

TiB
Membres-
Compteur de contenus
4 -
Inscription
-
Dernière visite
Type de contenu
Profils
Forums
Blogs
Tout ce qui a été posté par TiB
-
[RESOLU] Infecté par MagicControl.Agent
TiB a répondu à un(e) sujet de TiB dans Analyses et éradication malwares
Je préfère te remettre un log HijackThis pour vérification comme le précédent n'était pas complet : Logfile of HijackThis v1.99.1 Scan saved at 19:40:40, on 30/07/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\a-squared Anti-Malware\a2guard.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\drivers\CDAC11BA.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\wdfmgr.exe C:\WINDOWS\system32\UAService7.exe C:\Program Files\Windows Media Connect 2\wmccds.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\System32\alg.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://dhoglzqhjlguh.info/RWeoAKsPlLJY_yqU..._jPK5jbaA36.jsp R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll (file missing) O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: Big Fish Games Toolbar - {4E7BD74F-2B8D-469E-86BD-FD60BB9AAE3A} - C:\PROGRA~1\BFGTOO~1\BFGTOO~1.DLL (file missing) O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll (file missing) O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe" O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [a-squared] "C:\Program Files\a-squared Anti-Malware\a2guard.exe" O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [Gadwin PrintScreen 2.6] C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://E:\MICROS~1\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\MICROS~1\OFFICE11\REFIEBAR.DLL O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/d...can_unicode.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://signup.msn.com/pages/MsnInstC.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/msnmesse...pdownloader.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://arcade.icq.com/online2/bejeweled2/popcaploader_v6.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing) O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Unknown owner - C:\WINDOWS\system32\UAService7.exe O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe Sinon je pense que c'est bon, plus de problèmes de shockwave flash sur mozilla, j'ai remarqué qu'un petit bug sur Windows Live Messenger ne se produit plus, aucune popup ne s'affiche. Donc tout va bien Merci beaucoup pour ton aide. Je parlerais en bien de votre forum au gens que je connais car j'ai trouvé les explications très claires, donc très faciles à comprendre, et au final il y a des résultats concluants. Sinon pourrais-tu me conseiller pour améliorer la protection de mon pc que se soit pour un antivirus ou toutes sortes de logiciels contre les spywares. Merci encore -
[RESOLU] Infecté par MagicControl.Agent
TiB a répondu à un(e) sujet de TiB dans Analyses et éradication malwares
Voilà j'ai enfin fini toutes les manipulations. Rapport scan Kaspersky : ------------------------------------------------------------------------------- KASPERSKY ONLINE SCANNER REPORT Sunday, July 30, 2006 7:03:49 PM Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600) Kaspersky Online Scanner version: 5.0.83.0 Kaspersky Anti-Virus database last update: 30/07/2006 Kaspersky Anti-Virus database records: 198286 ------------------------------------------------------------------------------- Scan Settings: Scan using the following antivirus database: standard Scan Archives: true Scan Mail Bases: true Scan Target - My Computer: A:\ C:\ D:\ E:\ F:\ G:\ Scan Statistics: Total number of scanned objects: 161939 Number of viruses found: 0 Number of infected objects: 0 / 0 Number of suspicious objects: 0 Duration of the scan process: 02:07:21 Infected Object Name / Virus Name / Last Action C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\DSS\MachineKeys\9a9d2235f85fa1ba308cea044143ee4d_e827dc91-c5b1-40b6-941f-8743d5b860dc Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\user.dmp Object is locked skipped C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\Pc\Cookies\index.dat Object is locked skipped C:\Documents and Settings\Pc\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\Pc\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\Pc\Local Settings\Historique\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\Pc\Local Settings\Historique\History.IE5\MSHist012006073020060731\index.dat Object is locked skipped C:\Documents and Settings\Pc\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\Pc\ntuser.dat Object is locked skipped C:\Documents and Settings\Pc\ntuser.dat.LOG Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\integ\avast.int Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped C:\System Volume Information\_restore{5DE00B82-38A6-42E9-83F5-C6108EEAD94F}\RP665\change.log Object is locked skipped C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped C:\WINDOWS\Internet Logs\fwpktlog.txt Object is locked skipped C:\WINDOWS\SchedLgU.Txt Object is locked skipped C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped C:\WINDOWS\Sti_Trace.log Object is locked skipped C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\default Object is locked skipped C:\WINDOWS\system32\config\default.LOG Object is locked skipped C:\WINDOWS\system32\config\SAM Object is locked skipped C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\SECURITY Object is locked skipped C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped C:\WINDOWS\system32\config\software Object is locked skipped C:\WINDOWS\system32\config\software.LOG Object is locked skipped C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\system Object is locked skipped C:\WINDOWS\system32\config\system.LOG Object is locked skipped C:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped C:\WINDOWS\system32\drivers\sptd5213.sys Object is locked skipped C:\WINDOWS\system32\h323log.txt Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped C:\WINDOWS\Temp\Perflib_Perfdata_274.dat Object is locked skipped C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped C:\WINDOWS\wiadebug.log Object is locked skipped C:\WINDOWS\wiaservc.log Object is locked skipped C:\WINDOWS\WindowsUpdate.log Object is locked skipped D:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped D:\System Volume Information\_restore{5DE00B82-38A6-42E9-83F5-C6108EEAD94F}\RP665\change.log Object is locked skipped E:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped E:\System Volume Information\_restore{5DE00B82-38A6-42E9-83F5-C6108EEAD94F}\RP665\change.log Object is locked skipped Scan process completed. Rapport scan ewido : --------------------------------------------------------- ewido anti-spyware - Scan Report --------------------------------------------------------- + Created at: 16:50:12 30/07/2006 + Scan