Ouverture de fenêtres intempestive + divers

Résolu
Bonjour,
Depuis quelques temps, je rencontre pas mal de souci. Selon les moments de la journée, plutôt le soir, Firefox se met à ouvrir des fenêtres comme si l'en pleuvait, lorsque je clic sur un lien, celui-ci s'ouvre dans une autre fenêtre au lieu de s'ouvrir dans un onglet différent, mon clavier est dérégler (minuscules en majuscule et inversement), pavé numérique qui ne marche plus, et lorsque je clic sur un dossier pour l'ouvrir (en dehors d'internet), l'ensemble des dossiers situés précédemment sont sélectionné pour l'ouverture; ce qui me fait un beau bordel.
Lorsque cela arrive (plusieurs fois par jour), je redémarre mon ordi et çà remarche, mais çà se reproduit un peu plus tard.
Pour mon système, je suis sous XP, protégé par F-SECURE et j'utilise fréquemment CCLEANER.

Je vous post le rapport d'analyse de F-SECURE que j'ai fait hier soir, ainsi que Hijackthis.
Merci pour votre aide.

Rapport d'analyse
samedi 27 septembre 2008 22:57:17 - 00:46:11

Nom de l'ordinateur: FABIEN
Type d'analyse: Effectuer une analyse complète de l'ordinateur
Cible : C:\ E:\ + système + rootkits
Résultat
Aucun antiprogramme détecté

Statistiques
Analysés:

* Fichiers: 182688
* Non analysés: 267

Résultat:

* Virus: 0
* Spyware: 0
* Eléments suspects: 0
* Programme à risque: 0

Actions:

* Nettoyés: 0
* Renommés: 0
* Supprimés: 0
* Quarantaine: 0
* Echec: 0

Secteurs d'amorçage:

* Analysés: 1
* Infectés: 0
* Eléments suspects: 0
* Nettoyés: 0

Fichiers non analysés:

* Erreur d'ouverture du fichier (cliquez ici pour plus d'infos) . C:\HIBERFIL.SYS
* Erreur d'ouverture du fichier (cliquez ici pour plus d'infos) . C:\PAGEFILE.SYS
* Erreur d'ouverture du fichier (cliquez ici pour plus d'infos) . C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT
* Impossible d'ouvrir le fichier dans l'archive C:\MYSQL\DATA\IB_LOGFILE1.
* Le fichier C:\DRIVERS\OTHER.EXE\BIOSLOCK.PIF est crypté.
* Le fichier C:\DRIVERS\MCDBF\SOURCE1\OTHER.EXE\BIOSLOCK.PIF est crypté.
* Le fichier C:\DRIVERS\MCDBF\SOURCE1\TSADDON.EXE\UNISHHS.ARJ\UPDTAT.BAT est crypté.
* Impossible d'ouvrir le fichier dans l'archive com/lowagie/text/pdf/fonts/UniCNS-UCS2-V.cmap.
* Impossible d'ouvrir le fichier dans l'archive com/lowagie/text/pdf/fonts/UniGB-UCS2-V.cmap.
* Impossible d'ouvrir le fichier dans l'archive com/lowagie/text/pdf/fonts/UniKS-UCS2-V.cmap.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\013021.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017035.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017072.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017085.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017241.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017301.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017321.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\017326.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\032004.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\032050.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\032103.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\032107.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\032123.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\052530.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\052534.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\062061.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\111025.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112024.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112062.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112303.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112501.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112601.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112632.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112641.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112701.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112814.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\112835.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\113525.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\114104.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\114145.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\114147.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\115004.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\115060.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\115210.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116020.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116025.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116050.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116201.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116231.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116430.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116501.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\116512.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\118111.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\118302.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120081.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120411.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120435.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120455.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120901.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120904.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120910.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120912.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120918.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120920.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120925.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\120930.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\121009.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\121030.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\125050.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\130311.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\140005.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\140105.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\140201.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\140203.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\140205.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\140206.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141002.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141006.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141010.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141020.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141030.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141105.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\141115.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150110.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150151.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150205.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150225.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150230.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150310.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150312.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150320.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150410.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150425.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150460.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150465.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150471.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150475.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150476.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150480.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150501.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150502.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150505.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\150510.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\154011.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\154020.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\154050.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\161001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166084.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166103.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166130.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166135.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166142.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166150.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166160.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166170.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166500.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\166700.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\215155.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\215409.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\215532.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\250105.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\250108.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\250112.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\250330.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\250520.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\250606.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\251001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\251101.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\251505.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\252001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\260320.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\260401.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\260430.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\261901.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262012.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262201.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262225.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262230.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262265.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262270.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262290.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262540.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\262560.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\263001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\263501.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\263701.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\264001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\310103.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\310401.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\310710.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\310711.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\311001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\312101.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\312221.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\312511.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\312521.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\313001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\313501.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\320401.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\321001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\322005.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\330102.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\330111.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\330121.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\331071.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\331091.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\331101.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\331111.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332111.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332151.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332171.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332211.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332232.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332251.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\332271.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\340001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\340421.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\340447.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\340521.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\340601.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\340691.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\341010.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\341101.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\341121.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\341221.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\371001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\371102.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\371201.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\371401.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\371490.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\371601.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\372201.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\372406.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\373104.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375001.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375007.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375012.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375018.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375031.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375035.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375040.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375045.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375070.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\375075.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\380105.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\381052.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\382022.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\386009.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\391008.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\630203.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\MOULE.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\UST\REFRACTO.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\1.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\10.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\11.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\12.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\13.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\14.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\15.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\16.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\17.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\18.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\19.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\2.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\20.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\21.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\22.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\23.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\24.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\25.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\26.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\27.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\28.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\29.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\3.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\30.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\31.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\32.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\33.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\34.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\35.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\36.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\37.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\38.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\39.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\4.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\40.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\41.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\42.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\43.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\44.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\45.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\46.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\47.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\48.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\49.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\5.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\50.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\51.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\52.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\53.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\54.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\55.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\6.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\7.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\8.PCT.
* Impossible d'ouvrir le fichier dans l'archive E:\RECETTE JOHNY 20 06 06\LES DESSERTS 0 L4ASSIETTE\RES\MEDIAS\A\9.PCT.

Options
Version des définitions:

* Virus: 2008-09-27_02
* Spyware: 2008-09-27_01

Moteurs d'analyse :

* F-Secure AVP: 7.00.171, 2008-09-26
* F-Secure Libra: 2.04.04, 2008-09-19
* F-Secure Orion: 1.02.37, 2008-09-27
* F-Secure Draco: 1.00.35, 2008-09-08
* F-Secure BlackLight: 1.00.68

Options d'analyse :

* Analyser les fichiers définis : COM EXE SYS OV? BIN SCR DLL SHS HTM HTML HTT VBS JS INF VXD DO? XL? RTF CPL WIZ HTA PP? PWZ P?T MSO PIF . ACM ASP AX CNV CSC DRV INI MDB MPD MPP MPT OBD OBT OCX PCI TLB TSP WBK WBT WPC WSH VWP WML BOO HLP TD0 TT6 MSG ASD JSE VBE WSC CHM EML PRC SHB LNK WSF {* PDF ZL? XML ANI AVB BAT CEO CMD JPG LSP MAP MHT MIF PHP POT SWF WMF NWS TAR TGZ ZIP JAR ARJ LZH TAR TGZ GZ CAB RAR BZ2 HQX
* Analyser le contenu des archives

Actions:

* Virus: Interroger après analyse
* Spyware: Interroger après analyse

Erreur d'informations
Une erreur "Impossible d'ouvrir le fichier" s'est produite :
Le message d'erreur "Impossible d'ouvrir le fichier" signifie que le moteur d'analyse n'a pas pu ouvrir de fichier et que ce dernier n'a pas pu être analysé. Vous pouvez généralement ignorer ce message d'erreur car il peut être dû à de nombreuses causes autres qu'une menace de sécurité, notamment :

* Le fichier est un fichier système. Par principe, les fichiers système sont protégés par le système d'exploitation. Dans ce cas, ignorez le message.
* Vous n'êtes pas autorisé à lire le fichier. Pour analyser le fichier, connectez-vous avec un compte utilisateur disposant des autorisations suffisantes (le compte administrateur de l'ordinateur par exemple) et réexécutez l'analyse.
* Le fichier était utilisé par une application pendant la tentative d'analyse. Pour l'analyser, fermez toutes les applications et réessayez.

Copyright © 1998-2007 Assistance produit | Envoi d'un échantillon de virus à F-Secure
F-Secure n'assume aucune responsabilité quant au matériel créé ou publié par une tierce partie et référencé par un lien dans les pages Web de F-Secure. Sauf mention contraire explicite, vous acceptez qu'en soumettant du matériel sur l'un de nos serveurs, par exemple via courrier électronique ou formulaire CGI de F-Secure, le matériel mis à disposition peut dès lors être publié sur les pages Web de F-Secure ou sur support papier. Vous accéderez au site web public de F-Secure en cliquant sur les liens soulignés. Ainsi, votre accès est enregistré dans nos statistiques privées avec votre nom de domaine. Ces informations ne sont communiquées à aucune tierce partie. Vous vous engagez à ne pas intenter de procédure judiciaire contre notre société en relation avec le matériel soumis. Sauf mention contraire explicite, F-Secure peut inclure dans ses propres produits/publications tout concept relatif au matériel mis à sa disposition, sans aucun engagement de responsabilité.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 00:52:03, on 28/09/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Pack Securite\Common\FSM32.EXE
C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE
C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
C:\Program Files\Pack Securite\Common\FSMA32.EXE
C:\Program Files\Pack Securite\Anti-Virus\FSGK32.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Pack Securite\Common\FSMB32.EXE
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Pack Securite\Common\FCH32.EXE
C:\Program Files\Pack Securite\Common\FAMEH32.EXE
C:\Program Files\Pack Securite\Anti-Virus\fsqh.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
C:\Program Files\Pack Securite\FSGUI\fsguidll.exe
C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
C:\Program Files\Pack Securite\Anti-Virus\fssm32.exe
C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
C:\Program Files\Pack Securite\FSAUA\program\fsus.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Pack Securite\Anti-Virus\fsav32.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

--
End of file - 1663 bytes
Configuration: Windows XP
Firefox 3.0.3

33 réponses

Résumé de la discussion

Des symptômes persistants mêlent des fenêtres Firefox qui s'ouvrent en grand et des clics qui ouvrent une nouvelle fenêtre au lieu d'un onglet, des dysfonctionnements clavier et pavé numérique sous Windows XP. La situation est accompagnée de sollicitations répétées malgré des redémarrages, CCLEANER et F-Secure installés, et l'analyse HijackThis citée dans le message priorise une vérification approfondie pour déceler un éventuel malware ou rootkit. Le rapport d'analyse signale de nombreux fichiers illisibles ou chiffrés, et l'absence d'antivirus détectant des éléments malveillants, un indice potentiel mais insuffisant pour conclure, laissant place à une suspicion de compromission du système.

Bobot (l’IA à votre service)
  1. Contributeur sécurité
    Salut,

    fais ceci pour voir ce qui ce passe :

    Télécharges Random's System Information Tool (RSIT) de random/random et enregistre l'exécutable sur ton Bureau.

    -> http://images.malwareremoval.com/random/RSIT.exe

    ! Déconnecte toi et fermes toutes tes applications en cours !

    Double-clique sur " RSIT.exe " pour le lancer .

    -> Une première fenêtre s'ouvre avec en titre : " Disclaimer of warranty " .

    * Devant l'option "List files/folders created ..." , tu choisis : 3 months

    * cliques ensuite sur " Continue " pour lancer l'analyse ...

    ( Note : Si la dernière version de HijackThis n'est pas détectée sur ton PC, RSIT le téléchargera et te demandera d'accepter la licence.)

    -> laisses faire le scan et ne touche pas au PC ...

    Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront (probablement avec le bloc-note).

    Postes le contenu de " log.txt " (c'est celui qui apparait à l'écran), ainsi que de " info.txt " (que tu verras dans la barre des tâches), pour analyse et attends la suite ...

    ( Note : les rapports seront en outre sauvegardés dans ce dossier -> C:\rsit )

    1. Salut et merci de ton aide,

      Voici le rapports log, mais je n'ai pas le rapports info.txt:

      Logfile of random's system information tool 1.02 (written by random/random)
      Run by FC at 2008-09-28 11:30:36
      Microsoft Windows XP Édition familiale Service Pack 3
      System drive C: has 37 GB (49%) free of 76 GB
      Total RAM: 1023 MB (56% free)

      Logfile of Trend Micro HijackThis v2.0.2
      Scan saved at 11:30:39, on 28/09/2008
      Platform: Windows XP SP3 (WinNT 5.01.2600)
      MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
      Boot mode: Normal

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\spoolsv.exe
      C:\WINDOWS\Explorer.EXE
      C:\Program Files\Pack Securite\Common\FSM32.EXE
      C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe
      C:\Program Files\Microsoft IntelliPoint\point32.exe
      C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE
      C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
      C:\Program Files\Pack Securite\Common\FSMA32.EXE
      C:\Program Files\Pack Securite\Anti-Virus\FSGK32.EXE
      C:\WINDOWS\system32\svchost.exe
      C:\Program Files\Pack Securite\Common\FSMB32.EXE
      C:\Program Files\Microsoft ActiveSync\wcescomm.exe
      C:\Program Files\Pack Securite\Common\FCH32.EXE
      C:\Program Files\Pack Securite\Common\FAMEH32.EXE
      C:\Program Files\Pack Securite\Anti-Virus\fsqh.exe
      C:\PROGRA~1\MI3AA1~1\rapimgr.exe
      C:\Program Files\Pack Securite\FSGUI\fsguidll.exe
      C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
      C:\Program Files\Pack Securite\Anti-Virus\fssm32.exe
      C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
      C:\Program Files\Pack Securite\FSAUA\program\fsus.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Pack Securite\Anti-Virus\fsav32.exe
      C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
      C:\Documents and Settings\FC\Bureau\RSIT.exe
      C:\Program Files\Trend Micro\HijackThis\FC.exe

      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.neuf.fr/
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = file://C:\APPS\IE\offline\fr.htm
      R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
      O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
      O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
      O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
      O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
      O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll
      O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
      O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
      O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Pack Securite\Common\FSM32.EXE" /splash
      O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Pack Securite\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
      O4 - HKLM\..\Run: [ClickMe] C:\apps\ClickMe\ClickMe.exe
      O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe"
      O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
      O4 - HKLM\..\Run: [EPSON Stylus Photo RX420 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE /P31 "EPSON Stylus Photo RX420 Series" /O6 "USB001" /M "Stylus Photo RX420"
      O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
      O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
      O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
      O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
      O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
      O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
      O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
      O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
      O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
      O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
      O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
      O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
      O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
      O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
      O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
      O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Pack Securite\Common\FSMA32.EXE
      1. Contributeur sécurité
        re,

        ton prb vient surement de là : tu as de grosses traces de Norton + F-secure sur ton PC ... il faut absolument nettoyer Norton comme il faut ...

        Donc dans l'ordre :

        1- Télécharges Norton removal tool sur ton bureau :
        ftp://ftp.symantec.com/public/francais/removal_tools/Norton_Removal_Tool.exe

        Déconnectes toi .
        Ensuite désinstalles Norton avec "Norton removal tool": tu doubles click dessus et laisses toi guider ... il faut le désinstaller correctement ( fait la manipe 2 fois si possible ).

        2- CCleaner :
        Un tuto ( aide ):
        http://perso.orange.fr/jesses/Docs/Logiciels/CCleaner.htm

        ---> Utilisation:
        ! déconnectes toi et fermes toutes applications en cours !
        * vas dans "nettoyeur" : fait analyse puis nettoyage
        * vas dans "registre" : fait chercher les erreurs et réparer ( plusieurs fois jusqu'à ce qu'il n'y est plus d'erreur ) .

        3- Télécharges GenProc (de Jean-Chretien1 et Narco4) sur ton bureau (et pas ailleur !) :
        http://www.alt-shift-return.org/Info/Fichiers/GenProc.zip

        !!Déconnectes toi et fermes tes application en cours !!

        Dézippes (=extraire tout) le contenu de ce que tu viens de télécharger sur ton bureau .

        Ouvres le dossier Genproc :
        double-cliques sur GenProc.bat et laisses faire ...

        Une fois terminé, postes le contenu du rapport qui s'ouvre ...

        Aide en images ici : http://www.alt-shift-return.org/Info/GenProc-HowTo.html

        IMPORTANT : postes le rapport et ne fait rien d'autre pour l'instant ( souvant il faut ajouter des consignes à la manipe indiquée pour que cela fonctionne parfaitement ) .
        1. J'ai retrouvé le rapport info.txt, le voici:

          info.txt logfile of random's system information tool 1.02 2008-09-28 11:25:57

          ======Uninstall list======

          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Spyware Scanner"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Spyware"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus Client Security Installer"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Anti-Virus"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Automatic Update Agent"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure DAAS"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Diagnostics"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure E-mail Scanning"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure FWES"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure GateKeeper Interface"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Gemini"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure GUI"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Help"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure HIPS"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Internet Shield"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Localization API"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Management Agent"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Pegasus Engine"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Protocol Scanner"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Spam Control"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Spam Scanner"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure TNB"
          -->"C:\Program Files\Pack Securite\Uninstall\fsuninst.exe" /UninstRegKey:"F-Secure Uninstall"
          -->"C:\WINDOWS\$NtUninstallKB888111WXPSP2$\spuninst\spuninst.exe"
          -->c:\apps\skype\phone\unins000.exe
          -->C:\Program Files\Fichiers communs\AOL\Screensaver\uninst_ygpss.exe
          -->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
          -->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
          -->C:\Program Files\Fichiers communs\Symantec Shared\LiveReg\VCSetup.exe /REMOVE
          -->C:\Program Files\Fichiers communs\Symantec Shared\SymSetup\{A93C9E60-29B6-49da-BA21-F70AC6AADE20}.exe /X
          -->C:\Program Files\Learn2.com\StRunner\stuninst.exe
          -->C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE /U
          -->C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
          -->C:\WINDOWS\IsUn040c.exe -fC:\WINDOWS\orun32.isu
          -->C:\WINDOWS\Modio\SLAMR2KO\Setup.exe /Remove /NONGUI
          -->C:\WINDOWS\system32\\MSIEXEC.EXE /x {9541FED0-327F-4df0-8B96-EF57EF622F19}
          -->C:\WINDOWS\system32\drivers\UnRMC.exe
          -->C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
          -->C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log
          -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe"
          -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{23EFDB58-0874-4883-9810-EDA510B19FAE}\setup.exe" -l0x9
          -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2637C347-9DAD-11D6-9EA2-00055D0CA761}\Setup.EXE" -uninstall
          -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2BB79C8D-9DCC-4861-8A23-AE1B0B45E2B6}\setup.exe" -l0x9
          -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3C1B8CBC-9118-11D7-86D3-00055DF3561E}\setup.exe" -l0x9
          -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{775FFF70-4A8C-4500-908D-3C34DBEB11D5}\setup.exe" -l0x9
          -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{83021AC3-086F-4B77-ACCD-1BD7C9AB211E}\setup.exe" -l0x9
          -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B14F9B26-D695-4C4A-8B11-0FE6CDCC797B}\setup.exe" -l0x9
          -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{E213C271-AEFA-481D-A9B4-914D88925B8D}\setup.exe" -l0x9
          -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe" -l0x40c
          -->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
          -->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
          -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
          Adobe Flash Player Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
          Adobe Reader 9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A90000000001}
          CC_ccProxyExt-->MsiExec.exe /I{DA42FDCA-7C5A-43EF-9A05-CCE148ADF919}
          ccCommon-->MsiExec.exe /I{DC367608-64A7-4BF7-92F4-8BAA25BA02DB}
          CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
          ccPxyCore-->MsiExec.exe /I{FC08587A-4F01-4188-819F-F55880022917}
          Correctif pour Lecteur Windows Media 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
          Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
          EPSON CardMonitor-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{109D28C7-FB38-483A-9C91-001CB59E2699}\SETUP.EXE" -l0x40c uninst
          EPSON Copy Utility 3-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{67EDD823-135A-4D59-87BD-950616D6E857}\Setup.exe" -l0x40c -UnInstall
          EPSON PhotoQuicker3.5-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{65F5B7AF-3363-11D7-BB6B-00018021113F}\SETUP.EXE" -l0x40c uninst
          EPSON PhotoStarter3.1-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C48817E7-AA05-4151-A99D-1E1E550CE801}\SETUP.EXE" -l0x40c uninst
          EPSON PRINT Image Framer Tool2.1-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{23B59ED4-C360-11D7-875B-0090CC005647}\SETUP.EXE" -l0x40c anything
          EPSON Scan-->C:\Program Files\epson\escndv\setup\setup.exe /r
          EPSON Smart Panel-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6C11D561-620B-47DA-A693-4C597F3CDF40}\SETUP.EXE" -l0x40c Uninstall
          EPSON Web-To-Page-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7F14F68C-17FA-4F88-B3FD-7F449C1EBF32}\SETUP.EXE" -l0x40c -anything
          EPSON-Drucker-Software-->C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R
          ESPRX420 Guide de réf.-->C:\Program Files\EPSON\TPMANUAL\ESPRX420\REF_G\DOCUNINS.EXE
          ESPRX420 Guide des logiciels-->C:\Program Files\EPSON\TPMANUAL\ESPRX420\PQU_G\DOCUNINS.EXE
          HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
          Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
          Java 2 Runtime Environment, SE v1.4.2_05-->MsiExec.exe /I{7148F0A8-6813-11D6-A77B-00B0D0142050}
          Java(TM) 6 Update 4-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160040}
          Lecteur Windows Media 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
          Microsoft .NET Framework 1.1 French Language Pack-->MsiExec.exe /X{9A394342-4A68-4EBA-85A6-55B559F4E700}
          Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
          Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
          Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
          Microsoft ActiveSync 4.0-->MsiExec.exe /I{B208806F-A231-4FA0-AB3F-5C1B8979223E}
          Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
          Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
          Microsoft Word 2002-->MsiExec.exe /I{911B040C-6000-11D3-8CFE-0050048383C9}
          Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Step by Step Interactive Training (KB923723)-->"C:\WINDOWS\$NtUninstallKB923723$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows XP (KB953838)-->"C:\WINDOWS\$NtUninstallKB953838$\spuninst\spuninst.exe"
          Mise à jour de sécurité pour Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
          Mise à jour pour Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
          Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
          Mozilla Firefox (3.0.3)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
          Mozilla Thunderbird (2.0.0.16)-->C:\Program Files\Mozilla Thunderbird\uninstall\helper.exe
          MSRedist-->MsiExec.exe /I{B7C61755-DB48-4003-948F-3D34DB8EAF69}
          MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
          Neuf - Kit de connexion-->C:\Program Files\Neuf\Kit\uninstall.exe
          Neuf - Media Center-->C:\Program Files\Neuf\Media Center\uninstall.exe
          Norton AntiSpam-->MsiExec.exe /I{3B29A786-5803-4e9e-9B58-3014A5B4E519}
          Norton AntiSpam-->MsiExec.exe /I{5677563D-0CB1-485f-9E18-C5025306BB3F}
          Norton AntiVirus 2005-->MsiExec.exe /X{C6F5B6CF-609C-428E-876F-CA83176C021B}
          Norton Internet Security-->MsiExec.exe /I{12E2B9E9-05B1-407d-B0FD-B5F350535125}
          Norton Internet Security-->MsiExec.exe /I{449F3A9E-9903-4a0d-A209-08030D45A935}
          Norton Internet Security-->MsiExec.exe /I{48185814-A224-447a-81DA-71BD20580E1B}
          Norton Internet Security-->MsiExec.exe /I{526AD5DC-CFC4-4f2a-8442-C84CC91D6C7F}
          Norton Internet Security-->MsiExec.exe /I{A93C9E60-29B6-49da-BA21-F70AC6AADE20}
          Norton Internet Security-->MsiExec.exe /I{C9D599E1-6B68-4a1f-8A4F-A1DB433DB1BF}
          Norton Internet Security-->MsiExec.exe /I{E3EFA461-EB83-4C3B-9C47-2C1D58A01555}
          Norton Internet Security-->MsiExec.exe /I{E5EE9939-259F-4DE2-8023-5C49E16A4F43}
          Norton Internet Security-->MsiExec.exe /I{FC2C0536-583C-46c0-844A-62CECAE01F22}
          Norton WMI Update-->MsiExec.exe /X{E85FA9A1-C241-4698-893B-DD99509B8DB0}
          Norton WMI Update-->MsiExec.exe /X{F64306A5-4C32-41bb-B153-53986527FAB4}
          OpenOffice.org 2.4-->MsiExec.exe /I{A122962F-331A-4C2E-93DB-AD92D8A4FB14}
          Pack Securite Plus-->"C:\Program Files\Pack Securite\FSGUI\PostInstall.exe" /tUnInstall
          Packard Bell InfoCentre-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{B04AC0A3-7A0F-4E38-9DE7-FD1E4CE47D8C}\setup.exe"
          Packard Bell Toolbar 1.0-->"C:\Program Files\Dynamic Toolbar\unins000.exe"
          PhotoImpression 5-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{66C8BE35-8BBB-472B-96C7-C7C9A499F988}\SETUP.EXE" -l0x40c
          PIF DESIGNER2.1-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7BD0A2D8-4EA0-43C6-BDF8-DDA87B8031C6}\SETUP.EXE" -l0x40c anything
          ScanToWeb-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EBAE381B-60A6-4863-AA9F-FCAB755BC9E5}\SETUP.EXE" ADDREMOVEDLG
          Sonic MyDVD-->MsiExec.exe /I{21657574-BD54-48A2-9450-EB03B2C7FC29}
          Sonic RecordNow!-->MsiExec.exe /I{9541FED0-327F-4DF0-8B96-EF57EF622F19}
          SPBBC-->MsiExec.exe /I{77772678-817F-4401-9301-ED1D01A8DA56}
          SymNet-->MsiExec.exe /I{2DA85B02-13C0-4E6D-9A76-22E6B3DD0CB2}
          ViaMichelin Navigation PND-->"C:\Program Files\InstallShield Installation Information\{47FF921C-E834-47A6-8CE4-F0A99CDE347F}\setup.exe" -runfromtemp -l0x040c -removeonly
          VLC media player 0.9.2-->C:\Program Files\VideoLAN\VLC\uninstall.exe
          Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
          Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
          Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
          Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"

