

ktom
Membres-
Compteur de contenus
9 -
Inscription
-
Dernière visite
Autres informations
-
Mes langues
francais, anglais
ktom's Achievements

Junior Member (3/12)
0
Réputation sur la communauté
-
Virus qui à tout bloqué (win32 pas valide)
ktom a répondu à un(e) sujet de ktom dans Analyses et éradication malwares
Merci pear pour votre aide, j'ai recuperé internet en réinstallant ma carte wifi. Et mon pc va pouvoir tenir en attendant que je récupere mon cd de restauration. -
Virus qui à tout bloqué (win32 pas valide)
ktom a répondu à un(e) sujet de ktom dans Analyses et éradication malwares
Bonjour, Voici le rapport : Error: Unable to interpret <CODE> in the current context! ========== PROCESSES ========== Process explorer.exe killed successfully. ========== SERVICES/DRIVERS ========== ========== REGISTRY ========== ========== FILES ========== C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}\x86\x86 moved successfully. C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}\x86 moved successfully. C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6} moved successfully. ========== COMMANDS ========== User's Temp folder emptied. User's Temporary Internet Files folder emptied. User's Internet Explorer cache folder emptied. Local Service Temp folder emptied. File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot. Local Service Temporary Internet Files folder emptied. Windows Temp folder emptied. Java cache emptied. FireFox cache emptied. Temp folders emptied. Explorer started successfully OTMoveIt3 by OldTimer - Version 1.0.7.0 log created on 10312008_212010 Files moved on Reboot... File move failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be moved on reboot. Sinon antivir à enlevé pas mal de virus. Dr web aussi mais je n'ai pas le rapport car il bloque sur un fichier Les symptomes qu'ils restent : Je voudrais savoir si il est possible de récuperer ma connexion internet car je n'est plus d'icone en bas dans la barre des taches (les petits ecrans de pc bleu) et n'y d'icone dans connexion réseau. Lorsque je veux créer un réseau ma carte wifi n'est plus reconnu. Même lorsque je veux le brancher par cable je n'arrive plus à me connecter. Le deuxième symptôme c'est quand j'écris les lettres sont longues à apparaitre. Merci de votre aide -
Virus qui à tout bloqué (win32 pas valide)
ktom a répondu à un(e) sujet de ktom dans Analyses et éradication malwares
Voici (Même les iôcnes internet réseau sont parties je me connecte sur un autres pc) ComboFix 08-10-30.12 - goyet 2008-10-31 12:15:39.2 - NTFSx86 Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.577 [GMT 1:00] Lancé depuis: C:\Documents and Settings\goyet\Bureau\Combo-Fix.exe Commutateurs utilisés :: C:\Documents and Settings\goyet\Bureau\CFScript.txt.txt * Un nouveau point de restauration a été créé FILE :: C:\DOCUME~1\goyet\LOCALS~1\Temp\RGI1.tmp C:\WINDOWS\SYSTEM32\DRIVERS\SROSA.SYS C:\WINDOWS\system32\drivers\winfilse.exe C:\WINDOWS\SYSTEM32\WINTEMS.EXE G:\nideiect.com . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . C:\DOCUME~1\goyet\LOCALS~1\Temp C:\DOCUME~1\goyet\LOCALS~1\Temp\527311e7-46b4-49ee-adc9-1b1f194bc4e0.tmp C:\DOCUME~1\goyet\LOCALS~1\Temp\52d449.mst C:\DOCUME~1\goyet\LOCALS~1\Temp\Av-test.txt C:\DOCUME~1\goyet\LOCALS~1\Temp\avg8inst.log C:\DOCUME~1\goyet\LOCALS~1\Temp\jusched.log . ((((((((((((((((((((((((((((( Fichiers créés du 2008-09-28 au 2008-10-31 )))))))))))))))))))))))))))))))))))) . 2008-10-31 11:08 . 2008-10-31 11:12 <REP> d--h----- C:\$AVG8.VAULT$ 2008-10-31 11:08 . 2008-10-31 11:08 10,520 --a------ C:\WINDOWS\system32\avgrsstx.dll 2008-10-31 11:07 . 2008-10-31 11:07 <REP> d-------- C:\WINDOWS\system32\drivers\Avg 2008-10-31 11:07 . 2008-10-31 11:07 <REP> d-------- C:\Program Files\AVG 2008-10-31 11:07 . 2008-10-31 11:07 <REP> d-------- C:\Documents and Settings\All Users\Application Data\avg8 2008-10-31 11:07 . 2008-10-31 11:07 97,928 --a------ C:\WINDOWS\system32\drivers\avgldx86.sys 2008-10-31 11:04 . 2008-10-31 11:04 <REP> d-------- C:\Program Files\Lavasoft 2008-10-31 11:04 . 2008-10-31 11:05 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Lavasoft 2008-10-31 10:42 . 2008-10-31 10:42 141,312 --a------ C:\WINDOWS\system32\drivers\sp_rsdrv2.sys 2008-10-30 22:01 . 2008-10-31 10:42 <REP> d-------- C:\Documents and Settings\goyet\Application Data\Spyware Terminator 2008-10-30 22:01 . 2008-10-31 10:54 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spyware Terminator 2008-10-30 22:00 . 2008-10-31 10:54 <REP> d-------- C:\Program Files\Spyware Terminator 2008-10-30 16:20 . 2008-10-30 16:20 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard 2008-10-28 16:07 . 2008-10-28 16:10 <REP> d-------- C:\Program Files\Fichiers communs\SolidWorks Shared 2008-10-27 09:03 . 2008-10-27 09:04 <REP> d-------- C:\Program Files\iTunes 2008-10-27 09:03 . 2008-10-27 09:03 <REP> d-------- C:\Program Files\iPod 2008-10-27 09:03 . 2008-10-27 09:04 <REP> d-------- C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6} 2008-10-27 09:00 . 2008-10-27 09:01 <REP> d-------- C:\Program Files\QuickTime 2008-10-23 10:11 . 2008-10-23 10:11 <REP> d-------- C:\Documents and Settings\goyet\Application Data\vlc 2008-10-23 10:10 . 2008-10-23 10:10 <REP> d-------- C:\Program Files\VideoLAN 2008-10-19 18:31 . 2008-10-19 18:31 36,868 --a------ C:\Program Files\uninst-Lux.exe 2008-10-19 18:29 . 2008-10-19 18:31 <REP> d-------- C:\Program Files\Trapcode 2008-10-19 18:29 . 2008-10-19 18:29 <REP> d-------- C:\Presets 2008-10-19 18:29 . 2008-10-19 18:29 36,868 --a------ C:\Program Files\uninst-Particular.exe 2008-10-18 22:16 . 2008-10-18 22:16 <REP> d-------- C:\Program Files\DivX 2008-10-18 22:16 . 2008-10-18 22:16 <REP> d-------- C:\Documents and Settings\goyet\Application Data\DivX 2008-10-14 14:33 . 2008-10-14 14:33 <REP> d-------- C:\Documents and Settings\goyet\Application Data\DassaultSystemes 2008-10-14 14:33 . 2008-10-14 14:33 <REP> d-------- C:\Documents and Settings\All Users\Application Data\DassaultSystemes 2008-10-13 13:45 . 2008-10-16 20:52 <REP> d-------- C:\Program Files\Blender Foundation 2008-10-13 13:45 . 2008-10-13 13:45 <REP> d-------- C:\Documents and Settings\goyet\Application Data\Blender Foundation 2008-10-13 09:41 . 2008-10-27 20:58 <REP> d-------- C:\Program Files\FrameForge 3D Studio 2 2008-10-13 08:39 . 2008-10-13 08:39 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Common Resources 2008-10-13 07:58 . 2008-10-13 09:41 <REP> d-------- C:\Program Files\FrameForge 3D Studio 2 Demo 2008-10-12 20:14 . 2008-10-12 20:14 <REP> d-------- C:\Program Files\AssaultCube 2008-10-12 19:35 . 2008-10-12 20:04 159,992 --a------ C:\WINDOWS\system32\drivers\PnkBstrK.sys 2008-10-12 19:32 . 2008-10-12 20:04 182,928 --a------ C:\WINDOWS\system32\PnkBstrB.exe 2008-10-12 19:32 . 2008-10-12 19:32 66,872 --a------ C:\WINDOWS\system32\PnkBstrA.exe 2008-10-12 18:16 . 2008-10-12 20:31 <REP> d-------- C:\Program Files\WarRock 2008-10-12 12:57 . 2008-10-16 21:06 <REP> d-------- C:\Documents and Settings\goyet\Application Data\Download Manager 2008-10-09 19:50 . 2008-10-09 19:50 <REP> d-------- C:\Program Files\Securitoo 2008-10-09 19:49 . 2006-03-01 17:53 94,208 --a------ C:\WINDOWS\system32\w32n50.dll 2008-10-09 19:49 . 2003-09-23 09:38 34,688 --a------ C:\WINDOWS\system32\pcampr5.sys 2008-10-09 19:49 . 2006-03-01 17:53 32,128 --a------ C:\WINDOWS\system32\pcandis5.sys 2008-10-09 15:20 . 2008-10-09 15:20 <REP> d-------- C:\Program Files\Fichiers communs\SWF Studio 2008-09-30 10:53 . 2008-10-29 08:50 <REP> d-------- C:\WINDOWS\system32\CatRoot_bak 2008-09-29 12:12 . 2008-10-01 13:51 <REP> d-------- C:\Program Files\IMAPSize 2008-09-29 12:02 . 2008-09-29 12:02 <REP> d-------- C:\Documents and Settings\goyet\Application Data\Windows Search 2008-09-29 12:01 . 2008-09-29 12:01 <REP> d-------- C:\WINDOWS\system32\GroupPolicy 2008-09-29 12:01 . 2008-10-02 07:47 <REP> d-------- C:\WINDOWS\system32\fr-FR 2008-09-29 12:01 . 2008-10-02 07:47 <REP> d-------- C:\Program Files\Windows Desktop Search 2008-09-29 12:00 . 2008-03-07 17:56 192,000 -----c--- C:\WINDOWS\system32\dllcache\offfilt.dll 2008-09-29 12:00 . 2008-03-07 17:56 98,304 -----c--- C:\WINDOWS\system32\dllcache\nlhtml.dll 2008-09-29 12:00 . 2008-03-07 17:56 29,696 -----c--- C:\WINDOWS\system32\dllcache\mimefilt.dll 2008-09-29 08:49 . 2008-09-29 08:49 <REP> d-------- C:\Program Files\Microsoft Works 2008-09-29 08:48 . 2008-09-29 08:48 <REP> d-------- C:\Program Files\MSBuild 2008-09-29 08:47 . 2008-09-29 08:47 <REP> d-------- C:\Program Files\Microsoft.NET 2008-09-29 08:43 . 2008-09-29 08:43 <REP> d-------- C:\Program Files\Microsoft Visual Studio 8 2008-09-29 08:42 . 2008-09-29 08:48 <REP> d-------- C:\WINDOWS\SHELLNEW 2008-09-29 08:40 . 2008-09-29 08:40 <REP> dr-h----- C:\MSOCache 2008-09-27 13:26 . 2008-09-27 13:26 <REP> d-------- C:\Program Files\Topaz Labs 2008-09-25 09:32 . 2008-07-09 04:05 129,520 --------- C:\WINDOWS\system32\pxafs.dll 2008-09-25 09:32 . 2008-07-09 04:05 9,200 --------- C:\WINDOWS\system32\drivers\cdralw2k.sys 2008-09-25 09:32 . 2008-07-09 04:05 9,072 --------- C:\WINDOWS\system32\drivers\cdr4_xp.sys 2008-09-25 09:17 . 2008-09-25 11:56 <REP> d-------- C:\WINDOWS\SxsCaPendDel 2008-09-16 14:29 . 2008-10-07 08:06 <REP> d-------- C:\Documents and Settings\goyet\Application Data\OpenOffice.org2 2008-09-16 14:26 . 2008-10-07 09:48 <REP> d-------- C:\Program Files\OpenOffice.org 2.4 2008-09-16 01:14 . 2008-09-16 01:14 3,596,288 --a------ C:\WINDOWS\system32\qt-dx331.dll 2008-09-16 01:14 . 2008-09-16 01:14 524,288 --a------ C:\WINDOWS\system32\DivXsm.exe 2008-09-16 01:14 . 2008-09-16 01:14 9,878 --a------ C:\WINDOWS\system32\dsm_fr.qm 2008-09-16 01:14 . 2008-09-16 01:14 4,816 --a------ C:\WINDOWS\system32\divxsm.tlb 2008-09-16 01:11 . 2008-09-16 01:11 823,296 --a------ C:\WINDOWS\system32\divx_xx0c.dll 2008-09-16 01:11 . 2008-09-16 01:11 823,296 --a------ C:\WINDOWS\system32\divx_xx07.dll 2008-09-16 01:11 . 2008-09-16 01:11 815,104 --a------ C:\WINDOWS\system32\divx_xx0a.dll 2008-09-16 01:11 . 2008-09-16 01:11 802,816 --a------ C:\WINDOWS\system32\divx_xx11.dll 2008-09-16 01:11 . 2008-09-16 01:11 683,520 --a------ C:\WINDOWS\system32\DivX.dll 2008-09-16 01:11 . 2008-09-16 01:11 634,880 --a------ C:\WINDOWS\system32\divxdec.ax 2008-09-16 01:11 . 2008-09-16 01:11 352,401 --a------ C:\WINDOWS\system32\DivXMedia.ax 2008-09-16 01:11 . 2008-09-16 01:11 161,096 --a------ C:\WINDOWS\system32\DivXCodecVersionChecker.exe 2008-09-16 01:11 . 2008-09-16 01:11 12,288 --a------ C:\WINDOWS\system32\DivXWMPExtType.dll 2008-09-13 17:00 . 2008-09-13 17:00 <REP> d-------- C:\Program Files\Fichiers communs\logishrd 2008-09-13 16:53 . 2004-08-03 22:07 59,264 --a------ C:\WINDOWS\system32\drivers\USBAUDIO.sys 2008-09-13 16:53 . 2004-08-03 22:07 59,264 --a--c--- C:\WINDOWS\system32\dllcache\usbaudio.sys 2008-09-12 11:57 . 2008-09-12 11:57 2,121,728 --a------ C:\WINDOWS\system32\tliadjust24.dll 2008-09-12 11:57 . 2008-09-12 11:57 802,816 --a------ C:\WINDOWS\system32\tliadjustreg.exe 2008-09-07 18:24 . 2008-09-07 18:24 <REP> d-------- C:\Program Files\Ares 2008-09-06 15:09 . 2008-09-06 15:09 90,112 --a------ C:\WINDOWS\system32\QuickTimeVR.qtx 2008-09-06 15:09 . 2008-09-06 15:09 57,344 --a------ C:\WINDOWS\system32\QuickTime.qts . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2008-10-30 21:10 --------- d-----w C:\Program Files\Mozilla Thunderbird 2008-10-30 16:25 --------- d-----w C:\Program Files\Canon 2008-10-30 14:12 --------- d-----w C:\Program Files\eMule 2008-10-29 16:58 --------- d-----w C:\Documents and Settings\goyet\Application Data\SolidWorks 2008-10-28 15:11 --------- d-----w C:\Program Files\SolidWorks 2008-10-27 18:59 --------- d-----w C:\Program Files\Apple Software Update 2008-10-27 08:02 --------- d-----w C:\Program Files\Bonjour 2008-10-27 08:00 --------- d-----w C:\Program Files\Fichiers communs\Apple 2008-10-22 09:52 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help 2008-10-21 18:16 --------- d-----w C:\Program Files\Microsoft Silverlight 2008-10-17 20:42 --------- d-----w C:\Program Files\Fichiers communs\Adobe 2008-10-13 15:48 3,522,510 ----a-w C:\Program Files\1.3DS 2008-10-13 06:40 --------- d--h--w C:\Program Files\InstallShield Installation Information 2008-10-08 09:31 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP 2008-10-07 08:39 --------- d-----w C:\Program Files\Fichiers communs\Bluebeam Software 2008-10-01 12:01 32,000 ----a-w C:\WINDOWS\system32\drivers\usbaapl.sys 2008-09-25 08:52 --------- d-----w C:\Documents and Settings\goyet\Application Data\Apple Computer 2008-09-25 08:18 --------- d-----w C:\Documents and Settings\All Users\Application Data\WinZip 2008-09-25 08:07 --------- d-----w C:\Program Files\Fichiers communs\Autodesk Shared 2008-09-25 08:07 --------- d-----w C:\Documents and Settings\All Users\Application Data\Autodesk 2008-09-16 00:12 81,920 ----a-w C:\WINDOWS\system32\dpl100.dll 2008-09-16 00:12 593,920 ----a-w C:\WINDOWS\system32\dpuGUI11.dll 2008-09-16 00:12 57,344 ----a-w C:\WINDOWS\system32\dpv11.dll 2008-09-16 00:12 53,248 ----a-w C:\WINDOWS\system32\dpuGUI10.dll 2008-09-16 00:12 344,064 ----a-w C:\WINDOWS\system32\dpus11.dll 2008-09-16 00:12 294,912 ----a-w C:\WINDOWS\system32\dpu11.dll 2008-09-16 00:12 294,912 ----a-w C:\WINDOWS\system32\dpu10.dll 2008-09-16 00:12 200,704 ----a-w C:\WINDOWS\system32\ssldivx.dll 2008-09-16 00:12 196,608 ----a-w C:\WINDOWS\system32\dtu100.dll 2008-09-16 00:12 1,044,480 ----a-w C:\WINDOWS\system32\libdivx.dll 2008-09-15 15:39 1,846,144 ----a-w C:\WINDOWS\system32\win32k.sys 2008-08-29 09:18 87,336 ----a-w C:\WINDOWS\system32\dns-sd.exe 2008-08-29 08:53 61,440 ----a-w C:\WINDOWS\system32\dnssd.dll 2008-08-28 10:04 333,056 ----a-w C:\WINDOWS\system32\drivers\srv.sys 2008-08-20 05:37 663,552 ----a-w C:\WINDOWS\system32\wininet.dll 2008-08-14 13:44 2,182,400 ----a-w C:\WINDOWS\system32\ntoskrnl.exe 2008-08-14 13:44 2,059,776 ----a-w C:\WINDOWS\system32\ntkrnlpa.exe 2008-07-18 20:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll 2008-07-18 20:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe 2008-07-18 20:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll 2008-07-18 20:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll 2008-07-18 20:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll 2008-07-18 20:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll 2008-07-18 20:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll 2008-07-18 20:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll 2008-07-18 20:07 270,880 ----a-w C:\WINDOWS\system32\mucltui.dll 2008-07-18 20:07 210,976 ----a-w C:\WINDOWS\system32\muweb.dll 2008-07-10 14:37 4,608 ----a-w C:\WINDOWS\system32\w95inf32.dll 2008-07-10 14:37 2,272 ----a-w C:\WINDOWS\system32\w95inf16.dll 2008-07-09 03:05 120,568 ------w C:\WINDOWS\system32\pxcpyi64.exe 2008-07-09 03:05 118,256 ------w C:\WINDOWS\system32\pxinsi64.exe 2008-07-07 20:31 253,952 ----a-w C:\WINDOWS\system32\es.dll 2006-05-03 10:06 163,328 --sh--r C:\WINDOWS\system32\flvDX.dll 2007-02-21 11:47 31,744 --sh--r C:\WINDOWS\system32\msfDX.dll . ((((((((((((((((((((((((((((( snapshot@2008-10-31_ 9.19.39.71 ))))))))))))))))))))))))))))))))))))))))) . + 2008-10-31 10:07:52 26,824 ----a-w C:\WINDOWS\system32\drivers\avgmfx86.sys + 2008-04-29 10:19:50 12,960 ----a-w C:\WINDOWS\system32\drivers\Awrtpd.sys + 2008-04-29 10:19:54 15,648 ----a-w C:\WINDOWS\system32\drivers\Awrtrd.sys + 2008-04-29 10:20:00 15,648 ----a-w C:\WINDOWS\system32\drivers\NSDriver.sys + 2008-05-16 10:58:04 12,632 ----a-w C:\WINDOWS\system32\lsdelete.exe + 2006-12-01 23:46:44 65,536 ----a-w C:\WINDOWS\WinSxS\x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6c18549a\vcomp.dll . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 5724184] "CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-05 15360] "AdobeUpdater"="C:\Program Files\Fichiers communs\Adobe\Updater5\AdobeUpdater.exe" [2007-02-28 2321600] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Tvs"="C:\Program Files\TOSHIBA\Tvs\TvsTray.exe" [2004-11-12 73728] "TPNF"="C:\Program Files\TOSHIBA\TouchPad\TPTray.exe" [2004-11-29 53248] "TOSHIBA Accessibility"="C:\Program Files\TOSHIBA\Accessibility\FnKeyHook.exe" [2004-12-07 24576] "SVPWUTIL"="C:\Program Files\Toshiba\Windows Utilities\SVPWUTIL.exe" [2005-02-25 65536] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 144784] "SmoothView"="C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe" [2004-11-15 118784] "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-09-06 413696] "PadTouch"="C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe" [2004-11-17 1077327] "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-10-01 289576] "IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" [2004-11-02 155648] "HWSetup"="C:\Program Files\TOSHIBA\TOSHIBA Applet\HWSetup.exe" [2004-12-23 28672] "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2007-10-14 49152] "HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" [2004-11-02 126976] "dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [2005-01-14 122939] "CeEKEY"="C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe" [2005-01-21 675840] "avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-10-31 78008] "Apoint"="C:\Program Files\Apoint2K\Apoint.exe" [2003-10-30 192512] "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672] "AVG8_TRAY"="C:\PROGRA~1\AVG\AVG8\avgtray.exe" [2008-10-31 1234712] "Zooming"="ZoomingHook.exe" [2004-07-14 C:\WINDOWS\system32\ZoomingHook.exe] "TPSMain"="TPSMain.exe" [2005-01-21 C:\WINDOWS\system32\TPSMain.exe] "TCtryIOHook"="TCtrlIOHook.exe" [2005-02-16 C:\WINDOWS\system32\TCtrlIOHook.exe] "AGRSMMSG"="AGRSMMSG.exe" [2004-10-28 C:\WINDOWS\agrsmmsg.exe] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-05 15360] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=avgrsstx.dll [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "VIDC.I420"= i420vfw.dll [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"= "C:\\Program Files\\Ares\\Ares.exe"= "C:\\Program Files\\eMule\\emule.exe"= "C:\\Documents and Settings\\goyet\\Bureau\\freezer.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"= "C:\\Program Files\\Bonjour\\mDNSResponder.exe"= "C:\\Program Files\\iTunes\\iTunes.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpiscnapp.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"= "C:\\Program Files\\AVG\\AVG8\\avgupd.exe"= R1 AvgLdx86;AVG Free AVI Loader Driver x86;C:\WINDOWS\system32\Drivers\avgldx86.sys [2008-10-31 97928] R2 avg8wd;AVG Free8 WatchDog;C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-10-31 231704] S2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [ ] S3 getPlus® Helper;getPlus® Helper;C:\Program Files\NOS\bin\getPlus_HelperSvc.exe [ ] S3 mr97320;PC-Camera;C:\WINDOWS\system32\DRIVERS\mr97320.sys [2007-04-20 69248] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12 HPService REG_MULTI_SZ HPSLPSVC hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc . Contenu du dossier 'Tâches planifiées' 2008-10-27 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job - C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 12:34] 2008-06-27 C:\WINDOWS\Tasks\Rappel d'enregistrement 1.job - C:\WINDOWS\system32\OOBE\oobebaln.exe [2004-08-05 12:00] . ************************************************************************** catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-10-31 12:21:21 Windows 5.1.2600 Service Pack 2 NTFS Recherche de processus cachés ... Recherche d'éléments en démarrage automatique cachés ... Recherche de fichiers cachés ... Scan terminé avec succès Fichiers cachés: 0 ************************************************************************** . ------------------------ Autres processus actifs ------------------------ . C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe C:\WINDOWS\system32\PnkBstrA.exe C:\Program Files\Spyware Terminator\sp_rsser.exe C:\WINDOWS\system32\wdfmgr.exe C:\WINDOWS\system32\wscntfy.exe C:\PROGRA~1\AVG\AVG8\avgrsx.exe C:\WINDOWS\system32\TPSBattM.exe C:\Program Files\Apoint2K\ApntEx.exe C:\Program Files\iPod\bin\iPodService.exe . ************************************************************************** . Heure de fin: 2008-10-31 12:27:56 - La machine a redémarré ComboFix-quarantined-files.txt 2008-10-31 11:27:39 ComboFix2.txt 2008-10-31 08:20:37 Avant-CF: 39 928 926 208 octets libres Après-CF: 39,886,893,056 octets libres 289 --- E O F --- 2008-10-26 08:06:17 -
Virus qui à tout bloqué (win32 pas valide)
ktom a répondu à un(e) sujet de ktom dans Analyses et éradication malwares
Merci, je suis a l'étape DR web (j'arrive d'ailleur à démarrer en mode sans echec contrairement à avant) et je n'arrive pas à faire d'analyse compléte jusqu'au bout on dirait que le logiciel ce bloque, le temps continu mais pas le déroulement des fichiers. -
Virus qui à tout bloqué (win32 pas valide)
ktom a répondu à un(e) sujet de ktom dans Analyses et éradication malwares
ComboFix 08-10-30.12 - goyet 2008-10-31 9:15:38.1 - NTFSx86 Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.752 [GMT 1:00] Commutateurs utilisés :: C:\Documents and Settings\goyet\Bureau\WindowsXP-KB310994-SP2-Home-BootDisk-FRA.exe . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe C:\WINDOWS\system32\drivers\downld C:\WINDOWS\system32\drivers\downld\201765.exe C:\WINDOWS\system32\drivers\downld\205015.exe C:\WINDOWS\system32\drivers\srosa.sys C:\WINDOWS\system32\drivers\winfilse.exe . ((((((((((((((((((((((((((((((((((((((( Pilotes/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Service_SROSA -------\Legacy_SROSA ((((((((((((((((((((((((((((( Fichiers créés du 2008-09-28 au 2008-10-31 )))))))))))))))))))))))))))))))))))) . 2008-10-30 22:01 . 2008-10-30 22:01 <REP> d-------- C:\Documents and Settings\goyet\Application Data\Spyware Terminator 2008-10-30 22:01 . 2008-10-30 22:01 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Spyware Terminator 2008-10-30 22:00 . 2008-10-30 22:01 <REP> d-------- C:\Program Files\Spyware Terminator 2008-10-30 16:20 . 2008-10-30 16:20 <REP> d-------- C:\Program Files\Fichiers communs\Wise Installation Wizard 2008-10-28 16:07 . 2008-10-28 16:10 <REP> d-------- C:\Program Files\Fichiers communs\SolidWorks Shared 2008-10-27 09:03 . 2008-10-27 09:04 <REP> d-------- C:\Program Files\iTunes 2008-10-27 09:03 . 2008-10-27 09:03 <REP> d-------- C:\Program Files\iPod 2008-10-27 09:03 . 2008-10-27 09:04 <REP> d-------- C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6} 2008-10-27 09:00 . 2008-10-27 09:01 <REP> d-------- C:\Program Files\QuickTime 2008-10-23 10:11 . 2008-10-23 10:11 <REP> d-------- C:\Documents and Settings\goyet\Application Data\vlc 2008-10-23 10:10 . 