

fm37
Membres-
Compteur de contenus
31 -
Inscription
-
Dernière visite
Type de contenu
Profils
Forums
Blogs
Tout ce qui a été posté par fm37
-
Bonjour, novice+++ en macro. recherche macro pour saisir des données horaires journalières sur une année. mon tableau colonne A nom * 200 lignes B prénom C heures prévisionnelles arrivées D heures prévisionnelles départ E heures réelles arrivées F heures réelles départ G résultât colonnes C D E F G pour jours 1 H heures prévisionnelles arrivées I heures prévisionnelles départ J heures réelles arrivées K heures réelles départ L résultât colonnes H I J K pour jours 2 etc....... (recherche automatique des nom si possible) merci fm37
-
ok retourne a la version précédente bye
-
bonjour petite question sur la dernière version du lecteur vlc 1.0.0 rc2 je ne trouve pas le système pour ajouter une liste de lecture (free) (sur la version vlc 0.9.9 ajout liste de lecture) merci
-
j'ai vides cookies manuellement car avec Ccleaner n'a pas marche tout simplement re merci fm37
-
resolu merci
-
aucun résultât ne marche pas avec ces adresse :http://adsl.free.fr/tv/ ou http://adsl.free.fr/tv/chaines/list_basic.html
-
oui avec ccleaner
-
oui mais apres sur mon compte avec identifiant ouvre sur page blanche
-
ethernet mais que cette page de free apres avoir mis mon identifiant qui ne s"affiche pas information sur la page : console.pl (Image GIF, 1x1 pixels)
-
bonjour quand je donne mes identifiant pour free je me retrouve avec une page blanche merci fm37
-
merci resolu a++
-
Bonsoir, Comment svp changer de nom(Lettre) à ma clef svp Merci fm37
-
[Résolu] Ouvrir fichier MDI avec Excel 2007
fm37 a répondu à un(e) sujet de fm37 dans Optimisation, Trucs & Astuces
ok merci fm37 -
[Résolu] Ouvrir fichier MDI avec Excel 2007
fm37 a répondu à un(e) sujet de fm37 dans Optimisation, Trucs & Astuces
re slt pas de Microsoft Office Document Imaging dans office 2007 fm37 -
[Résolu] Ouvrir fichier MDI avec Excel 2007
fm37 a posté un sujet dans Optimisation, Trucs & Astuces
bonjour, problème impossible d'ouvrir un fichier MDI avec excel 2007 merci pour la solution fm37 -
extension remise a jour pour firefox 3 http://extensions.geckozone.org/ExternalApplicationButtons @+
-
merci Falkra pour ta réponse (préférais l'autre extension) @+ fm37
-
bonjour, un petit problème je ne trouve pas l'extension pour ajouter un bloc-note sur la barre outil de firefox 3. merci a vous fm37
-
re bonjour non je n'ai plus de problème et je te remercie pour ton aide bonne fin weekend @+ fm37
-
Service load: 0% 100% File: klog.dat Status: OK MD5: 561298bfb4708ef76a45858fa779765e Packers detected: - Bit9 reports: File not found Scanner results Scan taken on 09 Mar 2008 13:42:55 (GMT) A-Squared Found nothing AntiVir Found nothing ArcaVir Found nothing Avast Found nothing AVG Antivirus Found nothing BitDefender Found nothing ClamAV Found nothing CPsecure Found nothing Dr.Web Found nothing F-Prot Antivirus Found nothing F-Secure Anti-Virus Found nothing Fortinet Found nothing Ikarus Found nothing Kaspersky Anti-Virus Found nothing NOD32 Found nothing Norman Virus Control Found nothing Panda Antivirus Found nothing Rising Antivirus Found nothing Sophos Antivirus Found nothing VirusBuster Found nothing VBA32 Found nothing Powered by images/asquared.png images/antivir.png images/arcabit.png images/avast.png images/avg.gif images/bitdefender.png images/clamav-logo1.png images/cpsecure.gif images/drweb.gif images/f-prot.png images/f-secure_logo.gif images/fortinet.gif images/ikarus.gif images/kaspersky.png images/nod32.gif images/norman.png images/panda.gif images/rising.gif images/sophos.gif images/virusbuster.gif images/vba32.png Bit9 Disclaimer This service is by no means 100% safe. If this scanner says 'OK', it does not necessarily mean the file is clean. There could be a whole new virus on the loose. NEVER EVER rely on one single product only, not even this service, even though it utilizes several products. Therefore, We cannot and will not be held responsible for any damage caused by results presented by this non-profit online service. Also, we are aware of the implications of a setup like this. We are sure this whole thing is by no means scientifically correct, since this is a fully automated service (although manual correction is possible). We are aware, in spite of efforts to proactively counter these, false positives might occur, for example. We do not consider this a very big issue, so please do not e-mail us about it. This is a simple online scan service, not the university of Wichita. Scanning can take a while, since several scanners are being used, plus the fact some scanners use very high levels of (time consuming) heuristics. Scanners used are Linux versions, differences with Windows scanners may or may not occur. Another note: some scanners will only report one virus when scanning archives with multiple pieces of malware. Virus definitions are updated every hour. There is a 10Mb limit per file. Please refrain from uploading tons of hex-edited or repacked variants of the same sample. Please do not ask for viruses uploaded here, unless you work for an anti-virus vendor. They are not for trade. This is a legitimate service, not a VX site. Viruses uploaded here will be distributed to antivirus vendors without exception. Read more about this in our privacy policy. If you do not want your files to be distributed, please do not send them at all. Sponsored by HotelScraper.com. Statistics Last file scanned at least one scanner reported something about: Uniblue_RegistryBooster_2_Keygen.exe (MD5: 85af94c9d6fbc9d8ff0197663a14d91b, size: 282658 bytes), detected by: Scanner Malware name A-Squared Backdoor.Win32.Agent.bmn AntiVir X ArcaVir X Avast Win32:Agent-MCF AVG Antivirus BackDoor.Agent.NQP BitDefender Backdoor.Agent.YXB ClamAV Trojan.Agent-8317 CPsecure BackDoor.W32.Agent.bmn Dr.Web X F-Prot Antivirus X F-Secure Anti-Virus Backdoor.Win32.Agent.bmn Fortinet W32/Agent.BMN!tr.bdr Ikarus Backdoor.Win32.Agent.bmn Kaspersky Anti-Virus Backdoor.Win32.Agent.bmn NOD32 probably a variant of Win32/Agent Norman Virus Control W32/Agent.CNIP Panda Antivirus Trj/Downloader.MDW Rising Antivirus X Sophos Antivirus X VirusBuster X VBA32 Backdoor.Win32.Agent.bmn You're free to (mis)interpret these automated, flawed statistics at your own discretion. For antivirus comparisons, visit AV comparatives We are not affiliated with any third parties that conduct tests using this service.
