Aller au contenu

[LOGICIEL] [Centralisation] .:::: Hijackthis ::::.


snooky

Messages recommandés

@ Beat :

:yes: Colle le rapporapport créé ( LOGFILE.TXT )

Sophos Anti-Virus

Version 4.14.0 [Win32/Intel]

Virus data version 4.14, February 2007

Includes detection for 214956 viruses, trojans and worms

Copyright © 1989-2007 Sophos Plc, www.sophos.com

System time 02:01:21, System date 18 October 2006

Command line qualifiers are: -REMOVE

Quick Scanning

Could not open C:\WINDOWS\system32\drivers\sptd4317.sys

Could not open C:\WINDOWS\system32\drivers\sptd.sys

>>> Virus 'Troj/BHO-F' found in file C:\WINDOWS\system32\iribgtfq.dll

Proceed with removal of C:\WINDOWS\system32\iribgtfq.dll ([Y]es/[N]o/[A]ll) ? Yes

Removal successful

Could not open C:\WINDOWS\Temp\sqlite_ScJh8X9XOKs52Rf

Could not check C:\Documents and Settings\Peter\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini (corrupt)

Password protected file C:\Documents and Settings\Peter\Application Data\Adobe\Acrobat\7.0\Messages\ENU\read0700win_ENUadbe0700.pdf

Password protected file C:\Program Files\Adobe\Acrobat 7.0\Reader\WebSearch\WebSearchENU.pdf

Password protected file C:\Program Files\Adobe\Acrobat 7.0\Reader\Messages\ENU\RdrMsgENU.pdf

Password protected file C:\Program Files\Adobe\Acrobat 7.0\Reader\Messages\ENU\read0600win_ENUyhoo0010.pdf

Password protected file C:\Program Files\Adobe\Acrobat 7.0\Reader\Messages\RdrMsgSplash.pdf

Could not open C:\hiberfil.sys

>>> Virus 'Mal/Packer' found in file D:\Downloads\Logiciels\Zone labs\crackzonealaerm\Keygen ZoneAlarm Pro 5.exe

Proceed with removal of D:\Downloads\Logiciels\Zone labs\crackzonealaerm\Keygen ZoneAlarm Pro 5.exe ([Y]es/[N]o/[A]ll) ? No

2 boot sectors swept.

31914 files swept in 2953 hours, 19 minutes and 21 seconds.

10 errors were encountered.

2 viruses were discovered.

2 files out of 31914 were infected.

Please send infected samples to Sophos for analysis.

For advice consult www.sophos.com, email support@sophos.com

or telephone +44 1235 559933

5 encrypted files were not checked.

Ending Sophos Anti-Virus.

je crois que de toute maniere je vais reinstaller windows, desormai mon ordi portable ne m'affiche plus les infos systeme sur le pc (volume +/-, wifi activé/desactivé) :chinois:

Lien vers le commentaire
Partager sur d’autres sites

  • Réponses 8,5 k
  • Créé
  • Dernière réponse

HijackThis est un outil capable de traquer les hijackers présents sur votre PC. Ces modifications non sollicitées ont différents effets comme par exemple le détournement de la page d'accueil d'Internet Explorer, l'insertion d'un composant dans la barre du navigateur ou encore le détournement d'adresse IP via le fichier Hosts. Le programme liste les différents endroits où sont susceptibles de se cacher des hijackers et vous permet ainsi de supprimer les entrées suspectes.

source zebulon.fr

:chinois:Cliquez sur Scan , puis sauvegardez le log qui en resulte avec Notepad .

Le fichier se trouve alors sur votre bureau , collez-le à la suite de ce topic. ( copiez tout ce qui se trouve dans le fichier TXT )

C'est tout !

Hijack1.PNG

Written by Merijn - merijn@spywareinfo.com

http://www.merijn.org/index.html

:yes:Hijackthis est à télécharger dans ma signature .

:transpi: Tuto pour créer et poster un rapport en images ( merci à Balltrap34 ) :

http://pageperso.aol.fr/balltrap34/demohijack.htm

:yes:Tutoriel

--------------------------- I M P O R T A N T : --------------------------------------

Ne passez pas un coup de Hitman Pro comme indiqué dans le 2ème post !

salut snooky!!

alors voila mon probleme jai un protocol dans mon rapport et jaimerai savoir si il n'est pas risquer parce que d'après se que j'ai lu dans l'aide les protocols sont rarement bien.et si tu pouvai me dire si les autre chose son ok aussi se serait vraiment cool!!

en te remerciant d'avance et en te souhaite une bonne continuation.et un grand merci pour se que tu fait...++

Logfile of HijackThis v1.99.1

Scan saved at 05:06:21, on 18/02/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\csrss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\System32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe

C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

C:\WINDOWS\System32\svchost.exe

C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe

C:\WINDOWS\SOUNDMAN.EXE

D:\Micro Application\Cloneur Expert\TrueImageMonitor.exe

C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\SuperCopier2\SuperCopier2.exe

C:\Program Files\TuneUp Utilities 2007\MemOptimizer.exe

C:\Program Files\Kaspersky Lab\Kaspersky Anti-Hacker\KAVPF.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\WINDOWS\System32\alg.exe

C:\PROGRA~1\Lavasoft\AD-AWA~1\Ad-Watch.exe

C:\Program Files\eMule\emule.exe

C:\Program Files\Mozilla Firefox\firefox.exe

D:\hijackthis pas touche !!!!!!!!\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = InTeRnEt Xploorer

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"

O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE

O4 - HKLM\..\Run: [Cloneur Expert Monitor] "D:\Micro Application\Cloneur Expert\TrueImageMonitor.exe"

O4 - HKLM\..\Run: [Acronis Scheduler2 Service] "C:\Program Files\Fichiers communs\Acronis\Schedule2\schedhlp.exe"

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe

O4 - HKCU\..\Run: [superCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe

O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2007\MemOptimizer.exe" autostart

O4 - Global Startup: EPSON Status Monitor 3 Environment Check 2.lnk = C:\WINDOWS\system32\spool\drivers\w32x86\3\E_SRCV02.EXE

O4 - Global Startup: Kaspersky Anti-Hacker.lnk = C:\Program Files\Kaspersky Lab\Kaspersky Anti-Hacker\KAVPF.exe

O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe

O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present

O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O11 - Options group: [iNTERNATIONAL] International*

O15 - Trusted Zone: http://www.msi.com.tw

O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab

O16 - DPF: {8167C273-DF59-4416-B647-C8BB2C7EE83E} (WebSDev Control) - http://tw.msi.com.tw/autobios/LOnline/install.cab

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab

O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\FICHIE~1\MICROS~1\OFFICE12\MSOXMLMF.DLL

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - C:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\System32\Ati2evxx.exe

O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe

O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

Lien vers le commentaire
Partager sur d’autres sites

@ gaet35

Le rapport est clean .

Tu utilises encore Kaspersky anti-hacker ou il est désinstallé ?