2008-10-23 10:10 <REP> d-------- C:\Program Files\VideoLAN 2008-10-19 18:31 . 2008-10-19 18:31 36,868 --a------ C:\Program Files\uninst-Lux.exe 2008-10-19 18:29 . 2008-10-19 18:31 <REP> d-------- C:\Program Files\Trapcode 2008-10-19 18:29 . 2008-10-19 18:29 <REP> d-------- C:\Presets 2008-10-19 18:29 . 2008-10-19 18:29 36,868 --a------ C:\Program Files\uninst-Particular.exe 2008-10-18 22:16 . 2008-10-18 22:16 <REP> d-------- C:\Program Files\DivX 2008-10-18 22:16 . 2008-10-18 22:16 <REP> d-------- C:\Documents and Settings\goyet\Application Data\DivX 2008-10-14 14:33 . 2008-10-14 14:33 <REP> d-------- C:\Documents and Settings\goyet\Application Data\DassaultSystemes 2008-10-14 14:33 . 2008-10-14 14:33 <REP> d-------- C:\Documents and Settings\All Users\Application Data\DassaultSystemes 2008-10-13 13:45 . 2008-10-16 20:52 <REP> d-------- C:\Program Files\Blender Foundation 2008-10-13 13:45 . 2008-10-13 13:45 <REP> d-------- C:\Documents and Settings\goyet\Application Data\Blender Foundation 2008-10-13 09:41 . 2008-10-27 20:58 <REP> d-------- C:\Program Files\FrameForge 3D Studio 2 2008-10-13 08:39 . 2008-10-13 08:39 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Common Resources 2008-10-13 07:58 . 2008-10-13 09:41 <REP> d-------- C:\Program Files\FrameForge 3D Studio 2 Demo 2008-10-12 20:14 . 2008-10-12 20:14 <REP> d-------- C:\Program Files\AssaultCube 2008-10-12 19:35 . 2008-10-12 20:04 159,992 --a------ C:\WINDOWS\system32\drivers\PnkBstrK.sys 2008-10-12 19:32 . 2008-10-12 20:04 182,928 --a------ C:\WINDOWS\system32\PnkBstrB.exe 2008-10-12 19:32 . 2008-10-12 19:32 66,872 --a------ C:\WINDOWS\system32\PnkBstrA.exe 2008-10-12 18:16 . 2008-10-12 20:31 <REP> d-------- C:\Program Files\WarRock 2008-10-12 12:57 . 2008-10-16 21:06 <REP> d-------- C:\Documents and Settings\goyet\Application Data\Download Manager 2008-10-09 19:50 . 2008-10-09 19:50 <REP> d-------- C:\Program Files\Securitoo 2008-10-09 19:49 . 2006-03-01 17:53 94,208 --a------ C:\WINDOWS\system32\w32n50.dll 2008-10-09 19:49 . 2003-09-23 09:38 34,688 --a------ C:\WINDOWS\system32\pcampr5.sys 2008-10-09 19:49 . 2006-03-01 17:53 32,128 --a------ C:\WINDOWS\system32\pcandis5.sys 2008-10-09 15:20 . 2008-10-09 15:20 <REP> d-------- C:\Program Files\Fichiers communs\SWF Studio 2008-09-30 10:53 . 2008-10-29 08:50 <REP> d-------- C:\WINDOWS\system32\CatRoot_bak 2008-09-29 12:12 . 2008-10-01 13:51 <REP> d-------- C:\Program Files\IMAPSize 2008-09-29 12:02 . 2008-09-29 12:02 <REP> d-------- C:\Documents and Settings\goyet\Application Data\Windows Search 2008-09-29 12:01 . 2008-09-29 12:01 <REP> d-------- C:\WINDOWS\system32\GroupPolicy 2008-09-29 12:01 . 2008-10-02 07:47 <REP> d-------- C:\WINDOWS\system32\fr-FR 2008-09-29 12:01 . 2008-10-02 07:47 <REP> d-------- C:\Program Files\Windows Desktop Search 2008-09-29 12:00 . 2008-03-07 17:56 192,000 -----c--- C:\WINDOWS\system32\dllcache\offfilt.dll 2008-09-29 12:00 . 2008-03-07 17:56 98,304 -----c--- C:\WINDOWS\system32\dllcache\nlhtml.dll 2008-09-29 12:00 . 2008-03-07 17:56 29,696 -----c--- C:\WINDOWS\system32\dllcache\mimefilt.dll 2008-09-29 08:49 . 2008-09-29 08:49 <REP> d-------- C:\Program Files\Microsoft Works 2008-09-29 08:48 . 2008-09-29 08:48 <REP> d-------- C:\Program Files\MSBuild 2008-09-29 08:47 . 2008-09-29 08:47 <REP> d-------- C:\Program Files\Microsoft.NET 2008-09-29 08:43 . 2008-09-29 08:43 <REP> d-------- C:\Program Files\Microsoft Visual Studio 8 2008-09-29 08:42 . 2008-09-29 08:48 <REP> d-------- C:\WINDOWS\SHELLNEW 2008-09-29 08:40 . 2008-09-29 08:40 <REP> dr-h----- C:\MSOCache 2008-09-27 13:26 . 2008-09-27 13:26 <REP> d-------- C:\Program Files\Topaz Labs 2008-09-25 09:32 . 2008-07-09 04:05 129,520 --------- C:\WINDOWS\system32\pxafs.dll 2008-09-25 09:32 . 2008-07-09 04:05 9,200 --------- C:\WINDOWS\system32\drivers\cdralw2k.sys 2008-09-25 09:32 . 2008-07-09 04:05 9,072 --------- C:\WINDOWS\system32\drivers\cdr4_xp.sys 2008-09-25 09:17 . 2008-09-25 11:56 <REP> d-------- C:\WINDOWS\SxsCaPendDel 2008-09-16 14:29 . 2008-10-07 08:06 <REP> d-------- C:\Documents and Settings\goyet\Application Data\OpenOffice.org2 2008-09-16 14:26 . 2008-10-07 09:48 <REP> d-------- C:\Program Files\OpenOffice.org 2.4 2008-09-16 01:14 . 2008-09-16 01:14 3,596,288 --a------ C:\WINDOWS\system32\qt-dx331.dll 2008-09-16 01:14 . 2008-09-16 01:14 524,288 --a------ C:\WINDOWS\system32\DivXsm.exe 2008-09-16 01:14 . 2008-09-16 01:14 9,878 --a------ C:\WINDOWS\system32\dsm_fr.qm 2008-09-16 01:14 . 2008-09-16 01:14 4,816 --a------ C:\WINDOWS\system32\divxsm.tlb 2008-09-16 01:11 . 2008-09-16 01:11 823,296 --a------ C:\WINDOWS\system32\divx_xx0c.dll 2008-09-16 01:11 . 2008-09-16 01:11 823,296 --a------ C:\WINDOWS\system32\divx_xx07.dll 2008-09-16 01:11 . 2008-09-16 01:11 815,104 --a------ C:\WINDOWS\system32\divx_xx0a.dll 2008-09-16 01:11 . 2008-09-16 01:11 802,816 --a------ C:\WINDOWS\system32\divx_xx11.dll 2008-09-16 01:11 . 2008-09-16 01:11 683,520 --a------ C:\WINDOWS\system32\DivX.dll 2008-09-16 01:11 . 2008-09-16 01:11 634,880 --a------ C:\WINDOWS\system32\divxdec.ax 2008-09-16 01:11 . 2008-09-16 01:11 352,401 --a------ C:\WINDOWS\system32\DivXMedia.ax 2008-09-16 01:11 . 2008-09-16 01:11 161,096 --a------ C:\WINDOWS\system32\DivXCodecVersionChecker.exe 2008-09-16 01:11 . 2008-09-16 01:11 12,288 --a------ C:\WINDOWS\system32\DivXWMPExtType.dll 2008-09-13 17:00 . 2008-09-13 17:00 <REP> d-------- C:\Program Files\Fichiers communs\logishrd 2008-09-13 16:53 . 2004-08-03 22:07 59,264 --a------ C:\WINDOWS\system32\drivers\USBAUDIO.sys 2008-09-13 16:53 . 2004-08-03 22:07 59,264 --a--c--- C:\WINDOWS\system32\dllcache\usbaudio.sys 2008-09-12 11:57 . 2008-09-12 11:57 2,121,728 --a------ C:\WINDOWS\system32\tliadjust24.dll 2008-09-12 11:57 . 2008-09-12 11:57 802,816 --a------ C:\WINDOWS\system32\tliadjustreg.exe 2008-09-07 18:24 . 2008-09-07 18:24 <REP> d-------- C:\Program Files\Ares 2008-09-06 15:09 . 2008-09-06 15:09 90,112 --a------ C:\WINDOWS\system32\QuickTimeVR.qtx 2008-09-06 15:09 . 2008-09-06 15:09 57,344 --a------ C:\WINDOWS\system32\QuickTime.qts . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2008-10-30 21:10 --------- d-----w C:\Program Files\Mozilla Thunderbird 2008-10-30 16:25 --------- d-----w C:\Program Files\Canon 2008-10-30 14:12 --------- d-----w C:\Program Files\eMule 2008-10-29 16:58 --------- d-----w C:\Documents and Settings\goyet\Application Data\SolidWorks 2008-10-28 15:11 --------- d-----w C:\Program Files\SolidWorks 2008-10-27 18:59 --------- d-----w C:\Program Files\Apple Software Update 2008-10-27 08:02 --------- d-----w C:\Program Files\Bonjour 2008-10-27 08:00 --------- d-----w C:\Program Files\Fichiers communs\Apple 2008-10-22 09:52 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help 2008-10-21 18:16 --------- d-----w C:\Program Files\Microsoft Silverlight 2008-10-17 20:42 --------- d-----w C:\Program Files\Fichiers communs\Adobe 2008-10-13 15:48 3,522,510 ----a-w C:\Program Files\1.3DS 2008-10-13 06:40 --------- d--h--w C:\Program Files\InstallShield Installation Information 2008-10-08 09:31 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP 2008-10-07 08:39 --------- d-----w C:\Program Files\Fichiers communs\Bluebeam Software 2008-10-01 12:01 32,000 ----a-w C:\WINDOWS\system32\drivers\usbaapl.sys 2008-09-25 08:52 --------- d-----w C:\Documents and Settings\goyet\Application Data\Apple Computer 2008-09-25 08:18 --------- d-----w C:\Documents and Settings\All Users\Application Data\WinZip 2008-09-25 08:07 --------- d-----w C:\Program Files\Fichiers communs\Autodesk Shared 2008-09-25 08:07 --------- d-----w C:\Documents and Settings\All Users\Application Data\Autodesk 2008-09-16 00:12 81,920 ----a-w C:\WINDOWS\system32\dpl100.dll 2008-09-16 00:12 593,920 ----a-w C:\WINDOWS\system32\dpuGUI11.dll 2008-09-16 00:12 57,344 ----a-w C:\WINDOWS\system32\dpv11.dll 2008-09-16 00:12 53,248 ----a-w C:\WINDOWS\system32\dpuGUI10.dll 2008-09-16 00:12 344,064 ----a-w C:\WINDOWS\system32\dpus11.dll 2008-09-16 00:12 294,912 ----a-w C:\WINDOWS\system32\dpu11.dll 2008-09-16 00:12 294,912 ----a-w C:\WINDOWS\system32\dpu10.dll 2008-09-16 00:12 200,704 ----a-w C:\WINDOWS\system32\ssldivx.dll 2008-09-16 00:12 196,608 ----a-w C:\WINDOWS\system32\dtu100.dll 2008-09-16 00:12 1,044,480 ----a-w C:\WINDOWS\system32\libdivx.dll 2008-09-15 15:39 1,846,144 ----a-w C:\WINDOWS\system32\win32k.sys 2008-08-29 09:18 87,336 ----a-w C:\WINDOWS\system32\dns-sd.exe 2008-08-29 08:53 61,440 ----a-w C:\WINDOWS\system32\dnssd.dll 2008-08-28 10:04 333,056 ----a-w C:\WINDOWS\system32\drivers\srv.sys 2008-08-20 05:37 663,552 ----a-w C:\WINDOWS\system32\wininet.dll 2008-08-14 13:44 2,182,400 ----a-w C:\WINDOWS\system32\ntoskrnl.exe 2008-08-14 13:44 2,059,776 ----a-w C:\WINDOWS\system32\ntkrnlpa.exe 2008-07-18 20:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll 2008-07-18 20:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe 2008-07-18 20:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll 2008-07-18 20:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll 2008-07-18 20:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll 2008-07-18 20:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll 2008-07-18 20:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll 2008-07-18 20:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll 2008-07-18 20:07 270,880 ----a-w C:\WINDOWS\system32\mucltui.dll 2008-07-18 20:07 210,976 ----a-w C:\WINDOWS\system32\muweb.dll 2008-07-10 14:37 4,608 ----a-w C:\WINDOWS\system32\w95inf32.dll 2008-07-10 14:37 2,272 ----a-w C:\WINDOWS\system32\w95inf16.dll 2008-07-09 03:05 120,568 ------w C:\WINDOWS\system32\pxcpyi64.exe 2008-07-09 03:05 118,256 ------w C:\WINDOWS\system32\pxinsi64.exe 2008-07-07 20:31 253,952 ----a-w C:\WINDOWS\system32\es.dll 2006-05-03 10:06 163,328 --sh--r C:\WINDOWS\system32\flvDX.dll 2007-02-21 11:47 31,744 --sh--r C:\WINDOWS\system32\msfDX.dll . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" [2007-10-18 5724184] "CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-05 15360] "AdobeUpdater"="C:\Program Files\Fichiers communs\Adobe\Updater5\AdobeUpdater.exe" [2007-02-28 2321600] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Tvs"="C:\Program Files\TOSHIBA\Tvs\TvsTray.exe" [2004-11-12 73728] "TPNF"="C:\Program Files\TOSHIBA\TouchPad\TPTray.exe" [2004-11-29 53248] "TOSHIBA Accessibility"="C:\Program Files\TOSHIBA\Accessibility\FnKeyHook.exe" [2004-12-07 24576] "SVPWUTIL"="C:\Program Files\Toshiba\Windows Utilities\SVPWUTIL.exe" [2005-02-25 65536] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 144784] "SmoothView"="C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe" [2004-11-15 118784] "QuickTime Task"="C:\Program Files\QuickTime\QTTask.exe" [2008-09-06 413696] "PadTouch"="C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe" [2004-11-17 1077327] "iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2008-10-01 289576] "IgfxTray"="C:\WINDOWS\system32\igfxtray.exe" [2004-11-02 155648] "HWSetup"="C:\Program Files\TOSHIBA\TOSHIBA Applet\HWSetup.exe" [2004-12-23 28672] "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2007-10-14 49152] "HotKeysCmds"="C:\WINDOWS\system32\hkcmd.exe" [2004-11-02 126976] "dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [2005-01-14 122939] "CeEKEY"="C:\Program Files\TOSHIBA\E-KEY\CeEKey.exe" [2005-01-21 675840] "avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2008-10-31 78008] "Apoint"="C:\Program Files\Apoint2K\Apoint.exe" [2003-10-30 192512] "Adobe Reader Speed Launcher"="C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672] "Zooming"="ZoomingHook.exe" [2004-07-14 C:\WINDOWS\system32\ZoomingHook.exe] "TPSMain"="TPSMain.exe" [2005-01-21 C:\WINDOWS\system32\TPSMain.exe] "TFncKy"="TFncKy.exe" [bU] "TCtryIOHook"="TCtrlIOHook.exe" [2005-02-16 C:\WINDOWS\system32\TCtrlIOHook.exe] "NDSTray.exe"="NDSTray.exe" [bU] "CFSServ.exe"="CFSServ.exe" [bU] "AGRSMMSG"="AGRSMMSG.exe" [2004-10-28 C:\WINDOWS\agrsmmsg.exe] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-05 15360] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "VIDC.I420"= i420vfw.dll [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"= "C:\\Program Files\\Ares\\Ares.exe"= "C:\\Program Files\\eMule\\emule.exe"= "C:\\Documents and Settings\\goyet\\Bureau\\freezer.