-
ComboFix 08-03-08.2 - Max 2008-03-09 14:11:20.3 - NTFSx86 Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.144 [GMT 1:00] Endroit: C:\Documents and Settings\Max\Bureau\ComboFix.exe Command switches used :: C:\Documents and Settings\Max\Bureau\CFScript.txt * Création d'un nouveau point de restauration AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !! FILE :: C:\DOCUME~1\Max\LOCALS~1\Temp\mc21.tmp . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . C:\_OTMoveIt C:\_OTMoveIt\MovedFiles\03072008_154142.log C:\_OTMoveIt\MovedFiles\03072008_154142.res C:\_OTMoveIt\MovedFiles\03072008_154142\WINDOWS\Config\csrss.exe C:\_OTMoveIt\MovedFiles\03072008_154251.log C:\_OTMoveIt\MovedFiles\03072008_154251.res C:\SDFix C:\SDFix\apps\assosfix.reg C:\SDFix\apps\cliptext.exe C:\SDFix\apps\download.exe C:\SDFix\apps\dummy.exe C:\SDFix\apps\dummy.sys C:\SDFix\apps\Enable_Command_Prompt.reg C:\SDFix\apps\ERDNT.E_E C:\SDFix\apps\ERDNTDOS.LOC C:\SDFix\apps\ERDNTWIN.LOC C:\SDFix\apps\ERUNT.EXE C:\SDFix\apps\ERUNT.LOC C:\SDFix\apps\fix.reg C:\SDFix\apps\FixBH.reg C:\SDFix\apps\FixComponents.reg C:\SDFix\apps\FIXCU.reg C:\SDFix\apps\FIXLM.reg C:\SDFix\apps\FixPath.exe C:\SDFix\apps\FixRedir.reg C:\SDFix\apps\FixSchedule.reg C:\SDFix\apps\FixWebCheck.reg C:\SDFix\apps\fixXP.reg C:\SDFix\apps\FixXPsp2.reg C:\SDFix\apps\grep.exe C:\SDFix\apps\HPFix.reg C:\SDFix\apps\HPFix2.reg C:\SDFix\apps\HPFix3.reg C:\SDFix\apps\HPFix4.reg C:\SDFix\apps\HPFix5.reg C:\SDFix\apps\HPFix6.reg C:\SDFix\apps\HPFix7.reg C:\SDFix\apps\isadmin.exe C:\SDFix\apps\leg2.txt C:\SDFix\apps\legacy.txt C:\SDFix\apps\legacybk.txt C:\SDFix\apps\locate.com C:\SDFix\apps\LS.exe C:\SDFix\apps\MD5File.exe C:\SDFix\apps\MyGcpvFix.reg C:\SDFix\apps\MyGkFix2.reg C:\SDFix\apps\Process.exe C:\SDFix\apps\procs.exe C:\SDFix\apps\psservice.exe C:\SDFix\apps\RegDACL.exe C:\SDFix\apps\regedit.exe C:\SDFix\apps\Rem.txt C:\SDFix\apps\Rem2.txt C:\SDFix\apps\Replace\W2K.exe C:\SDFix\apps\Replace\w2k\beep.sys C:\SDFix\apps\Replace\w2k\null.sys C:\SDFix\apps\Replace\XP.exe C:\SDFix\apps\Replace\xp\beep.sys C:\SDFix\apps\Replace\xp\null.sys C:\SDFix\apps\Reset_AppInit_DLLs.reg C:\SDFix\apps\RestartIt!.exe C:\SDFix\apps\Restore_SecurityCenter.reg C:\SDFix\apps\Restore_SharedAccess.reg C:\SDFix\apps\sc.exe C:\SDFix\apps\sed.exe C:\SDFix\apps\SF.exe C:\SDFix\apps\shutdown.exe C:\SDFix\apps\srv2.txt C:\SDFix\apps\srv2bk.txt C:\SDFix\apps\svc.txt C:\SDFix\apps\svcbk.txt C:\SDFix\apps\swreg.exe C:\SDFix\apps\swsc.exe C:\SDFix\apps\unzip.exe C:\SDFix\apps\vfind.exe C:\SDFix\apps\WINMSG.EXE C:\SDFix\apps\zip.exe C:\SDFix\backups\attrib.exe C:\SDFix\backups\backupreg.zip C:\SDFix\backups\backups.zip C:\SDFix\backups\find.exe C:\SDFix\backups\findstr.exe C:\SDFix\backups\HOSTS C:\SDFix\backups\regedit.exe C:\SDFix\catchme.exe C:\SDFix\dummy.exe C:\SDFix\dummy.sys C:\SDFix\Report.txt C:\SDFix\RunThis.bat C:\SDFix\SDFIX_ReadMe_Online.url . ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\LEGACY_MCHINJDRV -------\mchInjDrv ((((((((((((((((((((((((((((( Fichiers créés 2008-02-09 to 2008-03-09 )))))))))))))))))))))))))))))))))))) . 2008-03-08 12:02 . 2008-03-08 12:02 54,156 --ah----- C:\WINDOWS\QTFont.qfn 2008-03-08 12:02 . 2008-03-08 12:02 1,409 --a------ C:\WINDOWS\QTFont.for 2008-03-07 15:54 . 2008-03-07 15:55 <REP> d-------- C:\WINDOWS\ERUNT 2008-03-06 23:51 . 2008-03-06 23:51 <REP> d-------- C:\Program Files\Trend Micro 2008-03-04 09:27 . 2008-03-04 09:28 <REP> d-------- C:\Program Files\LimeWire 2008-03-03 11:05 . 2008-03-05 00:45 <REP> d-------- C:\Program Files\Conduit 2008-03-03 11:05 . 2008-03-05 00:45 <REP> d-------- C:\Program Files\Best_Security_Tips 2008-03-03 10:30 . 2008-03-04 09:27 <REP> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP 2008-03-03 10:30 . 2008-03-03 10:30 124,688 --a------ C:\WINDOWS\system32\MSWINSCK.OCX 2008-02-28 11:08 . 2008-03-04 23:24 <REP> d-------- C:\Documents and Settings\Max\Application Data\Faces 2008-02-26 19:31 . 1997-02-25 14:55 351,344 --a------ C:\WINDOWS\system\LTKRN70W.DLL 2008-02-26 19:31 . 1997-02-19 11:04 172,784 --a------ C:\WINDOWS\system\LFCMP70W.DLL 2008-02-26 19:31 . 1997-07-14 17:30 97,498 --a------ C:\WINDOWS\system\WALKER.DLL 2008-02-26 19:31 . 1997-05-12 18:16 72,046 --a------ C:\WINDOWS\system\GFXAPI.DLL 2008-02-26 19:31 . 1997-03-03 12:04 37,712 --a------ C:\WINDOWS\system\LTFIL70W.DLL 2008-02-26 19:31 . 1997-02-19 10:55 17,424 --a------ C:\WINDOWS\system\LTTWN70W.DLL 2008-02-26 19:31 . 1997-02-19 10:56 11,760 --a------ C:\WINDOWS\system\LFBMP70W.DLL 2008-02-26 19:30 . 2008-02-26 19:30 <REP> d-------- C:\Program Files\Anuman Interactive 2008-02-26 19:30 . 1997-07-16 12:00 7,088 --a------ C:\WINDOWS\system\LFIMG70W.DLL 2008-02-21 08:56 . 2008-02-21 14:10 <REP> d-------- C:\Documents and Settings\Max\Application Data\Autodesk 2008-02-21 08:56 . 2008-03-05 19:36 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Autodesk 2008-02-20 23:54 . 2008-02-20 23:54 8,192 --ahs---- C:\WINDOWS\Thumbs.db 2008-02-20 21:13 . 2008-02-20 21:13 <REP> d-------- C:\Program Files\MagicISO Maker v5 4 2008-02-15 14:01 . 2008-02-15 14:01 <REP> d-------- C:\Program Files\AimGames 2008-02-15 11:44 . 2008-02-15 11:45 <REP> d-------- C:\Program Files\VirtualDub 2008-02-13 17:00 . 2008-02-13 17:00 <REP> d-------- C:\WINDOWS\Driver 2008-02-12 19:24 . 2008-02-12 19:24 <REP> d-------- C:\Documents and Settings\All Users\Application Data\SlySoft 2008-02-12 19:23 . 2008-02-12 19:24 24 ---hs---- C:\WINDOWS\S6E4BE8E6.tmp 2008-02-11 10:35 . 2004-05-04 11:53 1,645,320 --a------ C:\WINDOWS\gdiplus.dll 2008-02-11 10:35 . 2007-03-18 20:37 65,602 --a------ C:\WINDOWS\system32\cook3260.dll . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2008-03-09 13:29 24,152,608 --sha-w C:\WINDOWS\system32\drivers\fidbox.dat 2008-03-09 13:28 1,155,616 --sha-w C:\WINDOWS\system32\drivers\fidbox2.dat 2008-03-09 13:28 --------- d-----w C:\Documents and Settings\All Users\Application Data\Kaspersky Lab 2008-03-09 13:26 332,348 --sha-w C:\WINDOWS\system32\drivers\fidbox.idx 2008-03-09 13:26 111,380 --sha-w C:\WINDOWS\system32\drivers\fidbox2.idx 2008-03-09 11:19 --------- d-----w C:\Program Files\Mozilla Thunderbird 2008-03-07 23:07 --------- d-----w C:\Documents and Settings\Max\Application Data\uTorrent 2008-03-05 21:00 --------- d-----w C:\Documents and Settings\Max\Application Data\LimeWire 2008-03-05 20:25 --------- d-----w C:\Documents and Settings\Max\Application Data\Vso 2008-03-04 22:51 --------- d-----w C:\Program Files\Google 2008-03-02 10:37 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help 2008-02-14 20:48 --------- d-----w C:\Program Files\VSO 2008-02-13 16:19 --------- d-----w C:\Program Files\SlySoft 2008-02-08 17:30 --------- d-----w C:\Program Files\Spybot - Search & Destroy 2008-02-08 17:30 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy 2008-02-08 17:26 691,545 ----a-w C:\WINDOWS\unins000.exe 2008-02-01 18:44 --------- d-----w C:\Program Files\EA SPORTS 2008-02-01 18:41 --------- d--h--w C:\Program Files\InstallShield Installation Information 2008-02-01 18:12 --------- d-----w C:\Documents and Settings\Max\Application Data\CopyToDvd 2008-02-01 14:10 --------- d-----w C:\Documents and Settings\Max\Application Data\SYSTRAN 2008-02-01 14:10 --------- d-----w C:\Documents and Settings\All Users\Application Data\SYSTRAN 2008-01-31 20:52 --------- d-----w C:\Program Files\Total Video Converter 2008-01-31 18:28 91,700 ----a-w C:\WINDOWS\system32\drivers\klin.dat 2008-01-26 19:33 --------- d-----w C:\Program Files\Alcohol Soft 2008-01-26 19:29 715,248 ----a-w C:\WINDOWS\system32\drivers\sptd.sys 2008-01-25 21:45 --------- d-----w C:\Program Files\Reallusion 2008-01-25 20:57 --------- d-----w C:\Documents and Settings\Max\Application Data\Reallusion 2008-01-25 20:56 --------- d-----w C:\Program Files\Fichiers communs\Reallusion 2008-01-21 19:45 --------- d-----w C:\Documents and Settings\Max\Application Data\Microsoft Corporation 2008-01-21 19:45 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Corporation 2008-01-13 14:08 --------- d-----w C:\Documents and Settings\All Users\Application Data\vsosdk 2008-01-13 12:21 --------- d-----w C:\Documents and Settings\Max\Application Data\Joost 2007-12-12 17:59 2,314 ----a-w C:\Program Files\License.xbin 2007-10-20 13:05 47,360 ----a-w C:\Documents and Settings\Max\Application Data\pcouffin.sys 2001-11-23 04:08 712,704 ----a-w C:\WINDOWS\inf\OTHER\AUDIO3D.DLL 2007-10-20 21:24 82 --sha-w C:\WINDOWS\crack\klog.dat 2007-09-29 19:26 23 --sha-w C:\WINDOWS\system32\cde8_r.dll . ((((((((((((((((((((((((((((( snapshot@2008-03-09_12.04.45.21 ))))))))))))))))))))))))))))))))))))))))) . + 2000-08-31 07:00:00 163,328 ----a-w C:\WINDOWS\erdnt\subs\ERDNT.EXE . ((((((((((((((((((((((((((((((((( Point de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))) . . REGEDIT4 *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-05 13:00 15360] "SuperCopier2.exe"="C:\Program Files\SuperCopier2\SuperCopier2.exe" [2006-07-07 17:45 1052672] "SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488] "RoboForm"="C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe" [2008-02-05 14:29 160832] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Cmaudio"="cmicnfg.cpl" [] "ISUSPM"="C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" [2006-03-20 17:34 213936] "ClocX"="C:\Program Files\ClocX\ClocX.exe" [2004-09-04 09:28 270336] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496] "AVP"="C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe" [2007-06-28 12:51 218376] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-05 13:00 15360] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=C:\PROGRA~1\KASPER~1\KASPER~2.0\adialhk.dll [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"= "C:\\Program Files\\eMule\\eMule.exe"= "C:\\Program Files\\SYSTRAN\\6\\SystranToolbar.exe"= "C:\\Program Files\\SYSTRAN\\6\\Dicts\\SystranTranslationEngine.exe"= "C:\\Program Files\\SYSTRAN\\6\\Dicts\\SystranCodingEngine.exe"= "C:\\Program Files\\Fichiers communs\\Ahead\\Nero Web\\SetupX.exe"= "C:\\Program Files\\SYSTRAN\\6\\Dicts\\SystranFilterEngine.exe"= "C:\\Program Files\\SYSTRAN\\6\\SystranTranslationProjectManager.exe"= "C:\\Program Files\\uTorrent\\uTorrent.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\LimeWire\\LimeWire.exe"= "C:\\Program Files\\Mozilla Firefox\\firefox.exe"= "C:\\Program Files\\Real\\RealPlayer\\realplay.exe"= R3 klim5;Kaspersky Anti-Virus NDIS Filter;C:\WINDOWS\system32\DRIVERS\klim5.sys [2007-04-04 14:58] S3 ultradfg;ultradfg;C:\WINDOWS\system32\DRIVERS\ultradfg.sys [2007-10-08 10:54] *Newly Created Service* - MCHINJDRV . ************************************************************************** catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-03-09 14:28:34 Windows 5.1.2600 Service Pack 2 NTFS Balayage processus cachés ... Balayage caché autostart entries ... Balayage des fichiers cachés ... Scan terminé avec succès Les fichiers cachés: 0 ************************************************************************** [HKEY_LOCAL_MACHINE\system\ControlSet001\Services\mchInjDrv] "ImagePath"="\??\C:\DOCUME~1\Max\LOCALS~1\Temp\mc23.tmp" . ------------------------ Other Running Processes ------------------------ . C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\Ati2evxx.exe C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe . ************************************************************************** . Temps d'accomplissement: 2008-03-09 14:32:55 - machine was rebooted [Max] ComboFix-quarantined-files.txt 2008-03-09 13:32:39 ComboFix2.txt 2008-03-09 11:05:38 . 2008-03-05 13:14:19 --- E O F ---
-
