante de nouveau.

                    Alors voici le rapport...merci encore

                    Logfile of Trend Micro HijackThis v2.0.2
                    Scan saved at 15:39:57, on 15/10/2007
                    Platform: Windows XP (WinNT 5.01.2600)
                    MSIE: Internet Explorer v6.00 (6.00.2600.0000)
                    Boot mode: Normal

                    Running processes:
                    C:\WINDOWS.3\System32\smss.exe
                    C:\WINDOWS.3\system32\winlogon.exe
                    C:\WINDOWS.3\system32\services.exe
                    C:\WINDOWS.3\system32\lsass.exe
                    C:\WINDOWS.3\system32\svchost.exe
                    C:\WINDOWS.3\System32\svchost.exe
                    C:\WINDOWS.3\Explorer.EXE
                    C:\WINDOWS.3\system32\spoolsv.exe
                    C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
                    F:\Documents and Settings\Common\FSM32.EXE
                    C:\WINDOWS.3\System32\ctfmon.exe
                    F:\DOCUME~1\backweb\6588780\Program\SERVIC~1.EXE
                    C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe
                    C:\PROGRA~1\Wanadoo\ComComp.exe
                    C:\PROGRA~1\Wanadoo\PollingModule.exe
                    F:\Documents and Settings\Anti-Virus\fsgk32st.exe
                    F:\Documents and Settings\Anti-Virus\FSGK32.EXE
                    F:\Documents and Settings\backweb\6588780\program\fsbwsys.exe
                    F:\Documents and Settings\Common\FSMA32.EXE
                    F:\Documents and Settings\backweb\6588780\Program\fspex.exe
                    F:\Documents and Settings\Common\FSMB32.EXE
                    F:\Documents and Settings\Anti-Virus\fssm32.exe
                    F:\Documents and Settings\Common\FCH32.EXE
                    F:\Documents and Settings\Anti-Virus\fsqh.exe
                    F:\Documents and Settings\Common\FAMEH32.EXE
                    C:\PROGRA~1\Wanadoo\Watch.exe
                    F:\Documents and Settings\Anti-Virus\fsrw.exe
                    F:\Documents and Settings\FWES\Program\fsdfwd.exe
                    F:\Documents and Settings\Anti-Virus\fsav32.exe
                    F:\DOCUME~1\ANTI-S~1\fsaw.exe
                    F:\Documents and Settings\FSGUI\fsguidll.exe
                    C:\WINDOWS.3\NOTEPAD.EXE
                    C:\Program Files\Internet Explorer\iexplore.exe
                    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

                    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://www.orange.fr/portail
                    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
                    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://www.orange.fr/portail
                    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
                    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                    R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
                    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
                    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS.3\System32\msdxm.ocx
                    O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
                    O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
                    O4 - HKLM\..\Run: [F-Secure Manager] "F:\Documents and Settings\Common\FSM32.EXE" /splash
                    O4 - HKLM\..\Run: [F-Secure TNB] "F:\Documents and Settings\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW
                    O4 - HKLM\..\Run: [F-Secure Startup Wizard] "F:\Documents and Settings\FSGUI\FSSW.EXE" /reboot
                    O4 - HKLM\..\Run: [News Service] "F:\Documents and Settings\FSGUI\ispnews.exe"
                    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "F:\Mes téléchargements\Reader\Reader_sl.exe"
                    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS.3\System32\ctfmon.exe
                    O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
                    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS.3\System32\CTFMON.EXE (User 'SERVICE LOCAL')
                    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS.3\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
                    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS.3\System32\CTFMON.EXE (User 'SYSTEM')
                    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS.3\System32\CTFMON.EXE (User 'Default user')
                    O4 - Global Startup: Antivirus Firewall.lnk = F:\Documents and Settings\backweb\6588780\Program\fspex.exe
                    O8 - Extra context menu item: &Bloquer cette fenêtre publicitaire - F:\Documents and Settings\Anti-Spyware\blockpopups.htm
                    O9 - Extra button: Protection Internet Explorer - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - F:\Documents and Settings\Anti-Spyware\ieshield.dll
                    O9 - Extra 'Tools' menuitem: Protection Internet Explorer... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - F:\Documents and Settings\Anti-Spyware\ieshield.dll
                    O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
                    O12 - Plugin for .pdf: C:\Program Files\Internet Explorer\PLUGINS\nppdf32.dll
                    O23 - Service: Antivirus Firewall (BackWeb Plug-in - 6588780) - Securitoo Portal - F:\DOCUME~1\backweb\6588780\Program\SERVIC~1.EXE
                    O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - F:\Documents and Settings\Anti-Virus\fsgk32st.exe
                    O23 - Service: fsbwsys - F-Secure Corp. - F:\Documents and Settings\backweb\6588780\program\fsbwsys.exe
                    O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - F:\Documents and Settings\FWES\Program\fsdfwd.exe
                    O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - F:\Documents and Settings\Common\FSMA32.EXE
                    1. Humm, rien non plus.