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"= "C:\\Program Files\\Bonjour\\mDNSResponder.exe"= "C:\\Program Files\\iTunes\\iTunes.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpiscnapp.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"= S2 aswFsBlk;aswFsBlk;C:\WINDOWS\system32\DRIVERS\aswFsBlk.sys [ ] S3 getPlus® Helper;getPlus® Helper;C:\Program Files\NOS\bin\getPlus_HelperSvc.exe [ ] S3 mr97320;PC-Camera;C:\WINDOWS\system32\DRIVERS\mr97320.sys [2007-04-20 69248] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12 HPService REG_MULTI_SZ HPSLPSVC hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{6079a764-9096-11dd-a43e-000fb091309a}] \Shell\AutoRun\command - G:\nideiect.com \Shell\explore\Command - G:\nideiect.com \Shell\open\Command - G:\nideiect.com [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d2854a13-4473-11dd-a34b-000fb091309a}] \Shell\AutoRun\command - 32e2.com \Shell\explore\Command - 32e2.com \Shell\open\Command - 32e2.com *Newly Created Service* - PROCEXP90 . Contenu du dossier 'Tâches planifiées' 2008-10-27 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job - C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 12:34] 2008-06-27 C:\WINDOWS\Tasks\Rappel d'enregistrement 1.job - C:\WINDOWS\system32\OOBE\oobebaln.exe [2004-08-05 12:00] . - - - - ORPHELINS SUPPRIMES - - - - HKCU-Run-TOSCDSPD - C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe . ------- Examen supplémentaire ------- . FireFox -: Profile - C:\Documents and Settings\goyet\Application Data\Mozilla\Firefox\Profiles\85ow1vhl.default\ FF -: plugin - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll FF -: plugin - c:\Program Files\Microsoft Silverlight\2.0.31005.0\npctrl.1.0.30716.0.dll FF -: plugin - c:\Program Files\Microsoft Silverlight\2.0.31005.0\npctrl.dll . ************************************************************************** catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-10-31 09:18:42 Windows 5.1.2600 Service Pack 2 NTFS Recherche de processus cachés ... Recherche d'éléments en démarrage automatique cachés ... Recherche de fichiers cachés ... C:\DOCUME~1\goyet\LOCALS~1\Temp\RGI1.tmp Scan terminé avec succès Fichiers cachés: 1 ************************************************************************** [HKEY_LOCAL_MACHINE\system\ControlSet001\Services\srosa] . Heure de fin: 2008-10-31 9:20:36 ComboFix-quarantined-files.txt 2008-10-31 08:20:34 Avant-CF: 37,934,120,960 octets libres Après-CF: 40,259,260,416 octets libres WindowsXP-KB310994-SP2-Home-BootDisk-FRA.exe [boot loader] timeout=2 default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS [operating systems] C:\CMDCONS\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP dition familiale" /noexecute=optin /fastdetect 273 --- E O F --- 2008-10-26 08:06:17 Cordialement Ps : j'arrive maintenant à utiliser spybot et AVG mais pas l'antivirus deja installer sur le pc -
Virus qui à tout bloqué (win32 pas valide)
ktom a posté un sujet dans Analyses et éradication malwares
Bonjour, Depuis l'installation d'un logiciel qui était un virus, je ne peut presque plus rien faire. Je n'est plus de connexion internet, les application antivirus avast spybot, adware... ne démarre plus (n'est pas une application valide de win 32). Même kijack fait le même message. Je n'est réussi qu'a utiliser combo fix et j'ai eu un rapport. En regardant sur internet j'ai cru comprendre que c'était un méchant bagle. J4ai windows xp. Est ce qu'il y aurait une solution. merci -
Merci de m'aider aussi rapidement malheureusement je n'est plus le pc à ma disposition je poste le résultat demain. Merci à demain
-
Voila le resultat de l'analyse: C:\WINDOWS\System32/drivers\aswRdr.sys -->15/01/2007 18:26:08 C:\WINDOWS\System32/drivers\aswTdi.sys -->15/01/2007 18:25:24 C:\WINDOWS\System32/drivers\aswmon.sys -->21/12/2006 00:56:14 C:\WINDOWS\System32/drivers\aswmon2.sys -->21/12/2006 00:56:00 C:\WINDOWS\System32/drivers\aavmker4.sys -->21/12/2006 00:51:58 C:\WINDOWS\System32/drivers\wpdusb.sys -->18/10/2006 20:00:00 C:\WINDOWS\System32/drivers\WudfRd.sys -->28/09/2006 19:00:34 C:\WINDOWS\System32\ctaysmn.dat -->18/03/2007 20:17:00 C:\WINDOWS\System32\ctaysmn_navps.dat -->18/03/2007 20:16:54 C:\WINDOWS\System32\nvapps.xml -->18/03/2007 20:06:16 C:\WINDOWS\System32\wpa.dbl -->18/03/2007 20:06:10 C:\WINDOWS\System32\ctaysmn_nav.dat -->17/03/2007 08:51:02 C:\WINDOWS\System32\ctaysmn.exe -->14/03/2007 20:26:56 C:\WINDOWS\System32\MRT.exe -->07/03/2007 21:36:32 C:\WINDOWS\System32\TZLog.log -->17/02/2007 09:46:42 C:\WINDOWS\System32\tzchange.exe -->29/01/2007 09:58:06 C:\WINDOWS\System32\hhctrl.ocx -->23/01/2007 20:31:20 C:\WINDOWS\System32\sirenacm.dll -->19/01/2007 12:53:04 C:\WINDOWS\System32\CONFIG.NT -->17/01/2007 08:02:58 C:\WINDOWS\System32\aswBoot.exe -->15/01/2007 18:32:08 C:\WINDOWS\System32\AVASTSS.scr -->15/01/2007 18:23:20 C:\WINDOWS\System32\nvs2.inf -->06/01/2007 15:16:14 C:\WINDOWS\System32\shlwapi.dll -->04/01/2007 15:02:18 C:\WINDOWS\System32\shdocvw.dll -->04/01/2007 15:02:16 C:\WINDOWS\System32\danim.dll -->04/01/2007 15:01:58 C:\WINDOWS\System32\cdfview.dll -->04/01/2007 15:01:54 C:\WINDOWS\System32\browseui.dll -->04/01/2007 15:01:54 C:\WINDOWS\System32\xpsp3res.dll -->04/01/2007 12:52:36 C:\WINDOWS\System32\TG_PVTR.LOG -->27/12/2006 17:15:32 C:\WINDOWS\System32\TG_SYNC.LOG -->27/12/2006 17:15:18 C:\WINDOWS\System32\TG_INIT.LOG -->27/12/2006 17:07:58 C:\WINDOWS\System32\TG_VIEW0607.DLL -->26/12/2006 19:57:44 C:\WINDOWS\WindowsUpdate.log -->18/03/2007 20:16:18 C:\WINDOWS-wlancfg.log -->18/03/2007 20:07:04 C:\WINDOWS\Msiosd.ini -->18/03/2007 20:06:22 C:\WINDOWS\spupdsvc.log -->18/03/2007 20:05:58 C:\WINDOWS.log -->18/03/2007 20:05:52 C:\WINDOWS\wiadebug.log -->18/03/2007 20:05:44 C:\WINDOWS\bootstat.dat -->18/03/2007 20:05:26 C:\WINDOWS\SchedLgU.Txt -->18/03/2007 19:26:16 C:\WINDOWS\wiaservc.log -->18/03/2007 19:26:12 C:\WINDOWS\setupapi.log.1.old -->18/03/2007 18:23:00 C:\WINDOWS\QTFont.qfn -->15/03/2007 15:02:54 C:\WINDOWS\win.ini -->08/01/2007 18:16:32 C:\WINDOWS\pack.epk -->06/01/2007 15:16:04 C:\WINDOWS\IFinst26.exe -->26/12/2006 19:56:00 C:\WINDOWS\WMSysPr9.prx -->17/10/2006 19:18:16 C:\WINDOWS\slrundll.exe |20/08/2004 01:10:02 C:\WINDOWS\twunk_16.exe |01/01/1980 00:00:00 C:\WINDOWS\twunk_32.exe |01/01/1980 00:00:00 C:\WINDOWS\IsUn040c.exe |08/09/2003 13:26:52 C:\WINDOWS\alcrmv.exe |08/09/2003 13:02:15 C:\WINDOWS\alcupd.exe |08/09/2003 13:02:15 C:\WINDOWS\SOUNDMAN.EXE |08/09/2003 13:02:15 C:\WINDOWS\UninstallFirefox.exe |24/10/2005 11:21:29 C:\WINDOWS\bwUnin-6.1.4.68-8876480L.exe |25/02/2006 10:29:39 C:\WINDOWS\callvers.exe |15/10/2005 13:36:07 C:\WINDOWS\IsUninst.exe |08/09/2003 12:52:34 C:\WINDOWS\unin040c.exe |16/12/2005 20:00:53 C:\WINDOWS\OPDIRDEL.exe |16/12/2005 20:06:06 C:\WINDOWS\bwUnin-7.2.0.157-8876480SL.exe |10/07/2006 19:58:06 C:\WINDOWS\IFinst26.exe |26/12/2006 19:55:58 C:\WINDOWS\twain.dll |01/01/1980 00:00:00 C:\WINDOWS\impborl.dll |08/09/2003 12:20:15 C:\WINDOWS\patchw32.dll |04/12/2005 18:36:50 C:\WINDOWS\twain_32.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\aswBoot.exe |10/06/2006 07:55:57 C:\WINDOWS\system32\PRISMSVR.exe |02/07/2004 16:27:26 C:\WINDOWS\system32\append.exe |01/01/1980 00:00:00 C:\WINDOWS\system32\debug.exe |01/01/1980 00:00:00 C:\WINDOWS\system32\dvdplay.exe |23/08/2001 17:47:34 C:\WINDOWS\system32\edlin.exe |01/01/1980 00:00:00 C:\WINDOWS\system32\exe2bin.exe |01/01/1980 00:00:00 C:\WINDOWS\system32\fastopen.exe |01/01/1980 00:00:00 C:\WINDOWS\system32\mem.exe |01/01/1980 00:00:00 C:\WINDOWS\system32\mscdexnt.exe |01/01/1980 00:00:00 C:\WINDOWS\system32\nlsfunc.exe |01/01/1980 00:00:00 C:\WINDOWS\system32\setver.exe |01/01/1980 00:00:00 C:\WINDOWS\system32\share.exe |01/01/1980 00:00:00 C:\WINDOWS\system32\usrmlnka.exe |23/08/2001 17:47:48 C:\WINDOWS\system32\usrprbda.exe |23/08/2001 17:47:48 C:\WINDOWS\system32\usrshuta.exe |23/08/2001 17:47:48 C:\WINDOWS\system32\DivXsm.exe |12/06/2006 21:22:06 C:\WINDOWS\system32\DivXCodecUpdateChecker.exe |14/06/2006 19:49:07 C:\WINDOWS\system32\ctaysmn.exe |14/03/2007 20:26:54 C:\WINDOWS\system32\muzapp.exe |26/12/2006 19:55:29 C:\WINDOWS\system32\MASetupCleaner.exe |26/12/2006 19:55:29 C:\WINDOWS\system32\dosx.exe |01/01/1980 00:00:00 C:\WINDOWS\system32\java.exe |25/10/2005 09:51:10 C:\WINDOWS\system32\javaw.exe |25/10/2005 09:51:10 C:\WINDOWS\system32\javaws.exe |25/10/2005 09:51:10 C:\WINDOWS\system32\CNMCP58.exe |28/09/2005 19:10:33 C:\WINDOWS\system32\NVUNINST.EXE |04/02/2006 19:03:28 C:\WINDOWS\system32\nvsvc32.exe |10/12/2005 03:06:00 C:\WINDOWS\system32\nvudisp.exe |04/02/2006 19:03:53 C:\WINDOWS\system32\keystone.exe |10/12/2005 03:06:00 C:\WINDOWS\system32\nvappbar.exe |10/12/2005 03:06:00 C:\WINDOWS\system32\nvcolor.exe |10/12/2005 03:06:00 C:\WINDOWS\system32\nvdspsch.exe |10/12/2005 03:06:00 C:\WINDOWS\system32\nwiz.exe |10/12/2005 03:06:00 C:\WINDOWS\system32\LVCOMSX.EXE |08/10/2004 11:52:32 C:\WINDOWS\system32\slserv.exe |20/08/2004 01:10:02 C:\WINDOWS\system32\slrundll.exe |20/08/2004 01:10:02 C:\WINDOWS\system32\InstMed.exe |25/02/2006 10:30:28 C:\WINDOWS\system32\redir.exe |01/01/1980 00:00:00 C:\WINDOWS\system32\PRISMNDI.dll |18/03/2004 13:49:14 C:\WINDOWS\system32\tg_dump.dll |26/12/2006 19:55:12 C:\WINDOWS\system32\PRISMAPI.dll |02/07/2004 16:23:40 C:\WINDOWS\system32\jgpl400.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\jgdw400.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\atmfd.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\lvcodec2.dll |25/02/2006 10:34:26 C:\WINDOWS\system32\LVUI2.dll |25/02/2006 10:34:26 C:\WINDOWS\system32\LVUI2RC.dll |25/02/2006 10:34:26 C:\WINDOWS\system32\lvcoinst.dll |25/02/2006 10:34:26 C:\WINDOWS\system32\jgaw400.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\jgmd400.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\jgsd400.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\jgsh400.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\mdwmdmsp.dll |23/08/2001 17:47:06 C:\WINDOWS\system32\msencode.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\isrdbg32.dll |08/09/2003 12:03:53 C:\WINDOWS\system32\vorbis.dll |26/12/2006 19:55:13 C:\WINDOWS\system32\slbrccsp.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\spnike.dll |23/08/2001 17:47:18 C:\WINDOWS\system32\sprio600.dll |23/08/2001 17:47:18 C:\WINDOWS\system32\sprio800.dll |23/08/2001 17:47:18 C:\WINDOWS\system32\tsd32.