          ======Security center information======

          AV: Norton Internet Security (outdated)
          AV: Pack Securite Plus 7.00
          FW: Pack Securite Plus 7.00
          FW: Norton Internet Security

          ======Environment variables======

          "ComSpec"=%SystemRoot%\system32\cmd.exe
          "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI Control Panel;C:\PROGRA~1\FICHIE~1\SONICS~1\
          "windir"=%SystemRoot%
          "FP_NO_HOST_CHECK"=NO
          "OS"=Windows_NT
          "PROCESSOR_ARCHITECTURE"=x86
          "PROCESSOR_LEVEL"=15
          "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 36 Stepping 2, AuthenticAMD
          "PROCESSOR_REVISION"=2402
          "NUMBER_OF_PROCESSORS"=1
          "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
          "TEMP"=%SystemRoot%\TEMP
          "TMP"=%SystemRoot%\TEMP

          -----------------EOF-----------------
          1. Voilà le rapport de GenProc:

            GenProc 2.100 [1] 28/09/2008 - Windows [XP] : Aucune infection caractéristique trouvée
            1. Contributeur sécurité
              Bien ...

              refais un scan RSIT et postes le nouveau rapport obtenu stp ....

              y a du mieux avec ton PC après le nettoyage de Norton ? ...
              1. Le problème se produit en général le soir, donc pour le moment tout va bien; je verrai ce soir.
                Voici le nouveau rapport:

                Logfile of random's system information tool 1.02 (written by random/random)
                Run by FC at 2008-09-28 12:16:57
                Microsoft Windows XP Édition familiale Service Pack 3
                System drive C: has 37 GB (49%) free of 76 GB
                Total RAM: 1023 MB (63% free)

                Logfile of Trend Micro HijackThis v2.0.2
                Scan saved at 12:17:00, on 28/09/2008
                Platform: Windows XP SP3 (WinNT 5.01.2600)
                MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
                Boot mode: Normal

                Running processes:
                C:\WINDOWS\System32\smss.exe
                C:\WINDOWS\system32\winlogon.exe
                C:\WINDOWS\system32\services.exe
                C:\WINDOWS\system32\lsass.exe
                C:\WINDOWS\system32\svchost.exe
                C:\WINDOWS\System32\svchost.exe
                C:\WINDOWS\Explorer.EXE
                C:\WINDOWS\system32\spoolsv.exe
                C:\Program Files\Pack Securite\Common\FSM32.EXE
                C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe
                C:\Program Files\Microsoft IntelliPoint\point32.exe
                C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE
                C:\Program Files\Microsoft ActiveSync\wcescomm.exe
                C:\PROGRA~1\MI3AA1~1\rapimgr.exe
                C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
                C:\Program Files\Pack Securite\Common\FSMA32.EXE
                C:\Program Files\Pack Securite\Anti-Virus\FSGK32.EXE
                C:\WINDOWS\system32\svchost.exe
                C:\Program Files\Pack Securite\Common\FSMB32.EXE
                C:\Program Files\Pack Securite\Common\FCH32.EXE
                C:\Program Files\Pack Securite\Common\FAMEH32.EXE
                C:\Program Files\Pack Securite\Anti-Virus\fsqh.exe
                C:\Program Files\Pack Securite\FSGUI\fsguidll.exe
                C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
                C:\Program Files\Pack Securite\Anti-Virus\fssm32.exe
                C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
                C:\Program Files\Pack Securite\FSAUA\program\fsus.exe
                C:\WINDOWS\System32\svchost.exe
                C:\Program Files\Pack Securite\Anti-Virus\fsav32.exe
                C:\Documents and Settings\FC\Bureau\RSIT.exe
                C:\Program Files\Trend Micro\HijackThis\FC.exe

                R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = https://actus.sfr.fr
                R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.neuf.fr/
                R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = file://C:\APPS\IE\offline\fr.htm
                R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
                R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
                R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
                O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
                O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
                O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
                O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
                O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Pack Securite\Common\FSM32.EXE" /splash
                O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Pack Securite\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
                O4 - HKLM\..\Run: [ClickMe] C:\apps\ClickMe\ClickMe.exe
                O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe"
                O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
                O4 - HKLM\..\Run: [EPSON Stylus Photo RX420 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE /P31 "EPSON Stylus Photo RX420 Series" /O6 "USB001" /M "Stylus Photo RX420"
                O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
                O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
                O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
                O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
                O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
                O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
                O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
                O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
                O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
                O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
                O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
                O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
                O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
                O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
                O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
                O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\Pack Securite\Anti-Virus\fsgk32st.exe
                O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\Pack Securite\FSAUA\program\fsaua.exe
                O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Pack Securite\FWES\Program\fsdfwd.exe
                O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Pack Securite\Common\FSMA32.EXE
                1. Contributeur sécurité
                  Si cela n'arrive que le soir, donc une fois que le PC a bien tourné ... Cela semble resemblé à une surchauffe du système ... Tu as pensé à ouvrir le PC et de fair " la pousière " ? ....

                  Sinon fais ceci en attendant :

                  Télécharges MalwareByte's :
                  ici ftp://ftp.commentcamarche.com/download/mbam-setup.exe
                  ou ici : http://www.malwarebytes.org/mbam.php

                  Installes le ( choisis bien "francais" ; ne modifies pas les paramètres d'installe ) et mets le à jour .

                  (NB : S'il te manque "COMCTL32.OCX" lors de l'installe, alors télécharges le ici : https://www.malekal.com/tutorial-aboutbuster/ )

                  Potasses le tuto pour te familiariser avec le prg : https://forum.pcastuces.com/sujet.asp?f=31&s=3
                  ( cela dis, il est très simple d'utilisation ).

                  Impératif : redémarres en mode sans échec :
                  Comment aller en Mode sans échec
                  1) Redémarres ton ordi
                  2) Tapote la touche F8 immédiatement, (F5 sur certains PC) juste après le "Bip"
                  3) Tu verras un écran avec options de démarrage apparaître
                  4) Choisis la première option : Sans Échec, et valide avec "Entrée"
                  5) Choisis ton compte habituel, et non Administrateur (si besoin ... )
                  (attention : pas de connexion possible en mode sans échec , donc copies ou imprimes bien la manipe pour éviter les erreurs ...)

                  Lances Malwarebyte's .

                  Fais un scan dit "complet" ( sélectionnes bien tous tes disks avant le scan ! ) et supprimes tout ce qu'il peut trouver, c'est à dire :
                  -->Laisses le scan se terminer,puis à la fin tu cliques sur "résultat" .
                  -->Vérifies que tous les objets infectés soient validés, puis cliques sur " suppression " .

                  Redémarres ton PC ( mode normal ).

                  Postes le rapport sauvegardé après la suppression des objets infectés (dans l'onglet "rapport/log"de Malwarebytes, le dernier en date) ...
              2. Ça y est, voici le rapport:

                Malwarebytes' Anti-Malware 1.28
                Version de la base de données: 1217
                Windows 5.1.2600 Service Pack 3

                28/09/2008 17:29:20
                mbam-log-2008-09-28 (17-29-20).txt

                Type de recherche: Examen complet (C:\|E:\|F:\|)
                Eléments examinés: 127938
                Temps écoulé: 4 hour(s), 51 minute(s), 32 second(s)

                Processus mémoire infecté(s): 0
                Module(s) mémoire infecté(s): 0
                Clé(s) du Registre infectée(s): 0
                Valeur(s) du Registre infectée(s): 0
                Elément(s) de données du Registre infecté(s): 0
                Dossier(s) infecté(s): 4
                Fichier(s) infecté(s): 44

                Processus mémoire infecté(s):
                (Aucun élément nuisible détecté)

                Module(s) mémoire infecté(s):
                (Aucun élément nuisible détecté)

                Clé(s) du Registre infectée(s):
                (Aucun élément nuisible détecté)

                Valeur(s) du Registre infectée(s):
                (Aucun élément nuisible détecté)

                Elément(s) de données du Registre infecté(s):
                (Aucun élément nuisible détecté)

                Dossier(s) infecté(s):
                C:\Program Files\dynamic toolbar (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2 (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache (Adware.2020search) -> Quarantined and deleted successfully.

                Fichier(s) infecté(s):
                C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP12\A0003150.dll (Adware.2020Search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\batch.bat (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\unins000.dat (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\unins000.exe (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\go.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\home.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\logo_pb.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\parent_off.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\parent_on.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\pbfrv2tb0200.cfg (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\popup_off.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\popup_on.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\search.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\services.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\skin.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\skin1.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\skin2.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\skin3.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\skin4.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\skin5.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\store.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\style.css (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\support.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\Cache\ticker.xml (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\go.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\home.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\logo_pb.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\parent_off.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\parent_on.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\pbfrv2tb0200.cfg (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\popup_off.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\popup_on.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\search.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\services.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\skin.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\skin1.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\skin2.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\skin3.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\skin4.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\skin5.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\store.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\style.css (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\support.bmp (Adware.2020search) -> Quarantined and deleted successfully.
                C:\Program Files\dynamic toolbar\PBFRV2\Cache\ticker.xml (Adware.2020search) -> Quarantined and deleted successfully.
                1. Contributeur sécurité
                  bien ...

                  1-supprimes tout ce qui se trouve dans la quarantaine de Malwarebytes ( via celle-ci ).

                  2- refais un coup de CCleaner( registre compris ) .

                  3- Télécharges ToolBar S&D ( de Eric_71/Team IDN ) :
                  https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/ToolBarSD.exe?attachauth=ANoY7cqJWPphpudyTqv7TRo5RQ3nm_Sx8JluVMO59X5E9cyE3j3LqKlmStIqiDqJdIgMJLi7MXn2nKVajQfoWuVvZZ2wIx_vkqO4k4P0K9jh-ra9jaKPXdZcoaVF2UqJZNH8ubL_42uIwh6f35xJ2GJMuzddVj2Qth1DgZ839lxEIFGkgWz3TdfvNMy-YtxfA3gqBUrj4U4LFeAPiWr3ClmjIP0t_Xs5PQ%3D%3D&attredirects=2

                  ( Tuto : https://sites.google.com/site/toolbarsd/aideenimages )

                  !! Déconnectes toi et fermes toute tes applications en cours le temps de la manipe !!

                  * double-cliques sur l'.exe pour lancer l'installe et laisses toi guider ...
                  * Une fois fait, cliques sur le raccourci créé sur ton bureau pour lancer l'outil .
                  * Choisis l'option 1 ( "recherche") et tapes "entrée" .
                  * Une fois le scan finit , un rapport va apparaître, copie/colles l'intégralité
                  de son contenu dans ta prochaine réponse ...
                  ( le rapport est en outre sauvegardé ici -> C:\TB.txt )
                  1. Voici le rapport:

                    -----------\\ ToolBar S&D 1.2.1 XP/Vista

                    Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
                    X86-based PC ( Uniprocessor Free : AMD Turion(tm) 64 Mobile Technology ML-32 )
                    BIOS : Insyde Software MobilePRO BIOS Version 4.20.10
                    USER : FC ( Administrator )
                    BOOT : Normal boot
                    Antivirus : Pack Securite Plus 7.00 7.00 (Activated)
                    Firewall : Pack Securite Plus 7.00 7.00 (Activated)
                    C:\ (Local Disk) - NTFS - Total : 74 Go Free : 36 Go
                    D:\ (CD or DVD)
                    E:\ (Local Disk) - NTFS - Total : 149 Go Free : 119 Go

                    "C:\ToolBar SD" ( MAJ : 24-09-2008|21:50 )
                    Option : [1] ( 28/09/2008|17:55 )

                    -----------\\ Recherche de Fichiers / Dossiers ...

                    -----------\\ Extensions

                    (FC) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar

                    -----------\\ [..\Internet Explorer\Main]

                    [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
                    "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
                    "Start Page"="http://home.neuf.fr/"
                    "Search Bar"="https://actus.sfr.fr"
                    "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"

                    [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
                    "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
                    "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home"
                    "Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"

                    --------------------\\ Recherche d'autres infections

                    Aucune autre infection trouvée !

                    1 - "C:\ToolBar SD\TB_1.txt" - 28/09/2008|17:56 - Option : [1]

                    -----------\\ Fin du rapport a 17:56:53,84
                    1. Contributeur sécurité
                      Ok ,
                      Malwarebytes à bien tout supprimer ...

                      Fais ce scan en ligne pour voir :

                      Fais un scan en ligne avec Kaspersky : https://www.kaspersky.fr/?domain=webscanner.kaspersky.fr
                      - Sous Démonstration en ligne, on t'explique la marche à suivre, et pour lancer le scan il faut sélectionner < Exécuter l'analyse en ligne >.
                      Le scan ne marche que sous Internet Explorer(et pas sous firefox ou autre...).
                      - On va te demander de télécharger un contôle active x, accepte .
                      - Dans le menu Choisissez la cible de l'analyse, sélectionne Poste de travail. Le scan va commencer.
                      - Sauvegardes le rapport qui sera généré, puis copies/colles le dans ta prochaine réponse pour analyse et attends la suite ...

                      S'il y a un problème, assure toi que les contrôles active x sont bien configurés dans les options internet comme décrit sur ce lien : http://www.inoculer.com/activex.php3
                      Rappel : le scan est à faire sous Internet Explorer !

                      --> tuto :
                      https://www.malekal.com/scan-antivirus-ligne-nod32/#mozTocId291566

                      1. ÇA y est, l'analyse est finie, et de plus mon ordi vient de se mettre à déconner.
                        Mais je dois partir; voici le rapport, je reprendrai tes instructions demain soir.
                        Encore merci.

                        KASPERSKY ON-LINE SCANNER REPORT
                        Sunday, September 28, 2008 8:20:38 PM
                        Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 3 (Build 2600)
                        Kaspersky On-line Scanner version : 5.0.84.2
                        Dernière mise à jour de la base antivirus Kaspersky : 28/09/2008
                        Enregistrements dans la base antivirus Kaspersky : 1133526
                        Paramètres d'analyse
                        Analyser avec la base antivirus suivante standard
                        Analyser les archives vrai
                        Analyser les bases de messagerie vrai
                        Cible de l'analyse Poste de travail
                        C:\
                        D:\
                        E:\
                        Statistiques de l'analyse
                        Total d'objets analysés 94668
                        Nombre de virus trouvés 0
                        Nombre d'objets infectés 0 / 0
                        Nombre d'objets suspects 0
                        Durée de l'analyse 01:48:28

                        Nom de l'objet infecté Nom du virus Dernière action
                        C:\Documents and Settings\All Users\Application Data\F-Secure\logs\FSMA\fsma.log L'objet est verrouillé ignoré
                        C:\Documents and Settings\FC\Application Data\$_hpcst$.hpc L'objet est verrouillé ignoré
                        C:\Documents and Settings\FC\Cookies\index.dat L'objet est verrouillé ignoré
                        C:\Documents and Settings\FC\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
                        C:\Documents and Settings\FC\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
                        C:\Documents and Settings\FC\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
                        C:\Documents and Settings\FC\Local Settings\Temp\WCESLog.log L'objet est verrouillé ignoré
                        C:\Documents and Settings\FC\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
                        C:\Documents and Settings\FC\NTUSER.DAT L'objet est verrouillé ignoré
                        C:\Documents and Settings\FC\ntuser.dat.LOG L'objet est verrouillé ignoré
                        C:\Documents and Settings\LocalService\Cookies\index.dat L'objet est verrouillé ignoré
                        C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
                        C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
                        C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
                        C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
                        C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré
                        C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré
                        C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré
                        C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré
                        C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré
                        C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré
                        C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré
                        C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré
                        C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré
                        C:\Program Files\Pack Securite\Anti-Virus\dbupdate.log L'objet est verrouillé ignoré
                        C:\Program Files\Pack Securite\Anti-Virus\deleteme_msg.log L'objet est verrouillé ignoré
                        C:\Program Files\Pack Securite\Anti-Virus\fsqh.exe.Qrt.log L'objet est verrouillé ignoré
                        C:\Program Files\Pack Securite\Anti-Virus\perf.dat L'objet est verrouillé ignoré
                        C:\Program Files\Pack Securite\Anti-Virus\power.dat L'objet est verrouillé ignoré
                        C:\Program Files\Pack Securite\Common\policy.bpf L'objet est verrouillé ignoré
                        C:\Program Files\Pack Securite\Common\policy.ipf L'objet est verrouillé ignoré
                        C:\Program Files\Pack Securite\FSAUA\fsbwupst.log L'objet est verrouillé ignoré
                        C:\Program Files\Pack Securite\FSAUA\program\fsaua.dbg L'objet est verrouillé ignoré
                        C:\Program Files\Pack Securite\FSAUA\program\fsaua.log L'objet est verrouillé ignoré
                        C:\Program Files\Pack Securite\Spam Control\log\fs_sa_log.txt L'objet est verrouillé ignoré
                        C:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré
                        C:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP38\change.log L'objet est verrouillé ignoré
                        C:\WINDOWS\Debug\PASSWD.LOG L'objet est verrouillé ignoré
                        C:\WINDOWS\SchedLgU.Txt L'objet est verrouillé ignoré
                        C:\WINDOWS\SoftwareDistribution\ReportingEvents.log L'objet est verrouillé ignoré
                        C:\WINDOWS\Sti_Trace.log L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\CatRoot2\edb.log L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\CatRoot2\tmp.edb L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\config\AppEvent.Evt L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\config\DEFAULT L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\config\default.LOG L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\config\SAM L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\config\SAM.LOG L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\config\SecEvent.Evt L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\config\SECURITY L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\config\SECURITY.LOG L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\config\SOFTWARE L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\config\software.LOG L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\config\SysEvent.Evt L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\config\SYSTEM L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\config\system.LOG L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\h323log.txt L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA L'objet est verrouillé ignoré
                        C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP L'objet est verrouillé ignoré
                        C:\WINDOWS\wiadebug.log L'objet est verrouillé ignoré
                        C:\WINDOWS\wiaservc.log L'objet est verrouillé ignoré
                        C:\WINDOWS\WindowsUpdate.log L'objet est verrouillé ignoré
                        E:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré
                        E:\System Volume Information\_restore{751238CC-FEB5-4605-9EA9-B441EBD3D66D}\RP38\change.log L'objet est verrouillé ignoré
                        Analyse terminée.
                        1. Contributeur sécurité
                          le rapport est vierge ... ^^"

                          bizard ton prb ...

