

olly
Membres-
Compteur de contenus
119 -
Inscription
-
Dernière visite
Autres informations
-
Mes langues
ANGLAIS ESPAGNOL
olly's Achievements

Power Member (5/12)
0
Réputation sur la communauté
-
Salut, C'est paramétrer en automatique Le DHCP est activé lui aussi j'ai une erreur 1075 concernant le client dhcp
-
déjà fait
-
Analyse rapport HijackThis
olly a répondu à un(e) sujet de olly dans Analyses et éradication malwares
Salut Appollo, J'ai fait l'analyse avec super grub disc, mais il faut s'nscrire en ligne pour réprer et je n'ai pas de connexion internet sur le pc en panne (c'est ca mon probléme : le routeur ne l'identifie pas) Je viens de faire une restauration à un point antérieur à l'analyse mais ca ne fonctionne toujours pas. Pourquoi ne pas formater le dd et réinstaller vista comme à la sortie d'usine ? si tu es d'accord avec moi sais tu où trouver un programme de restauration pour vista? Merci -
Analyse rapport HijackThis
olly a répondu à un(e) sujet de olly dans Analyses et éradication malwares
Il me dit BOOTMGRT absent, appuyer sur ctrl+Alt+sup pour redemarrer -
Analyse rapport HijackThis
olly a répondu à un(e) sujet de olly dans Analyses et éradication malwares
Je n'ai que le rapport de lop S&D, le scan du SFT a été interrompu, impossible de le relancer et je ne peux pas installer le scan de ESET car je n'ai pas accés à internet sur la machine infectée --------------------\\ Lop S&D 4.2.5-0 XP/Vista Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6000 ) X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 CPU T5500 @ 1.66GHz ) BIOS : Ver 1.00PARTTBL0 USER : Charlotte ( Not Administrator ! ) BOOT : Normal boot Antivirus : AntiVir Desktop 10.0.1.59 (Activated) C:\ (Local Disk) - NTFS - Total:147 Go (Free:76 Go) D:\ (Local Disk) - NTFS - Total:37 Go (Free:13 Go) E:\ (CD or DVD) "C:\Lop SD" ( MAJ : 19-12-2008|23:40 ) Option : [4] ( 19/06/2012|14:09 ) \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ Lop Script C:\ProgramData\EQSIXTHSIXTH.0qu6f C:\ProgramData\deaf book inside.el531r \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION Supprime! - C:\ProgramData\EQSIXTHSIXTH.0qu6f Supprime! - C:\ProgramData\deaf book inside.el531r - [ Fichier Hosts ] .. Restaure! \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ --------------------\\ Listing des dossiers dans Local [23/02/2008|18:05] C:\Users\CHARLO~1\AppData\Local\Adobe [04/01/2008|16:08] C:\Users\CHARLO~1\AppData\Local\Ahead [25/12/2007|03:55] C:\Users\CHARLO~1\AppData\Local\Apple [27/12/2007|00:32] C:\Users\CHARLO~1\AppData\Local\Apple Computer [22/07/2007|18:40] C:\Users\CHARLO~1\AppData\Local\Application Data [26/02/2012|22:34] C:\Users\CHARLO~1\AppData\Local\ApplicationHistory [25/01/2012|18:09] C:\Users\CHARLO~1\AppData\Local\Apps [21/04/2011|13:30] C:\Users\CHARLO~1\AppData\Local\Ares [04/09/2010|23:55] C:\Users\CHARLO~1\AppData\Local\d3d9caps.dat [15/11/2011|00:25] C:\Users\CHARLO~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [25/01/2012|18:09] C:\Users\CHARLO~1\AppData\Local\Deployment [21/04/2011|13:41] C:\Users\CHARLO~1\AppData\Local\desktop.ini [20/12/2008|16:16] C:\Users\CHARLO~1\AppData\Local\fusioncache.dat [09/05/2012|07:39] C:\Users\CHARLO~1\AppData\Local\GDIPFONTCACHEV1.DAT [18/08/2008|00:29] C:\Users\CHARLO~1\AppData\Local\Glowria [29/03/2012|08:12] C:\Users\CHARLO~1\AppData\Local\Google [22/07/2007|18:40] C:\Users\CHARLO~1\AppData\Local\Historique [18/06/2012|13:01] C:\Users\CHARLO~1\AppData\Local\IconCache.db [25/07/2008|12:37] C:\Users\CHARLO~1\AppData\Local\jlobeg.bat [05/06/2012|23:57] C:\Users\CHARLO~1\AppData\Local\Microsoft [17/03/2008|23:49] C:\Users\CHARLO~1\AppData\Local\Microsoft Games [01/05/2008|13:06] C:\Users\CHARLO~1\AppData\Local\Mozilla [07/01/2012|20:03] C:\Users\CHARLO~1\AppData\Local\PackageAware [21/04/2011|13:41] C:\Users\CHARLO~1\AppData\Local\Shareaza [28/06/2008|14:36] C:\Users\CHARLO~1\AppData\Local\Steam [03/03/2010|17:14] C:\Users\CHARLO~1\AppData\Local\tchncbh.dat [19/06/2012|14:09] C:\Users\CHARLO~1\AppData\Local\Temp [22/07/2007|18:40] C:\Users\CHARLO~1\AppData\Local\Temporary Internet Files [15/11/2011|17:39] C:\Users\CHARLO~1\AppData\Local\TF1 Vision [22/07/2007|18:43] C:\Users\CHARLO~1\AppData\Local\Toshiba [23/07/2007|21:50] C:\Users\CHARLO~1\AppData\Local\VirtualStore [14/11/2011|22:06] C:\Users\CHARLO~1\AppData\Local\WDSetup [19/12/2009|22:26] C:\Users\CHARLO~1\AppData\Local\Windows Live Writer [26/01/2011|21:51] C:\Users\CHARLO~1\AppData\Local\WinZip --------------------\\ Tâches planifiées dans C:\Windows\tasks [19/06/2012 12:16][--a------] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [19/06/2012 08:50][--a------] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [18/06/2012 20:46][--a------] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-589794398-256466790-1041140578-1000UA.job [15/06/2012 07:46][--a------] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-589794398-256466790-1041140578-1000Core.job [18/06/2012 15:52][--a------] C:\Windows\tasks\Ad-Aware Update (Weekly).job [19/06/2012 08:50][--a------] C:\Windows\tasks\GlaryInitialize.job [15/06/2012 15:00][--a------] C:\Windows\tasks\Norton Security Scan.job [19/06/2012 08:49][--ah-----] C:\Windows\tasks\SA.DAT [18/06/2012 20:50][--a------] C:\Windows\tasks\SCHEDLGU.TXT --------------------\\ Listing des dossiers dans C:\ProgramData [05/04/2012|22:44] C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521} [03/03/2010|16:15] C:\ProgramData\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F} [22/05/2012|15:29] C:\ProgramData\Adobe [15/03/2012|09:19] C:\ProgramData\Alwil Software [05/04/2012|19:39] C:\ProgramData\Apple [25/12/2007|03:57] C:\ProgramData\Apple Computer [02/11/2006|15:02] C:\ProgramData\Application Data [15/03/2012|09:30] C:\ProgramData\Avira [13/07/2010|16:55] C:\ProgramData\AVS4YOU [17/06/2012|19:03] C:\ProgramData\blehmathmedia [22/07/2007|18:36] C:\ProgramData\Bureau [02/11/2006|15:02] C:\ProgramData\Desktop [26/11/2010|21:08] C:\ProgramData\DivX [02/11/2006|15:02] C:\ProgramData\Documents [02/07/2010|16:59] C:\ProgramData\Electronic Arts [11/10/2009|15:51] C:\ProgramData\eMule [12/02/2009|20:15] C:\ProgramData\EPSON [22/07/2007|18:36] C:\ProgramData\Favoris [02/11/2006|15:02] C:\ProgramData\Favorites [08/06/2012|10:00] C:\ProgramData\Google [25/05/2009|23:38] C:\ProgramData\LauncherAccess.dt [03/03/2010|16:52] C:\ProgramData\Lavasoft [17/03/2012|12:35] C:\ProgramData\LUUnInstall.LiveUpdate [03/03/2010|16:03] C:\ProgramData\Malwarebytes [09/05/2012|16:20] C:\ProgramData\McAfee [22/07/2007|18:36] C:\ProgramData\Menu D‚marrer [15/11/2011|19:06] C:\ProgramData\Microsoft [05/06/2012|23:57] C:\ProgramData\Microsoft SkyDrive [22/07/2007|18:36] C:\ProgramData\ModŠles [13/01/2008|12:43] C:\ProgramData\Nero [09/03/2007|10:27] C:\ProgramData\NVIDIA [17/08/2009|00:21] C:\ProgramData\PlayFirst [08/03/2010|15:15] C:\ProgramData\Spybot - Search & Destroy [02/11/2006|15:02] C:\ProgramData\Start Menu [15/03/2012|09:49] C:\ProgramData\Sun [17/03/2012|12:48] C:\ProgramData\Symantec [02/11/2006|15:02] C:\ProgramData\Templates [08/03/2007|12:20] C:\ProgramData\Toshiba [22/07/2007|18:40] C:\ProgramData\ToshibaEurope [12/02/2009|20:22] C:\ProgramData\UDL [15/11/2011|18:22] C:\ProgramData\Ulead Systems [08/03/2007|12:15] C:\ProgramData\Vista64 [13/07/2010|16:47] C:\ProgramData\Vso [25/01/2011|16:08] C:\ProgramData\WinZip [23/06/2008|11:17] C:\ProgramData\WLInstaller [08/03/2007|12:15] C:\ProgramData\XP --------------------\\ Listing des dossiers dans C:\Program Files [12/02/2009|20:20] C:\Program Files\ABBYY FineReader 6.0 Sprint [09/05/2012|16:18] C:\Program Files\Adobe [18/06/2012|20:40] C:\Program Files\Ad-Remover [15/11/2011|19:15] C:\Program Files\Allocine [05/04/2010|10:25] C:\Program Files\Alwil Software [05/04/2012|19:41] C:\Program Files\Apple Software Update [15/11/2011|07:28] C:\Program Files\Ares [15/03/2012|09:30] C:\Program Files\Avira [15/11/2011|19:09] C:\Program Files\AVS4YOU [08/06/2012|09:25] C:\Program Files\Blender Foundation [05/04/2012|19:35] C:\Program Files\Bonjour [11/10/2009|15:49] C:\Program Files\BoontyGames [23/03/2008|09:57] C:\Program Files\Camera Assistant Software for Toshiba [03/03/2010|16:02] C:\Program Files\CCleaner [17/03/2012|12:47] C:\Program Files\Common Files [22/07/2007|19:24] C:\Program Files\Controle Parental [13/01/2008|12:38] C:\Program Files\Creative [11/10/2009|15:48] C:\Program Files\DinerDash2_at [16/11/2011|08:51] C:\Program Files\DivX [14/03/2010|22:24] C:\Program Files\EA GAMES [15/11/2011|07:35] C:\Program Files\Electronic Arts [15/11/2011|19:12] C:\Program Files\epson [12/01/2009|20:29] C:\Program Files\Etresoft Decoder 4.0 [05/03/2010|19:22] C:\Program Files\FB_Tools [22/07/2007|18:36] C:\Program Files\Fichiers communs [C:\Program Files\Common Files] [05/08/2007|23:34] C:\Program Files\FileZilla [20/11/2011|12:23] C:\Program Files\Glary Utilities [08/06/2012|09:55] C:\Program Files\Google [08/03/2007|12:50] C:\Program Files\IDM [15/11/2011|18:19] C:\Program Files\InstallShield Installation Information [22/07/2007|21:30] C:\Program Files\InterActual [01/04/2010|07:45] C:\Program Files\Internet Explorer [15/11/2011|18:22] C:\Program Files\InterVideo [05/04/2012|22:41] C:\Program Files\iPod [05/04/2012|22:44] C:\Program Files\iTunes [15/03/2012|09:47] C:\Program Files\Java [05/08/2007|23:50] C:\Program Files\Lauyan [03/03/2010|16:14] C:\Program Files\Lavasoft [24/12/2009|19:11] C:\Program Files\LG Electronics [24/12/2009|19:13] C:\Program Files\LGInternetKit [15/11/2011|18:15] C:\Program Files\LimeWire [08/03/2007|12:00] C:\Program Files\ltmoh [29/05/2011|15:10] C:\Program Files\Malwarebytes' Anti-Malware [16/11/2007|23:01] C:\Program Files\Maxis [15/11/2011|19:06] C:\Program Files\Microsoft [25/06/2008|03:01] C:\Program Files\Microsoft CAPICOM 2.1.0.2 [02/11/2006|14:37] C:\Program Files\Microsoft Games [15/05/2012|07:33] C:\Program Files\Microsoft Silverlight [19/12/2008|21:08] C:\Program Files\Microsoft SQL Server Compact Edition [19/12/2008|21:14] C:\Program Files\Microsoft Sync Framework [08/03/2010|15:55] C:\Program Files\Microsoft WSE [11/03/2010|08:36] C:\Program Files\Movie Maker [02/11/2006|14:37] C:\Program Files\MSBuild [02/11/2006|14:37] C:\Program Files\MSN [23/03/2010|15:20] C:\Program Files\MSN Messenger [25/07/2007|14:33] C:\Program Files\MSXML 4.0 [08/03/2007|12:10] C:\Program Files\My Company Name [04/01/2008|15:53] C:\Program Files\Nero [27/05/2011|15:00] C:\Program Files\Norton Security Scan [01/05/2008|17:03] C:\Program Files\Notepad++ [15/03/2012|09:50] C:\Program Files\OpenOffice.org 3 [26/07/2007|15:25] C:\Program Files\OrangeHSS [13/05/2008|19:38] C:\Program Files\PAN vision [08/06/2012|07:59] C:\Program Files\Picasa2 [14/11/2011|22:09] C:\Program Files\QuickMediaConverter [15/02/2009|14:29] C:\Program Files\QuickTime [08/03/2007|11:57] C:\Program Files\Realtek [02/11/2006|14:37] C:\Program Files\Reference Assemblies [22/03/2008|12:05] C:\Program Files\SAGEM [25/12/2008|14:51] C:\Program Files\Samsung [06/08/2008|19:12] C:\Program Files\Singles [29/05/2011|14:33] C:\Program Files\Spybot - Search & Destroy [22/07/2007|18:34] C:\Program Files\Synaptics [15/11/2011|19:17] C:\Program Files\TF1Vision [25/07/2007|22:06] C:\Program Files\TOSHIBA [18/06/2012|11:44] C:\Program Files\Trend Micro [02/11/2006|15:01] C:\Program Files\Uninstall Information [28/06/2008|14:23] C:\Program Files\Valve [16/11/2007|08:48] C:\Program Files\Windows Calendar [02/11/2006|14:42] C:\Program Files\Windows Collaboration [25/07/2007|14:41] C:\Program Files\Windows Defender [02/11/2006|14:42] C:\Program Files\Windows Journal [15/11/2011|18:13] C:\Program Files\Windows Live [19/12/2008|21:03] C:\Program Files\Windows Live SkyDrive [16/04/2010|13:38] C:\Program Files\Windows Mail [08/03/2007|12:32] C:\Program Files\Windows Media Components [28/10/2009|10:13] C:\Program Files\Windows Media Player [22/07/2007|18:36] C:\Program Files\Windows NT [02/11/2006|14:42] C:\Program Files\Windows Photo Gallery [09/01/2008|16:52] C:\Program Files\Windows Sidebar [14/11/2011|22:03] C:\Program Files\WinRAR [25/01/2011|16:04] C:\Program Files\WinZip [15/11/2011|19:17] C:\Program Files\Yahoo! [18/06/2012|20:28] C:\Program Files\ZHPDiag --------------------\\ Listing des dossiers dans C:\Program Files\Common Files [09/05/2012|16:18] C:\Program Files\Common Files\Adobe [05/04/2012|22:41] C:\Program Files\Common Files\Apple [15/11/2011|07:32] C:\Program Files\Common Files\AVSMedia [22/07/2007|20:57] C:\Program Files\Common Files\France Telecom [08/03/2007|12:33] C:\Program Files\Common Files\InstallShield [15/03/2012|09:49] C:\Program Files\Common Files\Java [08/03/2010|15:55] C:\Program Files\Common Files\microsoft shared [13/01/2008|12:43] C:\Program Files\Common Files\Nero [08/12/2007|22:36] C:\Program Files\Common Files\PX Storage Engine [02/11/2006|13:18] C:\Program Files\Common Files\Services [02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines [20/07/2008|12:40] C:\Program Files\Common Files\Steam [17/03/2012|12:59] C:\Program Files\Common Files\Symantec Shared [25/07/2007|14:41] C:\Program Files\Common Files\System [15/11/2011|18:26] C:\Program Files\Common Files\Ulead Systems [24/02/2008|14:10] C:\Program Files\Common Files\Vbox [19/12/2008|20:54] C:\Program Files\Common Files\Windows Live [23/06/2008|11:19] C:\Program Files\Common Files\WindowsLiveInstaller --------------------\\ Process ( 77 Processes ) ... OK ! --------------------\\ Recherche avec S_Lop Aucun fichier / dossier Lop trouvé ! --------------------\\ Recherche de Fichiers / Dossiers Lop Aucun fichier / dossier Lop trouvé ! --------------------\\ Verification du Registre ..... OK ! --------------------\\ Verification du fichier Hosts Fichier Hosts PROPRE --------------------\\ Recherche de fichiers avec Catchme catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, [url=http://www.gmer.net]GMER - Rootkit Detector and Remover[/url] Rootkit scan 2012-06-19 14:10:01 Windows 6.0.6000 NTFS scanning hidden processes ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden files: 678 --------------------\\ Recherche d'autres infections Aucune autre infection trouvée ! [F:8][D:3]-> C:\Users\CHARLO~1\AppData\Local\Temp [F:3380][D:1]-> C:\Users\CHARLO~1\AppData\Roaming\MICROS~1\Windows\Cookies [F:6][D:4]-> C:\Users\CHARLO~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5 [F:113][D:7]-> C:\$Recycle.Bin 1 - "C:\Lop SD\LopR_1.txt" - 19/06/2012| 8:58 - Option : [1] 2 - "C:\Lop SD\LopR_2.txt" - 19/06/2012|14:12 - Option : [4] --------------------\\ Fin du rapport a 14:12:22 -
Apparement c bon,
-
Salut, J'ai déjà essayé et ca ne fonctionne pas
-
Analyse rapport HijackThis
olly a répondu à un(e) sujet de olly dans Analyses et éradication malwares
Voici les rappports : 1/ zhp / ======= RAPPORT D'AD-REMOVER 2.0.0.2,G | UNIQUEMENT XP/VISTA/7 ======= Mis à jour par TeamXscript le 12/04/11 Contact: AdRemover[DOT]contact[AT]gmail[DOT]com Site web: [url=http://www.teamxscript.org]webmail http://webmail.ovh.net[/url] C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 20:40:43 le 18/06/2012, Mode normal Microsoft® Windows Vista™ Édition Familiale Premium (X86) Charlotte@PC-DE-CHARLOTTE (TOSHIBA Satellite A200) ============== ACTION(S) ============== Fichier supprimé: C:\Windows\system32\AdssiteSocial-uninstall.exe Fichier supprimé: C:\Users\Public\MyWebTattoo.exe Fichier supprimé: C:\Users\Charlotte\AppData\Local\eoiym.bat (!) -- Fichiers temporaires supprimés. Clé supprimée: HKLM\Software\Classes\TypeLib\{F4BE6FC1-4990-4D86-9948-19CA9F51AEDC} Clé supprimée: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AdssiteSocial Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D205A282-6E28-4c0a-B840-B3884881F3EB} Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\InternetGameBox Clé supprimée: HKCU\CasinonetInstaller Clé supprimée: HKCU\Software\Microsoft\BUR Valeur supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0|goicfboogidikkejccmclpieicihhlpo jimddp Valeur supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0|goicfboogidikkejccmclpieicihhlpo hpfanicgkffmccehnpkikogcffaepkfp Valeur supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0|goicfboogidikkejccmclpieicihhlpo dgnckdmmolaijpbbakmplfhlfpdhglgc ============== SCAN ADDITIONNEL ============== -- C:\Users\Charlotte\AppData\Roaming\Mozilla\FireFox\Profiles\xrs3hhyt.default -- Searchplugins\sweetim.xml (?) Prefs.js - browser.download.lastDir, C:\\Users\\Charlotte\\Desktop Prefs.js - browser.startup.homepage_override.mstone, rv:1.8.1.14 