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\dpu11.dll |25/05/2006 00:46:43 C:\WINDOWS\system32\win87em.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\dpus11.dll |25/05/2006 00:46:43 C:\WINDOWS\system32\dpuGUI11.dll |25/05/2006 00:46:43 C:\WINDOWS\system32\dpv11.dll |25/05/2006 00:46:43 C:\WINDOWS\system32\qt-dx331.dll |25/05/2006 00:47:11 C:\WINDOWS\system32\libdivx.dll |25/05/2006 00:43:43 C:\WINDOWS\system32\ssldivx.dll |25/05/2006 00:43:43 C:\WINDOWS\system32\paqsp.dll |23/08/2001 17:47:16 C:\WINDOWS\system32\dpl100.dll |25/05/2006 00:46:43 C:\WINDOWS\system32\usrcntra.dll |23/08/2001 17:47:20 C:\WINDOWS\system32\usrcoina.dll |23/08/2001 17:47:20 C:\WINDOWS\system32\usrdpa.dll |23/08/2001 17:47:20 C:\WINDOWS\system32\usrdtea.dll |23/08/2001 17:47:20 C:\WINDOWS\system32\usrfaxa.dll |23/08/2001 17:47:20 C:\WINDOWS\system32\usrlbva.dll |23/08/2001 17:47:20 C:\WINDOWS\system32\usrrtosa.dll |23/08/2001 17:47:20 C:\WINDOWS\system32\usrsdpia.dll |23/08/2001 17:47:20 C:\WINDOWS\system32\usrsvpia.dll |23/08/2001 17:47:20 C:\WINDOWS\system32\usrv42a.dll |23/08/2001 17:47:20 C:\WINDOWS\system32\usrv80a.dll |23/08/2001 17:47:20 C:\WINDOWS\system32\usrvoica.dll |23/08/2001 17:47:20 C:\WINDOWS\system32\usrvpa.dll |23/08/2001 17:47:20 C:\WINDOWS\system32\dtu100.dll |25/05/2006 00:46:43 C:\WINDOWS\system32\dpu10.dll |25/05/2006 00:46:43 C:\WINDOWS\system32\dpuGUI10.dll |25/05/2006 00:46:51 C:\WINDOWS\system32\DivX.dll |15/06/2006 23:55:02 C:\WINDOWS\system32\divx_xx0c.dll |15/06/2006 23:55:02 C:\WINDOWS\system32\divx_xx07.dll |15/06/2006 23:55:03 C:\WINDOWS\system32\divx_xx11.dll |15/06/2006 23:55:02 C:\WINDOWS\system32\DivXWMPExtType.dll |19/04/2006 02:04:53 C:\WINDOWS\system32\iccvid.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\msdmo.dll |10/10/2005 20:00:58 C:\WINDOWS\system32\compatUI.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\muzapp.dll |26/12/2006 19:55:28 C:\WINDOWS\system32\muzaf1.dll |26/12/2006 19:55:29 C:\WINDOWS\system32\amstream.dll |10/10/2005 20:00:57 C:\WINDOWS\system32\atmlib.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\muzwmts.dll |26/12/2006 19:55:29 C:\WINDOWS\system32\OggDS.dll |26/12/2006 19:55:12 C:\WINDOWS\system32\vorbisenc.dll |26/12/2006 19:55:13 C:\WINDOWS\system32\Ogg.dll |26/12/2006 19:55:13 C:\WINDOWS\system32\MaDRM.dll |26/12/2006 19:55:18 C:\WINDOWS\system32\xvidvfw.dll |20/12/2004 11:08:28 C:\WINDOWS\system32\MACXMLProto.dll |26/12/2006 19:55:28 C:\WINDOWS\system32\MaJGUILib.dll |26/12/2006 19:55:28 C:\WINDOWS\system32\MK_Lyric.dll |26/12/2006 19:55:28 C:\WINDOWS\system32\MaJUtilLib.dll |26/12/2006 19:55:28 C:\WINDOWS\system32\MAMACExtract.dll |26/12/2006 19:55:28 C:\WINDOWS\system32\MaXMLProto.dll |26/12/2006 19:55:28 C:\WINDOWS\system32\MSCLib.dll |26/12/2006 19:55:30 C:\WINDOWS\system32\MASetupWizard.dll |26/12/2006 19:55:29 C:\WINDOWS\system32\MSFLib.dll |26/12/2006 19:55:30 C:\WINDOWS\system32\MTXSYNCICON.dll |26/12/2006 19:55:30 C:\WINDOWS\system32\xvidcore.dll |20/12/2004 11:03:26 C:\WINDOWS\system32\MTTELECHIP.dll |26/12/2006 19:55:30 C:\WINDOWS\system32\LAME_MP3.dll |26/12/2006 19:57:50 C:\WINDOWS\system32\SMIIMG.DLL |27/12/2006 17:07:38 C:\WINDOWS\system32\TG_SYNC.DLL |27/12/2006 17:07:38 C:\WINDOWS\system32\TG_DUMP0611.DLL |27/12/2006 17:07:38 C:\WINDOWS\system32\TG_VIEW0607.DLL |27/12/2006 17:07:38 C:\WINDOWS\system32\EqnClass.Dll |08/09/2003 11:59:52 C:\WINDOWS\system32\spxcoins.dll |08/09/2003 11:59:52 C:\WINDOWS\system32\dgsetup.dll |08/09/2003 11:59:52 C:\WINDOWS\system32\dgrpsetu.dll |08/09/2003 11:59:52 C:\WINDOWS\system32\msiosd32.dll |08/09/2003 13:08:58 C:\WINDOWS\system32\cnxtsdk.dll |08/09/2003 12:48:26 C:\WINDOWS\system32\hsfinst.dll |08/09/2003 12:48:29 C:\WINDOWS\system32\vboxs430.dll |12/09/2000 21:24:29 C:\WINDOWS\system32\Msikbd.dll |08/09/2003 13:08:58 C:\WINDOWS\system32\HSF_INST.dll |08/09/2003 12:00:46 C:\WINDOWS\system32\NTICDMK32.dll |08/09/2003 13:29:48 C:\WINDOWS\system32\multiplex_vcd.dll |26/12/2001 16:12:30 C:\WINDOWS\system32\Hmpg12.dll |03/09/2001 23:46:38 C:\WINDOWS\system32\HMPV2_ENC.dll |30/07/2001 16:33:56 C:\WINDOWS\system32\HMPV2_ENC_MMX.dll |23/07/2001 22:04:36 C:\WINDOWS\system32\a3d.dll |08/09/2003 13:02:15 C:\WINDOWS\system32\Audio3D.dll |08/09/2003 13:02:15 C:\WINDOWS\system32\CNMLM58.DLL |28/09/2005 19:10:37 C:\WINDOWS\system32\CNMVS58.DLL |28/09/2005 19:10:37 C:\WINDOWS\system32\lfbmp11n.dll |07/06/2002 04:02:00 C:\WINDOWS\system32\LFCMP11n.DLL |07/06/2002 04:02:00 C:\WINDOWS\system32\lfeps11n.dll |07/06/2002 04:02:00 C:\WINDOWS\system32\lffax11n.dll |07/06/2002 04:02:00 C:\WINDOWS\system32\lfgif11n.dll |07/06/2002 04:02:00 C:\WINDOWS\system32\lfpcd11n.dll |07/06/2002 04:02:00 C:\WINDOWS\system32\lfpcx11n.dll |07/06/2002 04:02:00 C:\WINDOWS\system32\Lfpng11n.dll |07/06/2002 04:02:00 C:\WINDOWS\system32\lfpsd11n.dll |07/06/2002 04:02:00 C:\WINDOWS\system32\lftga11n.dll |07/06/2002 04:02:00 C:\WINDOWS\system32\lftif11n.dll |07/06/2002 04:02:00 C:\WINDOWS\system32\lfwmf11n.dll |07/06/2002 04:02:00 C:\WINDOWS\system32\LTDIS11n.dll |07/06/2002 04:02:00 C:\WINDOWS\system32\ltfil11n.DLL |07/06/2002 04:02:00 C:\WINDOWS\system32\ltimg11n.dll |07/06/2002 04:02:02 C:\WINDOWS\system32\ltkrn11n.dll |07/06/2002 04:02:02 C:\WINDOWS\system32\Ltwvc11n.dll |07/06/2002 04:02:02 C:\WINDOWS\system32\PCDLIB32.DLL |07/06/2002 04:02:02 C:\WINDOWS\system32\GEARAspi.dll |31/05/2005 10:20:36 C:\WINDOWS\system32\ZWebAuth.dll |07/11/2005 09:14:46 C:\WINDOWS\system32\Ir50_32.dll |09/10/2005 19:31:32 C:\WINDOWS\system32\Ir32_32.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\Iacenc.dll |09/10/2005 19:31:32 C:\WINDOWS\system32\Iyvu9_32.dll |09/10/2005 19:31:32 C:\WINDOWS\system32\encdec.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\D125UUD.DLL |16/12/2005 20:13:07 C:\WINDOWS\system32\SG63CPL.DLL |16/12/2005 20:13:07 C:\WINDOWS\system32\D125UFW.dll |16/12/2005 20:13:08 C:\WINDOWS\system32\D125UAG.DLL |16/12/2005 20:13:08 C:\WINDOWS\system32\UCS32P.DLL |16/12/2005 20:13:09 C:\WINDOWS\system32\Ir41_qc.dll |22/03/1998 12:34:14 C:\WINDOWS\system32\Ir41_qcx.dll |22/03/1998 12:34:14 C:\WINDOWS\system32\Ir50_qc.dll |07/10/1998 14:46:18 C:\WINDOWS\system32\Ir50_qcx.dll |07/10/1998 14:50:22 C:\WINDOWS\system32\W32N50.dll |24/01/2006 20:26:09 C:\WINDOWS\system32\nv4_disp.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvhwvid.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvapi.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvoglnt.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvcpl.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvmctray.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvwddi.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvnt4cpl.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvmccs.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvcod.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvcodins.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nview.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvshell.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvwdmcpl.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvwimg.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvmccsrs.dll |10/12/2005 03:06:00 C:\WINDOWS\system32\nvrsar.dll |08/09/2003 12:47:33 C:\WINDOWS\system32\nvwrsar.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrscs.dll |08/09/2003 12:47:33 C:\WINDOWS\system32\nvwrscs.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrsda.dll |08/09/2003 12:47:33 C:\WINDOWS\system32\nvwrsda.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrsde.dll |08/09/2003 12:47:33 C:\WINDOWS\system32\nvwrsde.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrsel.dll |08/09/2003 12:47:33 C:\WINDOWS\system32\nvwrsel.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrseng.dll |08/09/2003 12:47:33 C:\WINDOWS\system32\nvwrseng.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrses.dll |08/09/2003 12:47:33 C:\WINDOWS\system32\nvwrses.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrsesm.dll |08/09/2003 12:47:33 C:\WINDOWS\system32\nvwrsesm.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrsfi.dll |08/09/2003 12:47:34 C:\WINDOWS\system32\nvwrsfi.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrsfr.dll |08/09/2003 12:47:34 C:\WINDOWS\system32\nvwrsfr.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrshe.dll |08/09/2003 12:47:34 C:\WINDOWS\system32\nvwrshe.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrshu.dll |08/09/2003 12:47:34 C:\WINDOWS\system32\nvwrshu.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrsit.dll |08/09/2003 12:47:34 C:\WINDOWS\system32\nvwrsit.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrsja.dll |08/09/2003 12:47:34 C:\WINDOWS\system32\nvwrsja.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrsko.dll |08/09/2003 12:47:35 C:\WINDOWS\system32\nvwrsko.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrsnl.dll |08/09/2003 12:47:35 C:\WINDOWS\system32\nvwrsnl.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrsno.dll |08/09/2003 12:47:35 C:\WINDOWS\system32\nvwrsno.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrspl.dll |08/09/2003 12:47:35 C:\WINDOWS\system32\nvwrspl.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvrspt.dll |08/09/2003 12:47:35 C:\WINDOWS\system32\nvwrspt.dll |08/09/2003 12:47:37 C:\WINDOWS\system32\nvrsptb.dll |08/09/2003 12:47:35 C:\WINDOWS\system32\nvwrsptb.dll |08/09/2003 12:47:37 C:\WINDOWS\system32\nvrsru.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvwrsru.dll |08/09/2003 12:47:37 C:\WINDOWS\system32\nvrssk.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvwrssk.dll |08/09/2003 12:47:37 C:\WINDOWS\system32\nvrssl.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvwrssl.dll |08/09/2003 12:47:37 C:\WINDOWS\system32\nvrssv.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvwrssv.dll |08/09/2003 12:47:37 C:\WINDOWS\system32\nvrstr.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvwrstr.dll |08/09/2003 12:47:37 C:\WINDOWS\system32\nvrszhc.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvwrszhc.dll |08/09/2003 12:47:37 C:\WINDOWS\system32\nvrszht.dll |08/09/2003 12:47:36 C:\WINDOWS\system32\nvwrszht.dll |08/09/2003 12:47:37 C:\WINDOWS\system32\CmdLineExt.dll |05/02/2006 09:37:20 C:\WINDOWS\system32\SHW32.DLL |07/02/2006 20:27:43 C:\WINDOWS\system32\vp6vfw.dll |07/02/2006 20:27:45 C:\WINDOWS\system32\lfbmp12n.dll |25/02/2006 10:29:50 C:\WINDOWS\system32\LFCMP12n.DLL |25/02/2006 10:29:50 C:\WINDOWS\system32\lffax12n.dll |25/02/2006 10:29:50 C:\WINDOWS\system32\lftif12n.dll |25/02/2006 10:29:50 C:\WINDOWS\system32\LTDIS12n.dll |25/02/2006 10:29:51 C:\WINDOWS\system32\ltefx12n.dll |25/02/2006 10:29:51 C:\WINDOWS\system32\ltfil12n.DLL |25/02/2006 10:29:51 C:\WINDOWS\system32\ltimg12n.dll |25/02/2006 10:29:51 C:\WINDOWS\system32\ltkrn12n.dll |25/02/2006 10:29:51 C:\WINDOWS\system32\Ltwvc12n.dll |25/02/2006 10:29:51 C:\WINDOWS\system32\QCUI2.dll |25/02/2006 10:29:52 C:\WINDOWS\system32\slbiop.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\slbcsp.