                          Fais exactement ce qui suit :

                          Télécharges ComboFix (par sUBs) sur ton Bureau (et pas ailleurs !):

                          http://download.bleepingcomputer.com/sUBs/ComboFix.exe

                          --------------------------------------------- [ ! ATTENTION ! ] ----------------------------------------------------------
                          !! Déconnectes toi,fermes tes applications en cours et DESACTIVES TOUTES TES DEFENSES (anti-virus, guardes anti spy-ware, pare-feu) le temps de la manipe :
                          en effet , activés, ils pourraient gêner fortement la procédure de recherche et de nettoyage de l'outil ( voir planter le PC )...Tu les réactiveras donc après !!
                          --->Important : si tu rencontres des difficultés à ce niveau là, fais m'en part avant de poursuivre ...
                          Tuto ( aide ) ici : https://www.bleepingcomputer.com/combofix/fr/comment-utiliser-combofix

                          ---------------------------------------------------------------------------------------------------------------------------------

                          Ensuite :
                          double-cliques sur l'icône "combofix.exe" pour lancer l'outil .

                          Appuyes sur la touche Y (Yes) pour démarrer le scan .

                          Notes importantes :
                          --> n'utilise pas ta souris ni ton clavier (ni un autre système de pointage) pendant que le programme tourne. Cela pourrait figer l'ordi .
                          --> Il se peut que le PC redémarre de lui même ( pour finaliser le nettoyage ) , laisses le faire .
                          --> si un message d'erreur windows apparait à un momment : clik sur la croix rouge en haut à droite de la fenêtre pour la fermer ( et pas sur autre chose ! sinon pas de rapport ... )

                          Le rapport sera crée dans: C:\Combofix.txt

                          Postes le rapport Combofix pour analyse ...
                          1. Salut, je suis de retour.
                            Voici le nouveau rapport.

                            ComboFix 08-09-28.01 - FC 2008-09-29 19:47:28.1 - NTFSx86
                            Microsoft Windows XP Édition familiale 5.1.2600.3.1252.1.1036.18.676 [GMT 2:00]
                            Lancé depuis: C:\Documents and Settings\FC\Bureau\ComboFix.exe
                            * Un nouveau point de restauration a été créé
                            .

                            ((((((((((((((((((((((((((((( Fichiers créés du 2008-08-28 au 2008-09-29 ))))))))))))))))))))))))))))))))))))
                            .

                            2008-09-28 18:17 . 2008-09-28 18:17 <REP> d-------- C:\WINDOWS\system32\Kaspersky Lab
                            2008-09-28 17:56 . 2008-09-28 17:56 2,480 --a------ C:\Documents and Settings\Orph.egd
                            2008-09-28 17:53 . 2008-09-28 17:56 <REP> d-------- C:\ToolBar SD
                            2008-09-28 12:29 . 2008-09-28 12:29 <REP> d-------- C:\Program Files\Malwarebytes' Anti-Malware
                            2008-09-28 12:29 . 2008-09-28 12:29 <REP> d-------- C:\Documents and Settings\FC\Application Data\Malwarebytes
                            2008-09-28 12:29 . 2008-09-28 12:29 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
                            2008-09-28 12:29 . 2008-09-10 00:04 38,528 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys
                            2008-09-28 12:29 . 2008-09-10 00:03 17,200 --a------ C:\WINDOWS\system32\drivers\mbam.sys
                            2008-09-28 11:58 . 2008-09-28 11:58 <REP> d-------- C:\Documents and Settings\All Users\Application Data\NortonInstaller
                            2008-09-28 11:25 . 2008-09-28 11:25 <REP> d-------- C:\rsit
                            2008-09-28 00:50 . 2008-09-28 00:50 <REP> d-------- C:\Program Files\Trend Micro
                            2008-09-27 16:38 . 2008-09-27 16:38 <REP> d-------- C:\Documents and Settings\All Users\Application Data\ViaMichelin
                            2008-09-27 16:32 . 2008-09-27 16:32 <REP> d-------- C:\Program Files\ViaMichelin
                            2008-09-27 13:38 . 2008-09-27 13:38 <REP> d-------- C:\Program Files\Microsoft ActiveSync
                            2008-09-27 13:37 . 2008-09-27 13:37 <REP> d-------- C:\WINDOWS\Downloaded Installations
                            2008-09-27 13:05 . 2008-04-14 03:57 32,128 --a------ C:\WINDOWS\system32\drivers\wceusbsh.sys
                            2008-09-21 11:14 . 2008-09-21 11:14 <REP> d-------- C:\Program Files\Fichiers communs\Adobe
                            2008-09-21 11:11 . 2008-09-21 15:02 <REP> d-------- C:\Program Files\NOS
                            2008-09-21 11:11 . 2008-09-21 15:02 <REP> d-------- C:\Documents and Settings\All Users\Application Data\NOS
                            2008-09-21 10:37 . 2008-09-21 10:37 <REP> d-------- C:\WINDOWS\EPSON CardMonitor Essential
                            2008-09-21 10:36 . 2008-09-21 10:36 <REP> d-------- C:\WINDOWS\EPSON PhotoStarter Essential
                            2008-09-21 10:36 . 2008-09-21 10:36 <REP> d-------- C:\Documents and Settings\All Users\Application Data\UDL
                            2008-09-21 10:35 . 2003-07-02 01:00 131,072 --a------ C:\WINDOWS\system32\Epcmlib.dll
                            2008-09-21 10:31 . 2008-09-21 10:31 <REP> d-------- C:\Program Files\ArcSoft
                            2008-09-21 10:31 . 1995-07-31 12:44 212,480 --a------ C:\WINDOWS\PCDLIB32.DLL
                            2008-09-21 10:25 . 2008-09-21 10:30 <REP> d-------- C:\Program Files\Smart Panel
                            2008-09-21 10:25 . 1999-06-15 11:31 96,768 --a------ C:\WINDOWS\SlantAdj.dll
                            2008-09-21 10:25 . 1999-12-07 02:03 73,216 --a------ C:\WINDOWS\ADE.DLL
                            2008-09-21 10:25 . 1999-04-27 00:17 3,136 --a------ C:\WINDOWS\Ade001.bin
                            2008-09-21 10:25 . 1999-08-09 23:50 72 --------- C:\WINDOWS\system32\epDPE.ini
                            2008-09-21 10:16 . 2004-02-01 02:00 413,696 --a------ C:\WINDOWS\system32\PICSDK.dll
                            2008-09-21 10:16 . 2002-11-15 00:00 114,688 --a------ C:\WINDOWS\system32\EpPicPrt.dll
                            2008-09-21 10:16 . 2002-11-15 00:00 65,536 --a------ C:\WINDOWS\system32\EPPicMgr.dll
                            2008-09-21 10:16 . 2004-02-01 02:00 34,782 --a------ C:\WINDOWS\system32\EPPICPrinterDB.dat
                            2008-09-21 10:16 . 2004-02-01 02:00 27,030 --a------ C:\WINDOWS\system32\EPPICPattern1.dat
                            2008-09-21 10:16 . 2004-02-01 02:00 5,978 --a------ C:\WINDOWS\system32\EPPICLocal_FR.cfg
                            2008-09-21 10:16 . 2004-02-01 02:00 22 --a------ C:\WINDOWS\system32\PICSDK.ini
                            2008-09-21 10:03 . 2008-09-21 10:03 8,284 --a------ C:\WINDOWS\system32\eps_icon.avi
                            2008-09-21 10:02 . 2008-09-21 10:02 25 --a------ C:\WINDOWS\CDE RX420FG.ini
                            2008-09-21 10:01 . 2008-09-21 10:38 <REP> d-------- C:\Program Files\EPSON
                            2008-09-21 10:01 . 2004-04-20 07:03 79,654 --a------ C:\WINDOWS\system32\E_FLM9CE.DLL
                            2008-09-21 10:01 . 2003-05-21 04:27 64,000 --a------ C:\WINDOWS\system32\E_FBCB9CE.DLL
                            2008-09-21 10:01 . 2000-06-07 03:01 34,304 --a------ C:\WINDOWS\system32\E_FBCH9CE.DLL
                            2008-09-21 10:01 . 2003-04-10 07:40 31,744 --a------ C:\WINDOWS\system32\E_DCINST.DLL
                            2008-09-21 09:59 . 2003-07-01 00:00 46,080 --a------ C:\WINDOWS\system32\escimgd.dll
                            2008-09-21 09:59 . 2003-08-06 00:00 29,184 --a------ C:\WINDOWS\system32\escwiadn.dll
                            2008-09-21 09:59 . 2008-04-13 20:47 25,856 --a------ C:\WINDOWS\system32\drivers\usbprint.sys
                            2008-09-21 09:59 . 2008-04-13 20:47 25,856 --a------ C:\WINDOWS\system32\dllcache\usbprint.sys
                            2008-09-21 09:59 . 2003-07-01 00:00 22,528 --a------ C:\WINDOWS\system32\esccmd.dll
                            2008-09-21 09:59 . 2008-04-13 20:45 15,104 --a------ C:\WINDOWS\system32\drivers\usbscan.sys
                            2008-09-21 09:59 . 2008-04-13 20:45 15,104 --a------ C:\WINDOWS\system32\dllcache\usbscan.sys
                            2008-09-21 09:10 . 2008-09-21 09:10 2 --a------ C:\WINDOWS\msoffice.ini
                            2008-09-21 08:50 . 2008-09-21 08:50 <REP> d-------- C:\WINDOWS\system32\fr-fr
                            2008-09-21 08:50 . 2008-09-21 08:50 <REP> d-------- C:\WINDOWS\system32\fr
                            2008-09-21 08:50 . 2008-09-21 08:50 <REP> d-------- C:\WINDOWS\system32\bits
                            2008-09-21 08:50 . 2008-09-21 08:50 <REP> d-------- C:\WINDOWS\l2schemas
                            2008-09-21 08:46 . 2008-09-21 08:51 <REP> d-------- C:\WINDOWS\ServicePackFiles
                            2008-09-21 08:37 . 2008-09-21 08:37 <REP> d-------- C:\WINDOWS\EHome
                            2008-09-20 22:53 . 2008-09-20 22:53 <REP> d-------- C:\Program Files\Microsoft IntelliPoint
                            2008-09-20 22:50 . 2008-09-20 22:50 <REP> d-------- C:\Documents and Settings\FC\Application Data\vlc
                            2008-09-20 22:47 . 2008-09-20 22:47 <REP> d-------- C:\Program Files\VideoLAN
                            2008-09-20 22:45 . 2008-09-20 22:45 <REP> d-------- C:\Documents and Settings\FC\Application Data\Talkback
                            2008-09-20 22:44 . 2008-09-28 17:48 <REP> d-------- C:\Program Files\Mozilla Thunderbird
                            2008-09-20 22:44 . 2008-09-20 22:44 <REP> d-------- C:\Documents and Settings\FC\Application Data\Thunderbird
                            2008-09-20 22:32 . 2008-09-20 22:32 <REP> d-------- C:\Program Files\MSXML 4.0
                            2008-09-20 22:21 . 2008-09-28 00:38 <REP> d-------- C:\Documents and Settings\FC\Application Data\OpenOffice.org2
                            2008-09-20 22:20 . 2004-08-03 22:41 1,041,536 --------- C:\WINDOWS\system32\drivers\hsfdpsp2.sys
                            2008-09-20 22:20 . 2004-08-03 22:41 685,056 --------- C:\WINDOWS\system32\drivers\hsfcxts2.sys
                            2008-09-20 22:20 . 2004-08-03 22:41 220,032 --------- C:\WINDOWS\system32\drivers\hsfbs2s2.sys
                            2008-09-20 22:20 . 2004-07-17 22:55 129,045 --------- C:\WINDOWS\system32\drivers\cxthsfs2.cty
                            2008-09-20 22:20 . 2004-08-03 22:41 11,868 --------- C:\WINDOWS\system32\drivers\mdmxsdk.sys
                            2008-09-20 22:16 . 2008-09-20 22:16 <REP> d-------- C:\Program Files\OpenOffice.org 2.4
                            2008-09-20 22:07 . 2008-09-20 22:08 <REP> d-------- C:\Program Files\CCleaner
                            2008-09-20 21:48 . 2008-09-20 21:48 <REP> d-------- C:\Program Files\Windows Media Connect 2
                            2008-09-20 21:46 . 2008-09-27 18:42 <REP> d-------- C:\WINDOWS\system32\LogFiles
                            2008-09-20 21:46 . 2008-09-20 21:47 <REP> d-------- C:\WINDOWS\system32\drivers\UMDF
                            2008-09-20 21:42 . 2008-06-14 19:33 272,768 --------- C:\WINDOWS\system32\drivers\bthport.sys
                            2008-09-20 21:42 . 2008-06-14 19:33 272,768 --------- C:\WINDOWS\system32\dllcache\bthport.sys
                            2008-09-20 21:41 . 2008-04-11 21:05 691,712 --------- C:\WINDOWS\system32\dllcache\inetcomm.dll
                            2008-09-20 21:41 . 2008-06-20 13:51 361,600 --------- C:\WINDOWS\system32\dllcache\tcpip.sys
                            2008-09-20 21:41 . 2008-05-01 16:36 331,776 --------- C:\WINDOWS\system32\dllcache\msadce.dll
                            2008-09-20 21:41 . 2008-06-20 19:47 247,808 --------- C:\WINDOWS\system32\dllcache\mswsock.dll
                            2008-09-20 21:41 . 2008-06-20 13:08 225,856 --------- C:\WINDOWS\system32\dllcache\tcpip6.sys
                            2008-09-20 21:41 . 2008-05-08 16:02 203,136 --------- C:\WINDOWS\system32\dllcache\rmcast.sys
                            2008-09-20 21:41 . 2008-06-20 19:47 147,968 --------- C:\WINDOWS\system32\dllcache\dnsapi.dll
                            2008-09-20 21:41 . 2008-06-20 13:40 138,496 --------- C:\WINDOWS\system32\dllcache\afd.sys
                            2008-09-20 21:30 . 2008-06-24 18:44 74,240 --------- C:\WINDOWS\system32\dllcache\mscms.dll
                            2008-09-20 21:20 . 2008-09-28 17:53 <REP> d-------- C:\Documents and Settings\FC\Application Data\F-Secure
                            2008-09-20 21:14 . 2008-09-20 21:14 <REP> d-------- C:\Documents and Settings\All Users\Application Data\F-Secure
                            2008-09-20 21:14 . 2008-09-20 21:23 51,072 --a------ C:\WINDOWS\system32\drivers\fsdfw.sys
                            2008-09-20 21:14 . 2008-09-20 21:23 30,016 --a------ C:\WINDOWS\system32\drivers\fsndis5.sys
                            2008-09-20 21:12 . 2008-09-20 21:12 <REP> d-------- C:\Documents and Settings\All Users\Application Data\fssg
                            2008-09-20 20:55 . 2008-09-20 21:28 <REP> d-------- C:\Program Files\Pack Securite
                            2008-09-20 20:50 . 2008-09-20 20:51 2,308 --a------ C:\WINDOWS\mozver.dat
                            2008-09-20 19:59 . 2008-09-21 09:49 <REP> d-------- C:\Program Files\Neuf
                            2008-09-20 19:54 . 2004-08-16 17:55 <REP> d--h----- C:\Documents and Settings\FC\Voisinage r‚seau
                            2008-09-20 19:54 . 2004-08-16 17:55 <REP> d--h----- C:\Documents and Settings\FC\Voisinage d'impression
                            2008-09-20 19:54 . 2004-08-16 17:55 <REP> d--h----- C:\Documents and Settings\FC\ModŠles
                            2008-09-20 19:54 . 2008-09-21 19:42 <REP> dr------- C:\Documents and Settings\FC\Mes documents
                            2008-09-20 19:54 . 2004-08-16 17:55 <REP> dr------- C:\Documents and Settings\FC\Menu D‚marrer
                            2008-09-20 19:54 . 2008-09-21 09:00 <REP> dr------- C:\Documents and Settings\FC\Favoris
                            2008-09-20 19:54 . 2008-09-29 19:42 <REP> dr------- C:\Documents and Settings\FC\Bureau
                            2008-09-20 19:54 . 2008-09-20 19:33 <REP> d-------- C:\Documents and Settings\FC\Application Data\You've Got Pictures Screensaver
                            2008-09-20 19:54 . 2008-09-28 17:51 <REP> d-------- C:\Documents and Settings\FC
                            2008-09-20 19:54 . 2004-08-05 14:00 221,184 --a------ C:\WINDOWS\system32\wmpns.dll
                            2008-09-20 19:48 . 2008-09-20 19:48 8,192 --a------ C:\WINDOWS\REGLOCS.OLD
                            2008-09-20 19:47 . 2008-09-20 19:47 333 --a------ C:\WINDOWS\system32\$ncsp$.inf
                            2008-09-20 19:47 . 2008-09-20 19:47 61 --a------ C:\WINDOWS\smscfg.ini
                            2008-09-20 19:46 . 2008-09-20 19:46 795,821 --a------ C:\WINDOWS\system\RESTORE.INS
                            2008-09-20 19:46 . 2008-09-20 19:46 795,821 --a------ C:\WINDOWS\RESTORE.INS
                            2008-09-20 19:42 . 2008-09-20 19:42 <REP> d-------- C:\Program Files\Fichiers communs\Sonic Shared
                            2008-09-20 19:41 . 2008-09-20 19:41 <REP> d-------- C:\mysql
                            2008-09-20 19:41 . 2001-11-02 02:12 36,864 --a------ C:\WINDOWS\jRegistryKey.dll
                            2008-09-20 19:41 . 2008-09-20 19:41 289 --a------ C:\WINDOWS\my.ini
                            2008-09-20 19:40 . 2008-09-20 19:40 <REP> d-------- C:\WINDOWS\ShellNew
                            2008-09-20 19:40 . 2008-09-20 19:40 385 --a------ C:\WINDOWS\ODBC.INI
                            2008-09-20 19:38 . 2008-09-20 19:38 <REP> d-------- C:\Program Files\Fichiers communs\xing shared
                            2008-09-20 19:34 . 2008-09-28 11:56 <REP> d-------- C:\Program Files\Fichiers communs\Symantec Shared
                            2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\WINDOWS\system32\QuickTime
                            2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\WINDOWS\occache
                            2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\Program Files\Viewpoint
                            2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\Program Files\QuickTime
                            2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\Program Files\Learn2.com
                            2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\Program Files\Fichiers communs\Nullsoft
                            2008-09-20 19:33 . 2008-09-20 19:33 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Viewpoint

                            .
                            (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
                            .
                            2008-09-20 17:32 8,552 ----a-w C:\WINDOWS\system32\drivers\asctrm.sys
                            2008-07-18 20:10 94,920 ----a-w C:\WINDOWS\system32\dllcache\cdm.dll
                            2008-07-18 20:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll
                            2008-07-18 20:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe
                            2008-07-18 20:10 53,448 ----a-w C:\WINDOWS\system32\dllcache\wuauclt.exe
                            2008-07-18 20:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll
                            2008-07-18 20:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll
                            2008-07-18 20:10 36,552 ----a-w C:\WINDOWS\system32\dllcache\wups.dll
                            2008-07-18 20:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll
                            2008-07-18 20:09 563,912 ----a-w C:\WINDOWS\system32\dllcache\wuapi.dll
                            2008-07-18 20:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll
                            2008-07-18 20:09 325,832 ----a-w C:\WINDOWS\system32\dllcache\wucltui.dll
                            2008-07-18 20:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll
                            2008-07-18 20:09 205,000 ----a-w C:\WINDOWS\system32\dllcache\wuweb.dll
                            2008-07-18 20:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll
                            2008-07-18 20:09 1,811,656 ----a-w C:\WINDOWS\system32\dllcache\wuaueng.dll
                            2008-07-07 20:28 253,952 ----a-w C:\WINDOWS\system32\es.dll
                            2008-07-07 20:28 253,952 ------w C:\WINDOWS\system32\dllcache\es.dll
                            .