result: :mozilla.258:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned. :mozilla.259:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned. :mozilla.260:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned. :mozilla.263:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.247realmedia : Cleaned. :mozilla.264:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.247realmedia : Cleaned. :mozilla.342:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.343:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.433:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.434:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.435:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.436:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.437:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.438:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.439:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.63:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.65:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.66:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.79:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. C:\Documents and Settings\Gérard et Dominique\Cookies\gérard et dominique@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned. C:\Documents and Settings\Pc\Cookies\pc@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned. :mozilla.163:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Adtech : Cleaned. :mozilla.164:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Adtech : Cleaned. :mozilla.170:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Adtech : Cleaned. :mozilla.171:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Adtech : Cleaned. :mozilla.44:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Adtech : Cleaned. :mozilla.45:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Adtech : Cleaned. :mozilla.30:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.31:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.32:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.33:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.49:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.50:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.72:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.73:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.74:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.75:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.232:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Atdmt : Cleaned. :mozilla.64:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned. C:\Documents and Settings\Pc\Cookies\pc@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned. :mozilla.100:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned. :mozilla.22:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned. :mozilla.34:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned. :mozilla.60:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Bluestreak : Cleaned. :mozilla.64:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned. C:\Documents and Settings\Pc\Cookies\pc@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned. :mozilla.150:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.154:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.156:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.157:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.158:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.313:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.314:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.315:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.316:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.73:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.74:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.75:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.76:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.77:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.494:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Casinotropez : Cleaned. :mozilla.163:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.164:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.165:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.403:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.404:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.405:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.10:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned. :mozilla.61:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Doubleclick : Cleaned. :mozilla.64:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned. :mozilla.7:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned. :mozilla.19:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Estat : Cleaned. :mozilla.47:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.Estat : Cleaned. :mozilla.6:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Telefun\SkyMessager\Profiles\myry4crb.default\cookies.txt -> TrackingCookie.Estat : Cleaned. :mozilla.7:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Estat : Cleaned. C:\Documents and Settings\Gérard et Dominique\Cookies\gérard et dominique@adopt.euroclick[1].txt -> TrackingCookie.Euroclick : Cleaned. :mozilla.106:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.107:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.108:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.127:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.128:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.129:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.130:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.143:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.145:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.146:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.147:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.246:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.247:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.248:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.249:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.250:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.38:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.39:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.401:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.402:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.403:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.404:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.405:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.406:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.42:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.48:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.49:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