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\Lvkrn12n.dll |25/02/2006 10:29:58 C:\WINDOWS\system32\LCamCpl.dll |25/02/2006 10:29:58 C:\WINDOWS\system32\LQCUI2.dll |25/02/2006 10:29:49 C:\WINDOWS\system32\LVCOMCX.dll |08/10/2004 11:55:36 C:\WINDOWS\system32\LVMAENUM.dll |08/10/2004 11:52:58 C:\WINDOWS\system32\slgen.dll |20/08/2004 01:09:41 C:\WINDOWS\system32\slextspk.dll |20/08/2004 01:09:41 C:\WINDOWS\system32\slcoinst.dll |20/08/2004 01:09:41 C:\WINDOWS\system32\s3gnb.dll |20/08/2004 01:09:39 C:\WINDOWS\system32\indounin.dll |27/01/1999 13:39:06 C:\WINDOWS\system32\Npindeo.dll |20/11/1998 13:38:58 C:\WINDOWS\system32\sbe.dll |01/01/1980 00:00:00 C:\WINDOWS\system32\psisdecd.dll |09/12/2005 18:37:51 C:\WINDOWS\system32\qedwipes.dll |10/10/2005 20:00:59 C:\WINDOWS\system32\mtxparhd.dll |20/08/2004 01:09:35 C:\WINDOWS\system32\mdmxsdk.dll |20/08/2004 01:09:30 C:\WINDOWS\system32\hsfcisp2.dll |20/08/2004 01:09:27 C:\WINDOWS\system32\ativvaxx.dll |20/08/2004 01:09:19 C:\WINDOWS\system32\ativtmxx.dll |20/08/2004 01:09:19 C:\WINDOWS\system32\ati3duag.dll |20/08/2004 01:09:19 C:\WINDOWS\system32\ati3d1ag.dll |20/08/2004 01:09:19 C:\WINDOWS\system32\ati2dvag.dll |20/08/2004 01:09:19 C:\WINDOWS\system32\ati2dvaa.dll |20/08/2004 01:09:19 C:\WINDOWS\system32\ati2cqag.dll |20/08/2004 01:09:19 Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 2848-15E0 Répertoire de C:\WINDOWS\system 08/09/2003 13:29 9 728 regsvr32.exe 1 fichier(s) 9 728 octets 0 Rép(s) 68 286 808 064 octets libres Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 2848-15E0 Répertoire de C:\WINDOWS\system32 20/08/2004 01:09 6 144 csrss.exe 1 fichier(s) 6 144 octets 0 Rép(s) 68 286 808 064 octets libres Contenu de Downloaded Program Files Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 2848-15E0 Répertoire de C:\WINDOWS\Downloaded Program Files 08/09/2003 12:04 <REP> . 08/09/2003 12:04 <REP> .. 08/09/2003 12:04 65 desktop.ini 27/10/2005 12:07 334 776 AFAutoConfig.ocx 31/01/2005 23:26 117 800 ZIntro.ocx 26/07/2004 20:36 134 747 zsetup.exe 26/07/2004 20:36 101 464 hrtbeat.ocx 26/07/2004 20:37 325 heartbeat.inf 08/12/2005 12:46 1 271 erma.inf 30/10/2003 17:55 925 696 npaecviz.dll 30/10/2003 18:00 216 npaecviz.inf 30/06/2003 22:41 1 689 WMV9VCM.inf 29/05/2003 15:00 77 408 msgrchkr.dll 29/05/2003 15:00 160 864 messengerstatsclient.dll 29/05/2003 15:00 86 112 solitaireshowdown.dll 29/05/2003 15:00 84 064 minesweeper.dll 06/04/2004 19:03 172 072 MessengerStatsPAClient.dll 09/11/2006 14:36 5 019 swflash.inf 22/11/2006 23:22 372 736 GAME_UNO1.dll 22/11/2006 20:50 316 GAME_UNO1.INF 11/03/2007 19:46 <REP> CONFLICT.1 11/12/2006 16:44 367 LegitCheckControl.inf 19 fichier(s) 2 577 007 octets Répertoire de C:\WINDOWS\Downloaded Program Files\CONFLICT.1 11/03/2007 19:46 <REP> . 11/03/2007 19:46 <REP> .. 22/02/2007 23:41 304 544 MessengerStatsPAClient.dll 28/02/2007 14:21 142 248 SolitaireShowdown.dll 2 fichier(s) 446 792 octets Total des fichiers listés : 21 fichier(s) 3 023 799 octets 5 Rép(s) 68 286 808 064 octets libres Recherche de rootkit! (Merci S!Ri) infection possible Magic.Control : un scan F-Secure BlackLight est recommandé Recherche d'infections connues C:\Program Files\Advert présent! Possible infection : lop.com catchme 0.2 W2K/XP/Vista - userland rootkit detector by Gmer, 17 October 2006 http://www.gmer.net scanning hidden processes ... scanning hidden services ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden services: 0 hidden files: 0 Liste des programmes installes Ad-Aware SE Personal Adobe Acrobat 5.0 Adobe Flash Player 9 ActiveX Adobe Help Center 1.0 Adobe Photoshop Elements Adobe Stock Photos 1.0 Artweaver 0.3.9.6 Askey HSFi V.90(V.92) 56K PCI Modem Aspire Screen Saver AudioDJ Driver 3.3 AutoUpdate avast! Antivirus AVG Anti-Spyware 7.5 Barre d'outils Outlook de Windows Live (Windows Live Toolbar) Bloqueur de fenêtres pop-up (Windows Live Toolbar) Canon i560 Canon Utilities Easy-PhotoPrint CCleaner (remove only) Commande ECHO désactivée. Correctif pour Windows XP (KB914440) Correctif Windows XP - KB873339 Correctif Windows XP - KB885250 Correctif Windows XP - KB885835 Correctif Windows XP - KB885836 Correctif Windows XP - KB885884 Correctif Windows XP - KB886185 Correctif Windows XP - KB887472 Correctif Windows XP - KB887742 Correctif Windows XP - KB888113 Correctif Windows XP - KB888302 Correctif Windows XP - KB890859 Correctif Windows XP - KB891781 DivX Détecteur de flux Windows Live Toolbar (Windows Live Toolbar) eMule EVEREST Home Edition v2.20 Extension de Windows Live Toolbar (Windows Live Toolbar) GameSpy Arcade HijackThis 1.99.1 Hotfix for Windows Media Format 11 SDK (KB929399) Hotfix for Windows XP (KB915865) Indeo® software iTunes iTunes IZArc 3.5 beta 3 J2SE Runtime Environment 5.0 Update 5 Keymaestro Office Keyboard Lame ACM MP3 Codec Language pack for Ad-Aware SE Lecteur Windows Media 11 Les Sims 2 Logiciel de la Souris Labtec 2.0 Logiciel QuickCam de Logitech Logitech Desktop Messenger Logitech Print Service Macromedia Shockwave Player Menus intelligents (Windows Live Toolbar) Messenger Plus! Live & Sponsor (CiD) Microsoft AutoRoute 2002 Microsoft Internationalized Domain Names Mitigation APIs Microsoft Motocross Madness 2 Microsoft National Language Support Downlevel APIs Microsoft Office Professional Edition 2003 Microsoft Office XP Professional avec FrontPage Microsoft User-Mode Driver Framework Feature Pack 1.0 Microsoft Word 2002 Microsoft Works 7.0 Microsoft XML Parser and SDK Mise à jour de sécurité pour Lecteur Windows Media (KB911564) Mise à jour de sécurité pour Lecteur Windows Media 10 (KB917734) Mise à jour de sécurité pour Lecteur Windows Media 6.4 (KB925398) Mise à jour de sécurité pour Lecteur Windows Media 9 (KB911565) Mise à jour de sécurité pour Lecteur Windows Media 9 (KB917734) Mise à jour de sécurité pour Windows XP (KB890046) Mise à jour de sécurité pour Windows XP (KB893756) Mise à jour de sécurité pour Windows XP (KB896358) Mise à jour de sécurité pour Windows XP (KB896422) Mise à jour de sécurité pour Windows XP (KB896423) Mise à jour de sécurité pour Windows XP (KB896424) Mise à jour de sécurité pour Windows XP (KB896428) Mise à jour de sécurité pour Windows XP (KB899587) Mise à jour de sécurité pour Windows XP (KB899591) Mise à jour de sécurité pour Windows XP (KB900725) Mise à jour de sécurité pour Windows XP (KB901017) Mise à jour de sécurité pour Windows XP (KB901214) Mise à jour de sécurité pour Windows XP (KB902400) Mise à jour de sécurité pour Windows XP (KB904706) Mise à jour de sécurité pour Windows XP (KB905414) Mise à jour de sécurité pour Windows XP (KB905749) Mise à jour de sécurité pour Windows XP (KB908519) Mise à jour de sécurité pour Windows XP (KB911280) Mise à jour de sécurité pour Windows XP (KB911562) Mise à jour de sécurité pour Windows XP (KB911567) Mise à jour de sécurité pour Windows XP (KB911927) Mise à jour de sécurité pour Windows XP (KB912812) Mise à jour de sécurité pour Windows XP (KB912919) Mise à jour de sécurité pour Windows XP (KB913446) Mise à jour de sécurité pour Windows XP (KB913580) Mise à jour de sécurité pour Windows XP (KB914388) Mise à jour de sécurité pour Windows XP (KB914389) Mise à jour de sécurité pour Windows XP (KB916281) Mise à jour de sécurité pour Windows XP (KB917159) Mise à jour de sécurité pour Windows XP (KB917344) Mise à jour de sécurité pour Windows XP (KB917422) Mise à jour de sécurité pour Windows XP (KB917953) Mise à jour de sécurité pour Windows XP (KB918118) Mise à jour de sécurité pour Windows XP (KB918439) Mise à jour de sécurité pour Windows XP (KB918899) Mise à jour de sécurité pour Windows XP (KB919007) Mise à jour de sécurité pour Windows XP (KB920213) Mise à jour de sécurité pour Windows XP (KB920214) Mise à jour de sécurité pour Windows XP (KB920670) Mise à jour de sécurité pour Windows XP (KB920683) Mise à jour de sécurité pour Windows XP (KB920685) Mise à jour de sécurité pour Windows XP (KB921398) Mise à jour de sécurité pour Windows XP (KB921883) Mise à jour de sécurité pour Windows XP (KB922616) Mise à jour de sécurité pour Windows XP (KB922760) Mise à jour de sécurité pour Windows XP (KB922819) Mise à jour de sécurité pour Windows XP (KB923191) Mise à jour de sécurité pour Windows XP (KB923414) Mise à jour de sécurité pour Windows XP (KB923694) Mise à jour de sécurité pour Windows XP (KB923980) Mise à jour de sécurité pour Windows XP (KB924191) Mise à jour de sécurité pour Windows XP (KB924270) Mise à jour de sécurité pour Windows XP (KB924496) Mise à jour de sécurité pour Windows XP (KB924667) Mise à jour de sécurité pour Windows XP (KB925454) Mise à jour de sécurité pour Windows XP (KB925486) Mise à jour de sécurité pour Windows XP (KB926255) Mise à jour de sécurité pour Windows XP (KB926436) Mise à jour de sécurité pour Windows XP (KB927779) Mise à jour de sécurité pour Windows XP (KB927802) Mise à jour de sécurité pour Windows XP (KB928090) Mise à jour de sécurité pour Windows XP (KB928255) Mise à jour de sécurité pour Windows XP (KB928843) Mise à jour de sécurité pour Windows XP (KB929969) Mise à jour pour Windows XP (KB898461) Mise à jour pour Windows XP (KB900485) Mise à jour pour Windows XP (KB904942) Mise à jour pour Windows XP (KB908531) Mise à jour pour Windows XP (KB910437) Mise à jour pour Windows XP (KB916595) Mise à jour pour Windows XP (KB920872) Mise à jour pour Windows XP (KB922582) Mise à jour pour Windows XP (KB929338) Mise à jour pour Windows XP (KB931836) Mozilla Firefox (2.0.0.2) MSN Gaming Zone MSXML 4.0 SP2 (KB927978) Navigation par onglets (Windows Live Toolbar) NTI CD/ DVD-Maker NTI CD/DVD-Maker 6 Gold NVIDIA Drivers OneCare Advisor (Windows Live Toolbar) OpenOffice.org 2.0 OS Pack Works Suite Pack Vista Inspirat 1.1 PowerDVD Print Artist 2004 Programme de gestion Camera de Logitech® QuickTime QuickTime Realtek AC'97 Audio RollerCoaster Tycoon® 3 Samsung Media Studio SierraAddressBook 3.0 Spybot - Search & Destroy 1.4 Sélecteur d'installation de Microsoft Works Suite 2003 SuperCopier Tiger Woods PGA TOUR 06 Torino 2006 TrackMania Nations ESWC 0.1.7.5 WebFldrs XP Windows Genuine Advantage Notifications (KB905474) Windows Installer 3.1 (KB893803) Windows Internet Explorer 7 Windows Live Messenger Windows Live OneCare safety scanner Windows Live Sign-in Assistant Windows Live Toolbar Windows Live Toolbar Windows Media Format 11 runtime Windows Media Format 11 runtime Windows Media Player 11 XviD MPEG-4 Video Codec Yahoo! Toolbar Yahoo! Toolbar avec bloqueur de fenêtres pop-up Zoo Tycoon 2 Endangered Species Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 2848-15E0 Répertoire de C:\Program Files 08/09/2003 11:59 <REP> . 08/09/2003 11:59 <REP> .. 