                            ((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
                            .
                            .
                            *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
                            REGEDIT4

                            [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                            "H/PC Connection Agent"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe" [2006-06-26 1211176]

                            [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                            "F-Secure Manager"="C:\Program Files\Pack Securite\Common\FSM32.EXE" [2007-04-26 183208]
                            "F-Secure TNB"="C:\Program Files\Pack Securite\FSGUI\TNBUtil.exe" [2007-04-26 740208]
                            "ClickMe"="C:\apps\ClickMe\ClickMe.exe" [2004-02-23 135168]
                            "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe" [2007-12-14 144784]
                            "IntelliPoint"="C:\Program Files\Microsoft IntelliPoint\point32.exe" [2005-03-24 217088]
                            "EPSON Stylus Photo RX420 Series"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9CE.EXE" [2004-04-09 98304]
                            "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]

                            [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
                            "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2008-04-14 15360]

                            [HKLM\~\startupfolder\C:^Documents and Settings^FC^Menu Démarrer^Programmes^Démarrage^OpenOffice.org 2.4.lnk]
                            path=C:\Documents and Settings\FC\Menu Démarrer\Programmes\Démarrage\OpenOffice.org 2.4.lnk
                            backup=C:\WINDOWS\pss\OpenOffice.org 2.4.lnkStartup

                            [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ATIPTA]
                            --a------ 2005-03-22 21:05 339968 C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe

                            [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMJPMIG8.1]
                            --a------ 2004-08-05 14:00 208952 C:\WINDOWS\ime\IMJP8_1\imjpmig.exe

                            [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
                            --a------ 2008-04-14 04:34 1695232 C:\Program Files\Messenger\msmsgs.exe

                            [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCMService]
                            --------- 2005-05-11 13:48 127118 c:\APPS\Powercinema\PCMService.exe

                            [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002A]
                            --a------ 2004-08-05 14:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE

                            [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PHIME2002ASync]
                            --a------ 2004-08-05 14:00 455168 C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE

                            [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RMC]
                            --a------ 2005-03-28 17:55 24576 C:\WINDOWS\system32\drivers\RMC.exe

                            [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
                            --a------ 2004-06-03 22:05 32881 C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe

                            [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh]
                            --a------ 2005-03-04 11:12 708698 C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

                            [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPLpr]
                            --a------ 2005-03-04 11:13 102490 C:\Program Files\Synaptics\SynTP\SynTPLpr.exe

                            [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Raccourci vers la page des propriétés de High Definition Audio]
                            --a------ 2005-01-07 17:07 61952 C:\WINDOWS\system32\HdAShCut.exe

                            [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
                            "SPBBCSvc"=3 (0x3)
                            "SNDSrvc"=3 (0x3)
                            "SLService"=2 (0x2)
                            "SAVScan"=3 (0x3)
                            "navapsvc"=2 (0x2)
                            "MySqlInventime"=3 (0x3)
                            "MDM"=2 (0x2)
                            "ISSVC"=3 (0x3)
                            "GenericHidService"=2 (0x2)
                            "CyberLink Media Library Service"=2 (0x2)
                            "CLSched"=2 (0x2)
                            "CLCapSvc"=2 (0x2)
                            "ccSetMgr"=2 (0x2)
                            "ccPwdSvc"=3 (0x3)
                            "ccProxy"=2 (0x2)
                            "ccEvtMgr"=2 (0x2)
                            "Ati HotKey Poller"=2 (0x2)
                            "AOL ACS"=2 (0x2)

                            [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
                            "DisableMonitoring"=dword:00000001

                            [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
                            "DisableMonitoring"=dword:00000001

                            [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
                            "EnableFirewall"= 0 (0x0)

                            [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
                            "%ProgramFiles%\\AOL 9.0\\aol.exe"=
                            "%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\logo_ubi.exe"=
                            "%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\pandora.exe"=
                            "%windir%\\system32\\sessmgr.exe"=
                            "C:\\APPS\\Inventime\\my.exe"=
                            "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
                            "C:\Program Files\Neuf\Media Center\httpd\httpd.exe"= C:\Program Files\Neuf\Media Center\httpd\httpd.exe:172.16.255.0/255.255.255.0,192.168.1.2/255.255.255.255:Enabled:Serveur de partage Media Center (Player Neuf Cegetel)
                            "C:\Program Files\Microsoft ActiveSync\rapimgr.exe"= C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
                            "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"= C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager
                            "C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"= C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application

                            [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
                            "26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service

                            R0 FSFW;F-Secure Firewall Driver;C:\WINDOWS\system32\drivers\fsdfw.sys [2008-09-20 51072]
                            R1 F-Secure HIPS;F-Secure HIPS;C:\Program Files\Pack Securite\HIPS\fshs.sys [2008-09-20 41184]
                            R2 MTC0001_RMC;Remove Control Device;C:\WINDOWS\system32\drivers\RMC.sys [2005-04-22 13912]
                            R3 F-Secure Gatekeeper;F-Secure Gatekeeper;C:\Program Files\Pack Securite\Anti-Virus\minifilter\fsgk.sys [2007-04-26 59760]
                            R3 Slazldrv;SmartLink AMR_PCI Driver;C:\WINDOWS\system32\DRIVERS\SLDRV\slazldrv.sys [2005-01-05 226768]
                            S3 PALLADIA;Palladia 300/400 Usb Adsl Modem;C:\WINDOWS\system32\DRIVERS\usbiad.sys [2005-06-13 31579]
                            S3 ULI5261;ULi Based Ethernet NT Driver;C:\WINDOWS\system32\DRIVERS\ULILAN.SYS [2004-12-31 28160]
                            S4 F-Secure Filter;F-Secure File System Filter;C:\Program Files\Pack Securite\Anti-Virus\Win2K\FSfilter.sys [2007-04-26 40048]
                            S4 F-Secure Recognizer;F-Secure File System Recognizer;C:\Program Files\Pack Securite\Anti-Virus\Win2K\FSrec.sys [2007-04-26 25456]

                            *Newly Created Service* - PROCEXP90
                            .
                            Contenu du dossier 'Tâches planifiées'
                            .
                            - - - - ORPHELINS SUPPRIMES - - - -

                            MSConfigStartUp-ccApp - C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
                            MSConfigStartUp-IS CfgWiz - C:\Program Files\Norton Internet Security\cfgwiz.exe
                            MSConfigStartUp-SSC_UserPrompt - C:\Program Files\Fichiers communs\Symantec Shared\Security Center\UsrPrmpt.exe

                            .
                            ------- Examen supplémentaire -------
                            .
                            FireFox -: Profile - C:\Documents and Settings\FC\Application Data\Mozilla\Firefox\Profiles\m4cpo2qw.default\
                            FireFox -: prefs.js - SEARCH.DEFAULTURL - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
                            FireFox -: prefs.js - STARTUP.HOMEPAGE - hxxp://www.neufportail.fr/
                            FF -: plugin - C:\Program Files\Mozilla Firefox\plugins\np_gp.dll
                            FF -: plugin - C:\Program Files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
                            .

                            **************************************************************************

                            catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
                            Rootkit scan 2008-09-29 19:49:31
                            Windows 5.1.2600 Service Pack 3 NTFS

                            Recherche de processus cachés ...

                            Recherche d'éléments en démarrage automatique cachés ...

                            Recherche de fichiers cachés ...

                            Scan terminé avec succès
                            Fichiers cachés: 0

                            **************************************************************************

                            [HKEY_LOCAL_MACHINE\system\ControlSet001\Services\MySqlInventime]
                            "ImagePath"="c:\mysql\bin\mysqld-max-nt MySqlInventime"
                            .
                            Heure de fin: 2008-09-29 19:50:31
                            ComboFix-quarantined-files.txt 2008-09-29 17:50:26

                            Avant-CF: 38ÿ768ÿ144ÿ384 octets libres
                            Après-CF: 38,800,003,072 octets libres

                            277 --- E O F --- 2008-09-21 08:55:21
                            1. Contributeur sécurité
                              Bein...

                              1-Avoir accès aux fichiers cachés :

                              Vas dans Menu Démarrer->Poste de travail->Outils->Options des dossiers...->Affichage
                              * "Afficher les fichiers et dossiers cachés" ---> coché
                              * "Masquer les extensions des fichiers dont le type est connu" ---> décoché
                              * "masquer les fichiers du système" ---> décoché
                              -> valides la modif ( "appliquer" puis "ok" ).
                              ( tu remetteras les paramètres de départ une fois la désinfection terminée , pas avant ... )

                              2-Rends toi sur ce site :

                              https://www.virustotal.com/gui/

                              Copies ce qui suit et colles le dans l'espace pour la recherche :
                              C:\Program Files\Mozilla Firefox\plugins\np_gp.dll

                              Cliques sur Send File ( = " Envoyer le fichier " ).

                              Un rapport va s'élaborer ligne à ligne.

                              Attends bien la fin ... Il doit comprendre la taille du fichier envoyé.

                              Sauvegarde le rapport avec le bloc-note.

                              Copies le dans ta prochaine réponse ...

                              ( Si VirusTotal indique que le fichier a déjà été analysé, clique sur le bouton Ré-analyse le fichier maintenant )

                              Fais de même pour :
                              C:\WINDOWS\REGLOCS.OLD
                              C:\WINDOWS\smscfg.ini
                              C:\WINDOWS\system\RESTORE.INS
                              C:\WINDOWS\jRegistryKey.dll
                              C:\WINDOWS\my.ini

                              postes moi donc ces 6 rapports ( surtout le début avec le listing des AV , et en précisant bien au début de chacuns à quel fichier ils correspondent ) et attends la suite ...

                              1. Bonsoir et désolé de ne pas pouvoir rester plus tard le soir, mais je commence à bosser de très bonne heure et je rentre assez tard.
                                Voici donc les rapports; mais en ce qui concerne le fichier de mozilla, il n'est pas sur mon ordi, alors j'ai fait analyser les 4 qui sont présents dans le dossier.
                                Le nom de chaque fichier est indiqué au début de chaque rapport.

                                Fichier REGLOCS.OLD reçu le 2008.09.30 21:23:05 (CET)
                                Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
                                Résultat: 0/36 (0%)
                                en train de charger les informations du serveur...
                                Votre fichier est dans la file d'attente, en position: 1.
                                L'heure estimée de démarrage est entre 39 et 56 secondes.
                                Ne fermez pas la fenêtre avant la fin de l'analyse.
                                L'analyseur qui traitait votre fichier est actuellement stoppé, nous allons attendre quelques secondes pour tenter de récupérer vos résultats.
                                Si vous attendez depuis plus de cinq minutes, vous devez renvoyer votre fichier.
                                Votre fichier est, en ce moment, en cours d'analyse par VirusTotal,
                                les résultats seront affichés au fur et à mesure de leur génération.
                                Formaté Formaté
                                Impression des résultats Impression des résultats
                                Votre fichier a expiré ou n'existe pas.
                                Le service est en ce moment, stoppé, votre fichier attend d'être analysé (position : ) depuis une durée indéfinie.

                                Vous pouvez attendre une réponse du Web (re-chargement automatique) ou taper votre e-mail dans le formulaire ci-dessous et cliquer "Demande" pour que le système vous envoie une notification quand l'analyse sera terminée.
                                Email:

                                Antivirus Version Dernière mise à jour Résultat
                                AhnLab-V3 2008.10.1.0 2008.09.30 -
                                AntiVir 7.8.1.34 2008.09.30 -
                                Authentium 5.1.0.4 2008.09.30 -
                                Avast 4.8.1195.0 2008.09.30 -
                                AVG 8.0.0.161 2008.09.30 -
                                BitDefender 7.2 2008.09.30 -
                                CAT-QuickHeal 9.50 2008.09.30 -
                                ClamAV 0.93.1 2008.09.30 -
                                DrWeb 4.44.0.09170 2008.09.30 -
                                eSafe 7.0.17.0 2008.09.30 -
                                eTrust-Vet 31.6.6118 2008.09.30 -
                                Ewido 4.0 2008.09.30 -
                                F-Prot 4.4.4.56 2008.09.30 -
                                F-Secure 8.0.14332.0 2008.09.30 -
                                Fortinet 3.113.0.0 2008.09.30 -
                                GData 19 2008.09.30 -
                                Ikarus T3.1.1.34.0 2008.09.30 -
                                K7AntiVirus 7.10.478 2008.09.30 -
                                Kaspersky 7.0.0.125 2008.09.30 -
                                McAfee 5394 2008.09.30 -
                                Microsoft 1.4005 2008.09.30 -
                                NOD32 3483 2008.09.30 -
                                Norman 5.80.02 2008.09.30 -
                                Panda 9.0.0.4 2008.09.30 -
                                PCTools 4.4.2.0 2008.09.30 -
                                Prevx1 V2 2008.09.30 -
                                Rising 20.63.62.00 2008.09.28 -
                                SecureWeb-Gateway 6.7.6 2008.09.30 -
                                Sophos 4.34.0 2008.09.30 -
                                Sunbelt 3.1.1675.1 2008.09.27 -
                                Symantec 10 2008.09.30 -
                                TheHacker 6.3.0.9.097 2008.09.29 -
                                TrendMicro 8.700.0.1004 2008.09.30 -
                                VBA32 3.12.8.6 2008.09.30 -
                                ViRobot 2008.9.30.1398 2008.09.30 -
                                VirusBuster 4.5.11.0 2008.09.30 -
                                Information additionnelle
                                File size: 8192 bytes
                                MD5...: 43af4af371b4fd52e402944a110f7d74
                                SHA1..: 59d01e9daf9bea98c6796b12947e9cac772f1eef
                                SHA256: 68691651fba333b89fdc7b32ba7e1078aef3e9d979558b8897e5732e9e156163
                                SHA512: 205e3e55db58c5338bb0f0eea311d8271fe14c044c31a554c48d5ef93e095fc7
                                a0b11de241a3fc25afb1242357eb4d043d2660a449d5149a98f230de8511379c
                                PEiD..: -
                                TrID..: File type identification
                                Windows NT Registry Hive (95.4%)
                                Memo File Apollo Database Engine (2.0%)
                                Lumena CEL bitmap (1.5%)
                                Corel Photo Paint (0.9%)
                                PEInfo: -

                                Fichier smscfg.ini reçu le 2008.09.30 21:25:25 (CET)
                                Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
                                Résultat: 0/36 (0%)
                                en train de charger les informations du serveur...
                                Votre fichier est dans la file d'attente, en position: ___.
                                L'heure estimée de démarrage est entre ___ et ___ .
                                Ne fermez pas la fenêtre avant la fin de l'analyse.
                                L'analyseur qui traitait votre fichier est actuellement stoppé, nous allons attendre quelques secondes pour tenter de récupérer vos résultats.
                                Si vous attendez depuis plus de cinq minutes, vous devez renvoyer votre fichier.
                                Votre fichier est, en ce moment, en cours d'analyse par VirusTotal,
                                les résultats seront affichés au fur et à mesure de leur génération.
                                Formaté Formaté
                                Impression des résultats Impression des résultats
                                Votre fichier a expiré ou n'existe pas.
                                Le service est en ce moment, stoppé, votre fichier attend d'être analysé (position : ) depuis une durée indéfinie.

                                Vous pouvez attendre une réponse du Web (re-chargement automatique) ou taper votre e-mail dans le formulaire ci-dessous et cliquer "Demande" pour que le système vous envoie une notification quand l'analyse sera terminée.
                                Email:

                                Antivirus Version Dernière mise à jour Résultat
                                AhnLab-V3 2008.10.1.0 2008.09.30 -
                                AntiVir 7.8.1.34 2008.09.30 -
                                Authentium 5.1.0.4 2008.09.30 -
                                Avast 4.8.1195.0 2008.09.30 -
                                AVG 8.0.0.161 2008.09.30 -
                                BitDefender 7.2 2008.09.30 -
                                CAT-QuickHeal 9.50 2008.09.30 -
                                ClamAV 0.93.1 2008.09.30 -
                                DrWeb 4.44.0.09170 2008.09.30 -
                                eSafe 7.0.17.0 2008.09.30 -
                                eTrust-Vet 31.6.6118 2008.09.30 -
                                Ewido 4.0 2008.09.30 -
                                F-Prot 4.4.4.56 2008.09.30 -
                                F-Secure 8.0.14332.0 2008.09.30 -
                                Fortinet 3.113.0.0 2008.09.30 -
                                GData 19 2008.09.30 -
                                Ikarus T3.1.1.34.0 2008.09.30 -
                                K7AntiVirus 7.10.478 2008.09.30 -
                                Kaspersky 7.0.0.125 2008.09.30 -
                                McAfee 5394 2008.09.30 -
                                Microsoft 1.4005 2008.09.30 -
                                NOD32 3483 2008.09.30 -
                                Norman 5.80.02 2008.09.30 -
                                Panda 9.0.0.4 2008.09.30 -
                                PCTools 4.4.2.0 2008.09.30 -
                                Prevx1 V2 2008.09.30 -
                                Rising 20.63.62.00 2008.09.28 -
                                SecureWeb-Gateway 6.7.6 2008.09.30 -
                                Sophos 4.34.0 2008.09.30 -
                                Sunbelt 3.1.1675.1 2008.09.27 -
                                Symantec 10 2008.09.30 -
                                TheHacker 6.3.0.9.097 2008.09.29 -
                                TrendMicro 8.700.0.1004 2008.09.30 -
                                VBA32 3.12.8.6 2008.09.30 -
                                ViRobot 2008.9.30.1398 2008.09.30 -
                                VirusBuster 4.5.11.0 2008.09.30 -
                                Information additionnelle
                                File size: 61 bytes
                                MD5...: c0759373caba4620d082671dc8b0b919
                                SHA1..: 2285bd8b4f70f117f16cdb40b25fdf2cfa65cc3e
                                SHA256: e3fe0502e8a2cccbb9c3af98c0c1e6424569e8a92ace9226e6458c960cab8eb7
                                SHA512: 4509a8230165084e98befc2d4526d6b732337068d2e5c5a63e99a75e7b7e7487
                                3cf266b6aa2aa6f6809fb48560e3fd290a677ee2b48ab0864ca0af729f97be42
                                PEiD..: -
                                TrID..: File type identification
                                Generic INI configuration (100.0%)
                                PEInfo: -

                                Fichier RESTORE.INS reçu le 2008.09.30 21:27:23 (CET)
                                Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
                                Résultat: 1/36 (2.78%)
                                en train de charger les informations du serveur...
                                Votre fichier est dans la file d'attente, en position: 1.
                                L'heure estimée de démarrage est entre 39 et 56 secondes.
                                Ne fermez pas la fenêtre avant la fin de l'analyse.
                                L'analyseur qui traitait votre fichier est actuellement stoppé, nous allons attendre quelques secondes pour tenter de récupérer vos résultats.
                                Si vous attendez depuis plus de cinq minutes, vous devez renvoyer votre fichier.
                                Votre fichier est, en ce moment, en cours d'analyse par VirusTotal,
                                les résultats seront affichés au fur et à mesure de leur génération.
                                Formaté Formaté
                                Impression des résultats Impression des résultats
                                Votre fichier a expiré ou n'existe pas.
                                Le service est en ce moment, stoppé, votre fichier attend d'être analysé (position : ) depuis une durée indéfinie.

                                Vous pouvez attendre une réponse du Web (re-chargement automatique) ou taper votre e-mail dans le formulaire ci-dessous et cliquer "Demande" pour que le système vous envoie une notification quand l'analyse sera terminée.
                                Email:

                                Antivirus Version Dernière mise à jour Résultat
                                AhnLab-V3 2008.10.1.0 2008.09.30 -
                                AntiVir 7.8.1.34 2008.09.30 -
                                Authentium 5.1.0.4 2008.09.30 -
                                Avast 4.8.1195.0 2008.09.30 -
                                AVG 8.0.0.161 2008.09.30 -
                                BitDefender 7.2 2008.09.30 -
                                CAT-QuickHeal 9.50 2008.09.30 -
                                ClamAV 0.93.1 2008.09.30 -
                                DrWeb 4.44.0.09170 2008.09.30 -
                                eSafe 7.0.17.0 2008.09.30 -
                                eTrust-Vet 31.6.6118 2008.09.30 -
                                Ewido 4.0 2008.09.30 -
                                F-Prot 4.4.4.56 2008.09.30 -
                                F-Secure 8.0.14332.0 2008.09.30 -
                                Fortinet 3.113.0.0 2008.09.30 -
                                GData 19 2008.09.30 -
                                Ikarus T3.1.1.34.0 2008.09.30 -
                                K7AntiVirus 7.10.478 2008.09.30 -
                                Kaspersky 7.0.0.125 2008.09.30 -
                                McAfee 5394 2008.09.30 -
                                Microsoft 1.4005 2008.09.30 -
                                NOD32 3483 2008.09.30 -
                                Norman 5.80.02 2008.09.30 -
                                Panda 9.0.0.4 2008.09.30 Suspicious file
                                PCTools 4.4.2.0 2008.09.30 -
                                Prevx1 V2 2008.09.30 -
                                Rising 20.63.62.00 2008.09.28 -
                                SecureWeb-Gateway 6.7.6 2008.09.30 -
                                Sophos 4.34.0 2008.09.30 -
                                Sunbelt 3.1.1675.1 2008.09.27 -
                                Symantec 10 2008.09.30 -
                                TheHacker 6.3.0.9.097 2008.09.29 -
                                TrendMicro 8.700.0.1004 2008.09.30 -
                                VBA32 3.12.8.6 2008.09.30 -
                                ViRobot 2008.9.30.1397 2008.09.30 -
                                VirusBuster 4.5.11.0 2008.09.30 -
                                Information additionnelle
                                File size: 795821 bytes
                                MD5...: 5f19fbc1af59319a957b5023b6bf524b
                                SHA1..: 52e7ff6722c1d9d900bf8ae1fd59015b6cf6852c
                                SHA256: 1cae7ee4ab040723e90a1f5ad04719f75bc03090cf6d58a96fa1de7bd0363e33
                                SHA512: f666d2d8fc6e3c2d269c1cd525c47b72effbffedc686e3c9095c2e7585a3d311
                                c63e2a661dd80e58fca42d9ce47b75cb6fa09bb6e13df38aa6e152c093fad255
                                PEiD..: -
                                TrID..: File type identification
                                ARJ compressed archive (100.0%)
                                PEInfo: -
                                packers (F-Prot): base64

                                Fichier jRegistryKey.dll reçu le 2008.09.30 21:29:14 (CET)
                                Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
                                Résultat: 0/36 (0%)
                                en train de charger les informations du serveur...
                                Votre fichier est dans la file d'attente, en position: 1.
                                L'heure estimée de démarrage est entre 39 et 56 secondes.
                                Ne fermez pas la fenêtre avant la fin de l'analyse.
                                L'analyseur qui traitait votre fichier est actuellement stoppé, nous allons attendre quelques secondes pour tenter de récupérer vos résultats.
                                Si vous attendez depuis plus de cinq minutes, vous devez renvoyer votre fichier.
                                Votre fichier est, en ce moment, en cours d'analyse par VirusTotal,
                                les résultats seront affichés au fur et à mesure de leur génération.
                                Formaté Formaté
                                Impression des résultats Impression des résultats
                                Votre fichier a expiré ou n'existe pas.
                                Le service est en ce moment, stoppé, votre fichier attend d'être analysé (position : ) depuis une durée indéfinie.