ComboFix 08-03-08.2 - Max 2008-03-09 11:56:17.2 - NTFSx86 Microsoft Windows XP Professionnel 5.1.2600.2.1252.1.1036.18.211 [GMT 1:00] Endroit: D:\Doc Max\A Telecharge\ComboFix.exe AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !! . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . C:\Documents and Settings\Max\Application Data\inst.exe . ((((((((((((((((((((((((((((( Fichiers créés 2008-02-09 to 2008-03-09 )))))))))))))))))))))))))))))))))))) . 2008-03-08 12:02 . 2008-03-08 12:02 54,156 --ah----- C:\WINDOWS\QTFont.qfn 2008-03-08 12:02 . 2008-03-08 12:02 1,409 --a------ C:\WINDOWS\QTFont.for 2008-03-07 15:54 . 2008-03-07 15:55 <REP> d-------- C:\WINDOWS\ERUNT 2008-03-07 15:48 . 2008-03-07 16:13 <REP> d-------- C:\SDFix 2008-03-07 15:41 . 2008-03-07 15:41 <REP> d-------- C:\_OTMoveIt 2008-03-06 23:51 . 2008-03-06 23:51 <REP> d-------- C:\Program Files\Trend Micro 2008-03-04 09:27 . 2008-03-04 09:28 <REP> d-------- C:\Program Files\LimeWire 2008-03-03 11:05 . 2008-03-05 00:45 <REP> d-------- C:\Program Files\Conduit 2008-03-03 11:05 . 2008-03-05 00:45 <REP> d-------- C:\Program Files\Best_Security_Tips 2008-03-03 10:30 . 2008-03-04 09:27 <REP> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP 2008-03-03 10:30 . 2008-03-03 10:30 124,688 --a------ C:\WINDOWS\system32\MSWINSCK.OCX 2008-02-28 11:08 . 2008-03-04 23:24 <REP> d-------- C:\Documents and Settings\Max\Application Data\Faces 2008-02-26 19:31 . 1997-02-25 14:55 351,344 --a------ C:\WINDOWS\system\LTKRN70W.DLL 2008-02-26 19:31 . 1997-02-19 11:04 172,784 --a------ C:\WINDOWS\system\LFCMP70W.DLL 2008-02-26 19:31 . 1997-07-14 17:30 97,498 --a------ C:\WINDOWS\system\WALKER.DLL 2008-02-26 19:31 . 1997-05-12 18:16 72,046 --a------ C:\WINDOWS\system\GFXAPI.DLL 2008-02-26 19:31 . 1997-03-03 12:04 37,712 --a------ C:\WINDOWS\system\LTFIL70W.DLL 2008-02-26 19:31 . 1997-02-19 10:55 17,424 --a------ C:\WINDOWS\system\LTTWN70W.DLL 2008-02-26 19:31 . 1997-02-19 10:56 11,760 --a------ C:\WINDOWS\system\LFBMP70W.DLL 2008-02-26 19:30 . 2008-02-26 19:30 <REP> d-------- C:\Program Files\Anuman Interactive 2008-02-26 19:30 . 1997-07-16 12:00 7,088 --a------ C:\WINDOWS\system\LFIMG70W.DLL 2008-02-21 08:56 . 2008-02-21 14:10 <REP> d-------- C:\Documents and Settings\Max\Application Data\Autodesk 2008-02-21 08:56 . 2008-03-05 19:36 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Autodesk 2008-02-20 23:54 . 2008-02-20 23:54 8,192 --ahs---- C:\WINDOWS\Thumbs.db 2008-02-20 21:13 . 2008-02-20 21:13 <REP> d-------- C:\Program Files\MagicISO Maker v5 4 2008-02-15 14:01 . 2008-02-15 14:01 <REP> d-------- C:\Program Files\AimGames 2008-02-15 11:44 . 2008-02-15 11:45 <REP> d-------- C:\Program Files\VirtualDub 2008-02-13 17:00 . 2008-02-13 17:00 <REP> d-------- C:\WINDOWS\Driver 2008-02-12 19:24 . 2008-02-12 19:24 <REP> d-------- C:\Documents and Settings\All Users\Application Data\SlySoft 2008-02-12 19:23 . 2008-02-12 19:24 24 ---hs---- C:\WINDOWS\S6E4BE8E6.tmp 2008-02-11 10:35 . 2004-05-04 11:53 1,645,320 --a------ C:\WINDOWS\gdiplus.dll 2008-02-11 10:35 . 2007-03-18 20:37 65,602 --a------ C:\WINDOWS\system32\cook3260.dll . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2008-03-09 11:04 23,785,248 --sha-w C:\WINDOWS\system32\drivers\fidbox.dat 2008-03-09 11:03 1,146,400 --sha-w C:\WINDOWS\system32\drivers\fidbox2.dat 2008-03-09 10:32 --------- d-----w C:\Documents and Settings\All Users\Application Data\Kaspersky Lab 2008-03-08 18:40 325,940 --sha-w C:\WINDOWS\system32\drivers\fidbox.idx 2008-03-08 18:40 110,156 --sha-w C:\WINDOWS\system32\drivers\fidbox2.idx 2008-03-08 16:10 --------- d-----w C:\Program Files\Mozilla Thunderbird 2008-03-07 23:07 --------- d-----w C:\Documents and Settings\Max\Application Data\uTorrent 2008-03-05 21:00 --------- d-----w C:\Documents and Settings\Max\Application Data\LimeWire 2008-03-05 20:25 --------- d-----w C:\Documents and Settings\Max\Application Data\Vso 2008-03-04 22:51 --------- d-----w C:\Program Files\Google 2008-03-02 10:37 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Help 2008-02-14 20:48 --------- d-----w C:\Program Files\VSO 2008-02-13 16:19 --------- d-----w C:\Program Files\SlySoft 2008-02-08 17:30 --------- d-----w C:\Program Files\Spybot - Search & Destroy 2008-02-08 17:30 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy 2008-02-08 17:26 691,545 ----a-w C:\WINDOWS\unins000.exe 2008-02-01 18:44 --------- d-----w C:\Program Files\EA SPORTS 2008-02-01 18:41 --------- d--h--w C:\Program Files\InstallShield Installation Information 2008-02-01 18:12 --------- d-----w C:\Documents and Settings\Max\Application Data\CopyToDvd 2008-02-01 14:10 --------- d-----w C:\Documents and Settings\Max\Application Data\SYSTRAN 2008-02-01 14:10 --------- d-----w C:\Documents and Settings\All Users\Application Data\SYSTRAN 2008-01-31 20:52 --------- d-----w C:\Program Files\Total Video Converter 2008-01-31 18:28 91,700 ----a-w C:\WINDOWS\system32\drivers\klin.dat 2008-01-26 19:33 --------- d-----w C:\Program Files\Alcohol Soft 2008-01-26 19:29 715,248 ----a-w C:\WINDOWS\system32\drivers\sptd.sys 2008-01-25 21:45 --------- d-----w C:\Program Files\Reallusion 2008-01-25 20:57 --------- d-----w C:\Documents and Settings\Max\Application Data\Reallusion 2008-01-25 20:56 --------- d-----w C:\Program Files\Fichiers communs\Reallusion 2008-01-21 19:45 --------- d-----w C:\Documents and Settings\Max\Application Data\Microsoft Corporation 2008-01-21 19:45 --------- d-----w C:\Documents and Settings\All Users\Application Data\Microsoft Corporation 2008-01-13 14:08 --------- d-----w C:\Documents and Settings\All Users\Application Data\vsosdk 2008-01-13 12:21 --------- d-----w C:\Documents and Settings\Max\Application Data\Joost 2007-12-12 17:59 2,314 ----a-w C:\Program Files\License.xbin 2007-10-20 13:05 47,360 ----a-w C:\Documents and Settings\Max\Application Data\pcouffin.sys 2001-11-23 04:08 712,704 ----a-w C:\WINDOWS\inf\OTHER\AUDIO3D.DLL 2007-10-20 21:24 82 --sha-w C:\WINDOWS\crack\klog.dat 2007-09-29 19:26 23 --sha-w C:\WINDOWS\system32\cde8_r.dll . ((((((((((((((((((((((((((((((((( Point de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))) . . REGEDIT4 *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-05 13:00 15360] "SuperCopier2.exe"="C:\Program Files\SuperCopier2\SuperCopier2.exe" [2006-07-07 17:45 1052672] "SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488] "RoboForm"="C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe" [2008-02-05 14:29 160832] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Cmaudio"="cmicnfg.cpl" [] "ISUSPM"="C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" [2006-03-20 17:34 