06/02/2006 18:41 <REP> 2K Sports 08/09/2003 13:27 <REP> Adobe 22/07/2006 15:59 <REP> Adverts 04/12/2005 18:08 <REP> alcohol 04/12/2005 18:08 <REP> Alcohol Soft 07/11/2005 08:53 <REP> Alwil Software 21/12/2005 20:15 <REP> Artweaver 0.3 08/09/2003 13:11 <REP> Askey 04/12/2005 18:34 <REP> Atari 08/09/2003 13:02 <REP> AvRack 28/09/2005 19:11 <REP> Canon 18/03/2007 18:42 <REP> CCleaner 08/09/2003 12:03 <REP> ComPlus Applications 08/09/2003 13:28 <REP> CyberLink 06/07/2006 17:26 <REP> DivX 26/02/2006 09:39 <REP> EA GAMES 07/02/2006 20:22 <REP> EA SPORTS 24/10/2005 11:15 <REP> eMule 08/09/2003 11:59 <REP> Fichiers communs 17/03/2007 13:47 <REP> FIRST CITY OKAY 10/10/2005 20:00 <REP> GameSpy Arcade 18/03/2007 18:43 <REP> Grisoft 07/01/2007 14:15 <REP> HbTools 09/10/2005 16:43 <REP> Intel 08/09/2003 12:03 <REP> Internet Explorer 30/01/2006 12:45 <REP> Inventel 24/10/2005 15:19 <REP> iPod 24/10/2005 15:18 <REP> iTunes 13/02/2006 18:16 <REP> IZArc 25/10/2005 09:50 <REP> Java 08/09/2003 13:09 <REP> Keymaestro 15/10/2005 13:36 <REP> Labtec 26/12/2006 19:57 <REP> Lame MP3 Codec 09/12/2005 18:50 <REP> Lavalys 24/09/2006 14:25 <REP> Lavasoft 25/02/2006 10:29 <REP> Logitech 26/12/2006 19:55 <REP> MarkAny 08/09/2003 12:02 <REP> Messenger 01/07/2006 14:34 <REP> Messenger Plus! Live 06/01/2007 15:16 <REP> MessengerSkinner 06/02/2006 18:59 <REP> Microsoft AntiSpyware 09/01/2006 11:02 <REP> Microsoft AutoRoute 08/09/2003 12:05 <REP> microsoft frontpage 04/10/2005 19:28 <REP> Microsoft Games 28/09/2005 19:18 <REP> Microsoft Office 28/09/2005 19:12 <REP> Microsoft Works 28/09/2005 19:12 <REP> Microsoft Works Suite 2003 08/09/2003 12:03 <REP> Movie Maker 24/10/2005 11:21 <REP> Mozilla Firefox 08/09/2003 12:02 <REP> MSN 08/09/2003 12:02 <REP> MSN Gaming Zone 21/10/2005 19:03 <REP> MSN Messenger 26/12/2005 19:48 <REP> MSXML 4.0 05/11/2005 09:14 <REP> NCH Swift Sound 08/09/2003 12:03 <REP> NetMeeting 08/09/2003 13:09 <REP> Netropa 08/09/2003 13:30 <REP> NewTech Infosystems 08/09/2003 13:32 <REP> O2Micro 04/10/2006 19:20 <REP> OpenOffice.org 2.0 08/09/2003 12:03 <REP> Outlook Express 24/10/2005 15:19 <REP> QuickTime 08/09/2003 13:02 <REP> Realtek Sound Manager 26/12/2006 19:55 <REP> Samsung 08/09/2003 12:03 <REP> Services en ligne 22/12/2005 14:28 <REP> Sierra 12/10/2005 18:14 <REP> solidworks 18/03/2007 17:27 <REP> Spybot - Search & Destroy 06/02/2006 18:52 <REP> SuperCopier 07/10/2005 19:32 <REP> SuperCopier & 13/04/2006 18:52 <REP> TLC 04/02/2006 18:40 <REP> TrackMania Nations ESWC 11/01/2006 20:03 <REP> Ubisoft 07/02/2006 21:04 <REP> VVSN 04/01/2007 14:23 <REP> Windows Live Safety Center 17/03/2007 19:40 <REP> Windows Live Toolbar 09/12/2006 09:13 <REP> Windows Media Connect 2 08/09/2003 12:03 <REP> Windows Media Player 08/09/2003 12:02 <REP> Windows NT 08/09/2003 12:05 <REP> xerox 26/12/2006 19:55 <REP> XviD 01/02/2006 15:38 <REP> Yahoo! 0 fichier(s) 0 octets 83 Rép(s) 68 285 120 512 octets libres Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 2848-15E0 Répertoire de C:\Program Files\fichiers communs 08/09/2003 11:59 <REP> . 08/09/2003 11:59 <REP> .. 08/09/2003 11:59 <REP> Microsoft Shared 08/09/2003 11:59 <REP> SpeechEngines 08/09/2003 11:59 <REP> ODBC 08/09/2003 12:03 <REP> System 08/09/2003 12:03 <REP> MSSoap 08/09/2003 12:03 <REP> Services 08/09/2003 12:56 <REP> InstallShield 08/09/2003 13:27 <REP> Adobe 09/10/2005 18:57 <REP> Designer 10/10/2005 20:02 <REP> DirectX 25/10/2005 09:50 <REP> Java 04/12/2005 18:36 <REP> PocketSoft 16/12/2005 20:01 <REP> Caere 22/12/2005 14:29 <REP> Sierra On-Line 22/12/2005 14:29 <REP> Sierra 19/01/2006 18:58 <REP> Adobe Systems Shared 11/10/2006 18:53 278 528 FDEUnInstaller.exe 25/02/2006 10:30 <REP> Logitech 25/02/2006 10:31 <REP> FotoWire 1 fichier(s) 278 528 octets 20 Rép(s) 68 285 628 416 octets libres Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 2848-15E0 Répertoire de C:\Program Files\fichiers communs\Microsoft Shared\Web Folders 08/09/2003 12:08 <REP> . 08/09/2003 12:08 <REP> .. 07/03/2001 09:00 127 033 MSOWS40c.DLL 03/06/1999 14:09 122 937 MSOWS409.DLL 28/09/2005 19:18 <REP> 1036 22/01/2001 03:25 32 768 VAIMEM.DLL 22/01/2001 03:25 323 584 VAIDDMGR.DLL 22/01/2001 03:25 184 320 SECMGR.DLL 22/01/2001 03:25 237 568 PROMDEMO.DLL 22/01/2001 03:25 40 960 PKMTEMPL.DLL 22/01/2001 03:25 28 672 PKMSSTLB.DLL 12/02/2001 04:03 684 032 PKMRES.DLL 07/02/2001 09:59 106 496 PKMFORMS.DLL 22/01/2001 03:25 159 744 PKMCORE.DLL 22/01/2001 03:25 872 448 PKMCDO.DLL 22/01/2001 03:25 69 632 PKMAXCTL.DLL 06/08/2000 09:04 401 462 MSVCP60.DLL 22/01/2001 03:25 24 576 PKMTRACE.DLL 15/07/2003 06:52 35 896 MSOSV.DLL 16/12/2005 20:21 <REP> 1033 11/07/2003 10:15 1 292 872 MSONSEXT.DLL 11/07/2003 02:25 80 448 PKMWS.DLL 18 fichier(s) 4 825 448 octets 4 Rép(s) 68 285 628 416 octets libres Le volume dans le lecteur C n'a pas de nom. Le numéro de série du volume est 2848-15E0 Répertoire de C:\ 11/11/2001 00:00 68 096 diff.exe 27/08/2006 14:10 103 424 grep.exe 2 fichier(s) 171 520 octets 0 Rép(s) 68 285 628 416 octets libres c:\Documents and Settings\Default User\Local Settings\Temp\pft5~tmp\_ISDel.exe c:\Documents and Settings\Default User\Local Settings\Temp\pft5~tmp\Setup.exe c:\Documents and Settings\Default User\Local Settings\Temp\pft5~tmp\Via4in1.exe c:\Documents and Settings\All Users\Application Data\Start Logo Peak Pop\antiproxy.exe c:\Documents and Settings\All Users\Application Data\Start Logo Peak Pop\AxisMove.exe c:\Documents and Settings\All Users\Application Data\Start Logo Peak Pop\Eq loud.exe c:\Documents and Settings\goyet\Mes documents\theme\PatchXP_pour_UXTheme_SP1.exe c:\Documents and Settings\goyet\Mes documents\thomas\cours\motion works\mw2004+.exe c:\Documents and Settings\goyet\Mes documents\thomas\cours\Cosmos 2005 Pour Solidworks\2 - Logiciels COSMOS 2005 pour SolidWorks & Win32 - COSMOSWorks FR+COSMOSMotion FR+COSMOSFloworks US - FULL no crack\cfwIEnglish.exe c:\Documents and Settings\goyet\Mes documents\thomas\cours\Cosmos 2005 Pour Solidworks\2 - Logiciels COSMOS 2005 pour SolidWorks & Win32 - COSMOSWorks FR+COSMOSMotion FR+COSMOSFloworks US - FULL no crack\cmIFrench.exe c:\Documents and Settings\goyet\Mes documents\thomas\cours\Cosmos 2005 Pour Solidworks\2 - Logiciels COSMOS 2005 pour SolidWorks & Win32 - COSMOSWorks FR+COSMOSMotion FR+COSMOSFloworks US - FULL no crack\cwIFrench.exe c:\Documents and Settings\goyet\Mes documents\thomas\jeux\Nouveau dossier\devcon.exe c:\Documents and Settings\goyet\Mes documents\thomas\jeux\IMGtool20\IMGTool.exe c:\Documents and Settings\goyet\Mes documents\rct3\RCT3.exe c:\Documents and Settings\goyet\Mes documents\front page\FILES\SYSTEM\CTFMON.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\SYSTEM\FIXMAPI.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\SYSTEM\MAPISRVR.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\EXCEL.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\FINDER.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\FRONTPG.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\GRAPH.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\MAKECERT.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\MCDLC.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\MSACCESS.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\MSACNV30.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\MSE7.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\MSIMPORT.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\MSOFFICE.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\MSOHTMED.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\MSQRY32.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\MSTORDB.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\MSTORE.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\NSREX.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\OFFCLN.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\OSA.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\OUTLOOK.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\POWERPNT.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\PROFLWIZ.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\REXPROXY.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\RXCBPRXY.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\SELFCERT.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\SETLANG.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\UNBIND.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\VTIDB.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\VTIDISC.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\VTIFORM.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\VTIPRES.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\WAVTOASF.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\WINWORD.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\1036\MSOHELP.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\MSOFFICE\OFFICE10\1036\SCHDPL32.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\FP98\VER3\BIN\FP98SADM.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\FP98\VER3\BIN\FP98SWIN.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\FP98\VER3\BIN\FPSRVADM.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\FP98\VER3\BIN\FPSRVWIN.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\COMMON\SYSTEM\MOSEARCH\BIN\MOSDMN.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\COMMON\SYSTEM\MOSEARCH\BIN\MOSEARCH.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\COMMON\SYSTEM\MAPI\1036\CNFNOT32.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\COMMON\SYSTEM\MAPI\1036\ML3XEC16.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\COMMON\SYSTEM\MAPI\1036\SCANOST.EXE c:\Documents and Settings\goyet\Mes documents\front page\FILES\PFILES\COMMON\SYSTEM\MAPI\1036\SCANPST.EXE c:\Documents and Settings\goyet\Mes documents\camille\bizarre.exe c:\Documents and Settings\goyet\Mes documents\logiciel\adobe cs2\instmsia.exe c:\Documents and Settings\goyet\Mes documents\logiciel\adobe cs2\instmsiw.exe c:\Documents and Settings\goyet\Mes documents\logiciel\adobe cs2\setup.exe c:\Documents and Settings\goyet\Bureau\aawsepersonal.exe c:\Documents and Settings\goyet\Bureau\ccsetup137.exe c:\Documents and Settings\goyet\Bureau\Firefox Setup 2.0.0.1.exe c:\Documents and Settings\goyet\Bureau\HijackThis.exe c:\Documents and Settings\goyet\Bureau\pllangs.exe c:\Documents and Settings\goyet\Bureau\spybot-search-destroy_spybot_-_search_destroy_1.4_francais_10965.exe c:\Documents and Settings\goyet\Bureau\OpenOffice.org 2.0 Installation Files\instmsia.exe c:\Documents and Settings\goyet\Bureau\OpenOffice.org 2.0 Installation Files\instmsiw.exe c:\Documents and Settings\goyet\Bureau\OpenOffice.org 2.0 Installation Files\setup.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\OOo_2.0.3_Win32Intel_install_fr.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Cosmos 2005 Pour Solidworks\2 - Logiciels COSMOS 2005 pour SolidWorks & Win32 - COSMOSWorks FR+COSMOSMotion FR+COSMOSFloworks US - FULL no crack\cfwIEnglish.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Cosmos 2005 Pour Solidworks\2 - Logiciels COSMOS 2005 pour SolidWorks & Win32 - COSMOSWorks FR+COSMOSMotion FR+COSMOSFloworks US - FULL no crack\cmIFrench.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Cosmos 2005 Pour Solidworks\2 - Logiciels COSMOS 2005 pour SolidWorks & Win32 - COSMOSWorks FR+COSMOSMotion FR+COSMOSFloworks US - FULL no crack\cwIFrench.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\fichier aurelie\Decompression.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\fichier aurelie\VirtualExpander.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Nouveau dossier\setup.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\telechargement via internet\ccsetup133.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\telechargement via internet\keygen.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\DIVERS\motion works\mw2004+.