                      Tu as ces popups tout le temps ?

                      Rends toi sur ce lien :
                      http://www.trendsecure.com/portal/en-US/threat_analytics/HJTInstall.exe
                      pour télécharger le fichier d'installation d'HijackThis.
                      Enregistre HJTInstall.exe sur ton bureau.

                      Double-clique sur HJTInstall.exe
                      Celà va installer Hijackthis

                      Accepte la license en cliquant sur le bouton "I Accept"
                      Choisis l'option "Do a system scan and save a log file"
                      Ne coche rien.
                      Clique sur "Save log" pour enregistrer le rapport qui s'ouvrira avec le bloc-note
                      Clique sur "Edition -> Sélectionner tout", puis sur "Edition -> Copier" pour copier tout le contenu du rapport
                      Colle le rapport que tu viens de copier dans une réponse.
                      1. C'est bon c fait voici le rapport :

                        SmitFraudFix v2.240

                        Rapport fait à 15:31:01,04, 15/10/2007
                        Executé à partir de C:\Documents and Settings\madmax.MAX-ZRUT1QCWJI3\Bureau\SmitfraudFix
                        OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
                        Le type du système de fichiers est NTFS
                        Fix executé en mode normal

                        »»»»»»»»»»»»»»»»»»»»»»»» Process

                        C:\WINDOWS.3\System32\smss.exe
                        C:\WINDOWS.3\system32\winlogon.exe
                        C:\WINDOWS.3\system32\services.exe
                        C:\WINDOWS.3\system32\lsass.exe
                        C:\WINDOWS.3\system32\svchost.exe
                        C:\WINDOWS.3\System32\svchost.exe
                        C:\WINDOWS.3\Explorer.EXE
                        C:\WINDOWS.3\system32\spoolsv.exe
                        C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
                        F:\Documents and Settings\Common\FSM32.EXE
                        C:\WINDOWS.3\System32\ctfmon.exe
                        F:\DOCUME~1\backweb\6588780\Program\SERVIC~1.EXE
                        C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe
                        C:\PROGRA~1\Wanadoo\ComComp.exe
                        C:\PROGRA~1\Wanadoo\PollingModule.exe
                        F:\Documents and Settings\Anti-Virus\fsgk32st.exe
                        F:\Documents and Settings\Anti-Virus\FSGK32.EXE
                        F:\Documents and Settings\backweb\6588780\program\fsbwsys.exe
                        F:\Documents and Settings\Common\FSMA32.EXE
                        F:\Documents and Settings\backweb\6588780\Program\fspex.exe
                        F:\Documents and Settings\Common\FSMB32.EXE
                        F:\Documents and Settings\Anti-Virus\fssm32.exe
                        F:\Documents and Settings\Common\FCH32.EXE
                        F:\Documents and Settings\Anti-Virus\fsqh.exe
                        F:\Documents and Settings\Common\FAMEH32.EXE
                        C:\PROGRA~1\Wanadoo\Watch.exe
                        F:\Documents and Settings\Anti-Virus\fsrw.exe
                        F:\Documents and Settings\FWES\Program\fsdfwd.exe
                        F:\Documents and Settings\Anti-Virus\fsav32.exe
                        F:\DOCUME~1\ANTI-S~1\fsaw.exe
                        F:\Documents and Settings\FSGUI\fsguidll.exe
                        C:\Program Files\Internet Explorer\iexplore.exe
                        C:\WINDOWS.3\system32\cmd.exe

                        »»»»»»»»»»»»»»»»»»»»»»»» hosts

                        »»»»»»»»»»»»»»»»»»»»»»»» C:\

                        »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS.3

                        »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS.3\system

                        »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS.3\Web

                        »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS.3\system32

                        »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\madmax.MAX-ZRUT1QCWJI3

                        »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\madmax.MAX-ZRUT1QCWJI3\Application Data

                        »»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer

                        »»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\MADMAX~1.MAX\Favoris

                        »»»»»»»»»»»»»»»»»»»»»»»» Bureau

                        »»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files

                        »»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues

                        »»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau

                        [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
                        "Source"="About:Home"
                        "SubscribedURL"="About:Home"
                        "FriendlyName"="Ma page d'accueil"

                        »»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
                        !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

                        SrchSTS.exe by S!Ri
                        Search SharedTaskScheduler's .dll

                        »»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
                        !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
                        "AppInit_DLLs"=""

                        »»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
                        !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

                        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
                        "System"=""