.50:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.51:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.52:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.534:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.535:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.536:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.537:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.538:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.100:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.151:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.152:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.153:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.155:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.66:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.67:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.68:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.69:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.70:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.71:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.95:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.96:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.97:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.98:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.99:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.508:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.50:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.510:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.51:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.169:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Mediaplex : Cleaned. :mozilla.234:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned. :mozilla.46:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned. :mozilla.48:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned. C:\Documents and Settings\Gérard et Dominique\Cookies\gérard et dominique@banner.newyorkcasino[1].txt -> TrackingCookie.Newyorkcasino : Cleaned. :mozilla.213:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Onestat : Cleaned. :mozilla.214:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Onestat : Cleaned. :mozilla.12:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Overture : Cleaned. :mozilla.14:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Overture : Cleaned. :mozilla.100:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.211:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.212:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.213:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.214:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.215:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.216:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.217:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.218:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.96:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.97:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.98:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.99:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned. C:\Documents and Settings\Gérard et Dominique\Cookies\gérard et dominique@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned. C:\Documents and Settings\Pc\Cookies\pc@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : Cleaned. :mozilla.481:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Revenue : Cleaned. :mozilla.175:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.176:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.177:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.178:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.180:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.357:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.358:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.359:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.360:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned. :mozilla.91:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Sexcounter : Cleaned. :mozilla.92:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Sexcounter : Cleaned. :mozilla.68:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned. :mozilla.179:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.180:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.181:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.32:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.33:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.34:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.84:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.84:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.85:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.85:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.86:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.86:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.87:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Smartadserver : Cleaned. :mozilla.292:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Statcounter : Cleaned. :mozilla.293:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Statcounter : Cleaned. :mozilla.294:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Statcounter : Cleaned. C:\Documents and Settings\Pc\Cookies\pc@tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned. :mozilla.245:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.246:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.247:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.248:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.249:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.39:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.61:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.62:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.63:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned. :mozilla.378:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned. :mozilla.502:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Tribalfusion : Cleaned. :mozilla.287:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Valueclick : Cleaned. :mozilla.288:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Valueclick : Cleaned. :mozilla.152:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.153:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.154:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.36:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.37:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.38:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.43:C:\Documents and Settings\Gérard et Dominique\Application Data\Mozilla\Firefox\Profiles\a6zr1c1h.default\cookies.