A fixer :

O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2007\MemOptimizer.exe" autostart

O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe

Lien vers le commentaire
Partager sur d’autres sites

non snooky comme je l'ai dit je n'ai plus a l'ecran les infos de volumes, le wifi ne s'allume plus par le bouton c'est etrange

il faudra que je le ramene au SAV pour de toutes manieres plein de problemes avec des taches "dans" l'ecran et le lecteur de carte etc donc je ne sais pas si eux foramtent l'ordi

voici le rapport :

Logfile of HijackThis v1.99.1

Scan saved at 10:08:21, on 18/02/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.5700.0007)

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

C:\WINDOWS\system32\spoolsv.exe

c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\Explorer.EXE

C:\Acer\Empowering Technology\admServ.exe

C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe

C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe

C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLService.exe

C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe

C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe

C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

C:\Program Files\CyberLink\Shared Files\RichVideo.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\ZONELABS\vsmon.exe

C:\WINDOWS\navsvc.exe

C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE

C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\WINDOWS\system32\wbem\wmiapsrv.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\iPod\bin\iPodService.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Program Files\MSN Messenger\msnmsgr.exe

C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {2F0A9310-DF76-4591-BE0A-E2ECBFAA2D12} - C:\WINDOWS\system32\pmkji.dll (file missing)

O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\PROGRA~1\FLASHGET\jccatch.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll

O2 - BHO: (no name) - {E03C740E-BB24-4d3c-B92A-6F84DE1DD99C} - C:\WINDOWS\system32\vfymmewg.dll

O2 - BHO: (no name) - {E2613C19-4788-498B-9C06-90C25973D28A} - C:\WINDOWS\system32\gebya.dll

O2 - BHO: (no name) - {EF7C999D-43DD-43C3-A25B-2DB1A881664A} - C:\WINDOWS\system32\ssqrqnm.dll

O2 - BHO: gFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\PROGRA~1\FLASHGET\getflash.dll

O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\fgiebar.dll

O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"

O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm

O8 - Extra context menu item: Télécharger tout avec FlashGet - C:\Program Files\FlashGet\jc_all.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll

O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll

O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll

O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll

O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\flashget.exe

O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\flashget.exe

O11 - Options group: [iNTERNATIONAL] International*

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

O20 - AppInit_DLLs: MsgPlusLoader.dll

O20 - Winlogon Notify: gebya - C:\WINDOWS\system32\gebya.dll

O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: AdminWorks Agent X6 (AWService) - Avocent Inc. - C:\Acer\Empowering Technology\admServ.exe

O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe

O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe

O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe

O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe

O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe

O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe

O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech - c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe

O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZONELABS\vsmon.exe

O23 - Service: Windows Server Management Services (WSMSPSVC) - Unknown owner - C:\WINDOWS\navsvc.exe

Lien vers le commentaire
Partager sur d’autres sites

@ Beat :

Coche et fixe ces lignes :

O2 - BHO: (no name) - {2F0A9310-DF76-4591-BE0A-E2ECBFAA2D12} - C:\WINDOWS\system32\pmkji.dll (file missing)

O2 - BHO: (no name) - {E03C740E-BB24-4d3c-B92A-6F84DE1DD99C} - C:\WINDOWS\system32\vfymmewg.dll

O2 - BHO: (no name) - {E2613C19-4788-498B-9C06-90C25973D28A} - C:\WINDOWS\system32\gebya.dll

O2 - BHO: (no name) - {EF7C999D-43DD-43C3-A25B-2DB1A881664A} - C:\WINDOWS\system32\ssqrqnm.dll

O20 - Winlogon Notify: gebya - C:\WINDOWS\system32\gebya.dll

Télécharge VundoFix.exe (par Atribune) sur ton Bureau

http://www.atribune.org/ccount/click.php?id=4

# Double-clique VundoFix.exe afin de le lancer

# Clique sur le bouton Scan for Vundo

# Lorsque le scan est complété, clique sur le bouton Remove Vundo

# Une invite te demandera si tu veux supprimer les fichiers, clique YES

# Après avoir cliqué "Yes", le Bureau disparaîtra un moment lors de la suppression des fichiers

# Tu verras une invite qui t'annonce que ton PC va redémarrer; clique OK

# Copie/colle le contenu du rapport situé dans C:\vundofix.txt ainsi qu'un nouveau rapport HijackThis! dans ta prochaine réponse

Note: Il est possible que VundoFix soit confronté à un fichier qu'il ne peut supprimer. Si tel est le cas, l'outil se lancera au prochain redémarrage; il faut simplement suivre les instructions ci-haut, à partir de "clique sur le bouton Scan for Vundo".

Lien vers le commentaire
Partager sur d’autres sites

@Beat :

non snooky comme je l'ai dit je n'ai plus a l'ecran les infos de volumes, le wifi ne s'allume plus par le bouton c'est etrange

Ouvre Hijackthis / Config / Sauvés .

Coche ces lignes et clique sur Réparer :

O4 - HKLM\..\Run: [LaunchApp] Alaunch

O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe

O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe

O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE

O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe 1

O4 - HKLM\..\Run: [ADMTray.exe] "C:\Acer\Empowering Technology\admtray.exe"

O4 - HKLM\..\Run: [EPM-DM] c:\acer\Empowering Technology\ePower\epm-dm.exe

O4 - HKLM\..\Run: [Acer ePower Management] C:\Acer\Empowering Technology\ePower\Acer ePower Management.exe boot

Redémarre le pc .

Lien vers le commentaire
Partager sur d’autres sites

voici deja apre vundo

Vundo :

VundoFix V6.3.6

Checking Java version...

Java version is 1.5.0.8

Scan started at 10:37:26 18/02/2007

Listing files found while scanning....

C:\WINDOWS\system32\aybeg.bak1

C:\WINDOWS\system32\aybeg.bak2

C:\WINDOWS\system32\aybeg.ini

C:\WINDOWS\system32\aybeg.ini2

C:\WINDOWS\system32\gebya.dll

C:\WINDOWS\system32\kjpibdnk.exe

C:\WINDOWS\system32\luocoicn.dll

C:\WINDOWS\system32\mywnedvc.dll

C:\WINDOWS\system32\nafymtaj.dll

C:\WINDOWS\system32\qbnmpona.exe

C:\WINDOWS\system32\rivuwegb.exe

C:\WINDOWS\system32\ssqrqnm.dll

C:\WINDOWS\system32\wnooudtc.dll

Beginning removal...

Attempting to delete C:\WINDOWS\system32\aybeg.bak1

C:\WINDOWS\system32\aybeg.bak1 Has been deleted!

Attempting to delete C:\WINDOWS\system32\aybeg.bak2

C:\WINDOWS\system32\aybeg.bak2 Has been deleted!

Attempting to delete C:\WINDOWS\system32\aybeg.ini

C:\WINDOWS\system32\aybeg.ini Has been deleted!

Attempting to delete C:\WINDOWS\system32\aybeg.ini2

C:\WINDOWS\system32\aybeg.ini2 Has been deleted!

Attempting to delete C:\WINDOWS\system32\gebya.dll

C:\WINDOWS\system32\gebya.dll Could not be deleted.

Attempting to delete C:\WINDOWS\system32\kjpibdnk.exe

C:\WINDOWS\system32\kjpibdnk.exe Has been deleted!

Attempting to delete C:\WINDOWS\system32\mywnedvc.dll

C:\WINDOWS\system32\mywnedvc.dll Has been deleted!

Attempting to delete C:\WINDOWS\system32\nafymtaj.dll

C:\WINDOWS\system32\nafymtaj.dll Has been deleted!

Attempting to delete C:\WINDOWS\system32\qbnmpona.exe

C:\WINDOWS\system32\qbnmpona.exe Has been deleted!

Attempting to delete C:\WINDOWS\system32\rivuwegb.exe

C:\WINDOWS\system32\rivuwegb.exe Has been deleted!

Attempting to delete C:\WINDOWS\system32\ssqrqnm.dll

C:\WINDOWS\system32\ssqrqnm.dll Could not be deleted.

Attempting to delete C:\WINDOWS\system32\wnooudtc.dll

C:\WINDOWS\system32\wnooudtc.dll Has been deleted!

Performing Repairs to the registry.

Done!

Beginning removal...

Attempting to delete C:\WINDOWS\system32\gebya.dll

C:\WINDOWS\system32\gebya.dll Has been deleted!