213936] "ClocX"="C:\Program Files\ClocX\ClocX.exe" [2004-09-04 09:28 270336] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496] "AVP"="C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe" [2007-06-28 12:51 218376] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\system32\CTFMON.EXE" [2004-08-05 13:00 15360] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=C:\PROGRA~1\KASPER~1\KASPER~2.0\adialhk.dll [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"= "C:\\Program Files\\eMule\\eMule.exe"= "C:\\Program Files\\SYSTRAN\\6\\SystranToolbar.exe"= "C:\\Program Files\\SYSTRAN\\6\\Dicts\\SystranTranslationEngine.exe"= "C:\\Program Files\\SYSTRAN\\6\\Dicts\\SystranCodingEngine.exe"= "C:\\Program Files\\Fichiers communs\\Ahead\\Nero Web\\SetupX.exe"= "C:\\Program Files\\SYSTRAN\\6\\Dicts\\SystranFilterEngine.exe"= "C:\\Program Files\\SYSTRAN\\6\\SystranTranslationProjectManager.exe"= "C:\\Program Files\\uTorrent\\uTorrent.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\LimeWire\\LimeWire.exe"= "C:\\Program Files\\Mozilla Firefox\\firefox.exe"= "C:\\Program Files\\Real\\RealPlayer\\realplay.exe"= R3 klim5;Kaspersky Anti-Virus NDIS Filter;C:\WINDOWS\system32\DRIVERS\klim5.sys [2007-04-04 14:58] S3 ultradfg;ultradfg;C:\WINDOWS\system32\DRIVERS\ultradfg.sys [2007-10-08 10:54] . ************************************************************************** catchme 0.3.1344 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-03-09 12:03:47 Windows 5.1.2600 Service Pack 2 NTFS Balayage processus cachés ... Balayage caché autostart entries ... Balayage des fichiers cachés ... Scan terminé avec succès Les fichiers cachés: 0 ************************************************************************** [HKEY_LOCAL_MACHINE\system\ControlSet001\Services\mchInjDrv] "ImagePath"="\??\C:\DOCUME~1\Max\LOCALS~1\Temp\mc21.tmp" . Temps d'accomplissement: 2008-03-09 12:05:36 ComboFix-quarantined-files.txt 2008-03-09 11:05:24 . 2008-03-05 13:14:19 --- E O F ---
-
re bonjour voici le rapport ewido __________________________________________________ ewido anti-spyware online scanner http://www.ewido.net __________________________________________________ Name: TrackingCookie.Webtrends Path: :mozilla.12:C:\Documents and Settings\Françoise\Application Data\Mozilla\Firefox\Profiles\2xxbavj2.default\cookies.txt Risk: Medium Name: TrackingCookie.Weborama Path: :mozilla.39:C:\Documents and Settings\Max\Application Data\Mozilla\Firefox\Profiles\2jqr9t4o.default\cookies.txt Risk: Medium Name: TrackingCookie.Estat Path: :mozilla.41:C:\Documents and Settings\Max\Application Data\Mozilla\Firefox\Profiles\2jqr9t4o.default\cookies.txt Risk: Medium Name: TrackingCookie.Sitestat Path: :mozilla.56:C:\Documents and Settings\Max\Application Data\Mozilla\Firefox\Profiles\2jqr9t4o.default\cookies.txt Risk: Medium Name: Downloader.VB Path: D:\Doc Max\anti-virus\kas\Kaspersky.Anti-Virus.6.0.1.411.not.blacklisted.key.zip/KavU.exe Risk: High Name: Trojan.Obfuscated.mu Path: D:\Doc Max\anti-virus\TreeSizesetup\TreeSizesetup.exe Risk: High Name: Trojan.Small.fyd Path: D:\Doc Max\Logiciel de bureautique M\video son\photos\photoshop element 4\Adobe.Photoshop.Elements.v4.0.WinALL.Keymaker.Only-CORE.ZIP/Adobe.Photoshop.Elements.v4.0.WinALL.Keymaker.Only-CORE/keygen.exe Risk: High Name: Trojan.Small.fyd Path: D:\Doc Max\Mes codes M\Adobe.Photoshop.Elements.v4.0.WinALL.Keymaker.Only-CORE\keygen.exe Risk: High Name: TrackingCookie.Weborama Path: :mozilla.10:D:\Doc Max\Mes codes M\MOZILLA\Firefox 2.0.0.9 fr - 2007-11-06.pcv/cookies.txt Risk: Medium Name: TrackingCookie.Weborama Path: :mozilla.11:D:\Doc Max\Mes codes M\MOZILLA\Firefox 2.0.0.9 fr - 2007-11-06.pcv/cookies.txt Risk: Medium Name: TrackingCookie.Smartadserver Path: :mozilla.16:D:\Doc Max\Mes codes M\MOZILLA\Firefox 2.0.0.9 fr - 2007-11-06.pcv/cookies.txt Risk: Medium Name: TrackingCookie.Smartadserver Path: :mozilla.17:D:\Doc Max\Mes codes M\MOZILLA\Firefox 2.0.0.9 fr - 2007-11-06.pcv/cookies.txt Risk: Medium Name: TrackingCookie.Smartadserver Path: :mozilla.18:D:\Doc Max\Mes codes M\MOZILLA\Firefox 2.0.0.9 fr - 2007-11-06.pcv/cookies.txt Risk: Medium Name: TrackingCookie.Smartadserver Path: :mozilla.19:D:\Doc Max\Mes codes M\MOZILLA\Firefox 2.0.0.9 fr - 2007-11-06.pcv/cookies.txt Risk: Medium Name: TrackingCookie.Doubleclick Path: :mozilla.21:D:\Doc Max\Mes codes M\MOZILLA\Firefox 2.0.0.9 fr - 2007-11-06.pcv/cookies.txt Risk: Medium Name: TrackingCookie.Bluestreak Path: :mozilla.24:D:\Doc Max\Mes codes M\MOZILLA\Firefox 2.0.0.9 fr - 2007-11-06.pcv/cookies.txt Risk: Medium Name: TrackingCookie.Googleadservices Path: :mozilla.28:D:\Doc Max\Mes codes M\MOZILLA\Firefox 2.0.0.9 fr - 2007-11-06.pcv/cookies.txt Risk: Medium kaspersky ? découvert : application présentant un risque potentiel Hidden data sending Le processus: C:\WINDOWS\pchealth\helpctr\binaries\helpctr.exe découvert : cheval de Troie Trojan-Downloader.Win32.Small.ddp URL: http://www.6jfqp0s5abff0jzj25xuqez7uema20w...zip/install.exe supprimé : cheval de Troie Backdoor.Win32.Ciadoor.13 Le fichier: C:\WINDOWS\system32\wsock32.sys découvert : cheval de Troie Trojan-Clicker.HTML.IFrame.au URL: http://hostitnow.liveadulthost.com///hostitnow.liveadulthost découvert : cheval de Troie Trojan-Downloader.Win32.Zlob.epa URL: http://bvdtechinque.com/download.php?id=4015//data0007 découvert : cheval de Troie Trojan-Downloader.JS.Psyme.ks URL: http://outdoorsexy.com/ découvert : application présentant un risque potentiel Hidden install Le processus: C:\Documents and Settings\Max\Local Settings\Temp\ir_ext_temp_0\autorun.exe non trouvé : cheval de Troie Backdoor.Win32.Agobot.h Le fichier: J:\Recycled\deskinf.pif//UPX découvert : cheval de Troie Trojan-Downloader.JS.Psyme.ks URL: http://www.outdoorsexy.com/ découvert : cheval de Troie Trojan-Clicker.HTML.IFrame.fp URL: http://77.221.133.188/.if/go.html?10537fb découvert : cheval de Troie Trojan-Downloader.SWF.Gida.a URL: http://adtraff.com/swf/gnida.swf?campaign=...933828//Swf2Swc découvert : cheval de Troie Trojan-Downloader.Win32.Zlob.bkj URL: http://www.crackdb.org/x.php/run.exe//PE_P...tream//data0006 