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\DIVERS\Transformations de mouvements\AIDE.EXE c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\DIVERS\Transformations de mouvements\BATSH.EXE c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\DIVERS\Transformations de mouvements\EDITREP.EXE c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\DIVERS\Transformations de mouvements\RUNQCM.EXE c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\DIVERS\Transformations de mouvements\SETUP.EXE c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\DIVERS\Transformations de mouvements\STM.EXE c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\DIVERS\Transformations de mouvements\STMVT.EXE c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\logiciel\OOo_2.0.0_Win32Intel_install_fr.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\logiciel\cosmos\Cosmos 2005 Pour Solidworks\2 - Logiciels COSMOS 2005 pour SolidWorks & Win32 - COSMOSWorks FR+COSMOSMotion FR+COSMOSFloworks US - FULL no crack\cfwIEnglish.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\logiciel\cosmos\Cosmos 2005 Pour Solidworks\2 - Logiciels COSMOS 2005 pour SolidWorks & Win32 - COSMOSWorks FR+COSMOSMotion FR+COSMOSFloworks US - FULL no crack\cmIFrench.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\logiciel\cosmos\Cosmos 2005 Pour Solidworks\2 - Logiciels COSMOS 2005 pour SolidWorks & Win32 - COSMOSWorks FR+COSMOSMotion FR+COSMOSFloworks US - FULL no crack\cwIFrench.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\Schématrice\schématrice.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\lycée\cours bts 1\Schématrice\unins000.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\BIKES\BikeSwitcher.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\image\Mes images\par moi\menu\Menu.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\logiciels\cmotion2005sp00unzip\cmsetup.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\logiciels\cmotion2005sp00unzip\installs.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\logiciels\cmotion2005sp00unzip\LicenseAdmin.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\logiciels\cmotion2005sp00unzip\LicenseAdmin.exe2 c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\logiciels\cmotion2005sp00unzip\LMGRD.EXE c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\logiciels\cmotion2005sp00unzip\lmtools.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\logiciels\cmotion2005sp00unzip\LMUTIL.EXE c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\logiciels\cmotion2005sp00unzip\proclist.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\logiciels\cmotion2005sp00unzip\proclist.exe1 c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\logiciels\cmotion2005sp00unzip\setup.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\logiciels\cmotion2005sp00unzip\SRAC.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\logiciels\cmotion2005sp00unzip\Support Files\LicenseAdmin.exe c:\Documents and Settings\goyet\Bureau\Nouveau dossier\Mon portable\logiciels\cmotion2005sp00unzip\WinNT\instmsi.exe c:\Documents and Settings\goyet\Bureau\DiagHelp\catchme.exe c:\Documents and Settings\goyet\Bureau\DiagHelp\diff.exe c:\Documents and Settings\goyet\Bureau\DiagHelp\dumphive.exe c:\Documents and Settings\goyet\Bureau\DiagHelp\FilesInfoCmd.exe c:\Documents and Settings\goyet\Bureau\DiagHelp\Fport.exe c:\Documents and Settings\goyet\Bureau\DiagHelp\grep.exe c:\Documents and Settings\goyet\Bureau\DiagHelp\LFiles.exe c:\Documents and Settings\goyet\Bureau\DiagHelp\LISTDLLS.exe c:\Documents and Settings\goyet\Bureau\DiagHelp\pslist.exe c:\Documents and Settings\goyet\Bureau\DiagHelp\streams.exe c:\Documents and Settings\goyet\Bureau\DiagHelp\swreg.exe c:\Documents and Settings\goyet\Application Data\Microsoft\Installer\{2AEBE10C-D819-4EBF-BC60-03BF2327D340}\icon.exe c:\Documents and Settings\goyet\Application Data\FIRST CITY OKAY\1ShimSectAtom.exe c:\Documents and Settings\goyet\Application Data\FIRST CITY OKAY\lzanrilr.exe c:\Documents and Settings\goyet\Application Data\FIRST CITY OKAY\rpjwctep.exe c:\Documents and Settings\goyet\Application Data\FIRST CITY OKAY\SettingsSoapShow.exe c:\Documents and Settings\goyet\Application Data\FIRST CITY OKAY\Uploadbendlog.exe c:\Documents and Settings\goyet\Application Data\FIRST CITY OKAY\wxwcygug.exe c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll c:\Documents and Settings\All Users\Application Data\Microsoft\IdentityCRL\production\ppcrlconfig.dll c:\Documents and Settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll c:\Documents and Settings\goyet\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll
-
Bonjour j'ai un problème sur mon pc. J'ai de la pub qui apparait (quand je suis sur mozilla j'ai même de la pub d'internet explorer et vis versa) Même quand je n'est pas ouvert de fenêtre internet j'ai aussi de la pub. J'ai fait toutes les manipulations que je connaise, je ne sais pas comment m'en débarasser. J'ai utiliser avast, avg antispyware, cc cleaner, spybot, ad adware,...., les anti pub rien ne marche. Voila, pouvez vous m'aider merci. Logfile of HijackThis v1.99.1 Scan saved at 19:12:56, on 18/03/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Keymaestro\Multimedia Keyboard\nhksrv.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\System32\nvsvc32.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Inventel\Gateway\wlancfg.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\Keymaestro\Multimedia Keyboard\MMKeybd.exe C:\Program Files\O2Micro\AudioDJ\o2cd.exe C:\Program Files\iTunes\iTunesHelper.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\System32\LVCOMSX.EXE C:\Program Files\Logitech\Video\LogiTray.exe C:\Program Files\Keymaestro\Multimedia Keyboard\TrayMon.exe C:\Program Files\Keymaestro\Onscreen Display\OSD.exe C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe C:\Program Files\MarkAny\ContentSafer\MAAgent.exe C:\Program Files\SuperCopier\SuperCopier.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe C:\Program Files\Internet Explorer\iexplore.exe C:\WINDOWS\system32\ctfmon.exe c:\progra~1\intern~1\iexplore.exe c:\progra~1\intern~1\iexplore.exe C:\Program Files\Labtec\Wireless Mouse\MulMouse.exe C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe C:\WINDOWS\BricoPacks\Vista Inspirat\UberIcon\UberIcon Manager.exe C:\Program Files\OpenOffice.org 2.0\program\soffice.exe C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN C:\Program Files\Logitech\Video\FxSvr2.exe C:\WINDOWS\explorer.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Documents and Settings\goyet\Bureau\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Keymaestro\Multimedia Keyboard\MMKeybd.exe O4 - HKLM\..\Run: [o2cd] C:\Program Files\O2Micro\AudioDJ\o2cd.exe O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_05\bin\jusched.exe O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\System32\LVCOMSX.EXE O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe O4 - HKLM\..\Run: [sMSTray] C:\Program Files\Samsung\Samsung Media Studio 5\SMSTray.exe O4 - HKLM\..\Run: [MAAgent] C:\Program Files\MarkAny\ContentSafer\MAAgent.exe O4 - HKLM\..\Run: [Peak Pop Load Lite] C:\Documents and Settings\All Users\Application Data\Start Logo Peak Pop\antiproxy.exe O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\RunOnce: [NoIE4StubProcessing] C:\WINDOWS\system32\reg.exe DELETE "HKLM\SOFTWARE\Microsoft\Active Setup\Installed Components" /v "NoIE4StubProcessing" /f O4 - HKCU\..\Run: [superCopier.exe] C:\Program Files\SuperCopier\SuperCopier.exe O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot O4 - HKCU\..\Run: [Dale Else] C:\DOCUME~1\goyet\APPLIC~1\FIRSTC~1\Uploadbendlog.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Startup: Stardock ObjectDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe O4 - Startup: UberIcon.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\UberIcon\UberIcon Manager.exe O4 - Startup: Y'z ToolBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe O4 - Global Startup: Logiciel de la Souris Labtec 2.0.lnk = C:\Program Files\Labtec\Wireless Mouse\MulMouse.exe O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?6c4ed0bbe8f2474ab26157d9160d2360 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?6c4ed0bbe8f2474ab26157d9160d2360 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O11 - Options group: [iNTERNATIONAL] International* O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {42E1F024-ECC3-456F-B98A-4CE5ACDBF25C} (ActiveFormX Contrôle) - https://ssl-tb.sitadelle.com/selfcare.ceget...FAutoConfig.ocx O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab56986.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {5DDCC37F-7C6B-48B8-9664-97C537920CA0} (aecviz Class) - http://www.maisonfamiliale.com/AECVIZ/npaecviz.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://cdn2.zone.msn.com/binFramework/v10/...ro.cab34246.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab31267.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{CE00CD63-BEDD-4567-A928-703443028039}: NameServer = 80.118.192.100,80.118.196.36 O18 - Protocol: bw+0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw+0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw-0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw00s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw10s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw20s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw30s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw40s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw50s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw60s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw70s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw80s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bw90s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwa0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwb0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwc0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwd0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwe0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwf0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: bwg0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwg0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwh0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwi0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwj0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwk0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwl0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwm0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwn0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwo0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwp0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwq0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwr0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bws0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwt0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwu0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwv0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bww0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwx0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwy0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: bwz0s - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: offline-8876480 - {0A20C260-7B7C-4415-B6D3-2C9A873536F8} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Program Files\Keymaestro\Multimedia Keyboard\nhksrv.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe