Publicites intempestives qui persistent

Résolu
Bonjour,
quelqu'un pourrait m'aider? depuis quelque temps je me bats contre des milliers de publicites qui s'ouvre lorsque je navigue sur internet... ca va un peu mieux depuis que j'ai installe pc tools spyware doctor et lance un gros scan mais certaines pub persistent... je ne sais plus quoi faire!! si une ame sympathique veut bien me prendre en main ca serait avec plaisir!! merci d'avance
Configuration: Windows XP
Internet Explorer 7.0

27 réponses

Résumé de la discussion

Des publicités intempestives et des infections potentielles apparaissent sous Windows XP avec Internet Explorer 7, liées à l’installation présumée de cracks et à des outils piratés comme Spyware Doctor. Plusieurs échanges recommandent d’utiliser OTMoveIt pour nettoyer les traces, de copier une liste de fichiers suspects et de lancer HijackThis afin de générer un rapport, puis de partager le résultat avant toute suppression. La meilleure solution évoquée consiste à supprimer tous les cracks, puis suivre les instructions d’OTMoveIt (case Unregister DLLs and OCXs cochée) et à récupérer une procédure publiée pour les étapes suivantes. D’autres conseils précisent de poster un nouveau rapport HijackThis après nettoyage, car l’élimination peut nécessiter plusieurs passages et des rapports complémentaires pour confirmer l’absence d’éléments indésirables.

Bobot (l’IA à votre service)
  1. Modérateur
    poste un nouveau rapport hijackthis stp.
    1. Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 19:41:18, on 20/10/2008
      Platform: Windows XP SP2 (WinNT 5.01.2600)
      MSIE: Internet Explorer v7.00 (7.00.6000.16735)
      Boot mode: Normal

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\Explorer.EXE
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\WINDOWS\system32\acs.exe
      C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
      C:\Program Files\Bonjour\mDNSResponder.exe
      C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
      C:\WINDOWS\system32\nvsvc32.exe
      C:\WINDOWS\system32\HPZipm12.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\system32\rundll32.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\PROGRA~1\MOUSED~1\mousedriver.exe
      C:\Program Files\Saitek\Software\SaiMfd.exe
      C:\Program Files\Saitek\Software\ProfilerU.exe
      C:\WINDOWS\system32\RUNDLL32.EXE
      C:\Program Files\Keyboard Driver\OEMDriver.exe
      C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\WINDOWS\vsnp2uvc.exe
      C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
      C:\WINDOWS\system32\ctfmon.exe
      C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      C:\Program Files\NETGEAR\WPN311\wlancfg5.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\WgaTray.exe
      C:\WINDOWS\system32\wuauclt.exe
      C:\Program Files\Internet Explorer\iexplore.exe
      C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
      C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
      R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      R3 - URLSearchHook: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
      O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
      O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\eoRezo\EoAdv\EoRezoBHO.dll (file missing)
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
      O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
      O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
      O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
      O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
      O2 - BHO: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
      O3 - Toolbar: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
      O4 - HKLM\..\Run: [SANSUNMouse ] C:\PROGRA~1\MOUSED~1\mousedriver.exe
      O4 - HKLM\..\Run: [SaiMfd] C:\Program Files\Saitek\Software\SaiMfd.exe
      O4 - HKLM\..\Run: [Profiler] C:\Program Files\Saitek\Software\ProfilerU.exe
      O4 - HKLM\..\Run: [PowerVRUninstall] C:\WINDOWS\pmxreg.exe -setupUninstall
      O4 - HKLM\..\Run: [PowerVRGameSettings] C:\WINDOWS\pmxreg.exe -regfile C:\WINDOWS\gamestng.reg
      O4 - HKLM\..\Run: [PMXInit] C:\WINDOWS\system32\pmxinit.exe
      O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
      O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
      O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
      O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
      O4 - HKLM\..\Run: [KBDriver] C:\Program Files\Keyboard Driver\OEMDriver.exe
      O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
      O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime Alternative\qttask.exe" -atboottime
      O4 - HKLM\..\Run: [snp2uvc] C:\WINDOWS\vsnp2uvc.exe
      O4 - HKLM\..\Run: [tsnp2uvc] C:\WINDOWS\tsnp2uvc.exe
      O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
      O4 - HKLM\..\Run: [saipmtqtugsk] C:\WINDOWS\System32\regsvr32.exe /s "C:\WINDOWS\system32\eurrovlqvule.dll"
      O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
      O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
      O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
      O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
      O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
      O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
      O4 - Startup: ppcbooster.lnk = C:\Program Files\ppcbooster\ppcbooster.exe
      O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
      O4 - Global Startup: NETGEAR WPN311 Smart Wizard.lnk = C:\Program Files\NETGEAR\WPN311\wlancfg5.exe
      O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
      O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
      O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/FacebookPhotoUploader5.cab
      O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.mail.live.com/mail/w1/resources/MSNPUpld.cab
      O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
      O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
      O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
      O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing)
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
      O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
      O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
      O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
      O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
      O23 - Service: PTK License-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\licenseservice.exe (file missing)
      O23 - Service: PTK Live Update-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\updateservice.exe (file missing)
      O23 - Service: PTK Scanner-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\ScannerService.exe (file missing)
      O23 - Service: PTK SharedAccess-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\configservice.exe (file missing)
    2. @ptiloup26bonsoir crapoulou bonne nouvelle!!! j'ai l'impression que mon ordi est gueri!! j'ai plus de pubs.... donc je tenais a te remercier pour tout ce que tu as fait c'est vraiment genial!!!
  2. Modérateur
    Télécharge Malwarebytes' Anti-Malware:
    http://www.malwarebytes.org/mbam/program/mbam-setup.exe

    - Sur la page cliques sur Télécharger Malwarebyte's Anti-Malware
    - Enregistres le sur le bureau
    - Double cliques sur le fichier téléchargé pour lancer le processus d'installation.
    - Dans l'onglet "mise à jour", cliques sur le bouton Recherche de mise à jour
    - Si le pare-feu demande l'autorisation de se connecter pour malwarebytes, acceptes
    - Une fois la mise à jour terminée, fermes Malwarebytes
    - Redémarres en mode sans échec pour savoir comment au cas ou tu ne saurais pas regarde plus bas
    - Une fois en mode sans échec tu double-cliques sur l'icône de malwarebytes
    - Une fois ouvert rend-toi dans l'onglet, Recherche
    - Sélectionnes Exécuter un examen complet
    - Cliques sur Rechercher
    - Le scan démarre.
    - A la fin de l'analyse, un message s'affiche : L'examen s'est terminé normalement. Cliquez sur 'Afficher les résultats' pour afficher tous les objets trouvés.
    - Cliques sur Ok pour poursuivre.
    - Si des malwares ont été détectés, cliques sur Afficher les résultats
    - Sélectionnes tout (ou laisses cochés) et cliques sur Supprimer la sélection Malwarebytes va détruire les fichiers et clés de registre et en mettre une copie dans la quarantaine.
    - Malwarebytes va ouvrir le bloc-notes et y copier le rapport d'analyse.
    - Redémarre le PC
    - Une fois redémarré en mode normal double-cliques sur malwarebytes
    - Rends toi dans l'onglet rapport/log
    - Tu cliques dessus pour l'afficher une fois affiché
    - Tu cliques sur édition en haut du boc notes, et puis sur sélectionner tous
    - Tu recliques sur édition et puis sur copier et tu reviens sur le forum et dans ta réponse
    - Tu cliques droit dans le cadre de la réponse et coller

    Si tu as besoin d'aide regarde ce tutorial :
    https://www.malekal.com/tutoriel-malwarebyte-anti-malware/

    (attention : pas de connexion possible en mode sans échec, donc copies ou imprimes bien la manipe pour éviter les erreurs ...)
    Pour redémarrer en mode sans échec :

    Cliques sur Démarrer
    . Cliques sur Arrêter
    . Sélectionnes Redémarrer et au redémarrage
    . Appuis sur la touche F8 sans discontinuer "1 appuis seconde" dès qu'un écran de texte apparaît puis disparaît
    . Utilise les touches de direction pour sélectionner mode sans échec
    . Puis appuis sur ENTRÉE
    . Il faudra choisir ta session habituelle, pas le compte "Administrateur" ou une autre
    une fois démarré ne t'inquiète pas si les couleurs et les icônes ne sont pas comme d'habitude.

