Aller au contenu

reole

Membres
  • Compteur de contenus

    148
  • Inscription

  • Dernière visite

Tout ce qui a été posté par reole

  1. merci malekal morte je vais prendre le soin de lire tout cela tranquillement j irai voir sur differentes page du net si j ai toujours des pub et je te tiens au courant merci encore une fois merci pour la passience et gentillesse mais pour l instant il est l heure d aller au dodo demain 5 heure bonsoir
  2. merci encore lean Navipromo version 1.0.7 commencé le 20/03/2007 à 20:33:16,25 Fix lancé depuis C:\Documents and Settings\jean\Bureau\navilog1 Mise a jour le 12.03.2007 a 18h00 by IL-MAFIOSO Executé en mode sans echec Mode suppression par méthode manuelle Nom du fichier saisi : rloakhzv *** Recherche, Creation backups et suppression *** C:\WINDOWS\system32\rloakhzv_navup.dat absent ! C:\WINDOWS\system32\rloakhzv_navtmp.dat absent ! C:\WINDOWS\system32\rloakhzv_m2s.xml absent ! C:\WINDOWS\system32\rloakhzv.exe trouvé ! Copie C:\WINDOWS\system32\rloakhzv.exe réalisé avec succès ! C:\WINDOWS\system32\rloakhzv.exe supprimé ! C:\WINDOWS\system32\rloakhzv.dat trouvé ! Copie C:\WINDOWS\system32\rloakhzv.dat réalisé avec succès ! C:\WINDOWS\system32\rloakhzv.dat supprimé ! C:\WINDOWS\system32\rloakhzv_nav.dat trouvé ! Copie C:\WINDOWS\system32\rloakhzv_nav.dat réalisé avec succès ! C:\WINDOWS\system32\rloakhzv_nav.dat supprimé ! C:\WINDOWS\system32\rloakhzv_navps.dat trouvé ! Copie C:\WINDOWS\system32\rloakhzv_navps.dat réalisé avec succès ! C:\WINDOWS\system32\rloakhzv_navps.dat supprimé ! C:\WINDOWS\prefetch\rloakhzv*.pf trouvé ! Copie C:\WINDOWS\prefetch\rloakhzv*.pf réalisé avec succès ! C:\WINDOWS\prefetch\rloakhzv*.pf supprimé ! *** Suppression dossiers dans C:\WINDOWS *** *** Suppression dossiers dans C:\Program Files *** *** Suppression dossiers dans C:\Documents and Settings\All Users\Application Data *** *** Suppression dossiers dans C:\Documents and Settings\jean\Application Data *** *** Suppression fichiers *** C:\WINDOWS\pack.epk supprimé ! C:\WINDOWS\system32\nvs2.inf supprimé ! *** Suppression fichiers temporaires *** Nettoyage contenu C:\WINDOWS\Temp effectué ! Nettoyage contenu C:\Documents and Settings\jean\Local Settings\Temp effectué ! *** Sauvegarde du registre vers dossier Backupnavi*** sauvegarde du registre réalisée avec succès ! *** Nettoyage registre *** Nettoyage registre Ok *** Traitement Recherche complémentaire *** 1)Recherche fichiers connus: 2)Recherche et Suppression Heuristique : * C:\WINDOWS\System32\sptjqkwu.dat trouvé ! Copie C:\WINDOWS\system32\sptjqkwu.dat réalisé avec succès ! C:\WINDOWS\system32\sptjqkwu.dat supprimé ! ** *** **** C:\WINDOWS\System32\sptjqkwu_navps.dat trouvé ! Copie C:\WINDOWS\system32\sptjqkwu_navps.dat réalisé avec succès ! C:\WINDOWS\system32\sptjqkwu_navps.dat supprimé ! ***** C:\WINDOWS\System32\sptjqkwu_nav.dat trouvé ! Copie C:\WINDOWS\system32\sptjqkwu_nav.dat réalisé avec succès ! C:\WINDOWS\system32\sptjqkwu_nav.dat supprimé ! ****** ******* ******** C:\WINDOWS\System32\sptjqkwu.exe trouvé ! Copie C:\WINDOWS\system32\sptjqkwu.exe réalisé avec succès ! C:\WINDOWS\system32\sptjqkwu.exe supprimé ! *** Nettoyage termine le 20/03/2007 à 20:34:57,93 ***
  3. earch Navipromo version 1.0.7 commencé le 20/03/2007 à 18:56:59,90 merci de prendre un peu de temp !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!! !!! Poster ce rapport sur le forum pour le faire analyser !!! !!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!! Fix lancé depuis C:\Documents and Settings\jean\Bureau\navilog1 Mise a jour le 12.03.2007 a 18h00 by IL-MAFIOSO Executé en mode normal *** Recherche Programmes installes *** *** Recherche dossiers dans C:\WINDOWS *** *** Recherche dossiers dans C:\Program Files *** *** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data *** *** Recherche dossiers dans C:\Documents and Settings\jean\Application Data *** *** Recherche avec BlackLight Engine/F-secure *** BlackLight Engine est un produit de F-secure, pour + d'infos : http://www.f-secure.com/blacklight/blacklight_help.html Fichier(s) caché(s) dans C:\WINDOWS\system32 : c:\WINDOWS\system32\rloakhzv.dat C:\windows\system32\rloakhzv.exe c:\WINDOWS\system32\rloakhzv_nav.dat c:\WINDOWS\system32\rloakhzv_navps.dat Processus caché(s) dans C:\WINDOWS\system32 : C:\windows\system32\rloakhzv.exe *** Recherche fichiers *** C:\WINDOWS\pack.epk trouvé ! C:\WINDOWS\system32\nvs2.inf trouvé ! *** Recherche cles registre *** Recharche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs] Recharche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage] Recherche Clé Magic Control HKEY_CURRENT_USER\Software\Lanconfig trouvé ! *** Module de recherche complémentaire *** (recherche fichiers spécifiques) 1)Recherche fichiers connus: 2)Recherche Heuristique : * C:\WINDOWS\system32\rloakhzv.dat trouvé ! C:\WINDOWS\system32\sptjqkwu.dat trouvé ! ** C:\WINDOWS\system32\rloakhzv.dat trouvé ! C:\WINDOWS\system32\sptjqkwu.dat trouvé ! *** **** C:\WINDOWS\system32\rloakhzv_navps.dat trouvé ! C:\WINDOWS\system32\sptjqkwu_navps.dat trouvé ! ***** ****** ******* ******** C:\WINDOWS\system32\rloakhzv.exe trouvé ! C:\WINDOWS\system32\sptjqkwu.exe trouvé ! *** Analyse Terminé le 20/03/2007 à 19:04:13,35 ***
  4. bonjour a tous je voudrais savoir avant de continuer la desinfection,on me demande d entrer le fichier sans son extension C:\WINDOWS\system32\rloakhzv.dat trouvé donc pour l exemple si dessus je ne marque pasC:\WINDOWS\system32\ l extension c est bien ca ;merci pour la reponse!