Attempting to delete C:\WINDOWS\system32\ssqrqnm.dll

C:\WINDOWS\system32\ssqrqnm.dll Has been deleted!

Performing Repairs to the registry.

Done!

HiJackThis :

Logfile of HijackThis v1.99.1

Scan saved at 10:51:26, on 18/02/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.5700.0007)

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

C:\WINDOWS\system32\spoolsv.exe

c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\Acer\Empowering Technology\admServ.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe

C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe

C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLService.exe

C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe

C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe

C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

C:\Program Files\CyberLink\Shared Files\RichVideo.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\ctfmon.exe

C:\WINDOWS\system32\ZONELABS\vsmon.exe

C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE

C:\WINDOWS\navsvc.exe

C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\WINDOWS\system32\wbem\wmiapsrv.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\WINDOWS\system32\wuauclt.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\NOTEPAD.EXE

C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\PROGRA~1\FLASHGET\jccatch.dll

O2 - BHO: (no name) - {7071A0E3-4282-41AC-B449-65BEFF9F7586} - C:\WINDOWS\system32\gebya.dll (file missing)

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll

O2 - BHO: gFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\PROGRA~1\FLASHGET\getflash.dll

O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\fgiebar.dll

O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"

O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm

O8 - Extra context menu item: Télécharger tout avec FlashGet - C:\Program Files\FlashGet\jc_all.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll

O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll

O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll

O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll

O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\flashget.exe

O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\flashget.exe

O11 - Options group: [iNTERNATIONAL] International*

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

O20 - AppInit_DLLs: MsgPlusLoader.dll

O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: AdminWorks Agent X6 (AWService) - Avocent Inc. - C:\Acer\Empowering Technology\admServ.exe

O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe

O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe

O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe

O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe

O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe

O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe

O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech - c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe

O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZONELABS\vsmon.exe

O23 - Service: Windows Server Management Services (WSMSPSVC) - Unknown owner - C:\WINDOWS\navsvc.exe

j'vais m'occuper des composants acer

edit : j'ai delete e rapport vundo du 14/02

Lien vers le commentaire
Partager sur d’autres sites

Voilà mon rapport Hijackthis:

Logfile of HijackThis v1.99.1

Scan saved at 12:32:33, on 18/02/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:

D:\WINDOWS\System32\smss.exe

D:\WINDOWS\system32\winlogon.exe

D:\WINDOWS\system32\services.exe

D:\WINDOWS\system32\lsass.exe

D:\WINDOWS\system32\svchost.exe

D:\WINDOWS\System32\svchost.exe

D:\WINDOWS\system32\svchost.exe

D:\WINDOWS\system32\ZoneLabs\vsmon.exe

D:\WINDOWS\Explorer.EXE

D:\WINDOWS\system32\spoolsv.exe

D:\WINDOWS\RTHDCPL.EXE

D:\Program Files\SpeedFan\speedfan.exe

D:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\svchost.exe

D:\WINDOWS\system32\rundll32.exe

D:\PROGRA~1\BILLPS~1\WINPAT~1\winpatrol.exe

D:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

D:\Program Files\UltraMon\UltraMon.exe

D:\WINDOWS\system32\ctfmon.exe

D:\Program Files\MSN Messenger\MsnMsgr.Exe

D:\WINDOWS\system32\nvsvc32.exe

D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe

D:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe

D:\Program Files\Internet Explorer\iexplore.exe

D:\WINDOWS\system32\rundll32.exe

D:\WINDOWS\system32\svchost.exe

D:\Program Files\UltraMon\UltraMonTaskbar.exe

D:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe

D:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe

D:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe

D:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe

D:\Program Files\MSN Messenger\usnsvc.exe

D:\Program Files\Mozilla Firefox\firefox.exe

D:\Documents and Settings\Administrateur\Bureau\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://auto.search.msn.com/response.asp?MT...;prov=&utf8

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Favoris

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll

O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - D:\Program Files\NewDotNet\newdotnet7_48.dll

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O4 - HKLM\..\Run: [GBB36X Configure] D:\WINDOWS\system32\JMRaidTool.exe boot

O4 - HKLM\..\Run: [KAVPersonal50] "D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize

O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE D:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [speedfan] D:\Program Files\SpeedFan\speedfan.exe

O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k

O4 - HKLM\..\Run: [WindowsServicesStartup] D:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\svchost.exe 1

O4 - HKLM\..\Run: [New.net Startup] rundll32 D:\PROGRA~1\NEWDOT~1\NEWDOT~1.DLL,ClientStartup -s

O4 - HKLM\..\Run: [Lesscampfilmitch] D:\Documents and Settings\All Users\Application Data\SectDriveLessCamp\Math Axis.exe

O4 - HKLM\..\Run: [WinPatrol] D:\PROGRA~1\BILLPS~1\WINPAT~1\winpatrol.exe

O4 - HKLM\..\Run: [Zone Labs Client] "D:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"

O4 - HKLM\..\Run: [Pando] "D:\Program Files\Pando Networks\Pando\Pando.exe" /Minimized

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [ultraMon] "D:\Program Files\UltraMon\UltraMon.exe" /auto

O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [MessengerPlus3] "D:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart

O4 - HKCU\..\Run: [msnmsgr] "D:\Program Files\MSN Messenger\MsnMsgr.Exe" /background

O4 - HKCU\..\Run: [Pando] "D:\Program Files\Pando Networks\Pando\pando.exe" /Automation

O4 - Startup: Yahoo! Widget Engine.lnk = D:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe

O4 - Global Startup: hpoddt01.exe.lnk = ?

O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000

O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - D:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll

O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab

O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - D:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - D:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O20 - Winlogon Notify: WRNotifier - D:\WINDOWS\SYSTEM32\WRLogonNTF.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - D:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: iPod Service - Apple Computer, Inc. - D:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Kaspersky Anti-Virus Service (kavsvc) - Kaspersky Lab - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe

O23 - Service: Macromedia Licensing Service - Macromedia - D:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe

O23 - Service: WinFast® Display Driver Service (NVSvc) - NVIDIA Corporation - D:\WINDOWS\system32\nvsvc32.exe

O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - D:\Program Files\Spyware Doctor\sdhelp.exe

O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - D:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - D:\WINDOWS\system32\ZoneLabs\vsmon.exe

Merci à toi!

Lien vers le commentaire
Partager sur d’autres sites

@ Beat :

Fixe encore cette ligne :

O2 - BHO: (no name) - {7071A0E3-4282-41AC-B449-65BEFF9F7586} - C:\WINDOWS\system32\gebya.dll (file missing)

Repasse Vundofix en mode sans échec .

S'il ne trouve plus rien et si le rapport ne contient plus la ligne en haut , c'est clean :p

__________________________________________

@ rem''z :

Pc infecté !

Désactive la restauration système.

Redémarre en mode sans échec .

Scan avec EWIDO .

Poste un nouveau rapport Hijackthis et le rapport Ewido .

Lien vers le commentaire
Partager sur d’autres sites

@ Beat :

Fixe encore cette ligne :

O2 - BHO: (no name) - {7071A0E3-4282-41AC-B449-65BEFF9F7586} - C:\WINDOWS\system32\gebya.dll (file missing)

voila le scan apres le mode sans echec

Logfile of HijackThis v1.99.1

Scan saved at 13:42:16, on 18/02/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.5700.0007)

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

C:\WINDOWS\system32\spoolsv.exe

c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe

C:\WINDOWS\system32\Ati2evxx.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\Acer\Empowering Technology\admServ.exe

C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe

C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe

C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe

C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLService.exe

C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe

C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

C:\Program Files\CyberLink\Shared Files\RichVideo.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

C:\acer\Empowering Technology\ePower\epm-dm.exe

C:\WINDOWS\system32\ZONELABS\vsmon.exe

C:\Acer\Empowering Technology\admtray.exe

C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE

C:\Program Files\Realtek\InstallShield\AzMixerSel.exe

C:\WINDOWS\navsvc.exe

C:\WINDOWS\RTHDCPL.EXE

C:\WINDOWS\AGRSMMSG.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE

C:\Acer\Empowering Technology\eRecovery\eRAgent.exe

C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe

C:\WINDOWS\system32\rundll32.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\WINDOWS\system32\wbem\wmiapsrv.exe

C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: IeCatch5 Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\PROGRA~1\FLASHGET\jccatch.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll

O2 - BHO: gFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\PROGRA~1\FLASHGET\getflash.dll

O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\fgiebar.dll

O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

O4 - HKLM\..\Run: [Acer ePower Management] C:\Acer\Empowering Technology\ePower\Acer ePower Management.exe boot

O4 - HKLM\..\Run: [EPM-DM] c:\acer\Empowering Technology\ePower\epm-dm.exe

O4 - HKLM\..\Run: [ADMTray.exe] "C:\Acer\Empowering Technology\admtray.exe"

O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe 1

O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZgAcer.EXE

O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe

O4 - HKLM\..\Run: [LaunchApp] Alaunch

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"

O8 - Extra context menu item: Télécharger avec FlashGet - C:\Program Files\FlashGet\jc_link.htm

O8 - Extra context menu item: Télécharger tout avec FlashGet - C:\Program Files\FlashGet\jc_all.htm

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll

O9 - Extra button: Créer un Favori de l'appareil mobile - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll

O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll

O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INetRepl.dll

O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\flashget.exe

O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\flashget.exe

O11 - Options group: [iNTERNATIONAL] International*

O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

O20 - AppInit_DLLs: MsgPlusLoader.dll

O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe

O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: AdminWorks Agent X6 (AWService) - Avocent Inc. - C:\Acer\Empowering Technology\admServ.exe

O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLCapSvc.exe

O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Acer\Acer Arcade\Kernel\TV\CLSched.exe

O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\Acer\Acer Arcade\Kernel\CLML_NTService\CLMLServer.exe

O23 - Service: Diskeeper - Diskeeper Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe

O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe

O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe

O23 - Service: Logitech Process Monitor (LVPrcSrv) - Logitech - c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe

O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe

O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe

O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZONELABS\vsmon.exe

O23 - Service: Windows Server Management Services (WSMSPSVC) - Unknown owner - C:\WINDOWS\navsvc.exe

je te remercie de ton travail !

j'ai encore 2 questions : j'avais du desinstaller spybot et ewido, je suppose que je peux les remettre

et aussi, verrais tu dans le scan quelqe chose qui pourrait enlever l'utilitaire assisatnant nouveau materiel que j'ai a chque demarrage du pc depuis qu j'ai installé ma clé butetooth? parce que je dois annuler une bonne dizaine de fois, avant qu'il ne me dise que 'installation a echoué

merci encore :-D

Lien vers le commentaire
Partager sur d’autres sites

@ Beat

Inutile de réinstaller Spybot et Ewido .

Installe plutôt le fichier Hosts qui va bien ( vise ma signature )

Te sers à quoi ta clé Bluethooth ?

Fixe cette ligne : O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"

:-D

1) services.msc dans Démarrer / Exécuter .

Vois tu ce service :

O23 - Service: Windows Server Management Services (WSMSPSVC) - Unknown owner - C:\WINDOWS\navsvc.exe

Si oui , arrête le et désactive le .

2) msconfig dans Démarrer / Exécuter .

Onglet " services " .

Coche " Masquer les services windows ".

Vois tu une ligne avec ce service :

O23 - Service: Windows Server Management Services (WSMSPSVC) - Unknown owner - C:\WINDOWS\navsvc.exe

Si oui , décoche la .

Lien vers le commentaire
Partager sur d’autres sites

Voilà pour moi :

Rapport Ewido:

---------------------------------------------------------

AVG Anti-Spyware - Rapport d'analyse

---------------------------------------------------------

+ Créé à: 14:31:10 18/02/2007

+ Résultat de l'analyse:

D:\Program Files\NewDotNet -> Adware.NewDotNet : Ignoré.

D:\Program Files\NewDotNet\newdotnet7_48.dll -> Adware.NewDotNet : Ignoré.

D:\WINDOWS\NDNuninstall7_22.exe -> Adware.NewDotNet : Ignoré.

D:\WINDOWS\NDNuninstall7_48.exe -> Adware.NewDotNet : Ignoré.

HKLM\SOFTWARE\Classes\CLSID\{4A2AACF3-ADF6-11D5-98A9-00E018981B9E} -> Adware.NewDotNet : Ignoré.

HKLM\SOFTWARE\Classes\Tldctl2.URLLink -> Adware.NewDotNet : Ignoré.

HKLM\SOFTWARE\Classes\Tldctl2.URLLink.1 -> Adware.NewDotNet : Ignoré.

HKLM\SOFTWARE\Classes\Tldctl2.URLLink\CLSID -> Adware.NewDotNet : Ignoré.

HKLM\SOFTWARE\Classes\Tldctl2.URLLink\CurVer -> Adware.NewDotNet : Ignoré.

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4A2AACF3-ADF6-11D5-98A9-00E018981B9E} -> Adware.NewDotNet : Ignoré.

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\New.net Startup -> Adware.NewDotNet : Ignoré.

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\New.net -> Adware.NewDotNet : Ignoré.

HKLM\SOFTWARE\New.net -> Adware.NewDotNet : Ignoré.

HKU\S-1-5-21-73586283-813497703-839522115-500\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4A2AACF3-ADF6-11D5-98A9-00E018981B9E} -> Adware.NewDotNet : Ignoré.

HKU\S-1-5-21-73586283-813497703-839522115-500\Software\New.net -> Adware.NewDotNet : Ignoré.

:mozilla.492:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.247realmedia : Ignoré.

:mozilla.161:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.2o7 : Ignoré.

:mozilla.482:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.2o7 : Ignoré.

D:\Documents and Settings\Administrateur\Cookies\administrateur@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Ignoré.

:mozilla.531:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Adbrite : Ignoré.

:mozilla.532:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Adbrite : Ignoré.

:mozilla.446:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Addynamix : Ignoré.

:mozilla.391:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Adjuggler : Ignoré.

:mozilla.392:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Adjuggler : Ignoré.

:mozilla.393:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Adjuggler : Ignoré.

:mozilla.320:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Adrevolver : Ignoré.

:mozilla.321:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Adrevolver : Ignoré.

:mozilla.180:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Adtech : Ignoré.

:mozilla.181:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Adtech : Ignoré.

:mozilla.328:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Adtiger : Ignoré.

:mozilla.370:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Advertising : Ignoré.

:mozilla.371:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Advertising : Ignoré.

:mozilla.372:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Advertising : Ignoré.

:mozilla.373:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Advertising : Ignoré.

:mozilla.374:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Advertising : Ignoré.

:mozilla.231:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Adviva : Ignoré.

:mozilla.107:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Atdmt : Ignoré.

:mozilla.19:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Bluestreak : Ignoré.

:mozilla.305:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Com : Ignoré.

:mozilla.306:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Com : Ignoré.

:mozilla.299:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Comclick : Ignoré.

:mozilla.300:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Comclick : Ignoré.

:mozilla.301:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Comclick : Ignoré.

:mozilla.481:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Cqcounter : Ignoré.

:mozilla.61:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Doubleclick : Ignoré.

:mozilla.136:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Estat : Ignoré.