    1. Malwarebytes' Anti-Malware 1.29
      Version de la base de données: 1289
      Windows 5.1.2600 Service Pack 2

      19/10/2008 19:30:47
      mbam-log-2008-10-19 (19-30-47).txt

      Type de recherche: Examen complet (C:\|)
      Eléments examinés: 80131
      Temps écoulé: 2 hour(s), 18 minute(s), 26 second(s)

      Processus mémoire infecté(s): 0
      Module(s) mémoire infecté(s): 0
      Clé(s) du Registre infectée(s): 3
      Valeur(s) du Registre infectée(s): 1
      Elément(s) de données du Registre infecté(s): 1
      Dossier(s) infecté(s): 4
      Fichier(s) infecté(s): 8

      Processus mémoire infecté(s):
      (Aucun élément nuisible détecté)

      Module(s) mémoire infecté(s):
      (Aucun élément nuisible détecté)

      Clé(s) du Registre infectée(s):
      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} (Adware.Agent) -> Quarantined and deleted successfully.
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\icheck (Trojan.Agent) -> Quarantined and deleted successfully.
      HKEY_CURRENT_USER\SOFTWARE\GetModule (Adware.Agent) -> Quarantined and deleted successfully.

      Valeur(s) du Registre infectée(s):
      HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\getmodule24 (Trojan.Agent) -> Quarantined and deleted successfully.

      Elément(s) de données du Registre infecté(s):
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search\Local Page (Hijack.Search) -> Bad: (http://www.iesearch.com/) Good: (https://www.google.com/?gws_rd=ssl -> Quarantined and deleted successfully.

      Dossier(s) infecté(s):
      C:\Program Files\VnrBlock (Trojan.Agent) -> Quarantined and deleted successfully.
      C:\Program Files\iCheck (Trojan.Agent) -> Quarantined and deleted successfully.
      C:\Program Files\GetModule (Trojan.Agent) -> Quarantined and deleted successfully.
      C:\Program Files\BitDownload (Trojan.Lop) -> Quarantined and deleted successfully.

      Fichier(s) infecté(s):
      C:\Program Files\GetModule\GetModule23.exe (Adware.ISM) -> Quarantined and deleted successfully.
      C:\Program Files\GetModule\squaraksupdate.exe (Adware.ISM) -> Quarantined and deleted successfully.
      C:\Program Files\ppcbooster\ppcbooster.exe (Trojan.Agent) -> Quarantined and deleted successfully.
      C:\Program Files\iCheck\Uninstall.exe (Trojan.Agent) -> Quarantined and deleted successfully.
      C:\Program Files\GetModule\dicik.gz (Trojan.Agent) -> Quarantined and deleted successfully.
      C:\Program Files\GetModule\GetModule24.exe (Trojan.Agent) -> Quarantined and deleted successfully.
      C:\Program Files\GetModule\kwdik.gz (Trojan.Agent) -> Quarantined and deleted successfully.
      C:\Program Files\BitDownload\BitDownload Setup Components (Trojan.Lop) -> Quarantined and deleted successfully.
  3. Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 15:05:28, on 18/10/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16735)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\PROGRA~1\MOUSED~1\mousedriver.exe
    C:\Program Files\Saitek\Software\SaiMfd.exe
    C:\Program Files\Saitek\Software\ProfilerU.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\Program Files\Keyboard Driver\OEMDriver.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\WINDOWS\vsnp2uvc.exe
    C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
    C:\WINDOWS\System32\regsvr32.exe
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\NETGEAR\WPN311\wlancfg5.exe
    C:\Program Files\ppcbooster\ppcbooster.exe
    C:\WINDOWS\system32\acs.exe
    C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\system32\HPZipm12.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\WgaTray.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Windows Live\Messenger\usnsvc.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    R3 - URLSearchHook: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\eoRezo\EoAdv\EoRezoBHO.dll (file missing)
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
    O2 - BHO: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
    O3 - Toolbar: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
    O4 - HKLM\..\Run: [SANSUNMouse ] C:\PROGRA~1\MOUSED~1\mousedriver.exe
    O4 - HKLM\..\Run: [SaiMfd] C:\Program Files\Saitek\Software\SaiMfd.exe
    O4 - HKLM\..\Run: [Profiler] C:\Program Files\Saitek\Software\ProfilerU.exe
    O4 - HKLM\..\Run: [PowerVRUninstall] C:\WINDOWS\pmxreg.exe -setupUninstall
    O4 - HKLM\..\Run: [PowerVRGameSettings] C:\WINDOWS\pmxreg.exe -regfile C:\WINDOWS\gamestng.reg
    O4 - HKLM\..\Run: [PMXInit] C:\WINDOWS\system32\pmxinit.exe
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
    O4 - HKLM\..\Run: [KBDriver] C:\Program Files\Keyboard Driver\OEMDriver.exe
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime Alternative\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [snp2uvc] C:\WINDOWS\vsnp2uvc.exe
    O4 - HKLM\..\Run: [tsnp2uvc] C:\WINDOWS\tsnp2uvc.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
    O4 - HKLM\..\Run: [saipmtqtugsk] C:\WINDOWS\System32\regsvr32.exe /s "C:\WINDOWS\system32\eurrovlqvule.dll"
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    O4 - HKCU\..\Run: [GetModule24] C:\Program Files\GetModule\GetModule24.exe
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Startup: ppcbooster.lnk = C:\Program Files\ppcbooster\ppcbooster.exe
    O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: NETGEAR WPN311 Smart Wizard.lnk = C:\Program Files\NETGEAR\WPN311\wlancfg5.exe
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/FacebookPhotoUploader5.cab
    O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.mail.live.com/mail/w1/resources/MSNPUpld.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
    O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
    O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing)
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
    O23 - Service: PTK License-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\licenseservice.exe (file missing)
    O23 - Service: PTK Live Update-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\updateservice.exe (file missing)
    O23 - Service: PTK Scanner-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\ScannerService.exe (file missing)
    O23 - Service: PTK SharedAccess-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\configservice.exe (file missing)
    1. Contributeur sécurité
      Slt

      Rapport O Moveit sorti des oubliettes :

      rapport otmoveit: 
      
      
      < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\=mininova[1].o­rg= Nero.v7.0.5.4.FR+ KEYGEN.complet.and.PlugIn Pack.v7.rar.torrent > 
      File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\=mininova[1].o­rg= Nero.v7.0.5.4.FR+ KEYGEN.complet.and.PlugIn Pack.v7.rar.torrent not found. 
      < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Football_Manag­er_2008_(pc)___Crack_-_­[-_SeedPeer.C­om_-][1].torrent > 
      File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Football_Manag­er_2008_(pc)___Crack_-_­[-_SeedPeer.C­om_-][1].torrent not found. 
      < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Nero_8_1_1_4_F­rench___New_Keygen_Zip_­-_(((-_SeedPe­er.Com_-)))[1].torrent > 
      File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Nero_8_1_1_4_F­rench___New_Keygen_Zip_­-_(((-_SeedPe­er.Com_-)))[1].torrent not found. 
      < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Windows Media Player 11 Final + CRACK it 100 WOrking [zeem] +-mininova[1].org-+.torrent > 
      File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Windows Media Player 11 Final + CRACK it 100 WOrking [zeem] +-mininova[1].org-+.torrent not found. 
      < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\^mininova[1].o­rg^' Avast! Antivirus Professional v4.7.986 with KeyGen & Skins.torrent > 
      File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\^mininova[1].o­rg^' Avast! Antivirus Professional v4.7.986 with KeyGen & Skins.torrent not found. 
      < C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem] > 
      File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem] not found. 
      < C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\personnea_mp.avi > 
      File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\personnea_mp.avi not found. 
      < C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Torrent downloaded from Demonoid.com.txt > 
      File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Torrent downloaded from Demonoid.com.txt not found. 
      < C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem].rar > 
      File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem].rar not found. 
      
      OTMoveIt2 by OldTimer - Version 1.0.4.3 log created on 10182008_144001
      1. Modérateur
        ok, je pense qu'ils ont été supprimés déjà.
        Poste un rapport hijackthis stp.
        1. je t'ai poste un rapport deja paragraphe 41...
      2. Salut
        Il est là.

        rapport otmoveit:

        < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\=mininova[1].o­rg= Nero.v7.0.5.4.FR+ KEYGEN.complet.and.PlugIn Pack.v7.rar.torrent >
        File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\=mininova[1].o­rg= Nero.v7.0.5.4.FR+ KEYGEN.complet.and.PlugIn Pack.v7.rar.torrent not found.
        < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Football_Manag­er_2008_(pc)___Crack_-_­[-_SeedPeer.C­om_-][1].torrent >
        File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Football_Manag­er_2008_(pc)___Crack_-_­[-_SeedPeer.C­om_-][1].torrent not found.
        < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Nero_8_1_1_4_F­rench___New_Keygen_Zip_­-_(((-_SeedPe­er.Com_-)))[1].torrent >
        File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Nero_8_1_1_4_F­rench___New_Keygen_Zip_­-_(((-_SeedPe­er.Com_-)))[1].torrent not found.
        < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Windows Media Player 11 Final + CRACK it 100 WOrking [zeem] +-mininova[1].org-+.torrent >
        File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Windows Media Player 11 Final + CRACK it 100 WOrking [zeem] +-mininova[1].org-+.torrent not found.
        < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\^mininova[1].o­rg^' Avast! Antivirus Professional v4.7.986 with KeyGen & Skins.torrent >
        File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\^mininova[1].o­rg^' Avast! Antivirus Professional v4.7.986 with KeyGen & Skins.torrent not found.
        < C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem] >
        File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem] not found.
        < C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\personnea_mp.avi >
        File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\personnea_mp.avi not found.
        < C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Torrent downloaded from Demonoid.com.txt >
        File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Torrent downloaded from Demonoid.com.txt not found.
        < C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem].rar >
        File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem].rar not found.

        OTMoveIt2 by OldTimer - Version 1.0.4.3 log created on 10182008_144001

        Ciao !
        1. Modérateur
          Il faut supprimer tous tes cracks car ils sont susceptilbles de te donner des infections.
          Télécharge OTMoveIt http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe (de Old_Timer) sur ton Bureau.
          double-clique sur OTMoveIt.exe pour le lancer.
          Assure toi que la case Unregister Dll's and Ocx's soit bien cochée
          copie la liste qui se trouve ici :
          http://www.commentcamarche.net/forum/affich 8888245 publicites intempestives qui persistent?page=2#38
          Ensuite, poste un nouveau rapport hijackthis stp.
          1. rapport hijackthis:

            Logfile of Trend Micro HijackThis v2.0.2
            Scan saved at 14:43:05, on 18/10/2008
            Platform: Windows XP SP2 (WinNT 5.01.2600)
            MSIE: Internet Explorer v7.00 (7.00.6000.16735)
            Boot mode: Normal

            Running processes:
            C:\WINDOWS\System32\smss.exe
            C:\WINDOWS\system32\winlogon.exe
            C:\WINDOWS\system32\services.exe
            C:\WINDOWS\system32\lsass.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\System32\svchost.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\Explorer.EXE
            C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
            C:\Program Files\Alwil Software\Avast4\ashServ.exe
            C:\WINDOWS\system32\spoolsv.exe
            C:\PROGRA~1\MOUSED~1\mousedriver.exe
            C:\Program Files\Saitek\Software\SaiMfd.exe
            C:\Program Files\Saitek\Software\ProfilerU.exe
            C:\WINDOWS\system32\RUNDLL32.EXE
            C:\Program Files\Keyboard Driver\OEMDriver.exe
            C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
            C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
            C:\WINDOWS\vsnp2uvc.exe
            C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
            C:\WINDOWS\System32\regsvr32.exe
            C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
            C:\Program Files\Internet Explorer\IEXPLORE.EXE
            C:\Program Files\NETGEAR\WPN311\wlancfg5.exe
            C:\Program Files\ppcbooster\ppcbooster.exe
            C:\WINDOWS\system32\acs.exe
            C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
            C:\Program Files\Bonjour\mDNSResponder.exe
            C:\WINDOWS\system32\ctfmon.exe
            C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
            C:\WINDOWS\system32\nvsvc32.exe
            C:\WINDOWS\system32\HPZipm12.exe
            C:\WINDOWS\system32\svchost.exe
            C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
            C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
            C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
            C:\WINDOWS\System32\svchost.exe
            C:\WINDOWS\system32\WgaTray.exe
            C:\WINDOWS\system32\wuauclt.exe
            C:\Program Files\Windows Live\Messenger\msnmsgr.exe
            C:\Program Files\Windows Live\Messenger\usnsvc.exe
            C:\Program Files\Internet Explorer\iexplore.exe
            C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
            R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
            R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
            R3 - URLSearchHook: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
            O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
            O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\eoRezo\EoAdv\EoRezoBHO.dll (file missing)
            O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
            O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
            O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
            O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
            O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
            O2 - BHO: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
            O3 - Toolbar: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
            O4 - HKLM\..\Run: [SANSUNMouse ] C:\PROGRA~1\MOUSED~1\mousedriver.exe
            O4 - HKLM\..\Run: [SaiMfd] C:\Program Files\Saitek\Software\SaiMfd.exe
            O4 - HKLM\..\Run: [Profiler] C:\Program Files\Saitek\Software\ProfilerU.exe
            O4 - HKLM\..\Run: [PowerVRUninstall] C:\WINDOWS\pmxreg.exe -setupUninstall
            O4 - HKLM\..\Run: [PowerVRGameSettings] C:\WINDOWS\pmxreg.exe -regfile C:\WINDOWS\gamestng.reg
            O4 - HKLM\..\Run: [PMXInit] C:\WINDOWS\system32\pmxinit.exe
            O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
            O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
            O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
            O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
            O4 - HKLM\..\Run: [KBDriver] C:\Program Files\Keyboard Driver\OEMDriver.exe
            O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
            O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
            O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
            O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime Alternative\qttask.exe" -atboottime
            O4 - HKLM\..\Run: [snp2uvc] C:\WINDOWS\vsnp2uvc.exe
            O4 - HKLM\..\Run: [tsnp2uvc] C:\WINDOWS\tsnp2uvc.exe
            O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
            O4 - HKLM\..\Run: [saipmtqtugsk] C:\WINDOWS\System32\regsvr32.exe /s "C:\WINDOWS\system32\eurrovlqvule.dll"
            O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
            O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
            O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
            O4 - HKCU\..\Run: [GetModule24] C:\Program Files\GetModule\GetModule24.exe
            O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
            O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
            O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
            O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
            O4 - Startup: ppcbooster.lnk = C:\Program Files\ppcbooster\ppcbooster.exe
            O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
            O4 - Global Startup: NETGEAR WPN311 Smart Wizard.lnk = C:\Program Files\NETGEAR\WPN311\wlancfg5.exe
            O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
            O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
            O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
            O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
            O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
            O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/FacebookPhotoUploader5.cab
            O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
            O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.mail.live.com/mail/w1/resources/MSNPUpld.cab
            O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
            O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
            O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
            O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing)
            O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
            O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
            O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
            O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
            O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
            O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
            O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
            O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
            O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
            O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
            O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
            O23 - Service: PTK License-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\licenseservice.exe (file missing)
            O23 - Service: PTK Live Update-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\updateservice.exe (file missing)
            O23 - Service: PTK Scanner-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\ScannerService.exe (file missing)
            O23 - Service: PTK SharedAccess-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\configservice.exe (file missing)
          2. @ptiloup26pour info je t'ai poste un rapport otmoveit qui a ete bloque...
        2. Salut
          Voilà le message de crapoulou

          grrr mon message n'est pas passé :
          Dans otmoveit, copie colle ceci :

          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\=mininova[1].o­rg= Nero.v7.0.5.4.FR+ KEYGEN.complet.and.PlugIn Pack.v7.rar.torrent
          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Football_Manag­er_2008_(pc)___Crack_-_[-_SeedPeer.C­om_-][1].torrent
          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Nero_8_1_1_4_F­rench___New_Keygen_Zip_-_(((-_SeedPe­er.Com_-)))[1].torrent
          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Windows Media Player 11 Final + CRACK it 100 WOrking [zeem] +-mininova[1].org-+.torrent
          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\^mininova[1].o­rg^' Avast! Antivirus Professional v4.7.986 with KeyGen & Skins.torrent
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\personnea_mp.avi
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Torrent downloaded from Demonoid.com.txt
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem].rar
          --
          T'as un problème ? Passe sur CCM!
          Il n'y a pas de problème sans solution.

          Ciao !
          1. qu'est ce que tu appelles otmoveit? pour info j'ai encore pas mal de pub sur l'ordi..... merci
        3. Salut
          Le voilà...

          -----------\\ ToolBar S&D 1.2.2 XP/Vista

          Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
          X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) 4 CPU 2.40GHz )
          BIOS : Award Modular BIOS v6.0
          USER : Remy ( Administrator )
          BOOT : Normal boot
          Antivirus : avast! antivirus 4.8.1229 [VPS 081014-0] 4.8.1229 (Activated)
          C:\ (Local Disk) - NTFS - Total : 74 Go Free : 37 Go
          D:\ (CD or DVD) - CDFS - Total : 0 Go Free : 0 Go
          E:\ (CD or DVD)
          G:\ (CD or DVD)

          "C:\ToolBar SD" ( MAJ : 04-10-2008|21:00 )
          Option : [1] ( 15/10/2008|16:30 )

          -----------\\ Recherche de Fichiers / Dossiers ...

          -----------\\ [..\Internet Explorer\Main]

          [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
          "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
          "Start Page"="https://www.google.fr/?gws_rd=ssl"
          "SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
          "Start Page Restore"="https://www.google.fr/?gws_rd=ssl"

          [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
          "Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
          "Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
          "Start Page"="https://www.msn.com/fr-fr/"

          --------------------\\ Recherche d'autres infections

          --------------------\\ Cracks & Keygens ..

          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\=mininova[1].org= Nero.v7.0.5.4.FR+ KEYGEN.complet.and.PlugIn Pack.v7.rar.torrent
          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Football_Manager_2008_(pc)___Crack_-_[-_SeedPeer.Com_-][1].torrent
          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Nero_8_1_1_4_French___New_Keygen_Zip_-_(((-_SeedPeer.Com_-)))[1].torrent
          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Windows Media Player 11 Final + CRACK it 100 WOrking [zeem] +-mininova[1].org-+.torrent
          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\^mininova[1].org^' Avast! Antivirus Professional v4.7.986 with KeyGen & Skins.torrent
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\personnea_mp.avi
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Torrent downloaded from Demonoid.com.txt
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem].rar

          1 - "C:\ToolBar SD\TB_1.txt" - 14/10/2008|21:04 - Option : [1]
          2 - "C:\ToolBar SD\TB_2.txt" - 14/10/2008|22:45 - Option : [2]
          3 - "C:\ToolBar SD\TB_3.txt" - 15/10/2008|16:33 - Option : [1]

          -----------\\ Fin du rapport a 16:33:18,65

          Bonne continuation ;-)
          1. ok c'est fini? ca a marche? en fait je trouve que mon ordi va plus vite et qu'il y a bcp moins de pub. avant yen avait ttes les minutes et maintenant yen a une ts les quart d'heure..... lol
            quoi qu'il en soit je te remercie de ta patience.... a bientot
        4. Modérateur
          La suppression des cracks (nécessaire à la désinfection totale de ton PC) n'a pas totalement fonctionné. (enfin, pas sûr, il y en a tellement).
          Peux tu faire de nouveau l'option 1 de Toolbar et poster le rapport.
          Merci.
          1. excuse moi mais hier jm'endormais sur mon pc!!! tu es connecte aujourd'hui?
          2. @ptiloup26je t'ai poste mon rapport de l'analyse de tooblar il a ete bloque a nouveau....
        5. Voilà le message, c'est la misère cette désinfection, il y a rien qui passe :-(

          en fait j'ai reessaye et il a marche.... bizzare c'est peut etre que j'ai desactiver le bloqueur de fenetres intenpestives...

          < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\=mininova[1].o­rg= Nero.v7.0.5.4.FR+ KEYGEN.complet.and.PlugIn Pack.v7.rar.torrent >
          File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\=mininova[1].o­rg= Nero.v7.0.5.4.FR+ KEYGEN.complet.and.PlugIn Pack.v7.rar.torrent not found.
          < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Football_Manag­er_2008_(pc)___Crack_-_­[-_SeedPeer.C­om_-][1].torrent >
          File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Football_Manag­er_2008_(pc)___Crack_-_­[-_SeedPeer.C­om_-][1].torrent not found.
          < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Nero_8_1_1_4_F­rench___New_Keygen_Zip_­-_(((-_SeedPe­er.Com_-)))[1].torrent >
          File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Nero_8_1_1_4_F­rench___New_Keygen_Zip_­-_(((-_SeedPe­er.Com_-)))[1].torrent not found.
          < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Windows Media Player 11 Final + CRACK it 100 WOrking [zeem] +-mininova[1].org-+.torrent >
          File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Windows Media Player 11 Final + CRACK it 100 WOrking [zeem] +-mininova[1].org-+.torrent not found.
          < C:\DOCUME~1\Remy\Application Data\Azureus\torrents\^mininova[1].o­rg^' Avast! Antivirus Professional v4.7.986 with KeyGen & Skins.torrent >
          File/Folder C:\DOCUME~1\Remy\Application Data\Azureus\torrents\^mininova[1].o­rg^' Avast! Antivirus Professional v4.7.986 with KeyGen & Skins.torrent not found.
          C:\DOCUME~1\Remy\Mes documents\LimeWire\Incomplete\TWMKPMM54UL3FS4MRXO6EUQEMV73GWUO\FIFA.09-RELOADED\crack FIFA09 moved successfully.
          File/Folder C:\DOCUME~1\Remy\Mes documents\LimeWire\Incomplete\TWMKPMM54UL3FS4MRXO6EUQEMV73GWUO\FIFA.09-RELOADED\crack FIFA09\FIFA09.exe not found.
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen\Nero 8.1.1.4 French + New Keygen moved successfully.
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen moved successfully.
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen.zip moved successfully.
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero.v7.0.5.4.FR+ KEYGEN.complet.and.PlugIn Pack.v7.rar moved successfully.
          < C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem] >
          File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem] not found.
          File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen\Nero 8.1.1.4 French + New Keygen not found.
          File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen\Nero 8.1.1.4 French + New Keygen\Ahead Nero v8.x.x.x Ultra Edition Keymaker NEW.exe not found.
          File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen\Nero 8.1.1.4 French + New Keygen\Nero 8.1.1.4 Fran‡ais.exe not found.
          < C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\personnea_mp.avi >
          File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\personnea_mp.avi not found.
          < C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Torrent downloaded from Demonoid.com.txt >
          File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Torrent downloaded from Demonoid.com.txt not found.
          < C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem].rar >
          File/Folder C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem].rar not found.

          OTMoveIt2 by OldTimer - Version 1.0.4.3 log created on 10142008_234927
          1. merci sacabouffe!!!!!!
        6. Modérateur
          euh, bizarre moi ça marche.
          Réessaye quand même ...
          Je t'en donne quand même un autre :
          http://download.bleepingcomputer.com/oldtimer/OTMoveIt.exe
          1. t'es toujours la? abandonne moi pas si pres du but lol!!
        7. Le message de crapoulou passe pas non plus.

          Télécharge OTMoveIt http://download.bleepingcomputer.com/oldtimer/OTMoveIt2.exe (de Old_Timer) sur ton Bureau.
          double-clique sur OTMoveIt.exe pour le lancer.
          Assure toi que la case Unregister Dll's and Ocx's soit bien cochée
          copie la liste qui se trouve en gras ci-dessous,
          et colle-la dans le cadre de gauche de OTMoveIt :Paste List of Files/Folders to be moved.

          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\=mininova[1].o­rg= Nero.v7.0.5.4.FR+ KEYGEN.complet.and.PlugIn Pack.v7.rar.torrent
          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Football_Manag­er_2008_(pc)___Crack_-_[-_SeedPeer.C­om_-][1].torrent
          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Nero_8_1_1_4_F­rench___New_Keygen_Zip_-_(((-_SeedPe­er.Com_-)))[1].torrent
          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Windows Media Player 11 Final + CRACK it 100 WOrking [zeem] +-mininova[1].org-+.torrent
          C:\DOCUME~1\Remy\Application Data\Azureus\torrents\^mininova[1].o­rg^' Avast! Antivirus Professional v4.7.986 with KeyGen & Skins.torrent
          C:\DOCUME~1\Remy\Mes documents\LimeWire\Incomplete\TWMKPMM54UL3FS4MRXO6EUQEMV73GWUO\FIFA.09-RELOADED\crack FIFA09
          C:\DOCUME~1\Remy\Mes documents\LimeWire\Incomplete\TWMKPMM54UL3FS4MRXO6EUQEMV73GWUO\FIFA.09-RELOADED\crack FIFA09\FIFA09.exe
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen.zip
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero.v7.0.5.4.FR+ KEYGEN.complet.and.PlugIn Pack.v7.rar
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen\Nero 8.1.1.4 French + New Keygen
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen\Nero 8.1.1.4 French + New Keygen\Ahead Nero v8.x.x.x Ultra Edition Keymaker NEW.exe
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen\Nero 8.1.1.4 French + New Keygen\Nero 8.1.1.4 Fran‡ais.exe
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\personnea_mp.avi
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Torrent downloaded from Demonoid.com.txt
          C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem].rar


          clique sur MoveIt! pour lancer la suppression.
          le résultat apparaitra dans le cadre "Results".
          clique sur Exit pour fermer.
          poste le rapport situé dans C:\_OTMoveIt\MovedFiles.

          --
          T'as un problème ? Passe sur CCM!
          Il n'y a pas de problème sans solution.

          Bonne continuation ;-)
          1. ton lien ne marche pas: page web introuvable... je n'ai dc pas pu telecharger le logiciel mais j'ai copier le texte en gras... as tu un autre lien?
          2. Modérateur
            Merci encore :
            C'est dans la liste des cracks que ça doit bloquer les messages !
          3. @crapoulou????? as tu un autre lien pour faire l'etape precedente?
          4. mon message a ete a nouveau bloque!!
        8. Modérateur
          Poste un nouveau rapport hijackthis stp.
          1. Logfile of Trend Micro HijackThis v2.0.2
            Scan saved at 23:20:16, on 14/10/2008
            Platform: Windows XP SP2 (WinNT 5.01.2600)
            MSIE: Internet Explorer v7.00 (7.00.6000.16705)
            Boot mode: Normal

            Running processes:
            C:\WINDOWS\System32\smss.exe
            C:\WINDOWS\system32\csrss.exe
            C:\WINDOWS\system32\winlogon.exe
            C:\WINDOWS\system32\services.exe
            C:\WINDOWS\system32\lsass.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\System32\svchost.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\Explorer.EXE
            C:\WINDOWS\system32\svchost.exe
            C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
            C:\Program Files\Alwil Software\Avast4\ashServ.exe
            C:\WINDOWS\system32\spoolsv.exe
            C:\WINDOWS\system32\acs.exe
            C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
            C:\Program Files\Bonjour\mDNSResponder.exe
            C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
            C:\WINDOWS\system32\HPZipm12.exe
            C:\Program Files\Spyware Doctor\pctsAuxs.exe
            C:\Program Files\Spyware Doctor\pctsSvc.exe
            C:\Program Files\Spyware Doctor\pctsTray.exe
            C:\Program Files\SPAMfighter\sfus.exe
            C:\WINDOWS\system32\svchost.exe
            C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
            C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
            C:\WINDOWS\System32\alg.exe
            C:\WINDOWS\System32\svchost.exe
            C:\WINDOWS\system32\WgaTray.exe
            C:\WINDOWS\NOTEPAD.EXE
            C:\PROGRA~1\MOUSED~1\mousedriver.exe
            C:\Program Files\Saitek\Software\SaiMfd.exe
            C:\Program Files\Saitek\Software\ProfilerU.exe
            C:\WINDOWS\system32\RUNDLL32.EXE
            C:\Program Files\Keyboard Driver\OEMDriver.exe
            C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
            C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
            C:\WINDOWS\vsnp2uvc.exe
            C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
            C:\Program Files\SPAMfighter\SFAgent.exe
            C:\WINDOWS\System32\regsvr32.exe
            C:\WINDOWS\system32\ctfmon.exe
            C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
            C:\Program Files\Windows Live\Messenger\msnmsgr.exe
            C:\Program Files\NETGEAR\WPN311\wlancfg5.exe
            C:\Program Files\Internet Explorer\IEXPLORE.EXE
            C:\Program Files\ppcbooster\ppcbooster.exe
            C:\WINDOWS\system32\msiexec.exe
            C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
            C:\WINDOWS\system32\wuauclt.exe
            C:\Program Files\Windows Live\Messenger\usnsvc.exe
            C:\Program Files\Internet Explorer\iexplore.exe
            C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
            C:\WINDOWS\system32\wbem\wmiprvse.exe

            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
            R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
            R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
            R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
            R3 - URLSearchHook: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
            O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
            O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\eoRezo\EoAdv\EoRezoBHO.dll (file missing)
            O2 - BHO: bannerstyles15 browser enhancer - {6C3CBAB3-B3B9-C24B-AE18-D6B7DE18F772} - C:\WINDOWS\system32\eurrovlqvule.dll
            O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
            O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
            O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
            O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
            O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
            O2 - BHO: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
            O3 - Toolbar: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
            O4 - HKLM\..\Run: [SANSUNMouse ] C:\PROGRA~1\MOUSED~1\mousedriver.exe
            O4 - HKLM\..\Run: [SaiMfd] C:\Program Files\Saitek\Software\SaiMfd.exe
            O4 - HKLM\..\Run: [Profiler] C:\Program Files\Saitek\Software\ProfilerU.exe
            O4 - HKLM\..\Run: [PowerVRUninstall] C:\WINDOWS\pmxreg.exe -setupUninstall
            O4 - HKLM\..\Run: [PowerVRGameSettings] C:\WINDOWS\pmxreg.exe -regfile C:\WINDOWS\gamestng.reg
            O4 - HKLM\..\Run: [PMXInit] C:\WINDOWS\system32\pmxinit.exe
            O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
            O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
            O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
            O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
            O4 - HKLM\..\Run: [KBDriver] C:\Program Files\Keyboard Driver\OEMDriver.exe
            O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
            O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
            O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
            O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime Alternative\qttask.exe" -atboottime
            O4 - HKLM\..\Run: [snp2uvc] C:\WINDOWS\vsnp2uvc.exe
            O4 - HKLM\..\Run: [tsnp2uvc] C:\WINDOWS\tsnp2uvc.exe
            O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
            O4 - HKLM\..\Run: [SPAMfighter Agent] "C:\Program Files\SPAMfighter\SFAgent.exe" update delay 60
            O4 - HKLM\..\Run: [ISTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
            O4 - HKLM\..\Run: [saipmtqtugsk] C:\WINDOWS\System32\regsvr32.exe /s "C:\WINDOWS\system32\eurrovlqvule.dll"
            O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
            O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
            O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
            O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
            O4 - HKCU\..\Run: [GetModule23] "C:\Program Files\GetModule\GetModule23.exe"
            O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
            O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
            O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
            O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
            O4 - Startup: ppcbooster.lnk = C:\Program Files\ppcbooster\ppcbooster.exe
            O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
            O4 - Global Startup: NETGEAR WPN311 Smart Wizard.lnk = C:\Program Files\NETGEAR\WPN311\wlancfg5.exe
            O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
            O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
            O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
            O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
            O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
            O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/FacebookPhotoUploader5.cab
            O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
            O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.mail.live.com/mail/w1/resources/MSNPUpld.cab
            O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
            O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
            O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
            O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing)
            O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
            O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
            O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
            O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
            O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
            O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
            O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
            O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
            O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
            O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
            O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
            O23 - Service: PTK License-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\licenseservice.exe (file missing)
            O23 - Service: PTK Live Update-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\updateservice.exe (file missing)
            O23 - Service: PTK Scanner-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\ScannerService.exe (file missing)
            O23 - Service: PTK SharedAccess-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\configservice.exe (file missing)
            O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
            O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
            O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe
          2. @ptiloup26tt va bien??? ton silence me fait peur lol!!
        9. Modérateur
          Nettoyage :

          Relance Navilog en faisant un clic-droit sur le raccourci Navilog présent sur ton bureau et en choisissant "Exécuter en tant qu'administrateur".
          Au menu principal, choisis 2 et valide.

          Le fix va t'informer qu'il va alors redémarrer ton PC
          Ferme toutes les fenêtres ouvertes et enregistre tes documents personnels ouverts
          Appuie sur une touche comme demandé.
          (si ton Pc ne redémarre pas automatiquement, fais le toi même)
          Au redémarrage de ton PC, choisis ta session habituelle.

          Patiente jusqu'au message :
          *** Nettoyage Termine le ..... ***

          Le bloc note va s'ouvrir, copie/colle ici le rapport, comme tu l’as fait pour l’autre.
          1. Clean Navipromo version 3.6.6 commencé le 14/10/2008 à 23:07:45,89

            Outil exécuté depuis C:\Program Files\navilog1
            Session actuelle : "Remy"

            Mise à jour le 29.09.2008 à 17h30 par IL-MAFIOSO

            Microsoft Windows XP [version 5.1.2600]
            Internet Explorer : 7.0.5730.13
            Système de fichiers : NTFS

            Mode suppression automatique
            avec prise en charge résultats Catchme et GNS

            Nettoyage exécuté au redémarrage de l'ordinateur

            *** fsbl1.txt non trouvé ***
            (Assurez-vous que Catchme n'avait rien trouvé lors de la recherche)

            *** Suppression avec sauvegardes résultats GenericNaviSearch ***

            * Suppression dans "C:\WINDOWS\System32" *

            * Suppression dans "C:\Documents and Settings\Remy\locals~1\applic~1" *

            *** Suppression dossiers dans "C:\WINDOWS" ***

            *** Suppression dossiers dans "C:\Program Files" ***

            *** Suppression dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***

            *** Suppression dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***

            *** Suppression dossiers dans "c:\docume~1\alluse~1\applic~1" ***

            *** Suppression dossiers dans "C:\Documents and Settings\Remy\applic~1" ***

            *** Suppression dossiers dans "C:\Documents and Settings\Remy\locals~1\applic~1" ***

            *** Suppression dossiers dans "C:\Documents and Settings\Remy\menudm~1\progra~1" ***

            *** Suppression fichiers ***

            *** Suppression fichiers temporaires ***

            Nettoyage contenu C:\WINDOWS\Temp effectué !
            Nettoyage contenu C:\Documents and Settings\Remy\locals~1\Temp effectué !

            *** Traitement Recherche complémentaire ***
            (Recherche fichiers spécifiques)

            1)Suppression avec sauvegardes nouveaux fichiers Instant Access :

            2)Recherche, création sauvegardes et suppression Heuristique :

            * Dans "C:\WINDOWS\system32" *

            * Dans "C:\Documents and Settings\Remy\locals~1\applic~1" *

            uqwaoki.exe trouvé !
            Copie uqwaoki.exe réalisée avec succès !
            uqwaoki.exe supprimé !

            uqwaoki.dat trouvé !
            Copie uqwaoki.dat réalisée avec succès !
            uqwaoki.dat supprimé !

            uqwaoki_nav.dat trouvé !
            Copie uqwaoki_nav.dat réalisée avec succès !
            uqwaoki_nav.dat supprimé !

            uqwaoki_navps.dat trouvé !
            Copie uqwaoki_navps.dat réalisée avec succès !
            uqwaoki_navps.dat supprimé !

            C:\WINDOWS\prefetch\uqwaoki*.pf trouvé !
            Copie C:\WINDOWS\prefetch\uqwaoki*.pf réalisée avec succès !
            C:\WINDOWS\prefetch\uqwaoki*.pf supprimé !

            *** Sauvegarde du Registre vers dossier Safebackup ***

            sauvegarde du Registre réalisée avec succès !

            *** Nettoyage Registre ***

            Nettoyage Registre Ok

            *** Certificats ***

            Certificat Egroup supprimé !
            Certificat Electronic-Group supprimé !
            Certificat Montorgueil absent !
            Certificat OOO-Favorit supprimé !
            Certificat Sunny-Day-Design-Ltdt absent !

            *** Nettoyage terminé le 14/10/2008 à 23:12:37,62 ***
        10. Modérateur
          arf, merci !

          Télécharge sur le bureau navilog1
          http://perso.orange.fr/il.mafioso/Navifix/Navilog1.exe
          La console noire de Navilog1 doit s'être ouverte après l'installation.
          Sinon, pour l'ouvrir, double-cliquez sur le raccourci "navilog1" sur votre bureau.
          Appuyez sur la lettre f de votre clavier puis sur la touche Entrée.
          Appuyez sur une touche de votre clavier pour continuer...
          Tapez 1, puis appuyez sur la touche Entrée de votre clavier.
          Ainsi Navilog1 va effectuer la recherche des fichiers infectieux sur votre PC : NE PAS UTILISER L'OPTION 2, 3, 4 SANS AVIS
          soyez patient, cela peut prendre une dizaine de minutes...
          Navilog1 vous informe que la recherche est terminée :
          Appuyez sur une touche de votre clavier pour afficher le rapport qu'il a généré.
          Le rapport sera sauvegardé dans le fichier suivant : "fixnavi.txt" à la racine
          de votre disque dur (ex : C:\fixnavi.txt).Poster le rapport généré.
          1. Encore coincé...

            -----------\\ ToolBar S&D 1.2.2 XP/Vista

            Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 2
            X86-based PC ( Uniprocessor Free : Intel(R) Pentium(R) 4 CPU 2.40GHz )
            BIOS : Award Modular BIOS v6.0
            USER : Remy ( Administrator )
            BOOT : Normal boot
            Antivirus : avast! antivirus 4.8.1229 [VPS 081013-0] 4.8.1229 (Activated)
            C:\ (Local Disk) - NTFS - Total : 74 Go Free : 37 Go
            D:\ (CD or DVD) - CDFS - Total : 0 Go Free : 0 Go
            E:\ (CD or DVD)
            G:\ (CD or DVD)

            "C:\ToolBar SD" ( MAJ : 04-10-2008|21:00 )
            Option : [2] ( 14/10/2008|22:42 )

            -----------\\ SUPPRESSION

            Supprime! - C:\Program Files\AskTBar\bar
            Supprime! - C:\Program Files\AskTBar\PopSwatr
            Supprime! - C:\Program Files\AskTBar\SrchAstt
            Supprime! - C:\DOCUME~1\Remy\Cookies\remy@hotbar[2].txt
            Supprime! - C:\Program Files\Fichiers communs\WhenU\DTAdapter.exe
            Supprime! - C:\Program Files\AskTBar
            Supprime! - C:\Program Files\Fichiers communs\WhenU

            -----------\\ Recherche de Fichiers / Dossiers ...

            -----------\\ [..\Internet Explorer\Main]

            [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
            "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
            "Start Page"="https://www.google.fr/?gws_rd=ssl"
            "SearchMigratedDefaultURL"="https://www.google.com/webhp?gws_rd=ssl{searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8"
            "Start Page Restore"="https://www.google.fr/?gws_rd=ssl"

            [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
            "Default_Page_URL"="https://www.msn.com/fr-fr/?ocid=iehp"
            "Default_Search_URL"="https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF"
            "Start Page"="https://www.msn.com/fr-fr/"

            --------------------\\ Recherche d'autres infections

            C:\DOCUME~1\Remy\LOCALS~1\APPLIC~1\uqwaoki.dat
            C:\DOCUME~1\Remy\LOCALS~1\APPLIC~1\uqwaoki.exe
            C:\DOCUME~1\Remy\LOCALS~1\APPLIC~1\uqwaoki_nav.dat
            C:\DOCUME~1\Remy\LOCALS~1\APPLIC~1\uqwaoki_navps.dat
            [b]==> EGDACCESS <==/b

            --------------------\\ Cracks & Keygens ..

            C:\DOCUME~1\Remy\Application Data\Azureus\torrents\=mininova[1].org= Nero.v7.0.5.4.FR+ KEYGEN.complet.and.PlugIn Pack.v7.rar.torrent
            C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Football_Manager_2008_(pc)___Crack_-_[-_SeedPeer.Com_-][1].torrent
            C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Nero_8_1_1_4_French___New_Keygen_Zip_-_(((-_SeedPeer.Com_-)))[1].torrent
            C:\DOCUME~1\Remy\Application Data\Azureus\torrents\Windows Media Player 11 Final + CRACK it 100 WOrking [zeem] +-mininova[1].org-+.torrent
            C:\DOCUME~1\Remy\Application Data\Azureus\torrents\^mininova[1].org^' Avast! Antivirus Professional v4.7.986 with KeyGen & Skins.torrent
            C:\DOCUME~1\Remy\Mes documents\LimeWire\Incomplete\TWMKPMM54UL3FS4MRXO6EUQEMV73GWUO\FIFA.09-RELOADED\crack FIFA09
            C:\DOCUME~1\Remy\Mes documents\LimeWire\Incomplete\TWMKPMM54UL3FS4MRXO6EUQEMV73GWUO\FIFA.09-RELOADED\crack FIFA09\FIFA09.exe
            C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen
            C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen.zip
            C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero.v7.0.5.4.FR+ KEYGEN.complet.and.PlugIn Pack.v7.rar
            C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]
            C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen\Nero 8.1.1.4 French + New Keygen
            C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen\Nero 8.1.1.4 French + New Keygen\Ahead Nero v8.x.x.x Ultra Edition Keymaker NEW.exe
            C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Nero 8.1.1.4 French + New Keygen\Nero 8.1.1.4 French + New Keygen\Nero 8.1.1.4 Fran‡ais.exe
            C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\personnea_mp.avi
            C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Torrent downloaded from Demonoid.com.txt
            C:\DOCUME~1\ALLUSE~1\Documents\Logiciels\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem]\Windows Media Player 11 Final + CRACK it 100 % WOrking [zeem].rar

            1 - "C:\ToolBar SD\TB_1.txt" - 14/10/2008|21:04 - Option : [1]
            2 - "C:\ToolBar SD\TB_2.txt" - 14/10/2008|22:45 - Option : [2]

            -----------\\ Fin du rapport a 22:45:31,25
            1. Search Navipromo version 3.6.6 commencé le 14/10/2008 à 22:58:29,93

              !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
              !!! Postez ce rapport sur le forum pour le faire analyser !!!
              !!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

              Outil exécuté depuis C:\Program Files\navilog1
              Session actuelle : "Remy"

              Mise à jour le 29.09.2008 à 17h30 par IL-MAFIOSO

              Microsoft Windows XP [version 5.1.2600]
              Internet Explorer : 7.0.5730.13
              Système de fichiers : NTFS

              Recherche executé en mode normal

              *** Recherche Programmes installés ***

              Favorit

              *** Recherche dossiers dans "C:\WINDOWS" ***

              *** Recherche dossiers dans "C:\Program Files" ***

              *** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***

              *** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***

              *** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***

              *** Recherche dossiers dans "C:\Documents and Settings\Remy\applic~1" ***

              *** Recherche dossiers dans "C:\Documents and Settings\Remy\locals~1\applic~1" ***

              *** Recherche dossiers dans "C:\Documents and Settings\Remy\menudm~1\progra~1" ***

              *** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
              pour + d'infos : http://www.gmer.net

              *** Recherche avec GenericNaviSearch ***
              !!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
              !!! A vérifier impérativement avant toute suppression manuelle !!!

              * Recherche dans "C:\WINDOWS\system32" *

              * Recherche dans "C:\Documents and Settings\Remy\locals~1\applic~1" *

              *** Recherche fichiers ***

              *** Recherche clés spécifiques dans le Registre ***

              HKEY_CURRENT_USER\Software\Lanconfig trouvé !

              *** Module de Recherche complémentaire ***
              (Recherche fichiers spécifiques)

              1)Recherche nouveaux fichiers Instant Access :

              2)Recherche Heuristique :

              * Dans "C:\WINDOWS\system32" :

              * Dans "C:\Documents and Settings\Remy\locals~1\applic~1" :

              uqwaoki.dat trouvé !
              uqwaoki.exe trouvé !
              uqwaoki_nav.dat trouvé !
              uqwaoki_navps.dat trouvé !

              3)Recherche Certificats :

              Certificat Egroup trouvé !
              Certificat Electronic-Group trouvé !
              Certificat Montorgueil absent !
              Certificat OOO-Favorit trouvé !
              Certificat Sunny-Day-Design-Ltd absent !

