Aller au contenu

prope

Membres
  • Compteur de contenus

    10
  • Inscription

  • Dernière visite

Autres informations

  • Mes langues
    francais

prope's Achievements

Junior Member

Junior Member (3/12)

0

Réputation sur la communauté

  1. All processes killed Error: Unable to interpret <GO> in the current context! ========== FILES ========== C:\Program Files\Bonjour folder moved successfully. ========== SERVICES/DRIVERS ========== Service Bonjour Service stopped successfully! Service Bonjour Service deleted successfully! ========== REGISTRY ========== ========== COMMANDS ========== [EMPTYTEMP] User: All Users ->Flash cache emptied: 38 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 43186 bytes ->Flash cache emptied: 41620 bytes User: defenouillere ->Temp folder emptied: 9088298 bytes ->Temporary Internet Files folder emptied: 397148 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 139407318 bytes ->Google Chrome cache emptied: 0 bytes ->Flash cache emptied: 52845 bytes User: LocalService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 32902 bytes User: NetworkService ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 33170 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 14567825 bytes %systemroot%\System32 .tmp files removed: 4348928 bytes %systemroot%\System32\dllcache .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 664 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes %systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 34293 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 160,00 mb OTM by OldTimer - Version 3.1.12.0 log created on 05072010_211132 Files moved on Reboot... Registry entries deleted on Reboot...
  2. Bonsoir apollo est voila le rapport Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 20:10:43, on 07/05/2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\brsvc01a.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\brss01a.exe C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\ALCWZRD.EXE C:\Apps\Powercinema\PCMService.exe C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe C:\Program Files\iTunes\iTunesHelper.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\HTC\HTC Sync\Application Launcher\Application Launcher.exe C:\Program Files\Microsoft ActiveSync\wcescomm.exe C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Extrafilm Designer FR\EFUploadSrv.exe C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe C:\PROGRA~1\MICROS~2\rapimgr.exe c:\APPS\HIDSERVICE\HIDSERVICE.exe C:\WINDOWS\system32\HerculesWiFiService.exe C:\Program Files\Logitech\SetPoint II\SetpointII.exe C:\Program Files\Fichiers communs\Logishrd\KHAL2\KHALMNPR.EXE C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe C:\WINDOWS\system32\PnkBstrA.exe C:\WINDOWS\system32\PnkBstrB.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\UltraVNC\WinVNC.exe c:\APPS\Powercinema\Kernel\TV\CLSched.exe C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe C:\Program Files\Fichiers communs\Teleca Shared\logger.exe C:\Program Files\Fichiers communs\Teleca Shared\CapabilityManager.exe C:\Program Files\HTC\HTC Sync\ClientInitiatedStarter\ClientInitiatedStarter.exe C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\epmworker.exe C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\HTCVBTServer.exe C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\FsynSrvStarter.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\Windows Live\Contacts\wlcomm.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Skype\Plugin Manager\skypePM.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtblfs.exe C:\WINDOWS\system32\cmd.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\Documents and Settings\defenouillere\Mes documents\Téléchargements\HiJackThis(3).exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.gamesgames.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file) O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file) O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: SYSTRAN Web Translator 5.0 - {A5899B52-3AF9-4F56-85FE-AD7B3BE8490F} - C:\Program Files\SYSTRAN\5.0\Personal\IEPlugIn.dll O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe" O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [WinVNC] "C:\Program Files\UltraVNC\WinVNC.exe" -servicehelper O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [Mobile Connectivity Suite] "C:\Program Files\HTC\HTC Sync\Application Launcher\Application Launcher.exe" /startoptions O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe" O4 - HKCU\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear O4 - HKCU\..