D:\Documents and Settings\Administrateur\Cookies\administrateur@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Ignoré.

:mozilla.102:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Fastclick : Ignoré.

:mozilla.103:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Fastclick : Ignoré.

:mozilla.104:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Fastclick : Ignoré.

:mozilla.105:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Fastclick : Ignoré.

:mozilla.106:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Fastclick : Ignoré.

:mozilla.422:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Hitbox : Ignoré.

:mozilla.423:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Hitbox : Ignoré.

:mozilla.541:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Hitbox : Ignoré.

:mozilla.542:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Hitbox : Ignoré.

:mozilla.445:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Mediaplex : Ignoré.

:mozilla.96:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Planetactive : Ignoré.

:mozilla.367:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Questionmarket : Ignoré.

:mozilla.368:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Questionmarket : Ignoré.

:mozilla.369:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Questionmarket : Ignoré.

:mozilla.220:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Serving-sys : Ignoré.

:mozilla.221:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Serving-sys : Ignoré.

:mozilla.222:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Serving-sys : Ignoré.

:mozilla.223:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Serving-sys : Ignoré.

:mozilla.224:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Serving-sys : Ignoré.

:mozilla.225:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Serving-sys : Ignoré.

:mozilla.15:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Smartadserver : Ignoré.

:mozilla.16:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Smartadserver : Ignoré.

:mozilla.17:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Smartadserver : Ignoré.

:mozilla.18:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Smartadserver : Ignoré.

D:\Documents and Settings\Administrateur\Cookies\administrateur@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Ignoré.

:mozilla.528:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Statcounter : Ignoré.

:mozilla.88:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Tradedoubler : Ignoré.

:mozilla.347:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Tribalfusion : Ignoré.

:mozilla.63:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Weborama : Ignoré.

:mozilla.64:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Weborama : Ignoré.

:mozilla.65:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Weborama : Ignoré.

:mozilla.66:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Weborama : Ignoré.

:mozilla.243:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Webtrendslive : Ignoré.

:mozilla.100:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Yieldmanager : Ignoré.

:mozilla.97:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Yieldmanager : Ignoré.

:mozilla.98:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Yieldmanager : Ignoré.

:mozilla.99:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Yieldmanager : Ignoré.

:mozilla.158:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Zedo : Ignoré.

:mozilla.159:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Zedo : Ignoré.

:mozilla.160:D:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\hy37saqt.default\cookies.txt -> TrackingCookie.Zedo : Ignoré.

Fin du rapport

Rapprot Hijackthis:

Logfile of HijackThis v1.99.1

Scan saved at 14:32:16, on 18/02/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:

D:\WINDOWS\System32\smss.exe

D:\WINDOWS\system32\winlogon.exe

D:\WINDOWS\system32\services.exe

D:\WINDOWS\system32\lsass.exe

D:\WINDOWS\system32\svchost.exe

D:\WINDOWS\system32\svchost.exe

D:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe

D:\WINDOWS\Explorer.EXE

D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe

D:\Documents and Settings\Administrateur\Bureau\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://auto.search.msn.com/response.asp?MT...;prov=&utf8

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Favoris

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll

O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - D:\Program Files\NewDotNet\newdotnet7_48.dll

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O4 - HKLM\..\Run: [GBB36X Configure] D:\WINDOWS\system32\JMRaidTool.exe boot

O4 - HKLM\..\Run: [KAVPersonal50] "D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize

O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE D:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [speedfan] D:\Program Files\SpeedFan\speedfan.exe

O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k

O4 - HKLM\..\Run: [WindowsServicesStartup] D:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\svchost.exe 1

O4 - HKLM\..\Run: [New.net Startup] rundll32 D:\PROGRA~1\NEWDOT~1\NEWDOT~1.DLL,ClientStartup -s

O4 - HKLM\..\Run: [Lesscampfilmitch] D:\Documents and Settings\All Users\Application Data\SectDriveLessCamp\Math Axis.exe

O4 - HKLM\..\Run: [WinPatrol] D:\PROGRA~1\BILLPS~1\WINPAT~1\winpatrol.exe

O4 - HKLM\..\Run: [Zone Labs Client] "D:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"

O4 - HKLM\..\Run: [Pando] "D:\Program Files\Pando Networks\Pando\Pando.exe" /Minimized

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [ultraMon] "D:\Program Files\UltraMon\UltraMon.exe" /auto

O4 - HKLM\..\Run: [!AVG Anti-Spyware] "D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized

O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [MessengerPlus3] "D:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart

O4 - HKCU\..\Run: [msnmsgr] "D:\Program Files\MSN Messenger\MsnMsgr.Exe" /background

O4 - HKCU\..\Run: [Pando] "D:\Program Files\Pando Networks\Pando\pando.exe" /Automation

O4 - Startup: Yahoo! Widget Engine.lnk = D:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe

O4 - Global Startup: hpoddt01.exe.lnk = ?

O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000

O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - D:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll

O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab

O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - D:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - D:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O20 - Winlogon Notify: WRNotifier - D:\WINDOWS\SYSTEM32\WRLogonNTF.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - D:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: iPod Service - Apple Computer, Inc. - D:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Kaspersky Anti-Virus Service (kavsvc) - Kaspersky Lab - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe

O23 - Service: Macromedia Licensing Service - Macromedia - D:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe

O23 - Service: WinFast® Display Driver Service (NVSvc) - NVIDIA Corporation - D:\WINDOWS\system32\nvsvc32.exe

O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - D:\Program Files\Spyware Doctor\sdhelp.exe

O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - D:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - D:\WINDOWS\system32\ZoneLabs\vsmon.exe

Lien vers le commentaire
Partager sur d’autres sites

@ rem''z :

Passe ce fix :

http://snooky730.free.fr/Programmes/FxNewdotN.exe

Désinstalle Spybot , Kaspersky , Spyware doctor , Spysweeper et Winpatrol , si présents !

Coche et fixe ces lignes avec hijackthis :

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.yahoo.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.fr/ie

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - D:\Program Files\NewDotNet\newdotnet7_48.dll

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O4 - HKLM\..\Run: [KAVPersonal50] "D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize

O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k

O4 - HKLM\..\Run: [WindowsServicesStartup] D:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\svchost.exe 1

O4 - HKLM\..\Run: [New.net Startup] rundll32 D:\PROGRA~1\NEWDOT~1\NEWDOT~1.DLL,ClientStartup -s

O4 - HKLM\..\Run: [Lesscampfilmitch] D:\Documents and Settings\All Users\Application Data\SectDriveLessCamp\Math Axis.exe

O4 - HKLM\..\Run: [WinPatrol] D:\PROGRA~1\BILLPS~1\WINPAT~1\winpatrol.exe

O4 - HKLM\..\Run: [Pando] "D:\Program Files\Pando Networks\Pando\Pando.exe" /Minimized

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [ultraMon] "D:\Program Files\UltraMon\UltraMon.exe" /auto

O4 - HKCU\..\Run: [CTFMON.EXE] D:\WINDOWS\system32\ctfmon.exe

O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - D:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll

O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab

O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

O23 - Service: Kaspersky Anti-Virus Service (kavsvc) - Kaspersky Lab - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe

O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - D:\Program Files\Spyware Doctor\sdhelp.exe

O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - D:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe

Passe Clean 1.4

Passe Ewido en mode sans échec !

Poste un nouveau rapport Hijackthis .

Lien vers le commentaire
Partager sur d’autres sites

salut snooky (BOBI)

comme prévue je te poste le rapport clean 1.4 ,mais vudofix n'a rien trouver

Last Clean on 18/02/2007 at 19:45:16,98 by PC-2730CC72384B\Pc

Cleaned the system 6 times

FILE DELETION RESULT DRIVE C:

Fichier supprim‚ - C:\DOCUME~1\Pc\Local Settings\Temp\Perflib_Perfdata_1f8.dat

Fichier supprim‚ - C:\DOCUME~1\Pc\Local Settings\Temp\~DFB795.tmp

Fichier supprim‚ - C:\DOCUME~1\Pc\Local Settings\Temp\~DFEE34.tmp

Fichier supprim‚ - C:\DOCUME~1\Pc\Local Settings\Temp\PMC\1632_633074243226875000_0.txt

Fichier supprim‚ - C:\DOCUME~1\Pc\Local Settings\Temp\PMC\1632_633074243356875000_1.txt

Fichier supprim‚ - C:\DOCUME~1\Pc\Local Settings\Temp\PMC\1632_633074244162500000_2.txt

Fichier supprim‚ - C:\DOCUME~1\Pc\Local Settings\Temp\PMC\1632_633074244164218750_3.txt

Fichier supprim‚ - C:\Documents and Settings\LocalService\Local Settings\TEMPOR~1\desktop.ini

Fichier supprim‚ - C:\Documents and Settings\LocalService\Local Settings\TEMPOR~1\Content.IE5\desktop.ini

C:\Documents and Settings\LocalService\Local Settings\TEMPOR~1\Content.IE5\index.dat

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\desktop.ini

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\desktop.ini

C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\index.dat

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\5KC4XQO3\1219[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\5KC4XQO3\communaute2[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\5KC4XQO3\fiche_logiciel[1].css

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\5KC4XQO3\logiciel-signaler[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\5KC4XQO3\showdef[1].asp

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\8GGQIXRW\0064004B00077450[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\8GGQIXRW\angle-titre-dld[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\8GGQIXRW\jeux1[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\8GGQIXRW\logiciel-commentaires[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\8GGQIXRW\logjavascript[1].htm

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\8GGQIXRW\search[1].htm

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\8GGQIXRW\search[2].htm

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\C3YZRGZC\classement[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\C3YZRGZC\clubicv3_v[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\C3YZRGZC\jeux2[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\C3YZRGZC\logomonclubic[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\C3YZRGZC\minilogo[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\C3YZRGZC\nav_logo[1].png

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\C3YZRGZC\nav_logo[2].png

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\DQRXL0LG\00324545[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\DQRXL0LG\clubic-pixel[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\DQRXL0LG\liveimgsearch[1].htm

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\DQRXL0LG\telecharger-fiche25107-vundofix[1].htm

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\FLW803ZQ\0118000000360698[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\FLW803ZQ\comparo1[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\FLW803ZQ\etoile-grise[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\FLW803ZQ\fleche-bas[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\FLW803ZQ\vert[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\KS33RZZ9\etoile-rouge[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\KS33RZZ9\mag1[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\KS33RZZ9\mag2[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\KS33RZZ9\notevide[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\KS33RZZ9\onglet-windows[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\KS33RZZ9\viewtopic[1].htm

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\M04E6CBS\1401[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\M04E6CBS\1402[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\M04E6CBS\1403[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\M04E6CBS\1419[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\M04E6CBS\808[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\M04E6CBS\fleche-haut[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\M04E6CBS\global[1].css

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\NMNRVDRO\0064004B00115148[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\NMNRVDRO\clubicv3[1].js

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\NMNRVDRO\logo-clubic[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\NMNRVDRO\note[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\NYOFK1QM\0064004B00405942[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\NYOFK1QM\0064004B00456172[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\NYOFK1QM\log-antispyware[1]

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\NYOFK1QM\logo_plain[1].png

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\NYOFK1QM\pictonumpage[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\NYOFK1QM\tel3[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\S0OIS819\0064004B00397600[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\S0OIS819\google[1].htm

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\S0OIS819\google[2].htm

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\S0OIS819\image[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\S0OIS819\index[1].xml

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\S0OIS819\logo_plain[1].png

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\S0OIS819\picto-titre-dld[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\S0OIS819\plus-de[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\S0OIS819\search[1]

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\S0OIS819\shim[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\T8RR5519\actionpromo[1].js

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\T8RR5519\bg-livesearch[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\T8RR5519\bg-titre-dld[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\T8RR5519\communaute1[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\T8RR5519\logiciel-alerte[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\T8RR5519\search[1].htm

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\X8QHRQWU\0064004B00131018[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\X8QHRQWU\auth_user[1].wan

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\X8QHRQWU\comparo2[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\X8QHRQWU\gtchemin[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\X8QHRQWU\image[1].jpg

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\X8QHRQWU\logohp4[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\X8QHRQWU\smiley[1].gif

Fichier supprim‚ - C:\Documents and Settings\Pc\Local Settings\TEMPOR~1\Content.IE5\X8QHRQWU\telecharger-windows[1].gif

C:\DOCUME~1\LocalService\Cookies\index.dat

C:\DOCUME~1\Pc\Cookies\index.dat

Fichier supprim‚ - C:\DOCUME~1\Pc\Cookies\pc@cybermonitor[1].txt

Fichier supprim‚ - C:\DOCUME~1\Pc\Cookies\pc@google[1].txt

Fichier supprim‚ - C:\DOCUME~1\Pc\Cookies\pc@orange[1].txt

Fichier supprim‚ - C:\DOCUME~1\Pc\Cookies\pc@www.ciao[2].txt

Fichier supprim‚ - C:\DOCUME~1\Pc\Cookies\pc@www.clubic[1].txt

Fichier supprim‚ - C:\DOCUME~1\Pc\UserData\index.dat

Fichier supprim‚ - C:\DOCUME~1\Pc\Recent\Clean.lnk

Fichier supprim‚ - C:\DOCUME~1\Pc\Recent\Nouveau dossier (2).lnk

Fichier supprim‚ - C:\DOCUME~1\LocalService\LOCALS~1\HISTOR~1\desktop.ini

Fichier supprim‚ - C:\DOCUME~1\LocalService\LOCALS~1\HISTOR~1\History.IE5\desktop.ini

C:\DOCUME~1\LocalService\LOCALS~1\HISTOR~1\History.IE5\index.dat

Fichier supprim‚ - C:\DOCUME~1\Pc\LOCALS~1\HISTOR~1\desktop.ini

Fichier supprim‚ - C:\DOCUME~1\Pc\LOCALS~1\HISTOR~1\History.IE5\desktop.ini

C:\DOCUME~1\Pc\LOCALS~1\HISTOR~1\History.IE5\index.dat

Fichier supprim‚ - C:\DOCUME~1\Pc\LOCALS~1\HISTOR~1\History.IE5\MSHist012007021820070219\index.dat

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000000.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000001.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000002.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000003.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000004.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000005.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000006.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000007.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000008.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000009.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000000a.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000000b.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000000c.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000000d.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000000e.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000000f.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000010.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000011.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000012.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000013.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000014.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000015.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000016.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000017.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000018.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000019.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000001a.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000001b.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000001c.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000001d.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000001e.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000001f.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000020.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000021.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000022.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000023.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000024.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000025.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000026.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000027.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000028.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000029.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000002a.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000002b.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000002c.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000002d.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000002e.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000002f.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000030.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000031.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000032.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000033.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000034.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000035.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000036.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000037.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000038.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000039.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000003a.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000003b.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000003c.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000003d.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000003e.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000003f.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000040.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000041.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000042.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000043.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000044.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000045.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000046.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000047.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000048.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000049.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000004a.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000004b.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000004c.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000004d.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000004e.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000004f.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000050.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000051.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000052.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000053.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000054.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000055.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000056.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000057.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000058.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000059.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000005a.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000005b.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000005c.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000005d.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000005e.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000005f.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000060.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000061.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000062.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000063.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000064.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000065.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000066.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000067.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000068.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000069.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000006a.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000006b.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000006c.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000006d.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000006e.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000006f.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000070.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000071.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000072.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000073.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000074.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000075.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000076.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000077.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000078.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000079.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000007a.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000007b.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000007c.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000007d.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000007e.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000007f.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000080.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000081.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000082.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000083.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000084.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000085.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000086.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000087.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000088.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000089.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000008a.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000008b.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000008c.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000008d.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000008e.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000008f.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000090.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000091.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000092.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000093.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000094.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000095.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000096.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000097.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000098.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\00000099.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000009a.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000009b.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000009c.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000009d.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000009e.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000009f.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000a0.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000a1.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000a2.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000a3.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000a4.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000a5.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000a6.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000a7.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000a8.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000a9.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000aa.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000ab.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000ac.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000ad.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000ae.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000af.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000b0.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000b1.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000b2.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000b3.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000b4.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000b5.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000b6.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000b7.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000b8.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000b9.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000ba.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000bb.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000bc.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000bd.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000be.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000bf.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000c0.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000c1.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000c2.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000c3.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000c4.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000c5.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000c6.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000c7.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000c8.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000c9.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000ca.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000cb.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000cc.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000cd.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000ce.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000cf.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000d0.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000d1.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000d2.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000d3.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000d4.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000d5.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000d6.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000d7.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000d8.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000d9.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000da.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000db.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\000000de.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\684.42D09EE601C7538C.history\0000010e.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\84c.49E95ECA01C7538C.history\00000000.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\84c.49E95ECA01C7538C.history\00000001.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\8dc.FDBD1D5C01C7538B.history\00000000.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\8ec.FDFB1A8001C7538B.history\00000000.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\91c.FF97915201C7538B.history\00000000.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\950.FFFE167001C7538B.history\00000000.bak

C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\AVP6\PdmHist\eb4.0B34A5B801C7538C.history\00000000.bak

FILE DELETION RESULT DRIVE D:

FILE DELETION RESULT DRIVE E:

SYSTEM ROOT FOLDER CLEANING RESULT: C:\WINDOWS

Fichier supprim‚ - C:\WINDOWS\PREFETCH\ALERTM~1.EXE-1C0AE839.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\ALG.EXE-0F138680.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\ATTRIB.EXE-39EAFB02.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\CMD.EXE-087B4001.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\COMCOMP.EXE-01668373.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\CSC.EXE-1113BFA6.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\CVTRES.EXE-13DEB540.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\DEFRAG.EXE-273F131E.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\DFRGNTFS.EXE-269967DF.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\DWWIN.EXE-30875ADC.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\ESPACEWANADOO.EXE-037E253D.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\FIND.EXE-0EC32F1E.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\GESTMAJ.EXE-2B68B2D2.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\IEXPLORE.EXE-27122324.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\IMAPI.EXE-0BF740A4.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\INACTIVITY.EXE-054B684A.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\IPCONFIG.EXE-2395F30B.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\NOTEPAD.EXE-189578DA.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\NOTEPAD.EXE-336351A9.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\NTOSBOOT-B00DFAAD.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\NTVDM.EXE-1A10A423.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\POLLINGMODULE.EXE-2C738EAB.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\REG.EXE-0D2A95F7.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\REGSVR32.EXE-25EEFE2F.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\RUNDLL32.EXE-2576181F.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\RUNDLL32.EXE-35A483DA.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\RUNDLL32.EXE-42E9A17A.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\RUNDLL32.EXE-47C01E41.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\RUNDLL32.EXE-4A577BEC.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\SC.EXE-012262AF.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\SHELL.EXE-3189A993.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\TOASTER.EXE-1CBF7015.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\VIDEOCONTROL.EXE-2A9D34FA.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\VUNDOFIX.EXE-1FFCFB04.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\WATCH.EXE-0DACDE18.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\WMIAPSRV.EXE-1E2270A5.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\WMIPRVSE.EXE-28F301A9.pf

Fichier supprim‚ - C:\WINDOWS\PREFETCH\WUAUCLT.EXE-399A8E72.pf

C:\WINDOWS\Temp\Perflib_Perfdata_10c.dat

C:\WINDOWS\Temp\~DFFB19.tmp

Fichier supprim‚ - C:\WINDOWS\HELP\TOURS\mmTour\tour.exe

Fichier supprim‚ - C:\WINDOWS\MINIDUMP\Mini021807-01.dmp

Fichier supprim‚ - C:\WINDOWS\SYSTEM32\WBEM\LOGS\wbemess.log

Fichier supprim‚ - C:\WINDOWS\SYSTEM32\WBEM\LOGS\wmiprov.log

C:\WINDOWS\DEBUG\PASSWD.LOG

POPUPS and Messenger Messaging Service disabling...

[sC] ChangeServiceConfig SUCCESS

SERVICE_NAME: MESSENGER

TYPE : 20 WIN32_SHARE_PROCESS

STATE : 1 STOPPED

(NOT_STOPPABLE,NOT_PAUSABLE,IGNORES_SHUTDOWN)

WIN32_EXIT_CODE : 1077 (0x435)

SERVICE_EXIT_CODE : 0 (0x0)

CHECKPOINT : 0x0

WAIT_HINT : 0x0

Configuration IP de Windows

Cache de résolution DNS vidé.

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

SMITFRAUD REGISTRY KILL RESULT ON C: (thanks to S!Ri for SMITFRAUDFIX)

L'opération s'est bien déroulée

L'opération s'est bien déroulée

L'opération s'est bien déroulée

SMITFRAUD INFECTION SCAN ON C:

Those spywares have been correctly deleted !

XP Clean deleted 60 Megabytes, 60756 Kilobytes

All the requested operations have been successfully performed!

Lien vers le commentaire
Partager sur d’autres sites

Voilà mon dernier rapport Hijackthis

Logfile of HijackThis v1.99.1

Scan saved at 20:19:39, on 18/02/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:

D:\WINDOWS\System32\smss.exe

D:\WINDOWS\system32\winlogon.exe

D:\WINDOWS\system32\services.exe

D:\WINDOWS\system32\lsass.exe

D:\WINDOWS\system32\svchost.exe

D:\WINDOWS\System32\svchost.exe

D:\WINDOWS\system32\svchost.exe

D:\WINDOWS\system32\ZoneLabs\vsmon.exe

D:\WINDOWS\Explorer.EXE

D:\WINDOWS\system32\spoolsv.exe

D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

D:\WINDOWS\RTHDCPL.EXE

D:\Program Files\SpeedFan\speedfan.exe

D:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

D:\WINDOWS\system32\rundll32.exe

D:\Program Files\MSN Messenger\MsnMsgr.Exe

D:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe

D:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe

D:\WINDOWS\system32\nvsvc32.exe

D:\WINDOWS\system32\svchost.exe

D:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe

D:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe

D:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe

D:\WINDOWS\system32\wuauclt.exe

D:\Program Files\MSN Messenger\usnsvc.exe

D:\WINDOWS\system32\rundll32.exe

D:\Program Files\UltraMon\UltraMon.exe

D:\Program Files\UltraMon\UltraMonTaskbar.exe

D:\Program Files\Mozilla Firefox\firefox.exe

D:\Documents and Settings\Administrateur\Bureau\soft\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://auto.search.msn.com/response.asp?MT...;prov=&utf8

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Favoris

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll

O4 - HKLM\..\Run: [GBB36X Configure] D:\WINDOWS\system32\JMRaidTool.exe boot

O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE

O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE D:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE D:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [speedfan] D:\Program Files\SpeedFan\speedfan.exe

O4 - HKLM\..\Run: [Zone Labs Client] "D:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"

O4 - HKLM\..\Run: [New.net Startup] rundll32 D:\PROGRA~1\NEWDOT~1\NEWDOT~1.DLL,ClientStartup -s

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKCU\..\Run: [MessengerPlus3] "D:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart

O4 - HKCU\..\Run: [msnmsgr] "D:\Program Files\MSN Messenger\MsnMsgr.Exe" /background

O4 - Startup: Yahoo! Widget Engine.lnk = D:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe

O4 - Global Startup: hpoddt01.exe.lnk = ?

O8 - Extra context menu item: E&xport to Microsoft Excel - res://D:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - D:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - D:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - D:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: iPod Service - Apple Computer, Inc. - D:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Kaspersky Anti-Virus Service (kavsvc) - Kaspersky Lab - D:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe

O23 - Service: Macromedia Licensing Service - Macromedia - D:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe

O23 - Service: WinFast® Display Driver Service (NVSvc) - NVIDIA Corporation - D:\WINDOWS\system32\nvsvc32.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - D:\WINDOWS\system32\ZoneLabs\vsmon.exe

Merci

Lien vers le commentaire
Partager sur d’autres sites

@ gaet35

Le rapport est clean .

Tu utilises encore Kaspersky anti-hacker ou il est désinstallé ?

A fixer :

O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2007\MemOptimizer.exe" autostart

O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe

merci bien pour sa et sinon kaspersky anti-hacker oui il est encore installer sur mon pc.faut-il que je le desinstalle??

++

Lien vers le commentaire
Partager sur d’autres sites

@ rem''z'

:craint: Avec LSPFix , supprime la dll newdonet , si présente .( ne touche pas aux autres fichiers )

Fait passer ce fichier dans la fenêtre de droite et valide .

:D Fixe avec Hijackthis :

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://auto.search.msn.com/response.asp?MT...;prov=&utf8

O4 - HKLM\..\Run: [New.net Startup] rundll32 D:\PROGRA~1\NEWDOT~1\NEWDOT~1.DLL,ClientStartup -s

:p Redémarre le pc et poste un nouveau rapport Hijackthis .

Lien vers le commentaire
Partager sur d’autres sites

Bonjour messieurs,

J'ai des petits soucis d'informatique ou plutot d'internet (pages de pub qui s'ouvrent toutes seules)

Pouvez vous me dire si il y a une anomalie sur le log:

Logfile of HijackThis v1.99.1

Scan saved at 10:48:01, on 19/02/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\spoolsv.exe

C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Eset\nod32krn.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\system32\oodag.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\ZoneLabs\vsmon.exe

C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe

c:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe

C:\windows\system\hpsysdrv.exe

C:\WINDOWS\system32\hphmon06.exe

C:\HP\KBD\KBD.EXE

C:\WINDOWS\system32\keyhook.exe

C:\WINDOWS\AGRSMMSG.exe

C:\WINDOWS\system32\RUNDLL32.EXE

C:\WINDOWS\system32\rundll32.exe

C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe

C:\Program Files\DAEMON Tools\daemon.exe

C:\Program Files\Adobe\Photoshop Elements 5.0\apdproxy.exe

C:\WINDOWS\system32\LVCOMSX.EXE

C:\Program Files\Logitech\Video\LogiTray.exe

C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

C:\Program Files\Eset\nod32kui.exe

C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe

C:\Program Files\QuickTime\qttask.exe

C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe

C:\Program Files\Logitech\Video\FxSvr2.exe

C:\Program Files\MSN Messenger\MsnMsgr.Exe

C:\Program Files\SAGEM Wi-Fi USB 802.11g\WLANUTL.exe

C:\WINDOWS\BricoPacks\Crystal Clear\RocketDock\RocketDock.exe

C:\WINDOWS\BricoPacks\Crystal Clear\UberIcon\UberIcon Manager.exe

C:\WINDOWS\BricoPacks\Crystal Clear\YzToolbar\YzToolBar.exe

C:\Program Files\MSN Messenger\usnsvc.exe

C:\Program Files\Real\RealPlayer\RealPlay.exe

C:\PROGRA~1\MOZILL~1\FIREFOX.EXE

C:\Documents and Settings\HP_Propriétaire\Bureau\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O3 - Toolbar: Vue HP - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\HP\Digital Imaging\bin\HPDTLK02.dll

O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe

O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe

O4 - HKLM\..\Run: [HPHUPD06] c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe

O4 - HKLM\..\Run: [HPHmon06] C:\WINDOWS\system32\hphmon06.exe

O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE

O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE

O4 - HKLM\..\Run: [VTTimer] VTTimer.exe

O4 - HKLM\..\Run: [siS Windows KeyHook] C:\WINDOWS\system32\keyhook.exe

O4 - HKLM\..\Run: [sSC_UserPrompt] c:\Program Files\Fichiers communs\Symantec Shared\Security Center\UsrPrmpt.exe

O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe

O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [nwiz] nwiz.exe /install

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe

O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1036

O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Elements 5.0\apdproxy.exe"

O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE

O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe

O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE

O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

O4 - HKCU\..\Run: [ssAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe

O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background

O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Crystal Clear\RocketDock\RocketDock.exe

O4 - Startup: UberIcon.lnk = C:\WINDOWS\BricoPacks\Crystal Clear\UberIcon\UberIcon Manager.exe

O4 - Startup: Y'z Toolbar.lnk = C:\WINDOWS\BricoPacks\Crystal Clear\YzToolbar\YzToolBar.exe

O4 - Global Startup: Utilitaire réseau pour SAGEM Wi-Fi 11g USB adapter.lnk = C:\Program Files\SAGEM Wi-Fi USB 802.11g\WLANUTL.exe

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll

O9 - Extra button: Xanadu - {5CC384BB-1326-11D5-F4AE-00C04923F885} - C:\Program Files\Foreignword\Xanadu\XanaduLaunch.exe (file missing)

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab

O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://francois78990.spaces.live.com//Phot...ad/MsnPUpld.cab

O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1168716252906

O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab

O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab53083.cab

O16 - DPF: {BE833F39-1E0C-468C-BA70-25AAEE55775E} (System Requirements Lab) - http://www.systemrequirementslab.com/sysreqlab.cab

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

O23 - Service: Adobe Active File Monitor V5 (AdobeActiveFileMonitor5.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 5.0\PhotoshopElementsFileAgent.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)

O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)

O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe

O23 - Service: Kodak Camera Connection Software (KodakCCS) - Unknown owner - C:\WINDOWS\system32\drivers\KodakCCS.exe (file missing)

O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\system32\oodag.exe

O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

Merci d'avence pour votre aide.

Lien vers le commentaire
Partager sur d’autres sites

Salut ,

Avast ou Nod32 ? lequel tu gardes ? :byebye:

Fixe cette ligne :

O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe

Passe le remover Norton :

http://service1.symantec.com/SUPPORT/INTER...v=&osv_lvl=

Passe Smitfraudfix et poste le rapport ( option 1 )

Lien vers le commentaire
Partager sur d’autres sites

Salut ,

Avast ou Nod32 ? lequel tu gardes ? :byebye:

Fixe cette ligne :

O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - c:\Program Files\Fichiers communs\Symantec Shared\Security Center\SymWSC.exe

Passe le remover Norton :

http://service1.symantec.com/SUPPORT/INTER...v=&osv_lvl=

je n'utilise plus avast (je n'ai pas payé l'abonement)

Lien vers le commentaire
Partager sur d’autres sites

Archivé

Ce sujet est désormais archivé et ne peut plus recevoir de nouvelles réponses.


×
×
  • Créer...