                                Vous pouvez attendre une réponse du Web (re-chargement automatique) ou taper votre e-mail dans le formulaire ci-dessous et cliquer "Demande" pour que le système vous envoie une notification quand l'analyse sera terminée.
                                Email:

                                Antivirus Version Dernière mise à jour Résultat
                                AhnLab-V3 2008.10.1.0 2008.09.30 -
                                AntiVir 7.8.1.34 2008.09.30 -
                                Authentium 5.1.0.4 2008.09.30 -
                                Avast 4.8.1195.0 2008.09.30 -
                                AVG 8.0.0.161 2008.09.30 -
                                BitDefender 7.2 2008.09.30 -
                                CAT-QuickHeal 9.50 2008.09.30 -
                                ClamAV 0.93.1 2008.09.30 -
                                DrWeb 4.44.0.09170 2008.09.30 -
                                eSafe 7.0.17.0 2008.09.30 -
                                eTrust-Vet 31.6.6118 2008.09.30 -
                                Ewido 4.0 2008.09.30 -
                                F-Prot 4.4.4.56 2008.09.30 -
                                F-Secure 8.0.14332.0 2008.09.30 -
                                Fortinet 3.113.0.0 2008.09.30 -
                                GData 19 2008.09.30 -
                                Ikarus T3.1.1.34.0 2008.09.30 -
                                K7AntiVirus 7.10.478 2008.09.30 -
                                Kaspersky 7.0.0.125 2008.09.30 -
                                McAfee 5394 2008.09.30 -
                                Microsoft 1.4005 2008.09.30 -
                                NOD32 3483 2008.09.30 -
                                Norman 5.80.02 2008.09.30 -
                                Panda 9.0.0.4 2008.09.30 -
                                PCTools 4.4.2.0 2008.09.30 -
                                Prevx1 V2 2008.09.30 -
                                Rising 20.63.62.00 2008.09.28 -
                                SecureWeb-Gateway 6.7.6 2008.09.30 -
                                Sophos 4.34.0 2008.09.30 -
                                Sunbelt 3.1.1675.1 2008.09.27 -
                                Symantec 10 2008.09.30 -
                                TheHacker 6.3.0.9.097 2008.09.29 -
                                TrendMicro 8.700.0.1004 2008.09.30 -
                                VBA32 3.12.8.6 2008.09.30 -
                                ViRobot 2008.9.30.1398 2008.09.30 -
                                VirusBuster 4.5.11.0 2008.09.30 -
                                Information additionnelle
                                File size: 36864 bytes
                                MD5...: 8c753bdef25b8b94c223f596203fe8b0
                                SHA1..: a4c83ca859e90ac787f9d29b56303a71e3820066
                                SHA256: 230f3b4531c239d4f0bdc918e694b95ac7d41bcf1677ca8e3159f0a191c9bb27
                                SHA512: 7721785d59e1bea2811b0f90f2a6b5d7a7b9a0b9304fe8078fb8e52f02d3621c
                                29fffc8eec7a7f8807ddacd9f86c701e13a406e1deaabf3d7c6f51613b0407a7
                                PEiD..: Armadillo v1.xx - v2.xx
                                TrID..: File type identification
                                Win32 Executable MS Visual C++ (generic) (65.2%)
                                Win32 Executable Generic (14.7%)
                                Win32 Dynamic Link Library (generic) (13.1%)
                                Generic Win/DOS Executable (3.4%)
                                DOS Executable Generic (3.4%)
                                PEInfo: PE Structure information

                                ( base data )
                                entrypointaddress.: 0x10002c6d
                                timedatestamp.....: 0x3be1d6c2 (Thu Nov 01 23:12:02 2001)
                                machinetype.......: 0x14c (I386)

                                ( 4 sections )
                                name viradd virsiz rawdsiz ntrpy md5
                                .text 0x1000 0x4566 0x5000 5.97 cedfc2c63a42c8ec49df869ba480a272
                                .rdata 0x6000 0xd79 0x1000 4.86 6030f9c92293ccc361674d7eb439838b
                                .data 0x7000 0xe3c 0x1000 2.89 45a0c065b0cebb7f1f99a53668818c2a
                                .reloc 0x8000 0x6a0 0x1000 3.20 4d1ebb6be8881d7b1866640023beb7b9

                                ( 3 imports )
                                > ADVAPI32.dll: RegCreateKeyExA, RegOpenKeyExA, RegCloseKey, RegEnumValueA, RegEnumKeyA, RegQueryInfoKeyA, RegQueryValueExA, RegSetValueExA, RegDeleteValueA
                                > SHLWAPI.dll: SHDeleteKeyA
                                > KERNEL32.dll: GetCurrentThreadId, ExpandEnvironmentStringsA, HeapFree, HeapAlloc, GetCommandLineA, GetVersion, HeapDestroy, HeapCreate, VirtualFree, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, ExitProcess, VirtualAlloc, HeapReAlloc, TerminateProcess, GetCurrentProcess, GetEnvironmentStrings, TlsSetValue, TlsAlloc, TlsFree, TlsGetValue, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, GetModuleFileNameA, FreeEnvironmentStringsA, FreeEnvironmentStringsW, WideCharToMultiByte, LoadLibraryA, GetEnvironmentStringsW, WriteFile, MultiByteToWideChar, GetCPInfo, GetACP, GetOEMCP, GetProcAddress, RtlUnwind, LCMapStringA, LCMapStringW, GetStringTypeA, GetStringTypeW

                                ( 15 exports )
                                _JNI_OnLoad@8, _JNI_OnUnload@8, _Java_ca_beq_util_win32_registry_KeyIterator_getNext@8, _Java_ca_beq_util_win32_registry_KeyIterator_hasNext@8, _Java_ca_beq_util_win32_registry_RegistryKey_create@8, _Java_ca_beq_util_win32_registry_RegistryKey_delete@8, _Java_ca_beq_util_win32_registry_RegistryKey_deleteValue@12, _Java_ca_beq_util_win32_registry_RegistryKey_exists@8, _Java_ca_beq_util_win32_registry_RegistryKey_getValue@12, _Java_ca_beq_util_win32_registry_RegistryKey_hasSubkeys@8, _Java_ca_beq_util_win32_registry_RegistryKey_hasValue@12, _Java_ca_beq_util_win32_registry_RegistryKey_hasValues@8, _Java_ca_beq_util_win32_registry_RegistryKey_setValue@12, _Java_ca_beq_util_win32_registry_ValueIterator_getNext@8, _Java_ca_beq_util_win32_registry_ValueIterator_hasNext@8

                                Fichier my.ini reçu le 2008.09.30 21:30:58 (CET)
                                Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
                                Résultat: 0/36 (0%)
                                en train de charger les informations du serveur...
                                Votre fichier est dans la file d'attente, en position: 1.
                                L'heure estimée de démarrage est entre 39 et 56 secondes.
                                Ne fermez pas la fenêtre avant la fin de l'analyse.
                                L'analyseur qui traitait votre fichier est actuellement stoppé, nous allons attendre quelques secondes pour tenter de récupérer vos résultats.
                                Si vous attendez depuis plus de cinq minutes, vous devez renvoyer votre fichier.
                                Votre fichier est, en ce moment, en cours d'analyse par VirusTotal,
                                les résultats seront affichés au fur et à mesure de leur génération.
                                Formaté Formaté
                                Impression des résultats Impression des résultats
                                Votre fichier a expiré ou n'existe pas.
                                Le service est en ce moment, stoppé, votre fichier attend d'être analysé (position : ) depuis une durée indéfinie.

                                Vous pouvez attendre une réponse du Web (re-chargement automatique) ou taper votre e-mail dans le formulaire ci-dessous et cliquer "Demande" pour que le système vous envoie une notification quand l'analyse sera terminée.
                                Email:

                                Antivirus Version Dernière mise à jour Résultat
                                AhnLab-V3 2008.10.1.0 2008.09.30 -
                                AntiVir 7.8.1.34 2008.09.30 -
                                Authentium 5.1.0.4 2008.09.30 -
                                Avast 4.8.1195.0 2008.09.30 -
                                AVG 8.0.0.161 2008.09.30 -
                                BitDefender 7.2 2008.09.30 -
                                CAT-QuickHeal 9.50 2008.09.30 -
                                ClamAV 0.93.1 2008.09.30 -
                                DrWeb 4.44.0.09170 2008.09.30 -
                                eSafe 7.0.17.0 2008.09.30 -
                                eTrust-Vet 31.6.6118 2008.09.30 -
                                Ewido 4.0 2008.09.30 -
                                F-Prot 4.4.4.56 2008.09.30 -
                                F-Secure 8.0.14332.0 2008.09.30 -
                                Fortinet 3.113.0.0 2008.09.30 -
                                GData 19 2008.09.30 -
                                Ikarus T3.1.1.34.0 2008.09.30 -
                                K7AntiVirus 7.10.478 2008.09.30 -
                                Kaspersky 7.0.0.125 2008.09.30 -
                                McAfee 5394 2008.09.30 -
                                Microsoft 1.4005 2008.09.30 -
                                NOD32 3483 2008.09.30 -
                                Norman 5.80.02 2008.09.30 -
                                Panda 9.0.0.4 2008.09.30 -
                                PCTools 4.4.2.0 2008.09.30 -
                                Prevx1 V2 2008.09.30 -
                                Rising 20.63.62.00 2008.09.28 -
                                SecureWeb-Gateway 6.7.6 2008.09.30 -
                                Sophos 4.34.0 2008.09.30 -
                                Sunbelt 3.1.1675.1 2008.09.27 -
                                Symantec 10 2008.09.30 -
                                TheHacker 6.3.0.9.097 2008.09.29 -
                                TrendMicro 8.700.0.1004 2008.09.30 -
                                VBA32 3.12.8.6 2008.09.30 -
                                ViRobot 2008.9.30.1398 2008.09.30 -
                                VirusBuster 4.5.11.0 2008.09.30 -
                                Information additionnelle
                                File size: 289 bytes
                                MD5...: d0f4919847c752ad9c00f18592b4eb50
                                SHA1..: 4e4536610de81ee7aa58e790478b06e21c93b6e2
                                SHA256: d2c637f4c3f3d476dd7929281126ac3479a7962da68396c9f12e21c7318a49ae
                                SHA512: b605eaaddc55b7bfa076df478f3ceeb5881ed9c2cc2168365a4705b6ec636c8c
                                c83c71ded3d8fbeeafac2a2d7ba469a6d7cfaea1ab2c7539f360928f774f40df
                                PEiD..: -
                                TrID..: File type identification
                                Unknown!
                                PEInfo: -

                                Fichier npnul32.dll reçu le 2008.09.30 21:33:29 (CET)
                                Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
                                Résultat: 0/36 (0%)
                                en train de charger les informations du serveur...
                                Votre fichier est dans la file d'attente, en position: 1.
                                L'heure estimée de démarrage est entre 39 et 56 secondes.
                                Ne fermez pas la fenêtre avant la fin de l'analyse.
                                L'analyseur qui traitait votre fichier est actuellement stoppé, nous allons attendre quelques secondes pour tenter de récupérer vos résultats.
                                Si vous attendez depuis plus de cinq minutes, vous devez renvoyer votre fichier.
                                Votre fichier est, en ce moment, en cours d'analyse par VirusTotal,
                                les résultats seront affichés au fur et à mesure de leur génération.
                                Formaté Formaté
                                Impression des résultats Impression des résultats
                                Votre fichier a expiré ou n'existe pas.
                                Le service est en ce moment, stoppé, votre fichier attend d'être analysé (position : ) depuis une durée indéfinie.

                                Vous pouvez attendre une réponse du Web (re-chargement automatique) ou taper votre e-mail dans le formulaire ci-dessous et cliquer "Demande" pour que le système vous envoie une notification quand l'analyse sera terminée.
                                Email:

                                Antivirus Version Dernière mise à jour Résultat
                                AhnLab-V3 2008.10.1.0 2008.09.30 -
                                AntiVir 7.8.1.34 2008.09.30 -
                                Authentium 5.1.0.4 2008.09.30 -
                                Avast 4.8.1195.0 2008.09.30 -
                                AVG 8.0.0.161 2008.09.30 -
                                BitDefender 7.2 2008.09.30 -
                                CAT-QuickHeal 9.50 2008.09.30 -
                                ClamAV 0.93.1 2008.09.30 -
                                DrWeb 4.44.0.09170 2008.09.30 -
                                eSafe 7.0.17.0 2008.09.30 -
                                eTrust-Vet 31.6.6118 2008.09.30 -
                                Ewido 4.0 2008.09.30 -
                                F-Prot 4.4.4.56 2008.09.30 -
                                F-Secure 8.0.14332.0 2008.09.30 -
                                Fortinet 3.113.0.0 2008.09.30 -
                                GData 19 2008.09.30 -
                                Ikarus T3.1.1.34.0 2008.09.30 -
                                K7AntiVirus 7.10.478 2008.09.30 -
                                Kaspersky 7.0.0.125 2008.09.30 -
                                McAfee 5394 2008.09.30 -
                                Microsoft 1.4005 2008.09.30 -
                                NOD32 3483 2008.09.30 -
                                Norman 5.80.02 2008.09.30 -
                                Panda 9.0.0.4 2008.09.30 -
                                PCTools 4.4.2.0 2008.09.30 -
                                Prevx1 V2 2008.09.30 -
                                Rising 20.63.62.00 2008.09.28 -
                                SecureWeb-Gateway 6.7.6 2008.09.30 -
                                Sophos 4.34.0 2008.09.30 -
                                Sunbelt 3.1.1675.1 2008.09.27 -
                                Symantec 10 2008.09.30 -
                                TheHacker 6.3.0.9.097 2008.09.29 -
                                TrendMicro 8.700.0.1004 2008.09.30 -
                                VBA32 3.12.8.6 2008.09.30 -
                                ViRobot 2008.9.30.1397 2008.09.30 -
                                VirusBuster 4.5.11.0 2008.09.30 -
                                Information additionnelle
                                File size: 65536 bytes
                                MD5...: 1f5bdfa274cae7557976b48eb8177875
                                SHA1..: 307138fe9d8c546285f5a4e9ae1b603cf8ffde8d
                                SHA256: 55fa791ad26b9a79017cfbbeacf77a638233a32b0e681ab829b6c6a62239a383
                                SHA512: 16e7fe2ebc49c148e76b6307401952b4c45fba897448f1bd59927000c689e490
                                6d863cfd34337affd8368cee2aa92d37543579bd2b36034363adb79ca106934e
                                PEiD..: -
                                TrID..: File type identification
                                InstallShield setup (46.1%)
                                Win32 Executable MS Visual C++ (generic) (40.4%)
                                Win32 Executable Generic (9.1%)
                                Generic Win/DOS Executable (2.1%)
                                DOS Executable Generic (2.1%)
                                PEInfo: PE Structure information

                                ( base data )
                                entrypointaddress.: 0x601f2c8c
                                timedatestamp.....: 0x48dae677 (Thu Sep 25 01:16:39 2008)
                                machinetype.......: 0x14c (I386)

                                ( 5 sections )
                                name viradd virsiz rawdsiz ntrpy md5
                                .text 0x1000 0x7e48 0x8000 6.69 4b917900529b2718317e94694032396b
                                .rdata 0x9000 0x2c0e 0x2e00 5.50 41c27488f9f24bb3113f4682df5f33ce
                                .data 0xc000 0x19e4 0xe00 3.05 3bb508a1ac7ee33adcfd51b8e714a1ca
                                .rsrc 0xe000 0x1268 0x1400 3.48 096f0197b637cd454110e8f721e649ea
                                .reloc 0x10000 0x14ca 0x1600 3.90 a3c15ee03705c3a0cee15d980d50db0f

                                ( 4 imports )
                                > KERNEL32.dll: GetLocaleInfoA, MultiByteToWideChar, RtlUnwind, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, InitializeCriticalSection, WriteFile, HeapReAlloc, VirtualAlloc, EnterCriticalSection, LeaveCriticalSection, HeapSize, GetSystemTimeAsFileTime, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetStringTypeA, GetStringTypeW, LCMapStringA, LCMapStringW, lstrcmpiA, lstrcatA, lstrlenA, lstrcpyA, LoadLibraryA, lstrcmpA, GetCurrentThreadId, GetCommandLineA, HeapFree, GetVersionExA, HeapAlloc, GetProcessHeap, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, RaiseException, GetLastError, GetProcAddress, GetModuleHandleA, ExitProcess, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, InterlockedIncrement, SetLastError, InterlockedDecrement, Sleep, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, DeleteCriticalSection, GetModuleFileNameA, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStringsW, HeapDestroy, HeapCreate, VirtualFree
                                > USER32.dll: SendMessageA, GetDC, MessageBoxA, ReleaseDC, GetDlgItem, SetWindowPos, SetWindowTextA, EnableWindow, SetDlgItemTextA, ScreenToClient, GetWindowRect, SetForegroundWindow, CreateDialogParamA, UnregisterClassA, GetWindowLongA, CreateWindowExA, DrawTextA, DrawIconEx, LoadStringA, DefWindowProcA, GetSysColor, LoadIconA, ShowWindow, wsprintfA, IsWindow, DrawIcon, GetClientRect, BeginPaint, UpdateWindow, DestroyIcon, EndPaint, DestroyWindow, SetWindowLongA, RegisterClassA, InvalidateRect
                                > GDI32.dll: LPtoDP, SetTextColor, Polyline, SetBkMode, CreatePen, DeleteObject, SelectObject, GetStockObject, GetTextExtentPoint32A
                                > ADVAPI32.dll: RegQueryValueExA, RegSetValueExA, RegCreateKeyA

                                ( 4 exports )
                                NP_GetEntryPoints, NP_GetMIMEDescription, NP_Initialize, NP_Shutdown

                                Fichier nppdf32.dll reçu le 2008.09.30 21:35:30 (CET)
                                Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
                                Résultat: 0/36 (0%)
                                en train de charger les informations du serveur...
                                Votre fichier est dans la file d'attente, en position: 2.
                                L'heure estimée de démarrage est entre 43 et 62 secondes.
                                Ne fermez pas la fenêtre avant la fin de l'analyse.
                                L'analyseur qui traitait votre fichier est actuellement stoppé, nous allons attendre quelques secondes pour tenter de récupérer vos résultats.
                                Si vous attendez depuis plus de cinq minutes, vous devez renvoyer votre fichier.
                                Votre fichier est, en ce moment, en cours d'analyse par VirusTotal,
                                les résultats seront affichés au fur et à mesure de leur génération.
                                Formaté Formaté
                                Impression des résultats Impression des résultats
                                Votre fichier a expiré ou n'existe pas.
                                Le service est en ce moment, stoppé, votre fichier attend d'être analysé (position : ) depuis une durée indéfinie.

                                Vous pouvez attendre une réponse du Web (re-chargement automatique) ou taper votre e-mail dans le formulaire ci-dessous et cliquer "Demande" pour que le système vous envoie une notification quand l'analyse sera terminée.
                                Email:

                                Antivirus Version Dernière mise à jour Résultat
                                AhnLab-V3 2008.10.1.0 2008.09.30 -
                                AntiVir 7.8.1.34 2008.09.30 -
                                Authentium 5.1.0.4 2008.09.30 -
                                Avast 4.8.1195.0 2008.09.30 -
                                AVG 8.0.0.161 2008.09.30 -
                                BitDefender 7.2 2008.09.30 -
                                CAT-QuickHeal 9.50 2008.09.30 -
                                ClamAV 0.93.1 2008.09.30 -
                                DrWeb 4.44.0.09170 2008.09.30 -
                                eSafe 7.0.17.0 2008.09.30 -
                                eTrust-Vet 31.6.6117 2008.09.30 -
                                Ewido 4.0 2008.09.30 -
                                F-Prot 4.4.4.56 2008.09.30 -
                                F-Secure 8.0.14332.0 2008.09.30 -
                                Fortinet 3.113.0.0 2008.09.30 -
                                GData 19 2008.09.30 -
                                Ikarus T3.1.1.34.0 2008.09.30 -
                                K7AntiVirus 7.10.478 2008.09.30 -
                                Kaspersky 7.0.0.125 2008.09.30 -
                                McAfee 5394 2008.09.30 -
                                Microsoft 1.4005 2008.09.30 -
                                NOD32 3483 2008.09.30 -
                                Norman 5.80.02 2008.09.30 -
                                Panda 9.0.0.4 2008.09.30 -
                                PCTools 4.4.2.0 2008.09.30 -
                                Prevx1 V2 2008.09.30 -
                                Rising 20.63.62.00 2008.09.28 -
                                SecureWeb-Gateway 6.7.6 2008.09.30 -
                                Sophos 4.34.0 2008.09.30 -
                                Sunbelt 3.1.1668.1 2008.09.24 -
                                Symantec 10 2008.09.30 -
                                TheHacker 6.3.0.9.097 2008.09.29 -
                                TrendMicro 8.700.0.1004 2008.09.30 -
                                VBA32 3.12.8.6 2008.09.30 -
                                ViRobot 2008.9.30.1397 2008.09.30 -
                                VirusBuster 4.5.11.0 2008.09.30 -
                                Information additionnelle
                                File size: 103792 bytes
                                MD5...: 6de7bf0dadc0881f7ed82d9fcc998b89
                                SHA1..: 6a9b7c1e2ef527b321bf6b12cad5c58de05482c6
                                SHA256: c2f9d783dd649745e45ca854e0857b3824df6226e82428477a067901a27e4126
                                SHA512: 709b36cc5c8b9fcdf7d80e7a5dabc1303af38c55bf9b286525e7bbffa7a5d9cb
                                b0057b5e7acac2d2610a93bbb5310e736e182534f0a34503916bfeca3950e0f0
                                PEiD..: -
                                TrID..: File type identification
                                Win32 Executable MS Visual C++ (generic) (75.0%)
                                Win32 Executable Generic (16.9%)
                                Generic Win/DOS Executable (3.9%)
                                DOS Executable Generic (3.9%)
                                Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
                                PEInfo: PE Structure information

                                ( base data )
                                entrypointaddress.: 0x1000e9c2
                                timedatestamp.....: 0x4850b7f0 (Thu Jun 12 05:45:20 2008)
                                machinetype.......: 0x14c (I386)

                                ( 5 sections )
                                name viradd virsiz rawdsiz ntrpy md5
                                .text 0x1000 0xe6bd 0xf000 6.41 404d408af7395ff7fa229de67b2749bd
                                .rdata 0x10000 0x3377 0x4000 4.29 834c1801dcc5b72dc2253600d0e58202
                                .data 0x14000 0x63c 0x1000 0.96 e7533c057d1ca7ca01d14b5371c21ce4
                                .rsrc 0x15000 0x1290 0x2000 4.27 960f5a3e124a22a30b18861929ae40c1
                                .reloc 0x17000 0xef4 0x1000 5.64 ddb271cb837ab9da853075fdd04e49e8

                                ( 7 imports )
                                > KERNEL32.dll: LoadLibraryA, GetSystemTimeAsFileTime, QueryPerformanceCounter, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, InterlockedCompareExchange, RaiseException, InterlockedExchange, OpenFile, GetModuleFileNameA, lstrcpynA, UnmapViewOfFile, MapViewOfFile, OpenFileMappingA, GetVersionExA, CreateFileMappingA, CreateEventA, GetModuleFileNameW, GetLongPathNameW, Sleep, CreateSemaphoreA, CloseHandle, GetTickCount, DeleteCriticalSection, InitializeCriticalSection, EnterCriticalSection, LeaveCriticalSection, LocalAlloc, GetLastError, GetTempPathA, GetTempFileNameA, OutputDebugStringA, LoadLibraryW, GetProcAddress, lstrlenW, lstrcpyW, FreeLibrary, GetCurrentProcessId, GlobalAddAtomW, CreateThread, WaitForSingleObject, CreateProcessW, GetCurrentThreadId, SetThreadPriority
                                > USER32.dll: SetFocus, MessageBoxA, RegisterClassW, LoadMenuA, EnumWindows, GetClassNameA, GetWindowLongA, SetWindowLongA, ShowScrollBar, MoveWindow, SetCursor, PostMessageA, GetForegroundWindow, GetSubMenu, ClientToScreen, GetWindow, CallWindowProcA, DefWindowProcA, GetParent, GetPropA, SetPropA, LoadStringA, DestroyCursor, LoadCursorA, SetTimer, KillTimer, IsWindow, GetWindowModuleFileNameW, FindWindowW, WaitForInputIdle, GetWindowThreadProcessId, GetActiveWindow, PostQuitMessage, DispatchMessageA, TranslateMessage, PeekMessageA, MsgWaitForMultipleObjects, DispatchMessageW, GetMessageA, GetMessageW, IsWindowUnicode, SendMessageA, SendMessageTimeoutA, DestroyWindow, UnregisterClassW, CreateWindowExW
                                > GDI32.dll: GetEnhMetaFileA, PlayEnhMetaFile, DeleteEnhMetaFile, GetDeviceCaps, Escape, LPtoDP
                                > ADVAPI32.dll: RegQueryValueExA, RegCloseKey, RegOpenKeyExA, RegQueryValueExW, ConvertStringSecurityDescriptorToSecurityDescriptorW
                                > MSVCR80.dll: sprintf, strlen, strncmp, tolower, _invalid_parameter_noinfo, __2@YAPAXI@Z, _CxxThrowException, __0exception@std@@QAE@ABV01@@Z, sscanf, _stricmp, fopen, tmpfile, fclose, fseek, fread, fwrite, __0exception@std@@QAE@ABQBDH@Z, memmove_s, _purecall, _time64, _snwprintf, wcscat_s, wcscpy_s, ___U@YAPAXI@Z, _wputenv, _wgetenv, wcscat, _wcsicmp, wcsrchr, wcsncpy, _snprintf, _unlock, __dllonexit, _encode_pointer, _lock, _onexit, _decode_pointer, _malloc_crt, _encoded_null, _initterm, _initterm_e, _amsg_exit, _adjust_fdiv, __CppXcptFilter, _terminate@@YAXXZ, __type_info_dtor_internal_method@type_info@@QAEXXZ, _crt_debugger_hook, _except_handler4_common, __clean_type_info_names_internal, _itoa, ___V@YAXPAX@Z, free, malloc, strcat_s, memset, strcpy, wcslen, memcpy, strncpy, strcmp, __CxxFrameHandler3, __0exception@std@@QAE@XZ, __3@YAXPAX@Z, __1exception@std@@UAE@XZ, _what@exception@std@@UBEPBDXZ, __0exception@std@@QAE@ABQBD@Z, strstr, strrchr, strchr, _strnicmp, _unlink
                                > MSVCP80.dll: __Xran@_String_base@std@@SAXXZ, __0_$basic_string@DU_$char_traits@D@std@@V_$allocator@D@2@@std@@QAE@PBD@Z, _substr@_$basic_string@DU_$char_traits@D@std@@V_$allocator@D@2@@std@@QBE_AV12@II@Z, __Y_$basic_string@DU_$char_traits@D@std@@V_$allocator@D@2@@std@@QAEAAV01@ABV01@@Z, __4_$basic_string@DU_$char_traits@D@std@@V_$allocator@D@2@@std@@QAEAAV01@ABV01@@Z, __1_$basic_string@DU_$char_traits@D@std@@V_$allocator@D@2@@std@@QAE@XZ, __0_$basic_string@DU_$char_traits@D@std@@V_$allocator@D@2@@std@@QAE@ABV01@@Z, __Xlen@_String_base@std@@SAXXZ
                                > VERSION.dll: GetFileVersionInfoW, GetFileVersionInfoSizeW, VerQueryValueW

                                ( 4 exports )
                                NP_ApolloEntry, NP_GetEntryPoints, NP_Initialize, NP_Shutdown

                                Fichier nppdf32.FRA reçu le 2008.09.30 21:38:28 (CET)
                                Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
                                Résultat: 0/36 (0%)
                                en train de charger les informations du serveur...
                                Votre fichier est dans la file d'attente, en position: 1.
                                L'heure estimée de démarrage est entre 39 et 56 secondes.
                                Ne fermez pas la fenêtre avant la fin de l'analyse.
                                L'analyseur qui traitait votre fichier est actuellement stoppé, nous allons attendre quelques secondes pour tenter de récupérer vos résultats.
                                Si vous attendez depuis plus de cinq minutes, vous devez renvoyer votre fichier.
                                Votre fichier est, en ce moment, en cours d'analyse par VirusTotal,
                                les résultats seront affichés au fur et à mesure de leur génération.
                                Formaté Formaté
                                Impression des résultats Impression des résultats
                                Votre fichier a expiré ou n'existe pas.
                                Le service est en ce moment, stoppé, votre fichier attend d'être analysé (position : ) depuis une durée indéfinie.

                                Vous pouvez attendre une réponse du Web (re-chargement automatique) ou taper votre e-mail dans le formulaire ci-dessous et cliquer "Demande" pour que le système vous envoie une notification quand l'analyse sera terminée.
                                Email:

                                Antivirus Version Dernière mise à jour Résultat
                                AhnLab-V3 2008.10.1.0 2008.09.30 -
                                AntiVir 7.8.1.34 2008.09.30 -
                                Authentium 5.1.0.4 2008.09.30 -
                                Avast 4.8.1195.0 2008.09.30 -
                                AVG 8.0.0.161 2008.09.30 -
                                BitDefender 7.2 2008.09.30 -
                                CAT-QuickHeal 9.50 2008.09.30 -
                                ClamAV 0.93.1 2008.09.30 -
                                DrWeb 4.44.0.09170 2008.09.30 -
                                eSafe 7.0.17.0 2008.09.30 -
                                eTrust-Vet 31.6.6118 2008.09.30 -
                                Ewido 4.0 2008.09.30 -
                                F-Prot 4.4.4.56 2008.09.30 -
                                F-Secure 8.0.14332.0 2008.09.30 -
                                Fortinet 3.113.0.0 2008.09.30 -
                                GData 19 2008.09.30 -
                                Ikarus T3.1.1.34.0 2008.09.30 -
                                K7AntiVirus 7.10.478 2008.09.30 -
                                Kaspersky 7.0.0.125 2008.09.30 -
                                McAfee 5394 2008.09.30 -
                                Microsoft 1.4005 2008.09.30 -
                                NOD32 3483 2008.09.30 -
                                Norman 5.80.02 2008.09.30 -
                                Panda 9.0.0.4 2008.09.30 -
                                PCTools 4.4.2.0 2008.09.30 -
                                Prevx1 V2 2008.09.30 -
                                Rising 20.63.62.00 2008.09.28 -
                                SecureWeb-Gateway 6.7.6 2008.09.30 -
                                Sophos 4.34.0 2008.09.30 -
                                Sunbelt 3.1.1675.1 2008.09.27 -
                                Symantec 10 2008.09.30 -
                                TheHacker 6.3.0.9.097 2008.09.29 -
                                TrendMicro 8.700.0.1004 2008.09.30 -
                                VBA32 3.12.8.6 2008.09.30 -
                                ViRobot 2008.9.30.1398 2008.09.30 -
                                VirusBuster 4.5.11.0 2008.09.30 -
                                Information additionnelle
                                File size: 6144 bytes
                                MD5...: b6a50dbf117db339e81dca97fd96340f
                                SHA1..: df39d87d9fcf10d3190ed9bf0edb07af2b7ed47d
                                SHA256: f4b2d9428ded49d2485f8693e8fa897d3541a6c3990e025ce1d5b9321e7cca2e
                                SHA512: a375e41b75e7e31baf823db6e2ad1bee9d471bbd209ead4acdec6a5050504b6f
                                044682c7dfea4d2a9460db576412b37971d14db4342d4c7c0835fd7205fd3795
                                PEiD..: -
                                TrID..: File type identification
                                Generic Win/DOS Executable (49.9%)
                                DOS Executable Generic (49.8%)
                                Autodesk FLIC Image File (extensions: flc, fli, cel) (0.1%)
                                PEInfo: PE Structure information

                                ( base data )
                                entrypointaddress.: 0x10000000
                                timedatestamp.....: 0x4850e939 (Thu Jun 12 09:15:37 2008)
                                machinetype.......: 0x14c (I386)

                                ( 2 sections )
                                name viradd virsiz rawdsiz ntrpy md5
                                .rsrc 0x1000 0x134c 0x1400 3.78 7fea4552129975f32f45e01476f973f4
                                .reloc 0x3000 0x8 0x200 0.02 2c38765194d27b75f56d0565088a53ee

                                ( 0 imports )

                                ( 0 exports )

                                Fichier nsIQTScriptablePlugin.xpt reçu le 2008.09.30 21:40:34 (CET)
                                Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
                                Résultat: 0/36 (0%)
                                en train de charger les informations du serveur...
                                Votre fichier est dans la file d'attente, en position: 2.
                                L'heure estimée de démarrage est entre 43 et 62 secondes.
                                Ne fermez pas la fenêtre avant la fin de l'analyse.
                                L'analyseur qui traitait votre fichier est actuellement stoppé, nous allons attendre quelques secondes pour tenter de récupérer vos résultats.
                                Si vous attendez depuis plus de cinq minutes, vous devez renvoyer votre fichier.
                                Votre fichier est, en ce moment, en cours d'analyse par VirusTotal,
                                les résultats seront affichés au fur et à mesure de leur génération.
                                Formaté Formaté
                                Impression des résultats Impression des résultats
                                Votre fichier a expiré ou n'existe pas.
                                Le service est en ce moment, stoppé, votre fichier attend d'être analysé (position : ) depuis une durée indéfinie.

                                Vous pouvez attendre une réponse du Web (re-chargement automatique) ou taper votre e-mail dans le formulaire ci-dessous et cliquer "Demande" pour que le système vous envoie une notification quand l'analyse sera terminée.
                                Email:

                                Antivirus Version Dernière mise à jour Résultat
                                AhnLab-V3 2008.10.1.0 2008.09.30 -
                                AntiVir 7.8.1.34 2008.09.30 -
                                Authentium 5.1.0.4 2008.09.30 -
                                Avast 4.8.1195.0 2008.09.30 -
                                AVG 8.0.0.161 2008.09.30 -
                                BitDefender 7.2 2008.09.30 -
                                CAT-QuickHeal 9.50 2008.09.30 -
                                ClamAV 0.93.1 2008.09.30 -
                                DrWeb 4.44.0.09170 2008.09.30 -
                                eSafe 7.0.17.0 2008.09.30 -
                                eTrust-Vet 31.6.6118 2008.09.30 -
                                Ewido 4.0 2008.09.30 -
                                F-Prot 4.4.4.56 2008.09.30 -
                                F-Secure 8.0.14332.0 2008.09.30 -
                                Fortinet 3.113.0.0 2008.09.30 -
                                GData 19 2008.09.30 -
                                Ikarus T3.1.1.34.0 2008.09.30 -
                                K7AntiVirus 7.10.478 2008.09.30 -
                                Kaspersky 7.0.0.125 2008.09.30 -
                                McAfee 5394 2008.09.30 -
                                Microsoft 1.4005 2008.09.30 -
                                NOD32 3483 2008.09.30 -
                                Norman 5.80.02 2008.09.30 -
                                Panda 9.0.0.4 2008.09.30 -
                                PCTools 4.4.2.0 2008.09.30 -
                                Prevx1 V2 2008.09.30 -
                                Rising 20.63.62.00 2008.09.28 -
                                SecureWeb-Gateway 6.7.6 2008.09.30 -
                                Sophos 4.34.0 2008.09.30 -
                                Sunbelt 3.1.1675.1 2008.09.27 -
                                Symantec 10 2008.09.30 -
                                TheHacker 6.3.0.9.097 2008.09.29 -
                                TrendMicro 8.700.0.1004 2008.09.30 -
                                VBA32 3.12.8.6 2008.09.30 -
                                ViRobot 2008.9.30.1398 2008.09.30 -
                                VirusBuster 4.5.11.0 2008.09.30 -
                                Information additionnelle
                                File size: 2394 bytes
                                MD5...: ad709f440ea446cbcf3232b6a56a6569
                                SHA1..: 353237f374e9d13b7e86d3f0baefab2d7cf49546
                                SHA256: 224ce89e57d096a7771906abe9b0418f86b9c5ced94333ab728a22383274bde7
                                SHA512: 872a28480b219b637f97c7f4f2db56f0aaf77d10d329ea05d3b091dd4097c3af
                                c434013f826749a7849c2c0c0270f1452f026111249b04a3ea551a71a69af723
                                PEiD..: -
                                TrID..: File type identification
                                XPCOM Type Library (100.0%)
                                PEInfo: -
                                1. Contributeur sécurité
                                  Salut,

                                  rien d'infectieux de ce côté là ....

                                  Fais cette autre rapport pour voir :

                                  Télécharge DiagHelp.zip sur ton bureau :
                                  ( note : si ton anti-virus s'affolle lors du téléchargement ou de l'installe, c'est normal , ignore l'alerte ).

                                  -> http://www.malekal.com/download/DiagHelp.zip

                                  !! déconnectes toi et fermes toutes tes applications en cours !!

                                  Fais un clic droit sur le fichier et extraire tout .

                                  --> Un nouveau dossier va être créé : "DiagHelp"
                                  Ouvres le et double-clic sur go.cmd et pas sur autre chose ! (le .cmd peut ne pas apparaître )

                                  --> Une fenêtre va s'ouvrir, choisis l'option 1
                                  L'analyse va commencer, ce-ci peut durer quelques minutes, laisses faire et appuies sur une touche quand on te le demandera :
                                  une page IE va s'ouvrir , fermes la .
                                  Re-appuis sur une touche, le bloc-note s'ouvre :
                                  Sauvegardes ce rapport de façon à le retrouver et postes tout son contenu dans ta prochaine réponse ...
                                  1. Salut,
                                    Voici la dernière analyse:

                                    DiagHelp version v1.4 - http://www.malekal.com
                                    excute le 03/10/2008 à 21:15:48,06

                                    Liste des derniers fichies modifies/crees dans windir\system32 et prefetch
                                    C:\WINDOWS\prefetch\CMD.EXE-087B4001.pf -->03/10/2008 21:15:23
                                    C:\WINDOWS\prefetch\CHCP.COM-18156052.pf -->03/10/2008 21:15:19
                                    C:\WINDOWS\prefetch\EXPLORER.EXE-082F38A9.pf -->03/10/2008 21:13:30
                                    C:\WINDOWS\prefetch\VERCLSID.EXE-3667BD89.pf -->03/10/2008 21:13:00
                                    C:\WINDOWS\prefetch\FSDC.EXE-39AA6963.pf -->03/10/2008 21:13:00
                                    C:\WINDOWS\prefetch\NOTEPAD.EXE-336351A9.pf -->03/10/2008 21:12:31
                                    C:\WINDOWS\prefetch\FIREFOX.EXE-28641590.pf -->03/10/2008 21:09:42
                                    C:\WINDOWS\prefetch\9LAUNCH.EXE-3ABB68D8.pf -->03/10/2008 21:09:37
                                    C:\WINDOWS\prefetch\LICMGR.EXE-097EAD1C.pf -->03/10/2008 21:05:22
                                    C:\WINDOWS\prefetch\WMIPRVSE.EXE-28F301A9.pf -->03/10/2008 20:55:07

                                    C:\WINDOWS\System32\drivers\fsndis5.sys -->20/09/2008 21:23:19
                                    C:\WINDOWS\System32\drivers\fsdfw.sys -->20/09/2008 21:23:19
                                    C:\WINDOWS\System32\drivers\asctrm.sys -->20/09/2008 19:32:58
                                    C:\WINDOWS\System32\drivers\mbamswissarmy.sys -->10/09/2008 00:04:02
                                    C:\WINDOWS\System32\drivers\mbam.sys -->10/09/2008 00:03:56
                                    C:\WINDOWS\System32\drivers\tcpip.sys -->20/06/2008 13:51:12
                                    C:\WINDOWS\System32\drivers\afd.sys -->20/06/2008 13:40:08

                                    C:\WINDOWS\System32\PerfStringBackup.INI -->03/10/2008 20:55:01
                                    C:\WINDOWS\System32\perfh00C.dat -->03/10/2008 20:55:01
                                    C:\WINDOWS\System32\perfh009.dat -->03/10/2008 20:55:01
                                    C:\WINDOWS\System32\perfc00C.dat -->03/10/2008 20:55:01
                                    C:\WINDOWS\System32\perfc009.dat -->03/10/2008 20:55:01
                                    C:\WINDOWS\System32\wpa.dbl -->03/10/2008 20:50:38
                                    C:\WINDOWS\System32\eps_icon.avi -->21/09/2008 10:03:06
                                    C:\WINDOWS\System32\spupdwxp.log -->21/09/2008 08:58:54
                                    C:\WINDOWS\System32\FNTCACHE.DAT -->21/09/2008 08:57:59
                                    C:\WINDOWS\System32\TZLog.log -->20/09/2008 22:34:44
                                    C:\WINDOWS\System32\jupdate-1.6.0_04-b12.log -->20/09/2008 22:16:03
                                    C:\WINDOWS\System32\nscompat.tlb -->20/09/2008 21:49:12
                                    C:\WINDOWS\System32\amcompat.tlb -->20/09/2008 21:49:12
                                    C:\WINDOWS\System32\$winnt$.inf -->20/09/2008 19:54:14
                                    C:\WINDOWS\System32\$ncsp$.inf -->20/09/2008 19:47:12
                                    C:\WINDOWS\System32\rmoc3260.dll -->20/09/2008 19:38:56
                                    C:\WINDOWS\System32\pndx5032.dll -->20/09/2008 19:38:51
                                    C:\WINDOWS\System32\pndx5016.dll -->20/09/2008 19:38:51
                                    C:\WINDOWS\System32\pncrt.dll -->20/09/2008 19:38:51
                                    C:\WINDOWS\System32\qtplugin.log -->20/09/2008 19:33:12
                                    C:\WINDOWS\System32\jupdate-1.4.2_05-b04.log -->20/09/2008 19:23:54
                                    C:\WINDOWS\System32\MRT.exe -->26/08/2008 13:28:14
                                    C:\WINDOWS\System32\cdm.dll -->18/07/2008 22:10:48
                                    C:\WINDOWS\System32\wuauclt.exe -->18/07/2008 22:10:42
                                    C:\WINDOWS\System32\wups2.dll -->18/07/2008 22:10:40