  5. bonjour je suis envoyer par monsieur thorgal j ai un petit probleme avec des fenetres publicitaire qui s ouvrent tout le temps et sur n importe quel cite. j ai lu quelque part que cela pouvait venir d un logiciel espion ? comment puis je le trouver.Mon bloquer de fenetre est regler au plus haut et rien ni fait merci d avance pour celui qui prendra la peine de me repondre pas trop de language informatique debutant Bonsoir reole, Premièrement, télécharge hijackthis que tu installeras. Ceci fait, tu le lances et tu cliques sur "faire un scan et sauvegarder le log". Ceci va scanner ton pc et créer un fichier texte sur ton bureau où y sera inscrit le résultat du scan. Il te suffira d'ouvrir un topic dans le forum sécurité et de copier/coller le résultat du scan dedans. A partir de là, un des nombreux et performants membres sécurité te prendra en charge en t'expliquant toutes les procédures à suivre de a à z. Cordialement.. alors voila et merci de jetter un oeil Logfile of HijackThis v1.99.1 Scan saved at 20:56:10, on 19/03/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16414) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\acer\Acer eConsole\MediaServerService.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\FSGK32.EXE C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE C:\Program Files\Securitoo\Av_Fw\Common\FSMB32.EXE C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fssm32.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Securitoo\Av_Fw\Common\FCH32.EXE C:\WINDOWS\system32\svchost.exe C:\Program Files\Securitoo\Av_Fw\Common\FAMEH32.EXE C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsav32.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\LVCOMSX.EXE C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe C:\Program Files\Securitoo\Av_Fw\backweb\8520111\Program\fspex.exe C:\Program Files\Securitoo\Av_Fw\FSGUI\fsguiexe.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleil.exe C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe C:\PROGRA~1\Wanadoo\ComComp.exe C:\Program Files\Microsoft Office\Office\OSA.EXE C:\PROGRA~1\Wanadoo\Toaster.exe C:\Program Files\Microsoft Office\Office\FINDFAST.EXE C:\PROGRA~1\Wanadoo\Inactivity.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\PROGRA~1\Wanadoo\PollingModule.exe C:\Program Files\OpenOffice.org 2.1\program\soffice.exe C:\Program Files\OpenOffice.org 2.1\program\soffice.BIN C:\PROGRA~1\Wanadoo\Watch.exe C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB2.05.0000.1105\fr-fr\msntb.dll (file missing) O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB2.05.0000.1105\fr-fr\msntb.dll (file missing) O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\Av_Fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Securitoo\Av_Fw\FSGUI\FSSW.EXE" /reboot O4 - HKLM\..\Run: [News Service] "C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe O4 - HKLM\..\Run: [sptjqkwu] c:\windows\system32\sptjqkwu.exe sptjqkwu O4 - HKCU\..\Run: [WOOKIT] C:\Program Files\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM= O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Startup: Démarrage d'Office.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE O4 - Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE O4 - Startup: OpenOffice.org 2.1.lnk = C:\Program Files\OpenOffice.org 2.1\program\quickstart.exe O4 - Global Startup: BlueSoleil.lnk = ? O4 - Global Startup: E-Compagnon.lnk = C:\Program Files\ColiPoste\e-COMO\e-COMO.exe O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB2.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB2.05.0000.1105\fr-fr\msntabres.dll/229?fd7c73fbba90460d93ea7dddc888d83b O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB2.05.0000.1105\fr-fr\msntabres.dll/230?fd7c73fbba90460d93ea7dddc888d83b O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\WINDOWS\system32\shdocvw.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe O11 - Options group: [iNTERNATIONAL] International* O15 - ProtocolDefaults: '@ivt' protocol is in My Computer Zone, should be Intranet Zone O15 - ProtocolDefaults: 'file' protocol is in My Computer Zone, should be Internet Zone O15 - ProtocolDefaults: 'ftp' protocol is in My Computer Zone, should be Internet Zone O15 - ProtocolDefaults: 'http' protocol is in My Computer Zone, should be Internet Zone O15 - ProtocolDefaults: 'https' protocol is in My Computer Zone, should be Internet Zone O15 - ProtocolDefaults: '@ivt' protocol is in My Computer Zone, should be Intranet Zone (HKLM) O15 - ProtocolDefaults: 'file' protocol is in My Computer Zone, should be Internet Zone (HKLM) O15 - ProtocolDefaults: 'ftp' protocol is in My Computer Zone, should be Internet Zone (HKLM) O15 - ProtocolDefaults: 'http' protocol is in My Computer Zone, should be Internet Zone (HKLM) O15 - ProtocolDefaults: 'https' protocol is in My Computer Zone, should be Internet Zone (HKLM) O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://www.touslesdrivers.com/fichiers/har...on.cab?version= O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - http://support.f-secure.com/ols3/fscax.cab O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~2\msgrapp.dll" (file missing) O20 - AppInit_DLLs: pushow57.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PC Tools Spyware Doctor (SDhelper) - Unknown owner - C:\Program Files\Spyware Doctor\sdhelp.exe (file missing) O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
  6. reole