supprimé : cheval de Troie Trojan.Win32.Gorshok.a Le fichier: D:\System Volume Information\_restore{FC6DA7E2-E3BB-4BD2-AE71-DDDE778DA214}\RP451\A0149947.exe//PasswordGenerator.exe bloqués : adresse d'un site de filoutage http://scarddlg.com/* URL: http://scarddlg.com/enter2235.htm supprimé : cheval de Troie Backdoor.Win32.Bifrose.cbo Le fichier: c:\windows\crack\crack.exe supprimé : cheval de Troie Backdoor.Win32.Bifrose.cbo Le fichier: C:\System Volume Information\_restore{87DED3E5-3B65-4A95-BBA2-2A76F3CB7499}\RP126\A0040707.exe supprimé : cheval de Troie Backdoor.Win32.Bifrose.aa Le fichier: D:\Doc Max\Azureus OK\Spy Sweeper 5.3.2.2361+Keygen.rar/Spy Sweeper 5.3.2.2361+Crack\SDKeygen.exe//data0003 supprimé : cheval de Troie Backdoor.Win32.Bifrose.cbo Le fichier: D:\Doc Max\JEUX\Tiger woods 20008\crack tiger woods 2008\TW2008.EXE//data0000.cab/server.exe découvert : cheval de Troie Trojan-Downloader.SWF.Gida.a URL: http://adtraff.com/swf/gnida.swf?campaign=...147234//Swf2Swc découvert : cheval de Troie Trojan-Downloader.JS.Small.hw URL: http://spl.vip-ddos.org/index.php non trouvé : cheval de Troie Trojan-Spy.Win32.Banker.gez Le fichier: C:\DOCUME~1\Max\LOCALS~1\Temp\ir_ext_temp_0\autorun.exe non trouvé : cheval de Troie Trojan-Spy.Win32.Banker.gez Le fichier: C:\DOCUME~1\Max\LOCALS~1\Temp\ir_ext_temp_1\autorun.exe découvert : programme malicieux Exploit.JS.ADODB.Stream.ah URL: http://picshunter.info/??http%3A//www.allt...om/orgies.shtml découvert : programme malicieux Exploit.JS.ADODB.Stream.ah URL: http://picshunter.info/??http%3A//www.secr...ur-friendly.com supprimé : cheval de Troie Trojan.Win32.Pakes.buo Le fichier: D:\Doc Max\Azureus OK\jv16.PowerTools.2007.v1.7.0.422.Incl.Key.rar/jv16pt_setup_hb.exe//data0000.cab/update.exe//PE_Patch.UPX//UPX supprimé : cheval de Troie Trojan.Win32.Pakes.buo Le fichier: D:\Doc Max\Azureus OK\decompresser ici\jv16pt_setup_hb.exe//data0000.cab/update.exe//PE_Patch.UPX//UPX supprimé : cheval de Troie Backdoor.Win32.Delf.atg Le fichier: D:\Doc Max\Azureus OK\Serial Keygen Crack Generator Systran 6 Premium Translator 2007.rar/et ma famille.EXE//data0000.cab/MSNHAC~1.EXE//data0000.cab/MSNHAC~2.EXE découvert : programme malicieux Exploit.JS.ADODB.Stream.ah URL: http://picshunter.info/??http%3A//www.fuck-love.com/ supprimé : cheval de Troie Trojan-Downloader.Win32.Bagle.fi Le fichier: D:\Doc Max\Azureus OK\Reallusion CrazyTalk Media Studio Edition 4.6 [KeyGen].exe découvert : application présentant un risque potentiel Hidden data sending Le processus: C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe découvert : programme malicieux Exploit.JS.Agent.ed URL: http://69.50.173.195/h2sv3b1/com.php découvert : application présentant un risque potentiel Private data and passwords access Le processus: C:\DOCUME~1\Max\LOCALS~1\Temp\RFS5204.tmp\rfwipeout.exe découvert : application présentant un risque potentiel Private data and passwords access Le processus: C:\DOCUME~1\Max\LOCALS~1\Temp\RFSE98B.tmp\rfwipeout.exe découvert : application présentant un risque potentiel Hidden install Le processus: D:\Doc Max\Azureus OK\Slysoft AnyDVD 6.1.7.4 Final + KEY [DXO]\AnyDVD.Patch.exe supprimé : cheval de Troie Backdoor.Win32.Iroffer.bd Le fichier: C:\WINDOWS\Driver\i386\winlogon.exe supprimé : cheval de Troie Trojan-Dropper.Win32.Agent.ecc Le fichier: D:\Doc Max\Azureus OK\decompresser ici\multi_product_2.exe non trouvé : cheval de Troie Backdoor.Win32.Agobot.h Le fichier: K:\Recycled\deskinf.pif//UPX non trouvé : cheval de Troie Trojan-Spy.Win32.Agent.qj Le fichier: K:\Recycled\~WR00001.doc//UPX non trouvé : cheval de Troie Backdoor.Win32.Bifrose.de Le fichier: E:\Setup.exe découvert : application présentant un risque potentiel Trojan.generic Le processus: C:\Documents and Settings\Max\Local Settings\Temp\1.4 XR6.exe découvert : application présentant un risque potentiel Trojan.generic Le processus: C:\WINDOWS\Config\csrss.exe non trouvé : logiciel publicitaire not-a-virus:AdWare.Win32.Agent.zk Le fichier: D:\Doc Max\A Telecharge\autocad architecture fr 2008.zip/Setup.exe//PE_Patch.UPX//UPX supprimé : logiciel publicitaire not-a-virus:AdWare.Win32.Agent.zk Le fichier: D:\Doc Max\A Telecharge\Setup.exe//PE_Patch.UPX//UPX découvert : logiciel publicitaire not-a-virus:AdWare.Win32.Agent.zk URL: http://www.fastmp3player.com/affiliates/77..._Patch.UPX//UPX non trouvé : virus Heur.Invader (modification) Le fichier: D:\Doc Max\hjt\SDFix.exe//data.rar/SDFix\catchme.exe encore merci pour tout fm37
-
Le volume dans le lecteur C n'a pas de nom. Le num‚ro de s‚rie du volume est E4BA-B320 R‚pertoire de C:\WINDOWS\Driver 02/13/2008 17:00 <REP> . 02/13/2008 17:00 <REP> .. 02/13/2008 17:04 <REP> i386 0 fichier(s) 0 octets R‚pertoire de C:\Documents and Settings\Max\Bureau Le volume dans le lecteur C n'a pas de nom. Le num‚ro de s‚rie du volume est E4BA-B320 R‚pertoire de C:\WINDOWS\Driver\i386 02/13/2008 17:04 <REP> . 02/13/2008 17:04 <REP> .. 03/11/1999 19:23 32,842 BugSlayerUtil.dll 02/13/2008 17:04 1,744 c.dll 06/02/2004 01:48 5 ccd.dll 06/20/2003 13:47 47 ccdx.dll 05/15/2003 05:20 52 chgdir.dll 12/12/2005 21:57 6,656 cygcrypt-0.dll 07/10/2005 01:10 330,752 cyggcrypt-11.dll 02/14/2006 08:29 23,040 cygGeoIP-1.dll 08/21/2005 13:58 391,168 cyggnutls-11.dll 08/21/2005 13:58 21,504 cyggnutls-openssl-11.dll 07/09/2005 23:34 11,776 cyggpg-error-0.dll 10/23/2006 00:44 999,424 cygiconv-2.dll 11/20/2005 03:13 31,744 cygintl-3.dll 04/21/2003 19:47 68,016 cygregex.dll 08/21/2005 15:31 66,048 cygtasn1-2.dll 12/12/2005 21:57 1,295,582 cygwin1.dll 10/16/2006 02:10 66,048 cygz.dll 06/20/2003 13:47 0 gsm.dll 06/20/2003 13:47 528 ig.dll 11/02/2001 18:23 938,062 libxml2.dll 02/28/2004 09:47 53,760 ms-java.exe 02/13/2008 17:04 238 ms-java.ini 03/07/2008 15:26 4,468 ms-java.log 09/18/2007 18:14 93 run.bat 01/28/2008 17:09 272 s.dll 25 fichier(s) 4,343,869 octets R‚pertoire de C:\Documents and Settings\Max\Bureau SDFix: Version 1.153 Run by Max on ven. 03/07/2008 at 15:57 Microsoft Windows XP [version 5.1.2600] Running From: C:\SDFix Checking Services : Name: Ms-java Path: C:\WINDOWS\Driver\i386\ms-java.exe Ms-java - Deleted Restoring Windows Registry Values Restoring Windows Default Hosts File Rebooting Checking Files : Trojan Files Found: C:\Documents and Settings\Max\Application Data\addon.dat - Deleted Removing Temp Files ADS Check : Final Check : catchme 0.3.1344.