Prefs.js - browser.startup.homepage, hxxp://home.sweetim.com/?crg=3.1010000&st=12 Prefs.js - capability.principal.codebase.Allocine_Secure.id, hxxps://glowria.allocine.fruser_pref(browser.startup.homepage, hxxp://... Prefs.js - keyword.URL, hxxp://search.live.com/results.aspx?mkt=fr-FR&FORM=MIMWA5&q= Prefs.js - browser.search.selectedEngine, SweetIM Search Prefs.js - browser.startup.homepage, hxxp://fr.msn.com/ Prefs.js - keyword.URL, hxxp://search.live.com/results.aspx?mkt=fr-FR&FORM=MIMWA5&q= Prefs.js - browser.search.selectedEngine, Live Search Prefs.js - browser.startup.homepage, hxxp://www.yougoo.fr/annuaire Prefs.js - keyword.URL, hxxp://www.yougoo.fr/annuaire?search&q= Prefs.js - browser.search.selectedEngine, YouGoo Prefs.js - sweetim.toolbar.previous.browser.startup.homepage, hxxp://www.ircdown.com/fr/index.php?rvs=hompag&d=79919092 Prefs.js - browser.search.defaultenginename, SweetIM Search Prefs.js - sweetim.toolbar.previous.browser.search.defaultenginename, Prefs.js - sweetim.toolbar.previous.browser.search.selectedEngine, Live Search Prefs.js - browser.search.defaulturl, ======================================== **** Google Chrome Version [19.0.1084.52] **** Extension\bmbgdmijgopggjaelphhajpjldacbnba (C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibar.crx) (x) -- C:\Users\Charlotte\AppData\Local\Google\Chrome\User Data\Default -- Preferences - default_search_provider: "MyStart Search" (Activé: true) () Preferences - homepage: hxxp://home.sweetim.com/?crg=3.1010000&st=12 Preferences - homepage_is_newtabpage: false Plugin - Remoting Viewer (Activé: true) (internal-remoting-viewer) (x) Plugin - "Remoting Viewer" (Activé: true) Plugin - Native Client (Activé: true) (C:\Users\Charlotte\AppData\Local\Google\Chrome\Application\19.0.1084.52\ppGoogleNaClPluginChrome.dll) Plugin - "Native Client" (Activé: true) Plugin - Shockwave Flash (Activé: false) (C:\Users\Charlotte\AppData\Local\Google\Chrome\User Data\PepperFlash\11.1.31.203\pepflashplayer.dll) Plugin - "Java" (Activé: true) Plugin - "DivX\u00AE Content Upload Plugin" (Activé: true) Plugin - "Picasa" (Activé: true) Plugin - "Silverlight" (Activé: true) Preferences - urls_to_restore_on_startup: hxxp://home.sweetim.com/?crg=3.1010000&st=12, hxxp://www.google.com/ ======================================== **** Internet Explorer Version [7.0.6000.17037] **** HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896 HKCU_Main|Start Page - hxxp://fr.msn.com/ HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM_Main|Start Page - hxxp://fr.msn.com/ HKCU_URLSearchHooks|{08C06D61-F1F3-4799-86F8-BE1A89362C85} - "Search Class" (C:\Program Files\OrangeHSS\SearchURLHook\SearchPageURL.dll) HKCU_URLSearchHooks|{36c44342-bcbe-4d64-b946-284d925d1767} (x) HKLM_URLSearchHooks|{36c44342-bcbe-4d64-b946-284d925d1767} (x) HKCU_SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} - "SweetIM Search" (hxxp://search.sweetim.com/search.asp?src=6&crg=3.1010000&st=12&q={searchTerms}) HKLM_SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} - "SweetIM Search" (hxxp://search.sweetim.com/search.asp?src=6&crg=3.1010000&st=12&q={searchTerms}) HKCU_Toolbar\WebBrowser|{36C44342-BCBE-4D64-B946-284D925D1767} (x) HKLM_Toolbar|{36c44342-bcbe-4d64-b946-284d925d1767} (x) HKCU_ElevationPolicy\{DD7EF84D-5056-4C6B-AFBD-6D92273D8AA8} - C:\Program Files\OrangeHSS\Launcher\Launcher.exe (France Telecom SA) HKCU_ElevationPolicy\{EA0FB061-D210-4AEC-8B47-6E5E7745BD36} - C:\Windows\System32\Macromed\Flash\FlashUtil9e.exe (x) HKLM_ElevationPolicy\adfd6888-8eb4-42de-9141-3189aca30e7d - C:\Program Files\Eazel-FR\Eazel-FRToolbarHelper.exe (x) HKLM_ElevationPolicy\{1D66CBE2-F5A1-4BBB-A842-B32CC295D6AF} - C:\Program Files\TF1Vision\TF1Vision.exe (1-Click Media) HKLM_Extensions\{C08CAF1D-C0A3-40D5-9970-06D067EAC017} - "eBay" (C:\Toshiba\ebay\ebay.ico) HKLM_Extensions\{DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - "?" (?) BHO\{02478D38-C3F9-4efb-9B51-7695ECA05670} (?) BHO\{36c44342-bcbe-4d64-b946-284d925d1767} (?) ======================================== C:\Program Files\Ad-Remover\Quarantine: 3 Fichier(s) C:\Program Files\Ad-Remover\Backup: 15 Fichier(s) \Ad-Report-CLEAN[1].txt - 18/06/2012 20:41:09 (6711 Octet(s)) Fin à: 20:42:55, 18/06/2012 ============== E.O.F ============== 2/ Ad Remover : ======= RAPPORT D'AD-REMOVER 2.0.0.2,G | UNIQUEMENT XP/VISTA/7 ======= Mis à jour par TeamXscript le 12/04/11 Contact: AdRemover[DOT]contact[AT]gmail[DOT]com Site web: [url=http://www.teamxscript.org]webmail http://webmail.ovh.net[/url] C:\Program Files\Ad-Remover\main.exe (CLEAN [1]) -> Lancé à 20:40:43 le 18/06/2012, Mode normal Microsoft® Windows Vista™ Édition Familiale Premium (X86) Charlotte@PC-DE-CHARLOTTE (TOSHIBA Satellite A200) ============== ACTION(S) ============== Fichier supprimé: C:\Windows\system32\AdssiteSocial-uninstall.exe Fichier supprimé: C:\Users\Public\MyWebTattoo.exe Fichier supprimé: C:\Users\Charlotte\AppData\Local\eoiym.bat (!) -- Fichiers temporaires supprimés. Clé supprimée: HKLM\Software\Classes\TypeLib\{F4BE6FC1-4990-4D86-9948-19CA9F51AEDC} Clé supprimée: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AdssiteSocial Clé supprimée: HKLM\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D205A282-6E28-4c0a-B840-B3884881F3EB} Clé supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\InternetGameBox Clé supprimée: HKCU\CasinonetInstaller Clé supprimée: HKCU\Software\Microsoft\BUR Valeur supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0|goicfboogidikkejccmclpieicihhlpo