    publicite tout le temps

    merci thorgal pour cette reponse rapide
  7. bonsoir j ai un petit probleme avec des fenetres publicitaire qui s ouvrent tout le temps et sur n importe quel cite. j ai lu quelque part que cela pouvait venir d un logiciel espion ? comment puis je le trouver.Mon bloquer de fenetre est regler au plus haut et rien ni fait merci d avance pour celui qui prendra la peine de me repondre pas trop de language informatique debutant
  8. reole

    [Résolu] Erreur c cleaner

    merci ticlou alors je ferme et je laisse tout dedans sans reparer ,c est bien cela ?oui ou non me suffira merci
  9. bonjour a tous je viens de faire une recherche d erreur avec c cleaner et je me retrouve avec une page pleine. Pourrez t on me dire ce qu il faut faire,si c est grave ou si c est des broutilles merci a celui qui prendra le temps de repondre.
  10. reole

    [Résolu] [Système] Code session

    merci pear pour ton idee,mais non je n ai pas fait ca je crois que je vais arreter de chercher,jevais tout simplement supprimer les codes d acces
  11. reole

    [Résolu] [Système] Code session

    merci pour la reponse jangot feet mais je ne trouve pas de reponse a mon probleme j ai du deregler queque chose ou jeter un truc peut etre?????
  12. bonjour a vous tous on vas faire court,nous avons xp famillial partager en quatre sessions avec code pour entrer. le probleme c est que lorsqu un de nous quite sa session,l autre qui veut rentrer dans la sienne est obliger de redemarer pour pouvoir enregistrer son code,pas normal petit reglage je pense, mais lequel.je n ai plus de virus .erradication faite sur le forum merci
  13. je viens de controler pour les codes acces ,nickel comme au debut j entends ma tour souffler alors quelle ne fesais que craquer pour le resteje suis mort demain 4heure du mat merci encore de tout ce que tu as fait pour nous(famille)
  14. merci encore je controle tout ca demain et je te tiens au courant ogfile of HijackThis v1.99.1 Scan saved at 23:00:10, on 15/10/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Documents and Settings\jean\Bureau\hijackthis\HijackThis.exe C:\Program Files\Internet Explorer\iexplore.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\Av_Fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Securitoo\Av_Fw\FSGUI\FSSW.EXE" /reboot O4 - HKLM\..\Run: [News Service] "C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [WOOKIT] C:\Program Files\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM= O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - Startup: Démarrage d'Office.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE O4 - Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar3.dll/cmsearch.html O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar3.dll/cmwordtrans.html O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar3.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar3.dll/cmcache.html O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?fd7c73fbba90460d93ea7dddc888d83b O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?fd7c73fbba90460d93ea7dddc888d83b O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar3.dll/cmsimilar.html O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar3.dll/cmtrans.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll (file missing) O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://config.zebulon.fr/plugins/hardwaredetection.cab O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - http://support.f-secure.com/ols3/fscax.cab O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PC Tools Spyware Doctor (SDhelper) - Unknown owner - C:\Program Files\Spyware Doctor\sdhelp.exe (file missing) O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe bonne soiree, je marquerais resolus demain si c est clin
  15. comme j ai refait ewido je remet hijackthis+blaklight ------------------------------------------------------ AVG Anti-Spyware - Rapport d'analyse --------------------------------------------------------- + Créé à: 22:19:05 15/10/2006 + Résultat de l'analyse: HKLM\SOFTWARE\YourSiteBar -> Adware.ISTBar : Erreur lors du nettoyage. HKLM\SOFTWARE\YourSiteBar\Historyfiles -> Adware.ISTBar : Erreur lors du nettoyage. HKLM\SOFTWARE\YourSiteBar\Historymusic_keyword -> Adware.ISTBar : Erreur lors du nettoyage. HKLM\SOFTWARE\Classes\WUSN.1 -> Adware.SaveNow : Erreur lors du nettoyage. Fin du rapport ogfile of HijackThis v1.99.1 Scan saved at 22:26:21, on 15/10/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\acer\Acer eConsole\MediaServerService.exe C:\WINDOWS\system32\LVCOMSX.EXE C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE C:\PROGRA~1\Wanadoo\TaskBarIcon.exe C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe C:\Program Files\Microsoft Office\Office\OSA.EXE C:\Program Files\Microsoft Office\Office\FINDFAST.EXE C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe C:\Program Files\Securitoo\Av_Fw\backweb\8520111\Program\fspex.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\FSGK32.EXE C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE C:\Program Files\Securitoo\Av_Fw\Common\FSMB32.EXE C:\WINDOWS\system32\nvsvc32.exe C:\PROGRA~1\Wanadoo\ComComp.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fssm32.exe C:\Program Files\Securitoo\Av_Fw\Common\FCH32.EXE C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\Program Files\Securitoo\Av_Fw\Common\FAMEH32.EXE C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe C:\PROGRA~1\Wanadoo\Watch.