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-03-07 16:09:23 Windows 5.1.2600 Service Pack 2 NTFS scanning hidden processes ... scanning hidden services & system hive ... [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg] "s1"=dword:2df9c43f "s2"=dword:110480d0 "h0"=dword:00000002 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04] "p0"="C:\Program Files\Alcohol Soft\Alcohol 120\" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC] "h0"=dword:00000001 "hdf12"=hex:e4,45,00,12,a8,b5,e6,95,12,76,80,ea,15,78,6f,80,d9,2e,95,3b,dd,.. "p0"="C:\Program Files\DAEMON Tools Pro\" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001] "a0"=hex:20,01,00,00,a1,65,63,dd,21,57,06,07,01,3a,bd,99,bf,42,74,7f,27,.. "hdf12"=hex:c7,cd,36,3d,5d,e6,10,1f,88,54,a6,f6,73,70,7e,2a,f8,53,2d,de,e2,.. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0] "hdf12"=hex:1f,3c,57,20,a8,17,eb,13,f0,82,d7,c2,fe,59,22,25,cb,ca,21,ea,08,.. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1] "hdf12"=hex:1f,3c,57,20,a8,17,eb,13,f0,82,d7,c2,fe,59,22,25,cb,ca,21,ea,08,.. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq2] "hdf12"=hex:1f,3c,57,20,a8,17,eb,13,f0,82,d7,c2,fe,59,22,25,cb,ca,21,ea,08,.. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4] "h0"=dword:00000000 "khjeh"=hex:05,79,a5,82,5f,8b,f4,31,d7,aa,74,cf,db,d1,0d,4e,6c,10,b2,10,42,.. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\0D79C293C1ED61418462E24595C90D04] "p0"="C:\Program Files\Alcohol Soft\Alcohol 120\" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC] "h0"=dword:00000001 "hdf12"=hex:e4,45,00,12,a8,b5,e6,95,12,76,80,ea,15,78,6f,80,d9,2e,95,3b,dd,.. "p0"="C:\Program Files\DAEMON Tools Pro\" [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001] "a0"=hex:20,01,00,00,a1,65,63,dd,21,57,06,07,01,3a,bd,99,bf,42,74,7f,27,.. "hdf12"=hex:c7,cd,36,3d,5d,e6,10,1f,88,54,a6,f6,73,70,7e,2a,f8,53,2d,de,e2,.. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0] "hdf12"=hex:1f,3c,57,20,a8,17,eb,13,f0,82,d7,c2,fe,59,22,25,cb,ca,21,ea,08,.. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1] "hdf12"=hex:1f,3c,57,20,a8,17,eb,13,f0,82,d7,c2,fe,59,22,25,cb,ca,21,ea,08,.. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq2] "hdf12"=hex:1f,3c,57,20,a8,17,eb,13,f0,82,d7,c2,fe,59,22,25,cb,ca,21,ea,08,.. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4] "h0"=dword:00000000 "khjeh"=hex:05,79,a5,82,5f,8b,f4,31,d7,aa,74,cf,db,d1,0d,4e,6c,10,b2,10,42,.. scanning hidden registry entries ... [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\\xd8\x2022\x20ac|\xff\xff\xff\xff\22\x2022\x20ac|\xf9\x20229~\2] "5E7CEC10DF0760D4F8DAFB12FDC06CCD"="02:\Software\Adobe\FeatureSubscriptions\DVAAdobeDocMeta\{01CEC7E5-70FD-4D06-8FAD-BF21DF0CC6DC}\Registered" scanning hidden files ... scan completed successfully hidden processes: 0 hidden services: 0 hidden files: 0 Remaining Services : Authorized Application Key Export: [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"="C:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE:*:Enabled:Microsoft Office Outlook" "C:\\Program Files\\eMule\\eMule.exe"="C:\\Program Files\\eMule\\eMule.exe:*:Enabled:eMule Plus" "C:\\Program Files\\SYSTRAN\\6\\SystranToolbar.exe"="C:\\Program Files\\SYSTRAN\\6\\SystranToolbar.exe:*:Enabled:SYSTRAN Translation Toolbar" "C:\\Program Files\\SYSTRAN\\6\\Dicts\\SystranTranslationEngine.exe"="C:\\Program Files\\SYSTRAN\\6\\Dicts\\SystranTranslationEngine.exe:*:Enabled:Systran Translation Engine " "C:\\Program Files\\SYSTRAN\\6\\Dicts\\SystranCodingEngine.exe"="C:\\Program Files\\SYSTRAN\\6\\Dicts\\SystranCodingEngine.exe:*:Enabled:Systran Coding Engine " "C:\\Program Files\\Fichiers communs\\Ahead\\Nero Web\\SetupX.exe"="C:\\Program Files\\Fichiers communs\\Ahead\\Nero Web\\SetupX.exe:*:Enabled:Nero ProductSetup" "C:\\Program Files\\SYSTRAN\\6\\Dicts\\SystranFilterEngine.exe"="C:\\Program Files\\SYSTRAN\\6\\Dicts\\SystranFilterEngine.exe:*:Enabled:Systran Filter Engine " "C:\\Program Files\\SYSTRAN\\6\\SystranTranslationProjectManager.exe"="C:\\Program Files\\SYSTRAN\\6\\SystranTranslationProjectManager.exe:*:Enabled:SystranTranslationProjectMan ager" "C:\\Program Files\\uTorrent\\uTorrent.exe"="C:\\Program Files\\uTorrent\\uTorrent.exe:*:Enabled:æTorrent" "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" "C:\\Program Files\\Sports Interactive\\Football Manager 2008\\fm.exe"="C:\\Program Files\\Sports Interactive\\Football Manager 2008\\fm.exe:*:Disabled:Football Manager 2008" "C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire" "C:\\Program Files\\Online TV Player 3\\TVPlayer.exe"="C:\\Program Files\\Online TV Player 3\\TVPlayer.exe:*:Enabled:TVPlayer" "C:\\Program Files\\Joost\\xulrunner\\tvprunner.exe"="C:\\Program Files\\Joost\\xulrunner\\tvprunner.exe:*:Enabled:tvprunner" "C:\\Program Files\\Mozilla Firefox\\firefox.exe"="C:\\Program Files\\Mozilla Firefox\\firefox.exe:*:Disabled:Firefox" "C:\\Program Files\\Real\\RealPlayer\\realplay.exe"="C:\\Program Files\\Real\\RealPlayer\\realplay.exe:*:Enabled:RealPlayer" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000" Remaining Files : File Backups: - C:\SDFix\backups\backups.zip Files with Hidden Attributes : Tue 12 Feb 2008 24 ..SH. --- "C:\WINDOWS\S6E4BE8E6.tmp" Wed 13 Oct 2004 1,694,208 ..SH. --- "C:\Program Files\Messenger\msmsgs.exe" Mon 28 Jan 2008 1,404,240 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe" Mon 28 Jan 2008 5,146,448 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" Mon 28 Jan 2008 2,097,488 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" Sat 29 Sep 2007 23 A.SH. --- "C:\WINDOWS\system32\cde8_r.dll" Fri 2 Nov 2007 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak" Sat 29 Sep 2007 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp" Sat 29 