jimddp Valeur supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0|goicfboogidikkejccmclpieicihhlpo hpfanicgkffmccehnpkikogcffaepkfp Valeur supprimée: HKCU\Software\Microsoft\Windows\CurrentVersion\WinTrust\Trust Providers\Software Publishing\Trust Database\0|goicfboogidikkejccmclpieicihhlpo dgnckdmmolaijpbbakmplfhlfpdhglgc ============== SCAN ADDITIONNEL ============== -- C:\Users\Charlotte\AppData\Roaming\Mozilla\FireFox\Profiles\xrs3hhyt.default -- Searchplugins\sweetim.xml (?) Prefs.js - browser.download.lastDir, C:\\Users\\Charlotte\\Desktop Prefs.js - browser.startup.homepage_override.mstone, rv:1.8.1.14 Prefs.js - browser.startup.homepage, hxxp://home.sweetim.com/?crg=3.1010000&st=12 Prefs.js - capability.principal.codebase.Allocine_Secure.id, hxxps://glowria.allocine.fruser_pref(browser.startup.homepage, hxxp://... Prefs.js - keyword.URL, hxxp://search.live.com/results.aspx?mkt=fr-FR&FORM=MIMWA5&q= Prefs.js - browser.search.selectedEngine, SweetIM Search Prefs.js - browser.startup.homepage, hxxp://fr.msn.com/ Prefs.js - keyword.URL, hxxp://search.live.com/results.aspx?mkt=fr-FR&FORM=MIMWA5&q= Prefs.js - browser.search.selectedEngine, Live Search Prefs.js - browser.startup.homepage, hxxp://www.yougoo.fr/annuaire Prefs.js - keyword.URL, hxxp://www.yougoo.fr/annuaire?search&q= Prefs.js - browser.search.selectedEngine, YouGoo Prefs.js - sweetim.toolbar.previous.browser.startup.homepage, hxxp://www.ircdown.com/fr/index.php?rvs=hompag&d=79919092 Prefs.js - browser.search.defaultenginename, SweetIM Search Prefs.js - sweetim.toolbar.previous.browser.search.defaultenginename, Prefs.js - sweetim.toolbar.previous.browser.search.selectedEngine, Live Search Prefs.js - browser.search.defaulturl, ======================================== **** Google Chrome Version [19.0.1084.52] **** Extension\bmbgdmijgopggjaelphhajpjldacbnba (C:\Program Files\Incredibar.com\incredibar\1.5.11.14\incredibar.crx) (x) -- C:\Users\Charlotte\AppData\Local\Google\Chrome\User Data\Default -- Preferences - default_search_provider: "MyStart Search" (Activé: true) () Preferences - homepage: hxxp://home.sweetim.com/?crg=3.1010000&st=12 Preferences - homepage_is_newtabpage: false Plugin - Remoting Viewer (Activé: true) (internal-remoting-viewer) (x) Plugin - "Remoting Viewer" (Activé: true) Plugin - Native Client (Activé: true) (C:\Users\Charlotte\AppData\Local\Google\Chrome\Application\19.0.1084.52\ppGoogleNaClPluginChrome.dll) Plugin - "Native Client" (Activé: true) Plugin - Shockwave Flash (Activé: false) (C:\Users\Charlotte\AppData\Local\Google\Chrome\User Data\PepperFlash\11.1.31.203\pepflashplayer.dll) Plugin - "Java" (Activé: true) Plugin - "DivX\u00AE Content Upload Plugin" (Activé: true) Plugin - "Picasa" (Activé: true) Plugin - "Silverlight" (Activé: true) Preferences - urls_to_restore_on_startup: hxxp://home.sweetim.com/?crg=3.1010000&st=12, hxxp://www.google.com/ ======================================== **** Internet Explorer Version [7.0.6000.17037] **** HKCU_Main|Default_Page_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome HKCU_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU_Main|Search bar - hxxp://go.microsoft.com/fwlink/?linkid=54896 HKCU_Main|Start Page - hxxp://fr.msn.com/ HKLM_Main|Default_Page_URL - hxxp://go.microsoft.com/fwlink/?LinkId=54896 HKLM_Main|Default_Search_URL - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM_Main|Search bar - hxxp://search.msn.com/spbasic.htm HKLM_Main|Search Page - hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKLM_Main|Start Page - hxxp://fr.msn.com/ HKCU_URLSearchHooks|{08C06D61-F1F3-4799-86F8-BE1A89362C85} - "Search Class" (C:\Program Files\OrangeHSS\SearchURLHook\SearchPageURL.dll) HKCU_URLSearchHooks|{36c44342-bcbe-4d64-b946-284d925d1767} (x) HKLM_URLSearchHooks|{36c44342-bcbe-4d64-b946-284d925d1767} (x) HKCU_SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} - "SweetIM Search" (hxxp://search.sweetim.com/search.asp?src=6&crg=3.1010000&st=12&q={searchTerms}) HKLM_SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} - "SweetIM Search" (hxxp://search.sweetim.com/search.asp?src=6&crg=3.1010000&st=12&q={searchTerms}) HKCU_Toolbar\WebBrowser|{36C44342-BCBE-4D64-B946-284D925D1767} (x) HKLM_Toolbar|{36c44342-bcbe-4d64-b946-284d925d1767} (x) HKCU_ElevationPolicy\{DD7EF84D-5056-4C6B-AFBD-6D92273D8AA8} - C:\Program Files\OrangeHSS\Launcher\Launcher.exe (France Telecom SA) HKCU_ElevationPolicy\{EA0FB061-D210-4AEC-8B47-6E5E7745BD36} - C:\Windows\System32\Macromed\Flash\FlashUtil9e.exe (x) HKLM_ElevationPolicy\adfd6888-8eb4-42de-9141-3189aca30e7d - C:\Program Files\Eazel-FR\Eazel-FRToolbarHelper.exe (x) HKLM_ElevationPolicy\{1D66CBE2-F5A1-4BBB-A842-B32CC295D6AF} - C:\Program Files\TF1Vision\TF1Vision.exe (1-Click Media) HKLM_Extensions\{C08CAF1D-C0A3-40D5-9970-06D067EAC017} - "eBay" (C:\Toshiba\ebay\ebay.ico) HKLM_Extensions\{DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - "?" (?) BHO\{02478D38-C3F9-4efb-9B51-7695ECA05670} (?) BHO\{36c44342-bcbe-4d64-b946-284d925d1767} (?) ======================================== C:\Program Files\Ad-Remover\Quarantine: 3 Fichier(s) C:\Program Files\Ad-Remover\Backup: 15 Fichier(s) \Ad-Report-CLEAN[1].txt - 18/06/2012 20:41:09 (6711 Octet(s)) Fin à: 20:42:55, 18/06/2012 ============== E.O.F ============== 3/ Adw : # AdwCleaner v1.609 - Rapport créé le 18/06/2012 à 20:49:36 # Mis à jour le 10/06/2012 par Xplode # Système d'exploitation : Windows Vista (TM) Home Premium (32 bits) # Nom d'utilisateur : Charlotte - PC-DE-CHARLOTTE # Exécuté depuis : C:\Users\Nathalie\Desktop\adwcleaner.exe # Option [suppression] ***** [services] ***** ***** [Fichiers / Dossiers] ***** Fichier Supprimé : C:\Users\Charlotte\AppData\Roaming\Mozilla\Firefox\Profiles\xrs3hhyt.default\searchplugins\SweetIm.xml ***** [Registre] ***** Clé Supprimée : HKCU\Software\SweetIm ***** [Registre - GUID] ***** Clé Supprimée : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} Clé Supprimée : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} ***** [Navigateurs] ***** -\\ Internet Explorer v7.0.6000.17037 [OK] Le registre ne contient aucune entrée illégitime. -\\ Mozilla Firefox v [impossible d'obtenir la version] Nom du profil : default Fichier : C:\Users\Charlotte\AppData\Roaming\Mozilla\Firefox\Profiles\xrs3hhyt.default\prefs.js Supprimée : user_pref("browser.startup.homepage", "hxxp://home.sweetim.com/?crg=3.1010000&st=12"); Supprimée : user_pref("browser.search.selectedEngine", "SweetIM Search"); Supprimée : user_pref("sweetim.toolbar.previous.browser.startup.homepage", "hxxp://www.ircdown.com/fr/index.php?[...] Supprimée : user_pref("sweetim.toolbar.urls.homepage", "hxxp://home.sweetim.com/?crg=3.1010000&st=12"); Supprimée : user_pref("browser.search.defaultenginename", "SweetIM Search"); Supprimée : user_pref("sweetim.toolbar.previous.browser.search.defaultenginename", ""); Supprimée : user_pref("sweetim.toolbar.previous.browser.search.selectedEngine", "Live Search"); -\\ Google Chrome v18.0.1025.168 Fichier : C:\Users\Charlotte\AppData\Local\Google\Chrome\User Data\Default\Preferences Supprimée : "homepage": "hxxp://home.sweetim.com/?crg=3.1010000&st=12", Supprimée : "urls_to_restore_on_startup": [ "hxxp://home.sweetim.com/?crg=3.1010000&st=12", "hxxp://www.g[...] Fichier : C:\Users\Nathalie\AppData\Local\Google\Chrome\User Data\Default\Preferences [OK] Le fichier ne contient aucune entrée illégitime. ************************* AdwCleaner[s2].txt - [2300 octets] - [18/06/2012 20:49:36] AdwCleaner[s1].txt - [11225 octets] - [18/06/2012 12:23:06] ########## EOF - \AdwCleaner[s2].txt - [2489 octets] ########## 4/ LopSd : --------------------\\ Lop S&D 4.2.5-0 XP/Vista Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6000 ) X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 CPU T5500 @ 1.66GHz ) BIOS : Ver 1.00PARTTBL0 USER : Charlotte ( Not Administrator ! ) BOOT : Normal boot Antivirus : AntiVir Desktop 10.0.1.59 (Activated) C:\ (Local Disk) - NTFS - Total:147 Go (Free:76 Go) D:\ (Local Disk) - NTFS - Total:37 Go (Free:13 Go) E:\ (CD or DVD) "C:\Lop SD" ( MAJ : 19-12-2008|23:40 ) Option : [1] ( 19/06/2012| 8:54 ) --------------------\\ Listing des dossiers dans Local [23/02/2008|18:05] C:\Users\CHARLO~1\AppData\Local\Adobe [04/01/2008|16:08] C:\Users\CHARLO~1\AppData\Local\Ahead [25/12/2007|03:55] C:\Users\CHARLO~1\AppData\Local\Apple [27/12/2007|00:32] C:\Users\CHARLO~1\AppData\Local\Apple Computer [22/07/2007|18:40] C:\Users\CHARLO~1\AppData\Local\Application Data [26/02/2012|22:34] C:\Users\CHARLO~1\AppData\Local\ApplicationHistory [25/01/2012|18:09] C:\Users\CHARLO~1\AppData\Local\Apps [21/04/2011|13:30] C:\Users\CHARLO~1\AppData\Local\Ares [04/09/2010|23:55] C:\Users\CHARLO~1\AppData\Local\d3d9caps.dat [15/11/2011|00:25] C:\Users\CHARLO~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini [25/01/2012|18:09] C:\Users\CHARLO~1\AppData\Local\Deployment [21/04/2011|13:41] C:\Users\CHARLO~1\AppData\Local\desktop.ini [20/12/2008|16:16] C:\Users\CHARLO~1\AppData\Local\fusioncache.dat [09/05/2012|07:39] C:\Users\CHARLO~1\AppData\Local\GDIPFONTCACHEV1.DAT [18/08/2008|00:29] C:\Users\CHARLO~1\AppData\Local\Glowria [29/03/2012|08:12] C:\Users\CHARLO~1\AppData\Local\Google [22/07/2007|18:40] C:\Users\CHARLO~1\AppData\Local\Historique [18/06/2012|13:01] C:\Users\CHARLO~1\AppData\Local\IconCache.db [25/07/2008|12:37] C:\Users\CHARLO~1\AppData\Local\jlobeg.bat [05/06/2012|23:57] C:\Users\CHARLO~1\AppData\Local\Microsoft [17/03/2008|23:49] C:\Users\CHARLO~1\AppData\Local\Microsoft Games [01/05/2008|13:06] C:\Users\CHARLO~1\AppData\Local\Mozilla [07/01/2012|20:03] C:\Users\CHARLO~1\AppData\Local\PackageAware [21/04/2011|13:41] C:\Users\CHARLO~1\AppData\Local\Shareaza [28/06/2008|14:36] C:\Users\CHARLO~1\AppData\Local\Steam [03/03/2010|17:14] C:\Users\CHARLO~1\AppData\Local\tchncbh.dat [18/06/2012|20:50] C:\Users\CHARLO~1\AppData\Local\Temp [22/07/2007|18:40] C:\Users\CHARLO~1\AppData\Local\Temporary Internet Files [15/11/2011|17:39] C:\Users\CHARLO~1\AppData\Local\TF1 Vision [22/07/2007|18:43] C:\Users\CHARLO~1\AppData\Local\Toshiba [23/07/2007|21:50] C:\Users\CHARLO~1\AppData\Local\VirtualStore [14/11/2011|22:06] C:\Users\CHARLO~1\AppData\Local\WDSetup [19/12/2009|22:26] C:\Users\CHARLO~1\AppData\Local\Windows Live Writer [26/01/2011|21:51] C:\Users\CHARLO~1\AppData\Local\WinZip --------------------\\ Tâches planifiées dans C:\Windows\tasks [18/06/2012 19:16][--a------] C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [19/06/2012 08:50][--a------] C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [18/06/2012 20:46][--a------] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-589794398-256466790-1041140578-1000UA.job [15/06/2012 07:46][--a------] C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-589794398-256466790-1041140578-1000Core.job [18/06/2012 15:52][--a------] C:\Windows\tasks\Ad-Aware Update (Weekly).job [19/06/2012 08:50][--a------] C:\Windows\tasks\GlaryInitialize.job [15/06/2012 