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsav32.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Securitoo\Av_Fw\FSGUI\fsguiexe.exe C:\Program Files\Internet Explorer\iexplore.exe C:\WINDOWS\system32\wuauclt.exe C:\DOCUME~1\jean\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\Av_Fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Securitoo\Av_Fw\FSGUI\FSSW.EXE" /reboot O4 - HKLM\..\Run: [News Service] "C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized O4 - HKLM\..\Run: [wijtdnwybz] c:\windows\system32\wijtdnwybz.exe wijtdnwybz O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [WOOKIT] C:\Program Files\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM= O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - Startup: Démarrage d'Office.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE O4 - Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar3.dll/cmsearch.html O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar3.dll/cmwordtrans.html O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar3.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar3.dll/cmcache.html O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?fd7c73fbba90460d93ea7dddc888d83b O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?fd7c73fbba90460d93ea7dddc888d83b O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar3.dll/cmsimilar.html O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar3.dll/cmtrans.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll (file missing) O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://config.zebulon.fr/plugins/hardwaredetection.cab O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - http://support.f-secure.com/ols3/fscax.cab O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PC Tools Spyware Doctor (SDhelper) - Unknown owner - C:\Program Files\Spyware Doctor\sdhelp.exe (file missing) O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe blacklight 10/15/06 22:27:15 [info]: BlackLight Engine 1.0.47 initialized 10/15/06 22:27:15 [info]: OS: 5.1 build 2600 (Service Pack 2) 10/15/06 22:27:15 [Note]: 7019 4 10/15/06 22:27:15 [Note]: 7005 0 10/15/06 22:27:17 [Note]: 7006 0 10/15/06 22:27:17 [Note]: 7011 544 10/15/06 22:27:17 [Note]: 7026 0 10/15/06 22:27:17 [Note]: 7026 0 10/15/06 22:27:23 [Note]: FSRAW library version 1.7.1020 10/15/06 22:31:44 [Note]: 7007 0
  16. desoler pour ewido je vais le refaire rapport blackligt 10/15/06 21:12:18 [info]: BlackLight Engine 1.0.47 initialized 10/15/06 21:12:18 [info]: OS: 5.1 build 2600 (Service Pack 2) 10/15/06 21:12:18 [Note]: 7019 4 10/15/06 21:12:18 [Note]: 7005 0 10/15/06 21:12:22 [Note]: 7006 0 10/15/06 21:12:22 [Note]: 7011 548 10/15/06 21:12:22 [Note]: 7026 0 10/15/06 21:12:23 [Note]: 7026 0 10/15/06 21:12:32 [Note]: FSRAW library version 1.7.1020 10/15/06 21:17:03 [Note]: 7007 0
  17. voila les rapports ewido ---------------------------------------------- AVG Anti-Spyware - Rapport d'analyse --------------------------------------------------------- + Créé à: 19:26:17 15/10/2006 + Résultat de l'analyse: C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0166331.exe -> Adware.180Solutions : Ignoré. HKLM\SOFTWARE\YourSiteBar -> Adware.ISTBar : Ignoré. HKLM\SOFTWARE\YourSiteBar\Historyfiles -> Adware.ISTBar : Ignoré. HKLM\SOFTWARE\YourSiteBar\Historymusic_keyword -> Adware.ISTBar : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP414\A0139629.EXE -> Adware.MyWebSearch : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP371\A0118977.dll -> Adware.SaveNow : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP371\A0118978.exe -> Adware.SaveNow : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP371\A0118981.exe -> Adware.SaveNow : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP383\A0122043.exe -> Adware.SaveNow : Ignoré. HKLM\SOFTWARE\Classes\WUSN.1 -> Adware.SaveNow : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP400\A0133545.dll -> Adware.SideFind : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP400\A0133570.dll -> Adware.SideFind : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP388\A0128760.dll -> Adware.Softomate : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP392\A0132467.dll -> Adware.Softomate : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP392\A0132469.dll -> Adware.Softomate : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP431\A0149944.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP432\A0152800.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP435\A0154548.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP435\A0154844.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP437\A0156479.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP437\A0156773.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP437\A0157038.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP437\A0157185.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP440\A0159620.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP440\A0159911.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP440\A0160175.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP440\A0160323.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP440\A0160429.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP440\A0160578.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP440\A0160672.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP440\A0160819.