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\27efdbd68a382580fdb15dd4f797360e\download\BIT102.tmp" Sat 29 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\29f6d57cd4efa945b402cdec2ffedddf\download\BITEF.tmp" Fri 30 Mar 2007 154,022 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\2b0ec6af95107cd747155f214801a1de\download\BITBE.tmp" Sat 29 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\2e7a189200995a8815b37a5d2ef6c8c6\download\BIT54.tmp" Sat 29 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\302e1056006644b6630bcb41e5969ade\download\BIT41.tmp" Sat 29 Sep 2007 108,686 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\3d626d96e6e22b8a5867784640121555\download\BITD8.tmp" Sat 29 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\4c5c888ff189ce65af20cc141b13bcd3\download\BIT75.tmp" Tue 12 Apr 2005 2,246,551 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\4cabbc33d9fa3ea879d2330766ba6ff1\download\BIT1E.tmp" Sat 29 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\5d24ad19cee78bba662249a4deccb260\download\BITF8.tmp" Mon 5 Feb 2007 380,382 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\6291f486ec5de5182ec3cff2071af184\download\BITCC.tmp" Sat 29 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\7d67df8d2fa218514bbe5a22ae12a9b3\download\BIT103.tmp" Sat 29 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\abca9e2bf0dd5e18df937d2b7f598387\download\BIT2E.tmp" Fri 29 Jun 2007 512,474 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\b8ac6274ac8ad7e4b0febe55aca1e516\download\BITB7.tmp" Sat 29 Sep 2007 158,728 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\bfd81cbd42e5265d12677c96600c0804\download\BITD9.tmp" Sat 29 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\cbee9c95b55c0a7f59376a89c9a3d3c1\download\BITE8.tmp" Sat 29 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\d3d59acde4bc99f07df90298fa402c77\download\BIT17B.tmp" Sat 29 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\d8cfedd5cfd3f0881276825d82978e5d\download\BITDF.tmp" Sat 29 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\eb96ceab77261e76cdbe943d8cf8e4cc\download\BIT58.tmp" Mon 17 Apr 2006 2,824 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\ef76b58e91ae8084bf0833c90d4b9382\download\BITC6.tmp" Sat 29 Sep 2007 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\f32bfa5d1049b53eae766f9d37379ea6\download\BIT10B.tmp" Mon 13 Dec 2004 281,338 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\fde0566446f6dd640c536f419fe1216a\download\BITBC.tmp" Finished! merci angélique fm37 Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 00:18:18, on 3/8/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16608) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe C:\Program Files\ClocX\ClocX.exe C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\SuperCopier2\SuperCopier2.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe C:\WINDOWS\system32\wbem\wmiprvse.exe C:\WINDOWS\System32\alg.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\Program Files\Trend Micro\HijackThis\HijackThis.exe C:\WINDOWS\system32\wbem\wmiprvse.exe R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll O3 - Toolbar: SYSTRAN Toolbar - {95daa571-4def-4a6d-97d8-98a346672a24} - mscoree.dll (file missing) O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd O4 - HKLM\..\Run: [iSUSPM] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" -scheduler O4 - HKLM\..\Run: [ClocX] "C:\Program Files\ClocX\ClocX.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [superCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe" O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O8 - Extra context menu item: Barre RoboForm - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html O8 - Extra context menu item: Consulter les dictionnaires (SYSTRAN) - res://C:\Program Files\SYSTRAN\6\\GUIres.dll/lookup.js O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Enregistrer le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html O8 - Extra context menu item: Personnaliser le menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html O8 - Extra context menu item: Remplir le formulaire - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html O8 - Extra context menu item: Traduire (SYSTRAN) - res://C:\Program Files\SYSTRAN\6\\GUIres.dll/translate.js O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra button: Statistiques d’Anti-Virus Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\SCIEPlgn.dll O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html O9 - Extra 'Tools' menuitem: Remplir le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html O9 - Extra 'Tools' menuitem: Enregistrer le formulaire - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html O9 - Extra button: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html O9 - Extra 'Tools' menuitem: Barre RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Correcteur - {F7C8E5F6-B6D1-45db-8D91-2BCFA5DF11A9} - C:\Program Files\Druide\Antidote\Internet Explorer\7\Antidote K - IE 7.htm (HKCU) O9 - Extra button: Dictionnaires - {F9B969E8-58D0-4dd9-AC8A-EE2336FF8F65} - C:\Program Files\Druide\Antidote\Internet Explorer\7\Antidote D - IE 7.htm (HKCU) O9 - Extra button: Guides - {FA089E36-3F1B-4c51-9A1A-C4E7012483AF} - C:\Program Files\Druide\Antidote\Internet Explorer\7\Antidote G - IE 7.htm (HKCU) O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~2.0\adialhk.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: Kaspersky Internet Security 7.0 (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe -- End of file - 8023 bytes fm37
-
bonjour Angélique, résultat : C:\WINDOWS\Config\csrss.exe moved successfully. [Custom Input] < EmptyTemp > File delete failed. C:\DOCUME~1\Max\LOCALS~1\Temp\~DFB09D.tmp scheduled to be deleted on reboot. File delete failed. C:\WINDOWS\temp\cch~c86d7dad.htp scheduled to be deleted on reboot. File delete failed. C:\WINDOWS\temp\cch~c86d8244.htp scheduled to be deleted on reboot. Temp folders emptied. IE temp folders emptied. OTMoveIt2 v1.0.20 log created on 03072008_154142