                                    C:\WINDOWS\setupapi.log -->03/10/2008 21:13:06
                                    C:\WINDOWS\WindowsUpdate.log -->03/10/2008 20:53:38
                                    C:\WINDOWS\FSSTM.LOG -->03/10/2008 20:51:04
                                    C:\WINDOWS\0.log -->03/10/2008 20:50:53
                                    C:\WINDOWS\wiadebug.log -->03/10/2008 20:50:52
                                    C:\WINDOWS\wiaservc.log -->03/10/2008 20:50:50
                                    C:\WINDOWS\bootstat.dat -->03/10/2008 20:50:35
                                    C:\WINDOWS\SchedLgU.Txt -->30/09/2008 22:11:44
                                    C:\WINDOWS\system.ini -->29/09/2008 19:49:29
                                    C:\WINDOWS\win.ini -->21/09/2008 13:15:51
                                    C:\WINDOWS\CDE RX420FG.ini -->21/09/2008 10:02:09
                                    C:\WINDOWS\Sti_Trace.log -->21/09/2008 09:59:45
                                    C:\WINDOWS\msoffice.ini -->21/09/2008 09:10:48
                                    C:\WINDOWS\HDReg.ini -->20/09/2008 21:32:14
                                    C:\WINDOWS\mozver.dat -->20/09/2008 20:51:04

                                    winlogon.exe
                                    Verified: Signed
                                    svchost.exe
                                    Verified: Signed
                                    ws2_32.dll
                                    Verified: Signed
                                    user32.dll
                                    Verified: Signed
                                    tcpip.sys
                                    Verified: Signed
                                    ndis.sys
                                    Verified: Signed
                                    null.sys
                                    Verified: Signed

                                    ListDLLs v2.25 - DLL lister for Win9x/NT
                                    Copyright (C) 1997-2004 Mark Russinovich
                                    Sysinternals - www.sysinternals.com

                                    ------------------------------------------------------------------------------
                                    explorer.exe pid: 1532
                                    Command line: C:\WINDOWS\Explorer.EXE

                                    Base Size Version Path
                                    0x77be0000 0x58000 7.00.2600.5512 C:\WINDOWS\system32\msvcrt.dll
                                    0x779e0000 0x97000 5.131.2600.5512 C:\WINDOWS\system32\CRYPT32.dll
                                    0x76610000 0x84000 5.131.2600.5512 C:\WINDOWS\system32\CRYPTUI.dll
                                    0x76be0000 0x2e000 5.131.2600.5512 C:\WINDOWS\system32\WINTRUST.dll
                                    0x753c0000 0x6b000 1.420.2600.5512 C:\WINDOWS\system32\USP10.dll
                                    0x58b50000 0x9a000 5.82.2900.5512 C:\WINDOWS\system32\comctl32.dll
                                    0x76f80000 0x7f000 2001.12.4414.0700 C:\WINDOWS\system32\CLBCATQ.DLL
                                    0x77000000 0xd4000 2001.12.4414.0700 C:\WINDOWS\system32\COMRes.dll
                                    0x13420000 0x1a000 11.00.5721.5145 C:\PROGRA~1\WINDOW~2\wmpband.dll
                                    0x76ac0000 0x11000 3.05.2284.0001 C:\WINDOWS\system32\ATL.DLL
                                    0x76010000 0x65000 6.02.3104.0000 C:\WINDOWS\system32\MSVCP60.dll
                                    0x7d200000 0x2bc000 3.01.4001.5512 C:\WINDOWS\system32\msi.dll
                                    0x164a0000 0x23000 5.02.5721.5145 C:\WINDOWS\system32\WPDShServiceObj.dll
                                    0x10000000 0xe000 C:\Program Files\ArcSoft\PhotoImpression 5\share\pihook.dll
                                    0x109c0000 0x2c000 5.02.5721.5145 C:\WINDOWS\system32\PortableDeviceTypes.dll
                                    0x10930000 0x49000 5.02.5721.5145 C:\WINDOWS\system32\PortableDeviceApi.dll
                                    0x01df0000 0x3c000 1.02.6950.0000 C:\Program Files\Pack Securite\Spam Control\fsscoepl.dll
                                    0x020f0000 0x16000 6.16.0061.0000 C:\Program Files\Pack Securite\FWES\Program\fsdc.dll
                                    0x01790000 0x9000 7.00.12180.0000 C:\Program Files\Pack Securite\Common\fpshx.dll
                                    0x17000000 0x1d000 7.50.10035.0000 C:\Program Files\Pack Securite\Common\FSMA32.dll
                                    0x18000000 0x12000 7.50.10035.0000 C:\Program Files\Pack Securite\Common\FSPMAPI.dll
                                    0x02330000 0x38000 7.02.3140.0000 C:\Program Files\Pack Securite\Common\fslapi.dll
                                    0x73d20000 0xfe000 6.02.4131.0000 C:\WINDOWS\system32\MFC42.DLL
                                    0x61d70000 0xe000 6.00.8665.0000 C:\WINDOWS\system32\MFC42LOC.DLL
                                    0x021c0000 0xc000 7.00.12180.0000 C:\Program Files\Pack Securite\Common\fpshx.eng
                                    0x02370000 0x12000 1.01.0000.0000 C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll
                                    0x02420000 0x54000 1.00.0000.0000 C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
                                    0x61310000 0x54000 2.00.0500.0000 C:\Program Files\OpenOffice.org 2.4\program\shlxthdl.dll
                                    0x4eb80000 0x1a6000 5.01.3102.5512 C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.5512_x-ww_dfb54e0c\gdiplus.dll
                                    0x7c340000 0x56000 7.10.3052.0004 C:\Program Files\OpenOffice.org 2.4\program\MSVCR71.dll
                                    0x60e20000 0x8e000 4.05.2003.0120 C:\Program Files\OpenOffice.org 2.4\program\stlport_vc7145.dll
                                    0x7c3a0000 0x7b000 7.10.3077.0000 C:\Program Files\OpenOffice.org 2.4\program\MSVCP71.dll
                                    0x03010000 0x5b000 9.00.0000.0332 C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\PDFShell.dll
                                    0x78130000 0x9b000 8.00.50727.0762 C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6b128700\MSVCR80.dll
                                    0x03090000 0x4c000 9.00.0000.0000 C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\PDFShell.FRA

                                    ListDLLs v2.25 - DLL lister for Win9x/NT
                                    Copyright (C) 1997-2004 Mark Russinovich
                                    Sysinternals - www.sysinternals.com

                                    ------------------------------------------------------------------------------
                                    winlogon.exe pid: 636
                                    Command line: winlogon.exe

                                    Base Size Version Path
                                    0x01000000 0x82000 \??\C:\WINDOWS\system32\winlogon.exe
                                    0x77be0000 0x58000 7.00.2600.5512 C:\WINDOWS\system32\msvcrt.dll
                                    0x779e0000 0x97000 5.131.2600.5512 C:\WINDOWS\system32\CRYPT32.dll
                                    0x76be0000 0x2e000 5.131.2600.5512 C:\WINDOWS\system32\WINTRUST.dll
                                    0x753c0000 0x6b000 1.420.2600.5512 C:\WINDOWS\system32\USP10.dll
                                    0x58b50000 0x9a000 5.82.2900.5512 C:\WINDOWS\system32\COMCTL32.dll
                                    0x74730000 0x3d000 3.525.1132.0000 C:\WINDOWS\system32\ODBC32.dll
                                    0x1f840000 0x18000 3.525.1117.0000 C:\WINDOWS\system32\odbcint.dll
                                    0x10000000 0x10000 6.14.0010.4114 C:\WINDOWS\system32\Ati2evxx.dll
                                    0x77000000 0xd4000 2001.12.4414.0700 C:\WINDOWS\system32\COMRes.dll
                                    0x76f80000 0x7f000 2001.12.4414.0700 C:\WINDOWS\system32\CLBCATQ.DLL
                                    0x00a50000 0x16000 6.16.0061.0000 C:\Program Files\Pack Securite\FWES\Program\fsdc.dll

                                    Le volume dans le lecteur C s'appelle HDD
                                    Le numéro de série du volume est 181F-54AA

                                    Répertoire de C:\WINDOWS\system32

                                    14/04/2008 04:33 6 144 csrss.exe
                                    1 fichier(s) 6 144 octets
                                    0 Rép(s) 39 493 885 952 octets libres

                                    Contenu de Downloaded Program Files
                                    Le volume dans le lecteur C s'appelle HDD
                                    Le numéro de série du volume est 181F-54AA

                                    Répertoire de C:\WINDOWS\Downloaded Program Files

                                    28/09/2008 18:17 <REP> .
                                    28/09/2008 18:17 <REP> ..
                                    16/08/2004 18:08 65 desktop.ini
                                    13/08/2008 15:03 575 kavwebscan.inf
                                    2 fichier(s) 640 octets

                                    Total des fichiers listés :
                                    2 fichier(s) 640 octets
                                    2 Rép(s) 39 493 885 952 octets libres

                                    Recherche de rootkit! (Merci S!Ri)

                                    Recherche d'infections connues

                                    Export des clefs sensibles..

                                    Liste des fichiers en exception sur le pare-feu XP SP2

                                    "%ProgramFiles%\\AOL 9.0\\aol.exe"="%ProgramFiles%\\AOL 9.0\\aol.exe:*:Enabled:AOL"
                                    "%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\logo_ubi.exe"="%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\logo_ubi.exe:*:Enabled:SPLINTER CELL PANDORA"
                                    "%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\pandora.exe"="%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\pandora.exe:*:Enabled:PANDORA"
                                    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
                                    "C:\\APPS\\Inventime\\my.exe"="C:\\APPS\\Inventime\\my.exe:*:Enabled:INVENTIME"
                                    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
                                    "C:\\Program Files\\Neuf\\Media Center\\httpd\\httpd.exe"="C:\\Program Files\\Neuf\\Media Center\\httpd\\httpd.exe:172.16.255.0/255.255.255.0,192.168.1.2/255.255.255.255:Enabled:Serveur de partage Media Center (Player Neuf Cegetel)"
                                    "C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
                                    "C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
                                    "C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"

                                    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
                                    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
                                    "C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
                                    "C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe"="C:\\Program Files\\Microsoft ActiveSync\\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
                                    "C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe"="C:\\Program Files\\Microsoft ActiveSync\\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"

                                    Export de la clef SharedTaskScheduler

                                    [SharedTaskScheduler]
                                    "{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Pré-chargeur Browseui"
                                    "{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Démon de cache des catégories de composant"

                                    exports des policies
                                    REGEDIT4

                                    [system]
                                    "dontdisplaylastusername"=dword:00000000
                                    "legalnoticecaption"=""
                                    "legalnoticetext"=""
                                    "shutdownwithoutlogon"=dword:00000001
                                    "undockwithoutlogon"=dword:00000001
                                    "DisableRegistryTools"=dword:00000000
                                    "HideLegacyLogonScripts"=dword:00000000
                                    "HideLogoffScripts"=dword:00000000
                                    "RunLogonScriptSync"=dword:00000001
                                    "RunStartupScriptSync"=dword:00000000
                                    "HideStartupScripts"=dword:00000000

                                    Export des clefs sensibles..
                                    Rechercher adresses sensibles dans le fichier HOSTS...
                                    catchme 0.3.1351 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
                                    Rootkit scan 2008-10-03 21:16:26
                                    Windows 5.1.2600 Service Pack 3 NTFS

                                    scanning hidden services & system hive ...

                                    scanning hidden registry entries ...

                                    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher]
                                    "TracesProcessed"=dword:00000156

                                    scanning hidden files ...

                                    scan completed successfully
                                    hidden services: 0
                                    hidden files: 0

                                    KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)

                                    Process list by traversal of KiWaitListHead

                                    4 - System
                                    188 - fssm32.exe
                                    596 - csrss.exe
                                    636 - winlogon.exe
                                    680 - services.exe
                                    692 - lsass.exe
                                    848 - svchost.exe
                                    924 - svchost.exe
                                    1016 - svchost.exe
                                    1052 - FSMA32.EXE
                                    1100 - fsgk32.exe
                                    1144 - svchost.exe
                                    1224 - FAMEH32.EXE
                                    1244 - alg.exe
                                    1272 - FSMB32.EXE
                                    1472 - fsqh.exe
                                    1532 - explorer.exe
                                    1568 - spoolsv.exe
                                    1744 - cmd.exe
                                    1784 - FCH32.EXE
                                    1900 - FSM32.EXE
                                    1956 - E_FATI9CE.EXE
                                    2036 - wcescomm.exe
                                    2080 - fsaua.exe
                                    2136 - fsdfwd.exe
                                    2544 - fsguidll.exe
                                    2876 - fsus.exe
                                    3144 - svchost.exe
                                    3932 - fsav32.exe

                                    Total number of processes = 29
                                    NOTE: Under WinXP, this will not show all processes.

                                    KProcCheck Version 0.2-beta1 Proof-of-Concept by SIG^2 (www.security.org.sg)

                                    Driver/Module list by traversal of PsLoadedModuleList

                                    804D7000 - \WINDOWS\system32\ntkrnlpa.exe
                                    806D0000 - \WINDOWS\system32\hal.dll
                                    F7B1C000 - \WINDOWS\system32\KDCOM.DLL
                                    F7A2C000 - \WINDOWS\system32\BOOTVID.dll
                                    F74EC000 - ACPI.sys
                                    F7B1E000 - \WINDOWS\system32\DRIVERS\WMILIB.SYS
                                    F74DB000 - pci.sys
                                    F761C000 - isapnp.sys
                                    F7A30000 - compbatt.sys
                                    F7A34000 - \WINDOWS\system32\DRIVERS\BATTC.SYS
                                    F7BE4000 - pciide.sys
                                    F789C000 - \WINDOWS\system32\DRIVERS\PCIIDEX.SYS
                                    F7B20000 - aliide.sys
                                    F7B22000 - cmdide.sys
                                    F7B24000 - toside.sys
                                    F7B26000 - viaide.sys
                                    F7B28000 - intelide.sys
                                    F74BD000 - pcmcia.sys
                                    F762C000 - MountMgr.sys
                                    F749E000 - ftdisk.sys
                                    F78A4000 - PartMgr.sys
                                    F7A38000 - ACPIEC.sys
                                    F7BE5000 - \WINDOWS\system32\DRIVERS\OPRGHDLR.SYS
                                    F763C000 - VolSnap.sys
                                    F7A3C000 - cpqarray.sys
                                    F7486000 - \WINDOWS\system32\DRIVERS\SCSIPORT.SYS
                                    F746E000 - atapi.sys
                                    F7A40000 - aha154x.sys
                                    F78AC000 - sparrow.sys
                                    F7A44000 - symc810.sys
                                    F764C000 - aic78xx.sys
                                    F7A48000 - dac960nt.sys
                                    F765C000 - ql10wnt.sys
                                    F7A4C000 - amsint.sys
                                    F78B4000 - asc.sys
                                    F7A50000 - asc3550.sys
                                    F78BC000 - mraid35x.sys
                                    F78C4000 - i2omp.sys
                                    F7A54000 - ini910u.sys
                                    F766C000 - ql1240.sys
                                    F767C000 - aic78u2.sys
                                    F78CC000 - symc8xx.sys
                                    F78D4000 - sym_hi.sys
                                    F78DC000 - sym_u3.sys
                                    F78E4000 - ABP480N5.SYS
                                    F78EC000 - asc3350p.sys
                                    F7B2A000 - cd20xrnt.sys
                                    F768C000 - ultra.sys
                                    F7455000 - adpu160m.sys
                                    F78F4000 - dpti2o.sys
                                    F769C000 - ql1080.sys
                                    F76AC000 - ql1280.sys
                                    F76BC000 - ql12160.sys
                                    F78FC000 - perc2.sys
                                    F7B2C000 - perc2hib.sys
                                    F7904000 - hpn.sys
                                    F7A58000 - cbidf2k.sys
                                    F7429000 - dac2w2k.sys
                                    F76CC000 - disk.sys
                                    F76DC000 - \WINDOWS\system32\DRIVERS\CLASSPNP.SYS
                                    F7409000 - fltmgr.sys
                                    F73F7000 - sr.sys
                                    F790C000 - PxHelp20.sys
                                    F73E0000 - KSecDD.sys
                                    F7353000 - Ntfs.sys
                                    F76EC000 - fsdfw.sys
                                    F7326000 - \WINDOWS\System32\drivers\NDIS.SYS
                                    F7914000 - \WINDOWS\System32\drivers\fsndis5.sys
                                    F76FC000 - sisagp.sys
                                    F770C000 - viaagp.sys
                                    F7A5C000 - RecAgent.sys
                                    F771C000 - ohci1394.sys
                                    F772C000 - \WINDOWS\system32\DRIVERS\1394BUS.SYS
                                    F730C000 - Mup.sys
                                    F773C000 - alim1541.sys
                                    F774C000 - amdagp.sys
                                    F775C000 - agp440.sys
                                    F776C000 - agpCPQ.sys
                                    F77AC000 - \SystemRoot\system32\DRIVERS\AmdK8.sys
                                    F7AF8000 - \SystemRoot\system32\drivers\RMC.sys
                                    F7B04000 - \SystemRoot\system32\DRIVERS\CmBatt.sys
                                    F70CE000 - \SystemRoot\system32\DRIVERS\ati2mtag.sys
                                    F70BA000 - \SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
                                    F7092000 - \SystemRoot\system32\drivers\tifm21.sys
                                    F707E000 - \SystemRoot\system32\DRIVERS\sdbus.sys
                                    F7A04000 - \SystemRoot\system32\DRIVERS\usbohci.sys
                                    F705A000 - \SystemRoot\system32\DRIVERS\USBPORT.SYS
                                    F7A0C000 - \SystemRoot\system32\DRIVERS\usbehci.sys
                                    F7032000 - \SystemRoot\system32\DRIVERS\HDAudBus.sys
                                    F77BC000 - \SystemRoot\system32\DRIVERS\i8042prt.sys
                                    F7003000 - \SystemRoot\system32\DRIVERS\SynTP.sys
                                    F7B46000 - \SystemRoot\system32\DRIVERS\USBD.SYS
                                    F7A14000 - \SystemRoot\system32\DRIVERS\mouclass.sys
                                    F7A1C000 - \SystemRoot\system32\DRIVERS\kbdclass.sys
                                    F77CC000 - \SystemRoot\system32\DRIVERS\imapi.sys
                                    F77DC000 - \SystemRoot\system32\DRIVERS\cdrom.sys
                                    F77EC000 - \SystemRoot\system32\DRIVERS\redbook.sys
                                    F6FAC000 - \SystemRoot\system32\DRIVERS\ks.sys
                                    F7C79000 - \SystemRoot\system32\DRIVERS\audstub.sys
                                    F77FC000 - \SystemRoot\system32\DRIVERS\rasl2tp.sys
                                    F7B10000 - \SystemRoot\system32\DRIVERS\ndistapi.sys
                                    F6F95000 - \SystemRoot\system32\DRIVERS\ndiswan.sys
                                    F780C000 - \SystemRoot\system32\DRIVERS\raspppoe.sys
                                    F781C000 - \SystemRoot\system32\DRIVERS\raspptp.sys
                                    F7A24000 - \SystemRoot\system32\DRIVERS\TDI.SYS
                                    F6EE4000 - \SystemRoot\system32\DRIVERS\psched.sys
                                    F782C000 - \SystemRoot\system32\DRIVERS\msgpc.sys
                                    F7944000 - \SystemRoot\system32\DRIVERS\ptilink.sys
                                    F794C000 - \SystemRoot\system32\DRIVERS\raspti.sys
                                    F783C000 - \SystemRoot\system32\DRIVERS\termdd.sys
                                    F7B4C000 - \SystemRoot\system32\DRIVERS\swenum.sys
                                    F6E86000 - \SystemRoot\system32\DRIVERS\update.sys
                                    F7244000 - \SystemRoot\system32\DRIVERS\mssmbios.sys
                                    F784C000 - \SystemRoot\System32\Drivers\NDProxy.SYS
                                    F788C000 - \SystemRoot\system32\DRIVERS\usbhub.sys
                                    EEE15000 - \SystemRoot\system32\drivers\HdAudio.sys
                                    EEDF1000 - \SystemRoot\system32\drivers\portcls.sys
                                    F72FC000 - \SystemRoot\system32\drivers\drmk.sys
                                    EEDD1000 - \SystemRoot\system32\DRIVERS\SLDRV\slazldrv.sys
                                    F7220000 - \SystemRoot\system32\DRIVERS\SLDRV\SlWdmSup.sys
                                    EEDB2000 - \SystemRoot\system32\DRIVERS\SLDRV\Mtlmnt5.sys
                                    F7954000 - \SystemRoot\System32\Drivers\Modem.SYS
                                    F7210000 - \SystemRoot\System32\Drivers\i2omgmt.SYS
                                    F7B52000 - \SystemRoot\System32\Drivers\Fs_Rec.SYS
                                    F7CDE000 - \SystemRoot\System32\Drivers\Null.SYS
                                    F7B54000 - \SystemRoot\System32\Drivers\Beep.SYS
                                    F796C000 - \SystemRoot\system32\DRIVERS\HIDPARSE.SYS
                                    F7974000 - \SystemRoot\System32\drivers\vga.sys
                                    F7B56000 - \SystemRoot\System32\Drivers\mnmdd.SYS
                                    F7B58000 - \SystemRoot\System32\DRIVERS\RDPCDD.sys
                                    F797C000 - \SystemRoot\System32\Drivers\Msfs.SYS
                                    F7984000 - \SystemRoot\System32\Drivers\Npfs.SYS
                                    F7208000 - \SystemRoot\system32\DRIVERS\rasacd.sys
                                    EED2F000 - \SystemRoot\system32\DRIVERS\ipsec.sys
                                    EECD6000 - \SystemRoot\system32\DRIVERS\tcpip.sys
                                    EECAE000 - \SystemRoot\system32\DRIVERS\netbt.sys
                                    F7200000 - \SystemRoot\System32\drivers\ws2ifsl.sys
                                    EEC8C000 - \SystemRoot\System32\drivers\afd.sys
                                    F72EC000 - \SystemRoot\system32\DRIVERS\netbios.sys
                                    EEBC1000 - \SystemRoot\system32\DRIVERS\rdbss.sys
                                    EEB29000 - \SystemRoot\system32\DRIVERS\mrxsmb.sys
                                    F72CC000 - \SystemRoot\System32\Drivers\Fips.SYS
                                    EEB03000 - \SystemRoot\system32\DRIVERS\ipnat.sys
                                    F72BC000 - \SystemRoot\system32\DRIVERS\wanarp.sys
                                    F71EC000 - \SystemRoot\system32\DRIVERS\hidusb.sys
                                    F72AC000 - \SystemRoot\system32\DRIVERS\HIDCLASS.SYS
                                    F798C000 - \SystemRoot\system32\DRIVERS\USBSTOR.SYS
                                    F71E8000 - \SystemRoot\system32\DRIVERS\mouhid.sys
                                    F7994000 - \SystemRoot\system32\DRIVERS\point32.sys
                                    F728C000 - \??\C:\Program Files\Pack Securite\HIPS\fshs.sys
                                    F726C000 - \SystemRoot\System32\Drivers\Cdfs.SYS
                                    EEAC3000 - \SystemRoot\System32\Drivers\dump_atapi.sys
                                    F7B6E000 - \SystemRoot\System32\Drivers\dump_WMILIB.SYS
                                    BF800000 - \SystemRoot\System32\win32k.sys
                                    F721C000 - \SystemRoot\System32\drivers\Dxapi.sys
                                    F79C4000 - \SystemRoot\System32\watchdog.sys
                                    BF9C3000 - \SystemRoot\System32\drivers\dxg.sys
                                    F7C27000 - \SystemRoot\System32\drivers\dxgthk.sys
                                    BF9D5000 - \SystemRoot\System32\ati2dvag.dll
                                    BFA10000 - \SystemRoot\System32\ati2cqag.dll
                                    BFA42000 - \SystemRoot\System32\atikvmag.dll
                                    BFA74000 - \SystemRoot\System32\ati3duag.dll
                                    BFCA5000 - \SystemRoot\System32\ativvaxx.dll
                                    B8DF8000 - \SystemRoot\system32\DRIVERS\ndisuio.sys
                                    B8B53000 - \SystemRoot\system32\drivers\wdmaud.sys
                                    F6EF5000 - \SystemRoot\system32\drivers\sysaudio.sys
                                    B8780000 - \SystemRoot\system32\DRIVERS\mrxdav.sys
                                    B86B6000 - \SystemRoot\system32\DRIVERS\srv.sys
                                    B8564000 - \??\C:\Program Files\Pack Securite\Anti-Virus\minifilter\fsgk.sys
                                    B84FB000 - \SystemRoot\System32\Drivers\HTTP.sys
                                    F7D25000 - \SystemRoot\System32\DRIVERS\KProcCheck.sys