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0163978.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0164127.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0164361.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0164507.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0164610.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0164761.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0164881.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0165027.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0165098.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0165247.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0165341.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0165487.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0165581.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0165730.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0165824.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. C:\System Volume Information\_restore{0F563069-B249-4BA2-B95F-31CB7CB72A54}\RP442\A0165971.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Ignoré. :mozilla.39:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.2o7 : Ignoré. :mozilla.43:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Advertising : Ignoré. :mozilla.44:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Advertising : Ignoré. :mozilla.45:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Advertising : Ignoré. :mozilla.12:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Atdmt : Ignoré. :mozilla.41:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Bluestreak : Ignoré. :mozilla.11:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Doubleclick : Ignoré. :mozilla.17:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Estat : Ignoré. :mozilla.10:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Serving-sys : Ignoré. :mozilla.6:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Serving-sys : Ignoré. :mozilla.7:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Serving-sys : Ignoré. :mozilla.8:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Serving-sys : Ignoré. :mozilla.9:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Serving-sys : Ignoré. :mozilla.13:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Smartadserver : Ignoré. :mozilla.14:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Smartadserver : Ignoré. :mozilla.15:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Smartadserver : Ignoré. :mozilla.18:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Weborama : Ignoré. :mozilla.19:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Weborama : Ignoré. :mozilla.20:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Weborama : Ignoré. :mozilla.21:C:\Documents and Settings\diana\Application Data\Mozilla\Firefox\Profiles\eh63s4wa.default\cookies.txt -> TrackingCookie.Weborama : Ignoré. C:\Documents and Settings\jean\Cookies\jean@weborama[1].txt -> TrackingCookie.Weborama : Ignoré. Fin du rapport hijackthise of HijackThis v1.99.1 Scan saved at 19:33:23, on 15/10/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\acer\Acer eConsole\MediaServerService.exe C:\WINDOWS\system32\LVCOMSX.EXE C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE C:\PROGRA~1\Wanadoo\TaskBarIcon.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE C:\Program Files\Microsoft Office\Office\OSA.EXE C:\Program Files\Microsoft Office\Office\FINDFAST.EXE C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe C:\Program Files\Securitoo\Av_Fw\backweb\8520111\Program\fspex.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\FSGK32.EXE C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe C:\PROGRA~1\Wanadoo\ComComp.exe C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE C:\Program Files\Securitoo\Av_Fw\Common\FSMB32.EXE C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fssm32.exe C:\WINDOWS\system32\svchost.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\Program Files\Securitoo\Av_Fw\Common\FCH32.EXE C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\Program Files\Securitoo\Av_Fw\Common\FAMEH32.EXE C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe C:\PROGRA~1\Wanadoo\Watch.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsav32.exe C:\WINDOWS\system32\wuauclt.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Securitoo\Av_Fw\FSGUI\fsguiexe.exe C:\DOCUME~1\jean\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\Av_Fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Securitoo\Av_Fw\FSGUI\FSSW.EXE" /reboot O4 - HKLM\..\Run: [News Service] "C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized O4 - HKLM\..\Run: [wijtdnwybz] c:\windows\system32\wijtdnwybz.exe wijtdnwybz O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [WOOKIT] C:\Program Files\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM= O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - Startup: Démarrage d'Office.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE O4 - Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar3.dll/cmsearch.html O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar3.dll/cmwordtrans.html O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar3.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar3.dll/cmcache.html O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?fd7c73fbba90460d93ea7dddc888d83b O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?fd7c73fbba90460d93ea7dddc888d83b O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar3.dll/cmsimilar.html O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar3.dll/cmtrans.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll (file missing) O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://config.zebulon.fr/plugins/hardwaredetection.cab O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - http://support.f-secure.com/ols3/fscax.cab O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PC Tools Spyware Doctor (SDhelper) - Unknown owner - C:\Program Files\Spyware Doctor\sdhelp.exe (file missing) O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