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.65:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.66:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.67:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies.txt -> TrackingCookie.Weborama : Cleaned. :mozilla.418:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Webtrendslive : Cleaned. :mozilla.223:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Yieldmanager : Cleaned. :mozilla.224:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Yieldmanager : Cleaned. :mozilla.57:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned. :mozilla.58:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned. :mozilla.59:C:\Documents and Settings\Pc\Application Data\Mozilla\Firefox\Profiles\ktr0p85o.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned. C:\Documents and Settings\Gérard et Dominique\Cookies\gérard et dominique@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned. C:\Documents and Settings\Pc\Cookies\pc@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned. :mozilla.503:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Zedo : Cleaned. :mozilla.504:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Zedo : Cleaned. :mozilla.505:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Zedo : Cleaned. :mozilla.506:C:\Documents and Settings\Nadège.CHARRY-BRATE3AB.000\Application Data\Mozilla\Firefox\Profiles\o1mtajm9.default\cookies-1.txt -> TrackingCookie.Zedo : Cleaned. C:\Documents and Settings\Gérard et Dominique\Local Settings\Temp\NI.UWA6PV_0001_N76M1904\setup.exe -> Trojan.Fakealert : Cleaned with backup (quarantined). ::Report end Rapport Clean : Script clean par Malekal_morte - http://www.malekal.com *** SUPPRESSION DES FICHIERS *** Suppressions de trojans/vers sur... C:\WINDOWS\unvise32qt.exe FOUND *** Suppressions des adware connus... Rapport scan BlackLight : 07/30/06 19:06:36 [info]: BlackLight Engine 1.0.42 initialized 07/30/06 19:06:36 [info]: OS: 5.1 build 2600 (Service Pack 2) 07/30/06 19:06:37 [Note]: 7019 4 07/30/06 19:06:37 [Note]: 7005 0 07/30/06 19:06:40 [Note]: 7006 0 07/30/06 19:06:40 [Note]: 7011 2008 07/30/06 19:06:41 [Note]: 7026 0 07/30/06 19:06:41 [Note]: 7026 0 07/30/06 19:07:25 [Note]: FSRAW library version 1.7.1019 07/30/06 19:11:28 [Note]: 7007 0 Log HijackThis : Logfile of HijackThis v1.99.1 Scan saved at 19:16:38, on 30/07/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\drivers\CDAC11BA.EXE C:\Program Files\ewido anti-spyware 4.0\guard.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\wdfmgr.exe C:\WINDOWS\system32\UAService7.exe C:\Program Files\Windows Media Connect 2\wmccds.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\System32\alg.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://dhoglzqhjlguh.info/RWeoAKsPlLJY_yqU..._jPK5jbaA36.jsp R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll (file missing) O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: Big Fish Games Toolbar - {4E7BD74F-2B8D-469E-86BD-FD60BB9AAE3A} - C:\PROGRA~1\BFGTOO~1\BFGTOO~1.DLL (file missing) O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll (file missing) O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe" O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [xwhzclv] c:\windows\system32\xwhzclv.exe xwhzclv O4 - HKLM\..\Run: [a-squared] "C:\Program Files\a-squared Anti-Malware\a2guard.exe" O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [Gadwin PrintScreen 2.6] C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe /nosplash O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O8 - Extra context menu item: E&xport to Microsoft Excel - res://E:\MICROS~1\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - E:\MICROS~1\OFFICE11\REFIEBAR.DLL O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/d...can_unicode.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://signup.msn.com/pages/MsnInstC.cab O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - -
[RESOLU] Infecté par MagicControl.Agent
TiB a répondu à un(e) sujet de TiB dans Analyses et éradication malwares
Voilà le rapport de F-Secure Blacklight : 07/30/06 15:18:43 [info]: BlackLight Engine 1.0.42 initialized 07/30/06 15:18:43 [info]: OS: 5.1 build 2600 (Service Pack 2) 07/30/06 15:18:43 [Note]: 7019 4 07/30/06 15:18:43 [Note]: 7005 0 07/30/06 15:19:42 [Note]: 7006 0 07/30/06 15:19:42 [Note]: 7011 3284 07/30/06 15:19:42 [Note]: 7026 0 07/30/06 15:19:42 [Note]: 7026 0 07/30/06 15:19:42 [Note]: 7024 3 07/30/06 15:19:42 [info]: Hidden process: C:\windows\system32\xwhzclv.exe 07/30/06 15:19:42 [Note]: FSRAW library version 1.7.1019 07/30/06 15:24:48 [info]: Hidden file: c:\WINDOWS\Prefetch\XWHZCLV.EXE-095BA836.pf 07/30/06 15:24:48 [Note]: 10002 1 07/30/06 15:25:15 [info]: Hidden file: c:\WINDOWS\system32\xwhzclv.dat 07/30/06 15:25:15 [Note]: 10002 1 07/30/06 15:25:15 [info]: Hidden file: C:\windows\system32\xwhzclv.exe 07/30/06 15:25:15 [Note]: 10002 1 07/30/06 15:25:16 [info]: Hidden file: c:\WINDOWS\system32\xwhzclv_nav.dat 07/30/06 15:25:16 [Note]: 10002 1 07/30/06 15:25:16 [info]: Hidden file: c:\WINDOWS\system32\xwhzclv_navps.dat 07/30/06 15:25:16 [Note]: 10002 1 07/30/06 15:28:50 [Note]: 7007 0 -
Bonjour, Suite aux problèmes rencontrés dans Mozilla Firefox avec le plugin Shockwave flash j'ai visité de nombreux forums pour trouver une solution. J'ai découvert que de nombreuses personnes avaient le même problème que moi et qu'il provenait surement d'un logiciel téléchargé : Internet GameBox, infectant le système avec le logiciel espion MagicControl.Agent. Je vous donne donc mon log de HijackThis que j'ai effectué en suivant toutes les instructions du forum : Logfile of HijackThis v1.99.1 Scan saved at 14:27:16, on 30/07/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\drivers\CDAC11BA.EXE C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\wdfmgr.exe C:\WINDOWS\system32\UAService7.exe C:\Program Files\Windows Media Connect 2\wmccds.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\System32\alg.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://dhoglzqhjlguh.info/RWeoAKsPlLJY_yqU..._jPK5jbaA36.jsp R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: (no name) - - (no file) O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll (file missing) O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {278B89BF-17EB-6DDD-109E-420A8D9D00DB} - C:\DOCUME~1\NADGEC~1.000\APPLIC~1\SOAPER~1\Great upload.exe (file missing) O2 - BHO: Big Fish Games Toolbar - {4E7BD74F-2B8D-469E-86BD-FD60BB9AAE3A} - C:\PROGRA~1\BFGTOO~1\BFGTOO~1.DLL (file missing) O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll (file missing) O3 - Toolbar: Big Fish Games Toolbar - {4E7BD74F-2B8D-469E-86BD-FD60BB9AAE3A} - C:\PROGRA~1\BFGTOO~1\BFGTOO~1.DLL (file missing) O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe" O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe O4 - HKLM\..\Run: [a-squared] "C