                        »»»»»»»»»»»»»»»»»»»»»»»» Rustock

                        »»»»»»»»»»»»»»»»»»»»»»»» DNS

                        Description: ADI USB Remote NDIS Network Device - Miniport d'ordonnancement de paquets
                        DNS Server Search Order: 192.168.1.1
                        DNS Server Search Order: 0.0.0.0

                        HKLM\SYSTEM\CCS\Services\Tcpip\..\{3FD33C73-2B9B-41C1-BAE1-5C094339CB42}: DhcpNameServer=192.168.1.1 0.0.0.0
                        HKLM\SYSTEM\CS1\Services\Tcpip\..\{3FD33C73-2B9B-41C1-BAE1-5C094339CB42}: DhcpNameServer=192.168.1.1 0.0.0.0
                        HKLM\SYSTEM\CS2\Services\Tcpip\..\{3FD33C73-2B9B-41C1-BAE1-5C094339CB42}: DhcpNameServer=192.168.1.1 0.0.0.0
                        HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 0.0.0.0
                        HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 0.0.0.0
                        HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=192.168.1.1 0.0.0.0

                        »»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll

                        »»»»»»»»»»»»»»»»»»»»»»»» Fin
                        1. 1) Supprime via ajout/supp des programmes : Navilog1
                          Ensuite supprime le dossier en gras :

                          C:\program files\Navilog1

                          2) télécharge l'utilitaire de S!Ri: Moe et balltrap34
                          http://siri.urz.free.fr/Fix/SmitfraudFix.exe

                          Tu le décompresses complètement sur ton bureau puis tu double cliques sur ce fichier SmitfraudFix.exe et tu choisis l’option 1
                          Cela va générer un rapport postes le
                          1. Merci pour votre rapidité à me répondre.

                            voici ce que j'ai copier sur le boc note...

                            Search Navipromo version 3.2.1 commencé le 15/10/2007 à 15:06:44,21

                            !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
                            !!! Poster ce rapport sur le forum pour le faire analyser !!!
                            !!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!

                            Fix lancé depuis C:\Program Files\navilog1
                            Mise a jour le 09.10.2007 a 18h00 by IL-MAFIOSO

                            Microsoft Windows XP [version 5.1.2600]
                            Internet Explorer : 6.0.2600.0000

                            *** Recherche Programmes installes ***

                            *** Recherche dossiers dans C:\WINDOWS.3 ***

                            *** Recherche dossiers dans C:\Program Files ***

                            *** Recherche dossiers dans C:\Documents and Settings\All Users.WINDOWS.3\Application Data ***

                            *** Recherche dossiers dans C:\Documents and Settings\madmax.MAX-ZRUT1QCWJI3\Application Data ***

                            *** Recherche dossiers dans C:\DOCUME~1\ALLUSE~1.3\MENUDM~1\PROGRA~1 ***

                            *** Recherche avec Catchme-rootkit/stealth malware detector by gmer ***
                            pour + d'infos : http://www.gmer.net

                            Aucun fichier trouvé dans :

                            - C:\WINDOWS.3\system32
                            - C:\DOCUME~1\MADMAX~1.MAX\LOCALS~1\APPLIC~1

                            *** Recherche avec GenericNaviSearch ***
                            !!! Tous Ces résultats peuvent révéler des fichiers légitimes !!!
                            !!! A verifier impérativement avant toute suppression manuelle !!!

                            * Scan C:\WINDOWS.3\system32 *

                            * Scan C:\DOCUME~1\MADMAX~1.MAX\LOCALS~1\APPLIC~1 *

                            *** Recherche fichiers ***

                            *** Recherche cles registre ***

                            *** Module de Recherche complémentaire ***
                            (Recherche fichiers spécifiques)

                            1)Recherche fichiers connus:

                            2)Recherche Heuristique :

                            3)Recherche Certificats :

                            Certificat Egroup absent !

                            *** Analyse Terminé le 15/10/2007 à 15:07:36,88 ***
                            1. Salut,

                              Fais un clic droit sur ce lien :
                              http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe
                              Enregistrer la cible (du lien) sous... et enregistre-le sur ton bureau.
                              Ensuite double clique sur navilog1.exe pour lancer l'installation.
                              Une fois l'installation terminée, le fix s'exécutera automatiquement.
                              (Si ce n'est pas le cas, double-clique sur le raccourci Navilog1 présent sur le bureau).

                              Laisse-toi guider. Au menu principal, choisis 1 et valides.
                              (ne fais pas le choix 2,3 ou 4 sans notre avis/accord)

                              Patiente jusqu'au message :
                              *** Analyse Termine le ..... ***
                              Appuie sur une touche comme demandé, le blocnote va s'ouvrir.
                              Copie-colle l'intégralité dans une réponse. Referme le blocnote.
                              Le rapport est en outre sauvegardé à la racine du disque (fixnavi.txt)