  18. merci bibi26 10/15/06 17:42:13 [info]: BlackLight Engine 1.0.47 initialized 10/15/06 17:42:13 [info]: OS: 5.1 build 2600 (Service Pack 2) 10/15/06 17:42:13 [Note]: 7019 4 10/15/06 17:42:13 [Note]: 7005 0 10/15/06 17:42:26 [Note]: 7006 0 10/15/06 17:42:26 [Note]: 7011 536 10/15/06 17:42:26 [Note]: 7026 0 10/15/06 17:42:26 [Note]: 7026 0 10/15/06 17:42:26 [Note]: 7024 3 10/15/06 17:42:26 [info]: Hidden process: C:\windows\system32\wijtdnwybz.exe 10/15/06 17:42:26 [Note]: FSRAW library version 1.7.1020 10/15/06 17:45:44 [info]: Hidden file: c:\WINDOWS\system32\wijtdnwybz.dat 10/15/06 17:45:44 [Note]: 10002 1 10/15/06 17:45:44 [info]: Hidden file: C:\windows\system32\wijtdnwybz.exe 10/15/06 17:45:45 [Note]: 10002 1 10/15/06 17:45:45 [info]: Hidden file: c:\WINDOWS\system32\wijtdnwybz_nav.dat 10/15/06 17:45:45 [Note]: 10002 1 10/15/06 17:45:45 [info]: Hidden file: c:\WINDOWS\system32\wijtdnwybz_navps.dat 10/15/06 17:45:45 [Note]: 10002 1 10/15/06 17:46:02 [info]: Hidden file: c:\WINDOWS\Prefetch\WIJTDNWYBZ.EXE-1C23381A.pf 10/15/06 17:46:02 [Note]: 10002 1 10/15/06 17:47:22 [Note]: 7007 0
  19. merci a vous pour la reponse rapide mais moi quand j ouvre blbeta c est ecrit dans une page noire en anglais. je ne vois ni scan,ni next merci encore
  20. bonjour a tous je n ai plus grand chose qui marche sans etre continnuellement envahi de message d erreur. nous avons ouvert quatre session sous window xp famillial et quand on en ferme une ;il faut redemarrrer pour que un autre puisse inscrire son code d acces. j ai lus un topic sur l observateur d evennement,le mien et plein d erreur. a tous hazard j ai fais un rapport hijackthis .merci de votre aide. j ai deja demander de l aide le 7 octobre et personne n a eu le temps de repondre alors j ai fais plusieurs restauration de systeme,grave erreur peut etre??? Logfile of HijackThis v1.99.1 Scan saved at 16:42:55, on 15/10/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\acer\Acer eConsole\MediaServerService.exe C:\WINDOWS\system32\LVCOMSX.EXE C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE C:\PROGRA~1\Wanadoo\TaskBarIcon.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe C:\Program Files\Securitoo\Av_Fw\backweb\8520111\Program\fspex.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\FSGK32.EXE C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE C:\Program Files\QuickTime\qttask.exe C:\Program Files\Securitoo\Av_Fw\Common\FSMB32.EXE C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fssm32.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Securitoo\Av_Fw\Common\FCH32.EXE C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\Securitoo\Av_Fw\Common\FAMEH32.EXE C:\Program Files\Microsoft Office\Office\OSA.EXE C:\Program Files\Microsoft Office\Office\FINDFAST.EXE C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe C:\PROGRA~1\Wanadoo\ComComp.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\PROGRA~1\Wanadoo\Watch.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsav32.exe C:\Program Files\Securitoo\Av_Fw\FSGUI\fsguiexe.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe C:\Documents and Settings\jean\Bureau\hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\Av_Fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Securitoo\Av_Fw\FSGUI\FSSW.EXE" /reboot O4 - HKLM\..\Run: [News Service] "C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKCU\..\Run: [WOOKIT] C:\Program Files\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM= O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [MailSkinner] c:\program files\mailskinner\mailskinner.exe O4 - Startup: Démarrage d'Office.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE O4 - Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar3.dll/cmsearch.html O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar3.dll/cmwordtrans.html O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar3.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar3.dll/cmcache.html O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?fd7c73fbba90460d93ea7dddc888d83b O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?fd7c73fbba90460d93ea7dddc888d83b O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar3.dll/cmsimilar.html O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar3.dll/cmtrans.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll (file missing) O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://config.zebulon.fr/plugins/hardwaredetection.cab O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - http://support.f-secure.com/ols3/fscax.cab O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PC Tools Spyware Doctor (SDhelper) - Unknown owner - C:\Program Files\Spyware Doctor\sdhelp.exe (file missing) O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
  21. reole