15:00][--a------] C:\Windows\tasks\Norton Security Scan.job [19/06/2012 08:49][--ah-----] C:\Windows\tasks\SA.DAT [18/06/2012 20:50][--a------] C:\Windows\tasks\SCHEDLGU.TXT --------------------\\ Listing des dossiers dans C:\ProgramData [05/04/2012|22:44] C:\ProgramData\{429CAD59-35B1-4DBC-BB6D-1DB246563521} [03/03/2010|16:15] C:\ProgramData\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F} [22/05/2012|15:29] C:\ProgramData\Adobe [15/03/2012|09:19] C:\ProgramData\Alwil Software [05/04/2012|19:39] C:\ProgramData\Apple [25/12/2007|03:57] C:\ProgramData\Apple Computer [02/11/2006|15:02] C:\ProgramData\Application Data [15/03/2012|09:30] C:\ProgramData\Avira [13/07/2010|16:55] C:\ProgramData\AVS4YOU [17/06/2012|19:03] C:\ProgramData\blehmathmedia [22/07/2007|18:36] C:\ProgramData\Bureau [28/12/2007|23:55] C:\ProgramData\deaf book inside.el531r [02/11/2006|15:02] C:\ProgramData\Desktop [26/11/2010|21:08] C:\ProgramData\DivX [02/11/2006|15:02] C:\ProgramData\Documents [02/07/2010|16:59] C:\ProgramData\Electronic Arts [11/10/2009|15:51] C:\ProgramData\eMule [12/02/2009|20:15] C:\ProgramData\EPSON [28/12/2007|23:54] C:\ProgramData\EQSIXTHSIXTH.0qu6f [22/07/2007|18:36] C:\ProgramData\Favoris [02/11/2006|15:02] C:\ProgramData\Favorites [08/06/2012|10:00] C:\ProgramData\Google [25/05/2009|23:38] C:\ProgramData\LauncherAccess.dt [03/03/2010|16:52] C:\ProgramData\Lavasoft [17/03/2012|12:35] C:\ProgramData\LUUnInstall.LiveUpdate [03/03/2010|16:03] C:\ProgramData\Malwarebytes [09/05/2012|16:20] C:\ProgramData\McAfee [22/07/2007|18:36] C:\ProgramData\Menu D‚marrer [15/11/2011|19:06] C:\ProgramData\Microsoft [05/06/2012|23:57] C:\ProgramData\Microsoft SkyDrive [22/07/2007|18:36] C:\ProgramData\ModŠles [13/01/2008|12:43] C:\ProgramData\Nero [09/03/2007|10:27] C:\ProgramData\NVIDIA [17/08/2009|00:21] C:\ProgramData\PlayFirst [08/03/2010|15:15] C:\ProgramData\Spybot - Search & Destroy [02/11/2006|15:02] C:\ProgramData\Start Menu [15/03/2012|09:49] C:\ProgramData\Sun [17/03/2012|12:48] C:\ProgramData\Symantec [02/11/2006|15:02] C:\ProgramData\Templates [08/03/2007|12:20] C:\ProgramData\Toshiba [22/07/2007|18:40] C:\ProgramData\ToshibaEurope [12/02/2009|20:22] C:\ProgramData\UDL [15/11/2011|18:22] C:\ProgramData\Ulead Systems [08/03/2007|12:15] C:\ProgramData\Vista64 [13/07/2010|16:47] C:\ProgramData\Vso [25/01/2011|16:08] C:\ProgramData\WinZip [23/06/2008|11:17] C:\ProgramData\WLInstaller [08/03/2007|12:15] C:\ProgramData\XP --------------------\\ Listing des dossiers dans C:\Program Files [12/02/2009|20:20] C:\Program Files\ABBYY FineReader 6.0 Sprint [09/05/2012|16:18] C:\Program Files\Adobe [18/06/2012|20:40] C:\Program Files\Ad-Remover [15/11/2011|19:15] C:\Program Files\Allocine [05/04/2010|10:25] C:\Program Files\Alwil Software [05/04/2012|19:41] C:\Program Files\Apple Software Update [15/11/2011|07:28] C:\Program Files\Ares [15/03/2012|09:30] C:\Program Files\Avira [15/11/2011|19:09] C:\Program Files\AVS4YOU [08/06/2012|09:25] C:\Program Files\Blender Foundation [05/04/2012|19:35] C:\Program Files\Bonjour [11/10/2009|15:49] C:\Program Files\BoontyGames [23/03/2008|09:57] C:\Program Files\Camera Assistant Software for Toshiba [03/03/2010|16:02] C:\Program Files\CCleaner [17/03/2012|12:47] C:\Program Files\Common Files [22/07/2007|19:24] C:\Program Files\Controle Parental [13/01/2008|12:38] C:\Program Files\Creative [11/10/2009|15:48] C:\Program Files\DinerDash2_at [16/11/2011|08:51] C:\Program Files\DivX [14/03/2010|22:24] C:\Program Files\EA GAMES [15/11/2011|07:35] C:\Program Files\Electronic Arts [15/11/2011|19:12] C:\Program Files\epson [12/01/2009|20:29] C:\Program Files\Etresoft Decoder 4.0 [05/03/2010|19:22] C:\Program Files\FB_Tools [22/07/2007|18:36] C:\Program Files\Fichiers communs [C:\Program Files\Common Files] [05/08/2007|23:34] C:\Program Files\FileZilla [20/11/2011|12:23] C:\Program Files\Glary Utilities [08/06/2012|09:55] C:\Program Files\Google [08/03/2007|12:50] C:\Program Files\IDM [15/11/2011|18:19] C:\Program Files\InstallShield Installation Information [22/07/2007|21:30] C:\Program Files\InterActual [01/04/2010|07:45] C:\Program Files\Internet Explorer [15/11/2011|18:22] C:\Program Files\InterVideo [05/04/2012|22:41] C:\Program Files\iPod [05/04/2012|22:44] C:\Program Files\iTunes [15/03/2012|09:47] C:\Program Files\Java [05/08/2007|23:50] C:\Program Files\Lauyan [03/03/2010|16:14] C:\Program Files\Lavasoft [24/12/2009|19:11] C:\Program Files\LG Electronics [24/12/2009|19:13] C:\Program Files\LGInternetKit [15/11/2011|18:15] C:\Program Files\LimeWire [08/03/2007|12:00] C:\Program Files\ltmoh [29/05/2011|15:10] C:\Program Files\Malwarebytes' Anti-Malware [16/11/2007|23:01] C:\Program Files\Maxis [15/11/2011|19:06] C:\Program Files\Microsoft [25/06/2008|03:01] C:\Program Files\Microsoft CAPICOM 2.1.0.2 [02/11/2006|14:37] C:\Program Files\Microsoft Games [15/05/2012|07:33] C:\Program Files\Microsoft Silverlight [19/12/2008|21:08] C:\Program Files\Microsoft SQL Server Compact Edition [19/12/2008|21:14] C:\Program Files\Microsoft Sync Framework [08/03/2010|15:55] C:\Program Files\Microsoft WSE [11/03/2010|08:36] C:\Program Files\Movie Maker [02/11/2006|14:37] C:\Program Files\MSBuild [02/11/2006|14:37] C:\Program Files\MSN [23/03/2010|15:20] C:\Program Files\MSN Messenger [25/07/2007|14:33] C:\Program Files\MSXML 4.0 [08/03/2007|12:10] C:\Program Files\My Company Name [04/01/2008|15:53] C:\Program Files\Nero [27/05/2011|15:00] C:\Program Files\Norton Security Scan [01/05/2008|17:03] C:\Program Files\Notepad++ [15/03/2012|09:50] C:\Program Files\OpenOffice.org 3 [26/07/2007|15:25] C:\Program Files\OrangeHSS [13/05/2008|19:38] C:\Program Files\PAN vision [08/06/2012|07:59] C:\Program Files\Picasa2 [14/11/2011|22:09] C:\Program Files\QuickMediaConverter [15/02/2009|14:29] C:\Program Files\QuickTime [08/03/2007|11:57] C:\Program Files\Realtek [02/11/2006|14:37] C:\Program Files\Reference Assemblies [22/03/2008|12:05] C:\Program Files\SAGEM [25/12/2008|14:51] C:\Program Files\Samsung [06/08/2008|19:12] C:\Program Files\Singles [29/05/2011|14:33] C:\Program Files\Spybot - Search & Destroy [22/07/2007|18:34] C:\Program Files\Synaptics [15/11/2011|19:17] C:\Program Files\TF1Vision [25/07/2007|22:06] C:\Program Files\TOSHIBA [18/06/2012|11:44] C:\Program Files\Trend Micro [02/11/2006|15:01] C:\Program Files\Uninstall Information [28/06/2008|14:23] C:\Program Files\Valve [16/11/2007|08:48] C:\Program Files\Windows Calendar [02/11/2006|14:42] C:\Program Files\Windows Collaboration [25/07/2007|14:41] C:\Program Files\Windows Defender [02/11/2006|14:42] C:\Program Files\Windows Journal [15/11/2011|18:13] C:\Program Files\Windows Live [19/12/2008|21:03] C:\Program Files\Windows Live SkyDrive [16/04/2010|13:38] C:\Program Files\Windows Mail [08/03/2007|12:32] C:\Program Files\Windows Media Components [28/10/2009|10:13] C:\Program Files\Windows Media Player [22/07/2007|18:36] C:\Program Files\Windows NT [02/11/2006|14:42] C:\Program Files\Windows Photo Gallery [09/01/2008|16:52] C:\Program Files\Windows Sidebar [14/11/2011|22:03] C:\Program Files\WinRAR [25/01/2011|16:04] C:\Program Files\WinZip [15/11/2011|19:17] C:\Program Files\Yahoo! [18/06/2012|20:28] C:\Program Files\ZHPDiag --------------------\\ Listing des dossiers dans C:\Program Files\Common Files [09/05/2012|16:18] C:\Program Files\Common Files\Adobe [05/04/2012|22:41] C:\Program Files\Common Files\Apple [15/11/2011|07:32] C:\Program Files\Common Files\AVSMedia [22/07/2007|20:57] C:\Program Files\Common Files\France Telecom [08/03/2007|12:33] C:\Program Files\Common Files\InstallShield [15/03/2012|09:49] C:\Program Files\Common Files\Java [08/03/2010|15:55] C:\Program Files\Common Files\microsoft shared [13/01/2008|12:43] C:\Program Files\Common Files\Nero [08/12/2007|22:36] C:\Program Files\Common Files\PX Storage Engine [02/11/2006|13:18] C:\Program Files\Common Files\Services [02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines [20/07/2008|12:40] C:\Program Files\Common Files\Steam [17/03/2012|12:59] C:\Program Files\Common Files\Symantec Shared [25/07/2007|14:41] C:\Program Files\Common Files\System [15/11/2011|18:26] C:\Program Files\Common Files\Ulead Systems [24/02/2008|14:10] C:\Program Files\Common Files\Vbox [19/12/2008|20:54] C:\Program Files\Common Files\Windows Live [23/06/2008|11:19] C:\Program Files\Common Files\WindowsLiveInstaller --------------------\\ Process ( 77 Processes ) ... OK ! --------------------\\ Recherche avec S_Lop C:\ProgramData\EQSIXTHSIXTH.0qu6f C:\ProgramData\deaf book inside.el531r --------------------\\ Recherche de Fichiers / Dossiers Lop Aucun fichier / dossier Lop trouvé ! --------------------\\ Verification du Registre [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] ..... OK ! --------------------\\ Verification du fichier Hosts Fichier Hosts PROPRE --------------------\\ Recherche de fichiers avec Catchme catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, [url=http://www.gmer.net]GMER - Rootkit Detector and Remover[/url] Rootkit scan 2012-06-19 08:54:22 Windows 6.0.6000 NTFS scanning hidden processes ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden files: 678 --------------------\\ Recherche d'autres infections Aucune autre infection trouvée ! [F:8][D:3]-> C:\Users\CHARLO~1\AppData\Local\Temp [F:3380][D:1]-> C:\Users\CHARLO~1\AppData\Roaming\MICROS~1\Windows\Cookies [F:6][D:4]-> C:\Users\CHARLO~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5 [F:113][D:7]-> C:\$Recycle.Bin 1 - "C:\Lop SD\LopR_1.txt" - 19/06/2012| 8:58 - Option : [1] --------------------\\ Fin du rapport a 8:58:18 Merci de ton aide -
Analyse rapport HijackThis
olly a répondu à un(e) sujet de olly dans Analyses et éradication malwares
voilà le lien : Lien CJoint.com BFstQ2C4p2L Merci -
Analyse rapport HijackThis
olly a répondu à un(e) sujet de olly dans Analyses et éradication malwares
le pc redemarre mais le rapport n'est pas sur le bureau, l'horloge est bien réglée. -
Analyse rapport HijackThis
olly a répondu à un(e) sujet de olly dans Analyses et éradication malwares
le pc redemarre mais le rapport n'est pas sur le bureau, l'horloge est bien réglée. -
Bonjour, je ne sais pas, ce n'est pas moi qui l'ai fait, mais le résultat c'est que je n'ai plus d'identification internet...merci de ton aide
-
Analyse rapport HijackThis
olly a répondu à un(e) sujet de olly dans Analyses et éradication malwares
j'ai fait le scan 2 fois mais je n'arrive pas à retrouver le rapport, sais tu comment faire? -
Analyse rapport HijackThis
olly a répondu à un(e) sujet de olly dans Analyses et éradication malwares
Je l'ai mis sur un disque dur externe et installé sur le pc infecté, mais l'install echoue, je réésaye,ca a l'air de vouloir fonctionner, je te poste le rapport -
Analyse rapport HijackThis
olly a répondu à un(e) sujet de olly dans Analyses et éradication malwares
Je ne peux pas installer le programme. Quant à ta question concernant l'analyse, ce n'est pas moi qui l'ai réalisée, je ne sais donc pas quels logiciels la personne a utiliser Désolé