              4)Recherche fichiers connus :

              *** Analyse terminée le 14/10/2008 à 23:02:47,09 ***
          2. Modérateur
            Nettoyage avec ToolBar S&D :

            !! Déconnectes toi et fermes toute tes applications en cours le temps de la manipulation !!

            Relances Toolbar-S&D en double-cliquant sur le raccourci.
            =>Tapes sur l'option 2 (« nettoyage ») puis tapes sur « Entrée ».
            Note : ne touches à rien lors de la suppression !
            Un rapport sera généré à la fin du processus : postes son contenu dans ta prochaine réponse
            accompagné d’un nouveau rapport hijackthis pour analyse ...

            1. Logfile of Trend Micro HijackThis v2.0.2
              Scan saved at 22:46:46, on 14/10/2008
              Platform: Windows XP SP2 (WinNT 5.01.2600)
              MSIE: Internet Explorer v7.00 (7.00.6000.16705)
              Boot mode: Normal

              Running processes:
              C:\WINDOWS\System32\smss.exe
              C:\WINDOWS\system32\csrss.exe
              C:\WINDOWS\system32\winlogon.exe
              C:\WINDOWS\system32\services.exe
              C:\WINDOWS\system32\lsass.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\system32\svchost.exe
              C:\WINDOWS\Explorer.EXE
              C:\WINDOWS\system32\svchost.exe
              C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
              C:\Program Files\Alwil Software\Avast4\ashServ.exe
              C:\WINDOWS\system32\spoolsv.exe
              C:\WINDOWS\system32\acs.exe
              C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
              C:\Program Files\Bonjour\mDNSResponder.exe
              C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
              C:\WINDOWS\system32\nvsvc32.exe
              C:\WINDOWS\system32\HPZipm12.exe
              C:\Program Files\Spyware Doctor\pctsAuxs.exe
              C:\Program Files\Spyware Doctor\pctsSvc.exe
              C:\Program Files\Spyware Doctor\pctsTray.exe
              C:\Program Files\SPAMfighter\sfus.exe
              C:\WINDOWS\system32\svchost.exe
              C:\PROGRA~1\MOUSED~1\mousedriver.exe
              C:\Program Files\Saitek\Software\SaiMfd.exe
              C:\Program Files\Saitek\Software\ProfilerU.exe
              C:\WINDOWS\system32\RUNDLL32.EXE
              C:\Program Files\Keyboard Driver\OEMDriver.exe
              C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
              C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
              C:\WINDOWS\vsnp2uvc.exe
              C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
              C:\Program Files\SPAMfighter\SFAgent.exe
              C:\WINDOWS\system32\ctfmon.exe
              C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
              C:\Program Files\Windows Live\Messenger\msnmsgr.exe
              C:\documents and settings\remy\local settings\application data\uqwaoki.exe
              C:\WINDOWS\System32\alg.exe
              C:\Program Files\NETGEAR\WPN311\wlancfg5.exe
              C:\Program Files\ppcbooster\ppcbooster.exe
              C:\WINDOWS\System32\svchost.exe
              C:\WINDOWS\system32\WgaTray.exe
              C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
              C:\WINDOWS\system32\wuauclt.exe
              C:\Program Files\Windows Live\Messenger\usnsvc.exe
              C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
              C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
              C:\WINDOWS\system32\NOTEPAD.EXE
              C:\Program Files\Internet Explorer\iexplore.exe
              C:\WINDOWS\System32\regsvr32.exe
              C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
              C:\WINDOWS\system32\wbem\wmiprvse.exe

              R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
              R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
              R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
              R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
              R3 - URLSearchHook: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
              O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
              O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\eoRezo\EoAdv\EoRezoBHO.dll (file missing)
              O2 - BHO: bannerstyles15 browser enhancer - {6C3CBAB3-B3B9-C24B-AE18-D6B7DE18F772} - C:\WINDOWS\system32\eurrovlqvule.dll
              O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
              O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
              O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
              O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
              O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll
              O2 - BHO: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
              O3 - Toolbar: free-downloads.net Toolbar - {ecdee021-0d17-467f-a1ff-c7a115230949} - C:\Program Files\free-downloads.net\tbfre1.dll
              O4 - HKLM\..\Run: [SANSUNMouse ] C:\PROGRA~1\MOUSED~1\mousedriver.exe
              O4 - HKLM\..\Run: [SaiMfd] C:\Program Files\Saitek\Software\SaiMfd.exe
              O4 - HKLM\..\Run: [Profiler] C:\Program Files\Saitek\Software\ProfilerU.exe
              O4 - HKLM\..\Run: [PowerVRUninstall] C:\WINDOWS\pmxreg.exe -setupUninstall
              O4 - HKLM\..\Run: [PowerVRGameSettings] C:\WINDOWS\pmxreg.exe -regfile C:\WINDOWS\gamestng.reg
              O4 - HKLM\..\Run: [PMXInit] C:\WINDOWS\system32\pmxinit.exe
              O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
              O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
              O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
              O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
              O4 - HKLM\..\Run: [KBDriver] C:\Program Files\Keyboard Driver\OEMDriver.exe
              O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
              O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
              O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe"
              O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime Alternative\qttask.exe" -atboottime
              O4 - HKLM\..\Run: [snp2uvc] C:\WINDOWS\vsnp2uvc.exe
              O4 - HKLM\..\Run: [tsnp2uvc] C:\WINDOWS\tsnp2uvc.exe
              O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
              O4 - HKLM\..\Run: [SPAMfighter Agent] "C:\Program Files\SPAMfighter\SFAgent.exe" update delay 60
              O4 - HKLM\..\Run: [ISTray] "C:\Program Files\Spyware Doctor\pctsTray.exe"
              O4 - HKLM\..\Run: [saipmtqtugsk] C:\WINDOWS\System32\regsvr32.exe /s "C:\WINDOWS\system32\eurrovlqvule.dll"
              O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
              O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
              O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
              O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
              O4 - HKCU\..\Run: [uqwaoki] "c:\documents and settings\remy\local settings\application data\uqwaoki.exe" uqwaoki
              O4 - HKCU\..\Run: [GetModule23] "C:\Program Files\GetModule\GetModule23.exe"
              O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
              O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
              O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
              O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
              O4 - Startup: ppcbooster.lnk = C:\Program Files\ppcbooster\ppcbooster.exe
              O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
              O4 - Global Startup: NETGEAR WPN311 Smart Wizard.lnk = C:\Program Files\NETGEAR\WPN311\wlancfg5.exe
              O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
              O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
              O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
              O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
              O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
              O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
              O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
              O16 - DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} (Facebook Photo Uploader 5) - http://upload.facebook.com/controls/FacebookPhotoUploader5.cab
              O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/download/E/5/6/E5611B10-0D6D-4117-8430-A67417AA88CD/LegitCheckControl.cab
              O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.mail.live.com/mail/w1/resources/MSNPUpld.cab
              O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
              O23 - Service: Atheros Configuration Service (ACS) - Unknown owner - C:\WINDOWS\system32\acs.exe
              O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
              O23 - Service: ASP.NET State Service (aspnet_state) - Unknown owner - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (file missing)
              O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
              O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
              O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
              O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
              O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
              O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
              O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
              O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
              O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Fichiers communs\Nero\Nero BackItUp 4\NBService.exe
              O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
              O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
              O23 - Service: PTK License-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\licenseservice.exe (file missing)
              O23 - Service: PTK Live Update-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\updateservice.exe (file missing)
              O23 - Service: PTK Scanner-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\ScannerService.exe (file missing)
              O23 - Service: PTK SharedAccess-FIGHTERS-297811811 - Unknown owner - C:\Program Files\Fighters\configservice.exe (file missing)
              O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
              O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
              O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe
          • 1
          • 2