    (resolus)copier coller

    merci papo et les autre ,bon je crois avoir compris c est bien comme ca? V1 2006-10-07 21:52:53+02:00 SYSTEM F-Secure Anti-Virus Required database file is invalid. The scanning engine cannot starT si c est oui je vous remercie a tous et je vous demanderais comment on indique resolus devant son message bonne soiree
  22. bonjour a vous tous j ai de plus en plus de message me demandant de telecharger pour pas perdre mes donnees je me suis fait avoir une fois et maintenant ca n arrete pas.voici mes rapports ogfile of HijackThis v1.99.1 Scan saved at 19:27:34, on 07/10/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\acer\Acer eConsole\MediaServerService.exe C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\FSGK32.EXE C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE C:\Program Files\Securitoo\Av_Fw\Common\FSMB32.EXE C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fssm32.exe C:\WINDOWS\system32\nvsvc32.exe C:\Program Files\Spyware Doctor\sdhelp.exe C:\Program Files\Securitoo\Av_Fw\Common\FCH32.EXE C:\Program Files\Securitoo\Av_Fw\Common\FAMEH32.EXE C:\WINDOWS\system32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsav32.exe C:\WINDOWS\system32\LVCOMSX.EXE C:\PROGRA~1\Wanadoo\TaskBarIcon.exe C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Securitoo\Av_Fw\FSGUI\fsguiexe.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe C:\Program Files\Acer\Acer eConsole\MediaSync.exe C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE C:\Program Files\Acer\eRecovery\Monitor.exe C:\Program Files\Securitoo\Av_Fw\backweb\8520111\Program\fspex.exe C:\Program Files\Acer\Acer eMode Management\AspireService.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\Microsoft Office\Office\OSA.EXE C:\DOCUME~1\jean\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\Securitoo\Av_Fw\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\Securitoo\Av_Fw\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\Securitoo\Av_Fw\FSGUI\FSSW.EXE" /reboot O4 - HKLM\..\Run: [News Service] "C:\Program Files\Securitoo\Av_Fw\FSGUI\ispnews.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe" O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [NVMixerTray] "C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe" O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [ntiMUI] C:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC O4 - HKLM\..\Run: [MediaSync] C:\Program Files\Acer\Acer eConsole\MediaSync.exe O4 - HKLM\..\Run: [LaunchApp] Alaunch O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [eRecoveryService] C:\Program Files\Acer\eRecovery\Monitor.exe O4 - HKLM\..\Run: [EPSON Stylus DX3800 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIACE.EXE /P26 "EPSON Stylus DX3800 Series" /O6 "USB001" /M "Stylus DX3800" O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [AspireService] C:\Program Files\Acer\Acer eMode Management\AspireService.exe O4 - HKCU\..\Run: [WOOKIT] C:\Program Files\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM= O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [MailSkinner] c:\program files\mailskinner\mailskinner.exe O4 - Startup: Démarrage d'Office.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE O4 - Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar3.dll/cmsearch.html O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar3.dll/cmwordtrans.html O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar3.dll/cmbacklinks.html O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar3.dll/cmcache.html O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?fd7c73fbba90460d93ea7dddc888d83b O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?fd7c73fbba90460d93ea7dddc888d83b O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar3.dll/cmsimilar.html O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar3.dll/cmtrans.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~2\tools\iesdpb.dll O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~2\Wanadoo Messager.exe O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://config.zebulon.fr/plugins/hardwaredetection.cab O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - http://support.f-secure.com/ols3/fscax.cab O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe O23 - Service: Securitoo Antivirus Firewall (BackWeb Plug-in - 8520111) - Unknown owner - C:\PROGRA~1\SECURI~1\Av_Fw\backweb\8520111\Program\SERVIC~1.EXE O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\Anti-Virus\fsgk32st.exe O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\Securitoo\Av_Fw\backweb\8520111\program\fsbwsys.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\FWES\Program\fsdfwd.exe O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\Securitoo\Av_Fw\Common\FSMA32.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools - C:\Program Files\Spyware Doctor\sdhelp.exe O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe et maintenant activir AntiVir PersonalEdition Classic Report file date: samedi 7 octobre 2006 18:36 Jobname: 'Local Drives' Scanning for 370940 virus strains and unwanted programs. Licensed to: AntiVir PersonalEdition Classic Serial number: 0000149996-WURGE-0001 Platform: Windows XP Windows version: (Service Pack 2) [5.1.2600] Username: jean Computer name: ACER-E3B0141A93 Version informations: AVSCAN.EXE : 7.0.0.35 540712 21/04/2006 12:47:04 AVSCAN.DLL : 7.0.0.34 41000 05/04/2006 11:03:57 LUKE.DLL : 7.0.0.34 114728 05/04/2006 11:03:58 LUKERES.DLL : 7.0.0.34 25640 05/04/2006 11:03:58 ANTIVIR0.VDF : 6.32.0.60 4323840 02/05/2006 08:29:08 ANTIVIR1.VDF : 6.34.0.209 1930240 02/05/2006 08:29:09 ANTIVIR2.VDF : 6.34.1.1 89600 01/05/2006 17:17:55 ANTIVIR3.VDF : 6.34.1.26 48128 01/05/2006 17:17:55 AVEWIN32.DLL : 7.0.0.8 1171968 21/04/2006 15:40:14 AVPREF.DLL : 6.34.0.0 38440 18/01/2006 12:06:00 AVREP.DLL : 6.34.1.20 2371624 01/05/2006 17:17:56 AVPACK32.DLL : 7.0.0.4 335912 29/03/2006 09:44:25 AVREG.DLL : 6.31.0.90 27688 28/07/2005 10:06:36 NETNT.DLL : 6.32.0.0 6696 27/09/2005 07:56:49 NETNW.DLL : 6.32.0.0 9768 27/09/2005 07:56:49 Start of the scan: samedi 7 octobre 2006 18:36 Start scanning boot sectors: Boot sector 'C:' [NOTE] No virus was found! Boot sector 'D:' [NOTE] No virus was found! Boot sector 'G:' [NOTE] In the drive 'G:' no data medium is inserted! Boot sector 'H:' [NOTE] In the drive 'H:' no data medium is inserted! Boot sector 'I:' [NOTE] In the drive 'I:' no data medium is inserted! Boot sector 'J:' [NOTE] In the drive 'J:' no data medium is inserted! Starting to scan the registry. The registry was scanned ( 39 files ). Starting the file scan: C:\pagefile.sys [WARNING] The file could not be opened! C:\Documents and Settings\jean\ntuser.dat [WARNING] The file could not be opened! C:\Documents and Settings\jean\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\jean\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\jean\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\NTUSER.DAT [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\ntuser.dat.LOG [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat [WARNING] The file could not be opened! C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG [WARNING] The file could not be opened! C:\Program Files\GameSpy Arcade\banner.html [WARNING] The file could not be opened! C:\Program Files\InstallShield Installation Information\{103B6835-DCA0-413F-A99E-ECAD6622726E}\setup.ilg [WARNING] The file could not be opened! C:\Program Files\InstallShield Installation Information\{20C45B32-5AB6-46A4-94EF-58950CAF05E5}\Setup.ilg [WARNING] The file could not be opened! C:\Program Files\InstallShield Installation Information\{3EF79591-BF16-4CF8-8FF0-D8AD968228B1}\setup.ilg [WARNING] The file could not be opened! C:\Program Files\InstallShield Installation Information\{7F14F68C-17FA-4F88-B3FD-7F449C1EBF32}\setup.ilg [WARNING] The file could not be opened! C:\Program Files\InstallShield Installation Information\{B90450DF-E781-46FD-B1F1-0C86DA40E443}\setup.ilg [WARNING] The file could not be opened! C:\Program Files\Paprikari\DDD Pool\manual\survey.html [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc1.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc10.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc100.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc101.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc102.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc103.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc104.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc105.xml [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc106.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc107.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc108.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc109.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc11.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc110.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc111.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc112.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc113.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc114.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc115.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc116.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc117.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc118.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc119.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc12.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc120.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc121.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc122.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc123.