                                    Total number of drivers = 171

                                    Liste des programmes installes

                                    Adobe Flash Player Plugin
                                    Adobe Reader 9 - Français
                                    CCleaner (remove only)
                                    Correctif pour Lecteur Windows Media 11 (KB939683)
                                    Correctif pour Windows XP (KB952287)
                                    EPSON-Drucker-Software
                                    EPSON CardMonitor
                                    EPSON Copy Utility 3
                                    EPSON PhotoQuicker3.5
                                    EPSON PhotoStarter3.1
                                    EPSON PRINT Image Framer Tool2.1
                                    EPSON Scan
                                    EPSON Smart Panel
                                    EPSON Web-To-Page
                                    ESPRX420 Guide de réf.
                                    ESPRX420 Guide des logiciels
                                    HijackThis 2.0.2
                                    Hotfix for Windows Media Format 11 SDK (KB929399)
                                    Java 2 Runtime Environment, SE v1.4.2_05
                                    Java(TM) 6 Update 4
                                    Kaspersky On-line Scanner
                                    Kaspersky Online Scanner
                                    Lecteur Windows Media 11
                                    Malwarebytes' Anti-Malware
                                    Microsoft .NET Framework 1.1
                                    Microsoft .NET Framework 1.1
                                    Microsoft .NET Framework 1.1 French Language Pack
                                    Microsoft .NET Framework 1.1 Hotfix (KB928366)
                                    Microsoft ActiveSync 4.0
                                    Microsoft Compression Client Pack 1.0 for Windows XP
                                    Microsoft IntelliPoint 5.3
                                    Microsoft User-Mode Driver Framework Feature Pack 1.0
                                    Microsoft Word 2002
                                    Mise à jour de sécurité pour Lecteur Windows Media 11 (KB936782)
                                    Mise à jour de sécurité pour Lecteur Windows Media 11 (KB954154)
                                    Mise à jour de sécurité pour Step by Step Interactive Training (KB923723)
                                    Mise à jour de sécurité pour Windows XP (KB938464)
                                    Mise à jour de sécurité pour Windows XP (KB941569)
                                    Mise à jour de sécurité pour Windows XP (KB946648)
                                    Mise à jour de sécurité pour Windows XP (KB950762)
                                    Mise à jour de sécurité pour Windows XP (KB950974)
                                    Mise à jour de sécurité pour Windows XP (KB951066)
                                    Mise à jour de sécurité pour Windows XP (KB951376-v2)
                                    Mise à jour de sécurité pour Windows XP (KB951698)
                                    Mise à jour de sécurité pour Windows XP (KB951748)
                                    Mise à jour de sécurité pour Windows XP (KB952954)
                                    Mise à jour de sécurité pour Windows XP (KB953838)
                                    Mise à jour de sécurité pour Windows XP (KB953839)
                                    Mise à jour pour Windows XP (KB951072-v2)
                                    Mise à jour pour Windows XP (KB951978)
                                    Mozilla Firefox (3.0.3)
                                    Mozilla Thunderbird (2.0.0.16)
                                    MSXML 4.0 SP2 (KB936181)
                                    Neuf - Kit de connexion
                                    Neuf - Media Center
                                    OpenOffice.org 2.4
                                    Pack Securite Plus
                                    Packard Bell InfoCentre
                                    PhotoImpression 5
                                    PIF DESIGNER2.1
                                    ScanToWeb
                                    Sonic MyDVD
                                    Sonic RecordNow!
                                    ViaMichelin Navigation PND
                                    VLC media player 0.9.2
                                    WebFldrs XP
                                    Windows Media Format 11 runtime
                                    Windows Media Format 11 runtime
                                    Windows Media Player 11
                                    Windows XP Service Pack 3

                                    Le volume dans le lecteur C s'appelle HDD
                                    Le numéro de série du volume est 181F-54AA

                                    Répertoire de C:\Program Files

                                    28/09/2008 12:29 <REP> .
                                    28/09/2008 12:29 <REP> ..
                                    21/09/2008 11:14 <REP> Adobe
                                    20/09/2008 19:22 <REP> AMD
                                    21/09/2008 10:31 <REP> ArcSoft
                                    20/09/2008 19:23 <REP> ATI Technologies
                                    20/09/2008 22:08 <REP> CCleaner
                                    16/08/2004 18:05 <REP> ComPlus Applications
                                    20/09/2008 19:29 <REP> CyberLink
                                    21/09/2008 10:38 <REP> EPSON
                                    29/09/2008 19:48 <REP> Fichiers communs
                                    21/09/2008 08:50 <REP> Internet Explorer
                                    20/09/2008 22:16 <REP> Java
                                    20/09/2008 19:33 <REP> Learn2.com
                                    28/09/2008 12:29 <REP> Malwarebytes' Anti-Malware
                                    21/09/2008 08:54 <REP> Messenger
                                    27/09/2008 13:38 <REP> Microsoft ActiveSync
                                    16/08/2004 18:11 <REP> microsoft frontpage
                                    20/09/2008 22:53 <REP> Microsoft IntelliPoint
                                    20/09/2008 19:40 <REP> microsoft office
                                    20/09/2008 19:40 <REP> Microsoft Visual Studio
                                    21/09/2008 08:50 <REP> Movie Maker
                                    03/10/2008 21:09 <REP> Mozilla Firefox
                                    30/09/2008 21:52 <REP> Mozilla Thunderbird
                                    16/08/2004 18:03 <REP> MSN
                                    16/08/2004 18:03 <REP> MSN Gaming Zone
                                    20/09/2008 22:32 <REP> MSXML 4.0
                                    21/09/2008 08:45 <REP> NetMeeting
                                    21/09/2008 09:49 <REP> Neuf
                                    21/09/2008 15:02 <REP> NOS
                                    16/08/2004 18:03 <REP> Online Services
                                    20/09/2008 22:16 <REP> OpenOffice.org 2.4
                                    21/09/2008 08:45 <REP> Outlook Express
                                    20/09/2008 21:28 <REP> Pack Securite
                                    20/09/2008 19:33 <REP> QuickTime
                                    20/09/2008 19:32 <REP> Real
                                    16/08/2004 18:07 <REP> Services en ligne
                                    21/09/2008 10:30 <REP> Smart Panel
                                    20/09/2008 19:42 <REP> Sonic
                                    20/09/2008 19:16 <REP> Synaptics
                                    28/09/2008 00:50 <REP> Trend Micro
                                    27/09/2008 16:32 <REP> ViaMichelin
                                    20/09/2008 22:47 <REP> VideoLAN
                                    20/09/2008 19:33 <REP> Viewpoint
                                    20/09/2008 21:48 <REP> Windows Media Connect 2
                                    21/09/2008 08:45 <REP> Windows Media Player
                                    21/09/2008 08:45 <REP> Windows NT
                                    16/08/2004 18:11 <REP> xerox
                                    0 fichier(s) 0 octets
                                    48 Rép(s) 39 485 124 608 octets libres
                                    Le volume dans le lecteur C s'appelle HDD
                                    Le numéro de série du volume est 181F-54AA

                                    Répertoire de C:\Program Files\fichiers communs

                                    29/09/2008 19:48 <REP> .
                                    29/09/2008 19:48 <REP> ..
                                    21/09/2008 11:14 <REP> Adobe
                                    21/09/2008 09:11 <REP> AOL
                                    20/09/2008 19:40 <REP> Designer
                                    20/09/2008 19:22 <REP> InstallShield
                                    20/09/2008 19:23 <REP> Java
                                    27/09/2008 13:38 <REP> Microsoft Shared
                                    16/08/2004 18:06 <REP> MSSoap
                                    20/09/2008 19:33 <REP> Nullsoft
                                    16/08/2004 17:57 <REP> ODBC
                                    20/09/2008 19:38 <REP> Real
                                    16/08/2004 18:06 <REP> Services
                                    20/09/2008 19:42 <REP> Sonic Shared
                                    16/08/2004 17:56 <REP> SpeechEngines
                                    20/09/2008 19:31 <REP> SureThing Shared
                                    28/09/2008 11:56 <REP> Symantec Shared
                                    21/09/2008 08:45 <REP> System
                                    20/09/2008 19:38 <REP> xing shared
                                    0 fichier(s) 0 octets
                                    19 Rép(s) 39 485 124 608 octets libres
                                    Le volume dans le lecteur C s'appelle HDD
                                    Le numéro de série du volume est 181F-54AA

                                    Répertoire de C:\Program Files\fichiers communs\Microsoft Shared\Web Folders

                                    20/09/2008 19:40 <REP> .
                                    20/09/2008 19:40 <REP> ..
                                    20/09/2008 19:40 <REP> 1033
                                    20/09/2008 19:40 <REP> 1036
                                    15/02/2001 05:45 1 318 912 MSONSEXT.DLL
                                    13/02/2001 08:23 58 784 MSOSV.DLL
                                    03/06/1999 12:09 122 937 MSOWS409.DLL
                                    07/03/2001 07:00 127 033 MSOWS40c.DLL
                                    06/08/2000 09:04 401 462 MSVCP60.DLL
                                    22/01/2001 03:25 69 632 PKMAXCTL.DLL
                                    22/01/2001 03:25 872 448 PKMCDO.DLL
                                    22/01/2001 03:25 159 744 PKMCORE.DLL
                                    07/02/2001 09:59 106 496 PKMFORMS.DLL
                                    12/02/2001 04:03 684 032 PKMRES.DLL
                                    22/01/2001 03:25 28 672 PKMSSTLB.DLL
                                    22/01/2001 03:25 40 960 PKMTEMPL.DLL
                                    22/01/2001 03:25 24 576 PKMTRACE.DLL
                                    22/01/2001 03:25 86 016 PKMWS.DLL
                                    22/01/2001 03:25 237 568 PROMDEMO.DLL
                                    22/01/2001 03:25 184 320 SECMGR.DLL
                                    22/01/2001 03:25 323 584 VAIDDMGR.DLL
                                    22/01/2001 03:25 32 768 VAIMEM.DLL
                                    18 fichier(s) 4 879 944 octets
                                    4 Rép(s) 39 485 124 608 octets libres

                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\simpletts.exe
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\SD-CARD\InstallSD\InstallSD.exe
                                    c:\Documents and Settings\FC\Bureau\ComboFix.exe
                                    c:\Documents and Settings\FC\Bureau\mbam-setup.exe
                                    c:\Documents and Settings\FC\Bureau\Norton_Removal_Tool.exe
                                    c:\Documents and Settings\FC\Bureau\RSIT.exe
                                    c:\Documents and Settings\FC\Bureau\ToolBarSD.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\catchme.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\diff.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\dumphive.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\FilesInfoCmd.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\find2.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\Fport.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\grep.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\gzip.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\KProcCheck.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\LFiles.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\LISTDLLS.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\md5sums.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\pslist.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\sigcheck.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\streams.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\swreg.exe
                                    c:\Documents and Settings\FC\Bureau\DiagHelp\DiagHelp\tar.exe
                                    c:\Documents and Settings\FC\Bureau\GenProc\outil\sed-3.59.exe
                                    c:\Documents and Settings\FC\Bureau\GenProc\outil\swreg.exe
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\audioout.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\combrk.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\comrsrc.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\comsyssvc.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\dcteg.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\domain_mngr.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\edct.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\empp_dub.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\empp_eng.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\empp_enu.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\empp_frf.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\empp_ged.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\empp_iti.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\empp_spe.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\g2p_dun.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\g2p_eng.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\g2p_enu.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\g2p_frf.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\g2p_ged.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\g2p_iti.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\g2p_spe.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\rettt.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\rs_sapi5_solo.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\rssoloapi.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\stdpp_dub.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\stdpp_eng.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\stdpp_enu.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\stdpp_frf.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\stdpp_ged.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\stdpp_iti.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\stdpp_spe.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\swisolo.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\synth_112mrf16.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\ttsengine.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\vf_claire_red.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\vf_emily_red.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\vf_isabel_red.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\vf_samantha_red.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\vf_silvia_red.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\vf_steffi_red.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\vf_virginie_red.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\xcoder.dll
                                    c:\Documents and Settings\All Users\Application Data\ViaMichelin\ViaMichelin Navigation PND\ContentManager\Dynamic\RESTORE\MEMORY\VMData\TTS\speech\components\xlit_1252.dll
                                    c:\Documents and Settings\FC\Application Data\Mozilla\Firefox\Profiles\m4cpo2qw.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\googletoolbarloader.dll
                                    c:\Documents and Settings\FC\Application Data\Mozilla\Firefox\Profiles\m4cpo2qw.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\components\metricsloader.dll
                                    c:\Documents and Settings\FC\Application Data\Mozilla\Firefox\Profiles\m4cpo2qw.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff2.dll
                                    c:\Documents and Settings\FC\Application Data\Mozilla\Firefox\Profiles\m4cpo2qw.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\googletoolbar-ff3.dll
                                    c:\Documents and Settings\FC\Application Data\Mozilla\Firefox\Profiles\m4cpo2qw.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\metrics-ff2.dll
                                    c:\Documents and Settings\FC\Application Data\Mozilla\Firefox\Profiles\m4cpo2qw.default\extensions\{3112ca9c-de6d-4884-a869-9855de68056c}\libraries\metrics-ff3.dll
                                    c:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll

                                    ****** Fin du rapport DiagHelp
                                    Veuillez svp envoyer le fichier C:\upload_moi_FABIEN.tar.gz a l'adresse http://upload.malekal.com
                                    1. Contributeur sécurité
                                      Salut,

                                      rien d'infectieux sur ce log ... -_-

                                      Vérifies ceci sur VirusTotal et postes moi les rapports :

                                      C:\WINDOWS\CDE RX420FG.ini

                                      C:\WINDOWS\HDReg.ini
                                  2. ça y est, ça vient de ce mettre à déconner à l'instant, entre les deux analyses; j'arrive pas à faire copier coller puisque ma souris sélectionne n'importe comment, mais le résultat des 2 analyses est à priori nul.
                                    je peux juste coller le premier résultat; sur le second il est également indiqué 0/36.

                                    Fichier CDE_RX420FG.ini reçu le 2008.10.03 21:35:15 (CET)
                                    Situation actuelle: en cours de chargement ... mis en file d'attente en attente en cours d'analyse terminé NON TROUVE ARRETE
                                    Résultat: 0/36 (0%)
                                    en train de charger les informations du serveur...
                                    Votre fichier est dans la file d'attente, en position: 2.
                                    L'heure estimée de démarrage est entre 42 et 60 secondes.
                                    Ne fermez pas la fenêtre avant la fin de l'analyse.
                                    L'analyseur qui traitait votre fichier est actuellement stoppé, nous allons attendre quelques secondes pour tenter de récupérer vos résultats.
                                    Si vous attendez depuis plus de cinq minutes, vous devez renvoyer votre fichier.
                                    Votre fichier est, en ce moment, en cours d'analyse par VirusTotal,
                                    les résultats seront affichés au fur et à mesure de leur génération.
                                    Formaté Formaté
                                    Impression des résultats Impression des résultats
                                    Votre fichier a expiré ou n'existe pas.
                                    Le service est en ce moment, stoppé, votre fichier attend d'être analysé (position : ) depuis une durée indéfinie.

                                    Vous pouvez attendre une réponse du Web (re-chargement automatique) ou taper votre e-mail dans le formulaire ci-dessous et cliquer "Demande" pour que le système vous envoie une notification quand l'analyse sera terminée.
                                    Email:

                                    Antivirus Version Dernière mise à jour Résultat
                                    AhnLab-V3 2008.10.3.2 2008.10.03 -
                                    AntiVir 7.8.1.34 2008.10.03 -
                                    Authentium 5.1.0.4 2008.10.03 -
                                    Avast 4.8.1248.0 2008.10.03 -
                                    AVG 8.0.0.161 2008.10.03 -
                                    BitDefender 7.2 2008.10.03 -
                                    CAT-QuickHeal 9.50 2008.10.03 -
                                    ClamAV 0.93.1 2008.10.02 -
                                    DrWeb 4.44.0.09170 2008.10.03 -
                                    eSafe 7.0.17.0 2008.10.02 -
                                    eTrust-Vet 31.6.6127 2008.10.03 -
                                    Ewido 4.0 2008.10.03 -
                                    F-Prot 4.4.4.56 2008.10.03 -
                                    F-Secure 8.0.14332.0 2008.10.03 -
                                    Fortinet 3.113.0.0 2008.10.03 -
                                    GData 19 2008.10.03 -
                                    Ikarus T3.1.1.34.0 2008.10.03 -
                                    K7AntiVirus 7.10.483 2008.10.03 -
                                    Kaspersky 7.0.0.125 2008.10.03 -
                                    McAfee 5397 2008.10.02 -
                                    Microsoft 1.4005 2008.10.03 -
                                    NOD32 3493 2008.10.03 -
                                    Norman 5.80.02 2008.10.03 -
                                    Panda 9.0.0.4 2008.10.03 -
                                    PCTools 4.4.2.0 2008.10.03 -
                                    Prevx1 V2 2008.10.03 -
                                    Rising 20.63.62.00 2008.09.28 -
                                    SecureWeb-Gateway 6.7.6 2008.10.03 -
                                    Sophos 4.34.0 2008.10.03 -
                                    Sunbelt 3.1.1675.1 2008.09.27 -
                                    Symantec 10 2008.10.03 -
                                    TheHacker 6.3.1.0.099 2008.10.03 -
                                    TrendMicro 8.700.0.1004 2008.10.03 -
                                    VBA32 3.12.8.6 2008.10.03 -
                                    ViRobot 2008.10.3.1405 2008.10.03 -
                                    VirusBuster 4.5.11.0 2008.10.03 -
                                    Information additionnelle
                                    File size: 25 bytes
                                    MD5...: 40fdf3546b2dd93413c2223169683979
                                    SHA1..: 051d6b7dc29d1e5011625a35b03dce6012a6604e
                                    SHA256: bcddb9e611ebc7c16e4d0df68ae59eb7bc1d792e269bde8707d665d510bae697
                                    SHA512: 203d4cf18ecbec6845823264d60a513771ce4be6b8e7ea1f4c01956323bd0d83
                                    7b5dbdf521bdb73868dfd427bd768f306e2f23bf0298f69cda612723c4cdbdda
                                    PEiD..: -
                                    TrID..: File type identification
                                    Generic INI configuration (100.0%)
                                    PEInfo: -
                                    • 1
                                    • 2