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc124.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc125.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc126.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc127.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc128.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc129.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc13.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc130.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc131.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc132.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc133.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc134.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc135.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc136.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc137.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc138.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc139.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc14.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc140.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc141.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc142.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc143.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc144.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc145.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc146.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc147.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc148.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc149.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc15.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc150.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc151.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc152.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc153.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc154.mpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc155.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc156.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc157.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc158.jpeg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc159.exe [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc16.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc160.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc161.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc162.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc164.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc167.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc17.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc18.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc19.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc2.lnk [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc20.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc21.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc22.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc23.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc24.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc25.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc26.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc27.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc28.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc29.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc3.url [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc30.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc31.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc32.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc33.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc34.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc35.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc36.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc37.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc38.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc39.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc4.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc40.lnk [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc41.lnk [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc42.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc43.tmp [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc44.tmp [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc45.tmp [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc46.tmp [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc47.rtf [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc48.rtf [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc5.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc50.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc51.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc52.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc53.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc54.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc55.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc56.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc57.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc58.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc59.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc6.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc60.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc61.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc62.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc63.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc64.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc66.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc67.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc68.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc69.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc7.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc70.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc71.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc72.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc73.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc74.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc75.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc76.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc77.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc78.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc79.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc8.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc80.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc81.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc82.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc83.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc84.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc85.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc86.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc87.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc88.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc89.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc9.jpg [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc90.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc91.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc92.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc93.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc94.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc95.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc96.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc97.wma [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc98.mp3 [WARNING] The file could not be opened! C:\RECYCLER\S-1-5-21-678238706-667420344-1933408212-1007\Dc99.mp3 [WARNING] The file could not be opened! C:\WINDOWS\system32\config\DEFAULT [WARNING] The file could not be opened! C:\WINDOWS\system32\config\default.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SAM.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SECURITY.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SOFTWARE [WARNING] The file could not be opened! C:\WINDOWS\system32\config\software.LOG [WARNING] The file could not be opened! C:\WINDOWS\system32\config\SYSTEM [WARNING] The file could not be opened! C:\WINDOWS\system32\config\system.LOG [WARNING] The file could not be opened! The path G:\ could not be found! Le périphérique n'est pas prêt. The path H:\ could not be found! Le périphérique n'est pas prêt. The path I:\ could not be found! Le périphérique n'est pas prêt. The path J:\ could not be found! Le périphérique n'est pas prêt. The path E:\ could not be found! Le périphérique n'est pas prêt. End of the scan: samedi 7 octobre 2006 18:52 Used time: 15:56 min The scan has been done completely. 4009 Scanning directories 180610 Files were scanned 0 viruses and/or unwanted programs was found 0 files were deleted 0 files were repaired 0 files were moved to quarantine 0 files were renamed 6757 Archives were scanned 188 Warnings 0 Notes merci
  23. reole

    (resolus)copier coller

    merci pour les reponses mais dans paint j enregistre ,je met dans mes images . et quand je veux copier pour mettre sur le forum,clic droit et le copier disparus??? merci aussi a angelique mais j aime pas trop rentrer dans'( executer) peur de faire des erreurs.je debute et on peut dire que j apprend beaucoup avec vous tous merci encore
  24. reole

    (resolus)copier coller

    bonjour a tous petite question ?comment fait pour copier un message d erreur pour le poster sur le forum.merci copier coller marche pas!!debutant
  25. RESOLUS
×
×
  • Créer...