\Run: [steam] "c:\program files\steam\steam.exe" -silent O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Contrôleur d’état.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O4 - Global Startup: SetPointII.lnk = ? O4 - Global Startup: WiFi Station N.lnk = C:\Program Files\Hercules\WiFiStationN\WiFiN.exe O8 - Extra context menu item: Ajouter à l'Anti-bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll O9 - Extra button: Clavier &virtuel - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll O9 - Extra button: Analyse des &liens - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://www.extrafilm.fr/ImageUploader5.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O23 - Service: AOL Connectivity Service (AOL ACS) - Unknown owner - C:\Program Files\Fichiers communs\AOL\ACS\AOLAcsd.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe O23 - Service: ExtraFilm upload service (EFUploadSrv) - Textalk AB - C:\Program Files\Extrafilm Designer FR\EFUploadSrv.exe O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: HerculesWiFi - Guillemot Corporation - C:\WINDOWS\system32\HerculesWiFiService.exe O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: MysqlInventime - Unknown owner - C:\Apps\INVENT~1\mysql\bin\mysqld-nt.exe (file missing) O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe O23 - Service: VNC Server (winvnc) - www.ultravnc.fr - C:\Program Files\UltraVNC\WinVNC.exe -- End of file - 13470 bytes
  3. Voila --------------------\\ Lop S&D 4.2.5-0 XP/Vista Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3 X86-based PC ( Uniprocessor Free : Intel® Pentium® 4 CPU 3.06GHz ) BIOS : Award Medallion BIOS v6.00PG USER : defenouillere ( Administrator ) BOOT : Normal boot Antivirus : Kaspersky Internet Security 9.0.0.736 (Activated) Firewall : Kaspersky Internet Security 9.0.0.736 (Activated) A:\ (USB) C:\ (Local Disk) - NTFS - Total:186 Go (Free:137 Go) D:\ (Local Disk) - NTFS - Total:233 Go (Free:165 Go) E:\ (CD or DVD) F:\ (CD or DVD) G:\ (USB) H:\ (USB) I:\ (USB) J:\ (USB) K:\ (Local Disk) - NTFS - Total:153 Go (Free:29 Go) "C:\Lop SD" ( MAJ : 19-12-2008|23:40 ) Option : [2] ( 07/05/2010|19:58 ) \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\BitDownload.ini Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\btdht.dat Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\lib.vcs Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\PlayLists Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\RoutingTree.bin Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\search.ini Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\Shared.dat Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\ShareHistory.dat Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\SPK.bin Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\Storage Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\Torrents Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\trdnld.vcs Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\trupld.vcs Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\URLs.ini Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\Bitdownload \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ Supprime! - C:\Program Files\Viewpoint Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ --------------------\\ Listing des dossiers dans APPLIC~1 [23/02/2010|12:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{755AC846-7372-4AC8-8550-C52491DAA8BD} [10/02/2010|12:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe [16/11/2009|15:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Alawar Stargaze [13/08/2009|19:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\albumphoto [19/08/2007|13:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL [19/08/2007|13:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads [25/07/2009|23:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple [23/02/2010|12:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer [17/12/2009|15:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Artist Colony [22/03/2010|16:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BigFishGamesCache [30/11/2009|15:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\blg [11/07/2007|11:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY [12/07/2009|10:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Brother [14/09/2009|11:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CasualForge [24/02/2007|12:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink [01/10/2007|10:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink [22/01/2010|14:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EscapeTheMuseum2 [05/09/2009|17:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ExtraFilm [09/09/2009|17:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FarmFrenzy2 [13/09/2009|13:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FarmFrenzy3 [01/09/2009|21:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FarmFrenzy-PizzaParty [03/01/2010|16:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fenomen Games [29/09/2007|17:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FlashFXP [22/01/2010|13:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Flood Light Games [29/09/2009|14:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fugazo [17/11/2009|12:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\GameHouse [12/01/2008|19:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google [23/04/2010|21:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HTC [12/07/2009|10:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield [07/05/2010|13:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab [08/12/2009|23:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files [02/12/2009|17:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kristanix Games [21/09/2009|11:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Little Games Company [01/11/2009|16:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LogiShrd [19/08/2007|13:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macromedia [06/05/2010|21:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes [02/12/2009|12:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MarcoPolo [04/01/2010|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Merscom [28/01/2010|20:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft [02/08/2009|15:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MythPeople [06/07/2009|21:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NortonInstaller [10/03/2010|14:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NVIDIA Corporation [25/07/2007|20:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles [07/08/2009|09:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Oberon Media [24/02/2007|13:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2 [17/12/2009|15:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PlayFirst [16/12/2009|15:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\rionix [11/10/2009|14:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sandlot Games [16/08/2004|19:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI [12/07/2009|10:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft [28/10/2009|22:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype [06/07/2009|21:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy [31/03/2010|08:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sun [24/08/2009|16:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SuperRanch [04/03/2010|19:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec [23/04/2010|21:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Teleca [08/03/2010|12:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP [25/05/2008|18:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TrackMania [31/08/2009|18:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\VirtualFarm [20/03/2007|20:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage [13/11/2007|13:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller [10/12/2009|15:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\XLab [24/02/2007|21:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! [16/08/2009|12:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom [04/05/2010|13:59] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer [07/04/2010|22:15] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Google [16/08/2004|19:19] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities [10/02/2010|12:02] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia [24/02/2007|12:59] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft [24/02/2007|13:00] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Real [24/02/2007|12:48] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun [24/02/2007|13:00] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec [24/02/2007|13:06] C:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver [10/02/2010|12:00] C:\DOCUME~1\DEFENO~1\APPLIC~1\Adobe [27/02/2007|13:07] C:\DOCUME~1\DEFENO~1\APPLIC~1\AdobeUM [27/02/2007|06:19] C:\DOCUME~1\DEFENO~1\APPLIC~1\Ahead [19/08/2007|14:53] C:\DOCUME~1\DEFENO~1\APPLIC~1\AOL [23/02/2010|12:30] C:\DOCUME~1\DEFENO~1\APPLIC~1\Apple Computer [10/11/2009|18:05] C:\DOCUME~1\DEFENO~1\APPLIC~1\Artogon [24/07/2007|22:03] C:\DOCUME~1\DEFENO~1\APPLIC~1\ATI [17/10/2009|20:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\Awem [09/12/2009|13:02] C:\DOCUME~1\DEFENO~1\APPLIC~1\Azuaz Games [22/02/2010|14:16] C:\DOCUME~1\DEFENO~1\APPLIC~1\bfgbar [30/11/2009|15:08] C:\DOCUME~1\DEFENO~1\APPLIC~1\BlamGames [30/11/2009|15:03] C:\DOCUME~1\DEFENO~1\APPLIC~1\blg [21/09/2009|20:45] C:\DOCUME~1\DEFENO~1\APPLIC~1\Boomzap [13/04/2007|13:01] C:\DOCUME~1\DEFENO~1\APPLIC~1\Brother [14/09/2009|11:13] C:\DOCUME~1\DEFENO~1\APPLIC~1\CasualForge [22/09/2009|19:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\CatmoonGames [18/03/2007|21:19] C:\DOCUME~1\DEFENO~1\APPLIC~1\CyberLink [16/11/2007|21:49] C:\DOCUME~1\DEFENO~1\APPLIC~1\DivX [17/02/2010|20:48] C:\DOCUME~1\DEFENO~1\APPLIC~1\dvdcss [25/11/2009|13:02] C:\DOCUME~1\DEFENO~1\APPLIC~1\EleFun Games [10/12/2009|15:57] C:\DOCUME~1\DEFENO~1\APPLIC~1\Enlightenus [10/11/2009|20:52] C:\DOCUME~1\DEFENO~1\APPLIC~1\ERS G-Studio [27/07/2009|12:21] C:\DOCUME~1\DEFENO~1\APPLIC~1\ExtraFilm [04/02/2010|15:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\Facebook [13/09/2009|18:00] C:\DOCUME~1\DEFENO~1\APPLIC~1\FarmerJane [08/11/2009|18:14] C:\DOCUME~1\DEFENO~1\APPLIC~1\FirstColony [22/01/2010|13:22] C:\DOCUME~1\DEFENO~1\APPLIC~1\Flood Light Games [23/01/2010|15:14] C:\DOCUME~1\DEFENO~1\APPLIC~1\Friday's games [18/12/2009|11:12] C:\DOCUME~1\DEFENO~1\APPLIC~1\Game Mill Entertainment [23/11/2009|14:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\GameInvest [30/11/2009|10:58] C:\DOCUME~1\DEFENO~1\APPLIC~1\Gold Casual Games [15/05/2007|21:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\Google [02/12/2009|14:44] C:\DOCUME~1\DEFENO~1\APPLIC~1\HiT-MM [14/11/2009|15:40] C:\DOCUME~1\DEFENO~1\APPLIC~1\HSA [11/12/2009|10:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\Identities [24/02/2007|22:44] C:\DOCUME~1\DEFENO~1\APPLIC~1\InstallShield [13/11/2009|15:40] C:\DOCUME~1\DEFENO~1\APPLIC~1\Island [07/07/2009|21:49] C:\DOCUME~1\DEFENO~1\APPLIC~1\Lavasoft [07/12/2009|12:26] C:\DOCUME~1\DEFENO~1\APPLIC~1\Lazy Turtle Games [19/01/2008|17:02] C:\DOCUME~1\DEFENO~1\APPLIC~1\Leadertech [29/07/2009|10:54] C:\DOCUME~1\DEFENO~1\APPLIC~1\LG Electronics [29/09/2008|22:38] C:\DOCUME~1\DEFENO~1\APPLIC~1\LimeWire [21/09/2009|11:58] C:\DOCUME~1\DEFENO~1\APPLIC~1\Little Games Company [09/11/2009|12:14] C:\DOCUME~1\DEFENO~1\APPLIC~1\Little Worlds Online [12/11/2009|19:07] C:\DOCUME~1\DEFENO~1\APPLIC~1\MA [24/02/2007|12:59] C:\DOCUME~1\DEFENO~1\APPLIC~1\Macromedia [08/07/2009|11:56] C:\DOCUME~1\DEFENO~1\APPLIC~1\Magic Seeds [06/05/2010|21:04] C:\DOCUME~1\DEFENO~1\APPLIC~1\Malwarebytes [02/10/2007|05:32] C:\DOCUME~1\DEFENO~1\APPLIC~1\Media Player Classic [04/11/2009|16:20] C:\DOCUME~1\DEFENO~1\APPLIC~1\MegaplexMadnessSummerBlockbuster [24/08/2009|14:50] C:\DOCUME~1\DEFENO~1\APPLIC~1\Meridian93 [04/01/2010|14:46] C:\DOCUME~1\DEFENO~1\APPLIC~1\Merscom [05/02/2010|21:54] C:\DOCUME~1\DEFENO~1\APPLIC~1\Microsoft [24/02/2007|18:12] C:\DOCUME~1\DEFENO~1\APPLIC~1\Mozilla [07/07/2009|21:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\MSNInstaller [24/10/2009|14:08] C:\DOCUME~1\DEFENO~1\APPLIC~1\My Games [22/11/2009|17:37] C:\DOCUME~1\DEFENO~1\APPLIC~1\MysteryStudio [29/08/2009|12:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\NevoSoft Games [03/03/2007|13:25] C:\DOCUME~1\DEFENO~1\APPLIC~1\OD2 [23/08/2009|22:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\OpenOffice.org [25/10/2009|09:07] C:\DOCUME~1\DEFENO~1\APPLIC~1\panoramik [15/11/2007|20:34] C:\DOCUME~1\DEFENO~1\APPLIC~1\Participatory Culture Foundation [12/01/2008|16:20] C:\DOCUME~1\DEFENO~1\APPLIC~1\PCF-VLC [10/08/2009|19:09] C:\DOCUME~1\DEFENO~1\APPLIC~1\Peace Craft [23/11/2009|15:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\Ph03nixNewMedia [17/12/2009|15:57] C:\DOCUME~1\DEFENO~1\APPLIC~1\PlayFirst [11/11/2009|17:23] C:\DOCUME~1\DEFENO~1\APPLIC~1\Playrix Entertainment [23/11/2007|07:04] C:\DOCUME~1\DEFENO~1\APPLIC~1\Real [17/11/2009|19:08] C:\DOCUME~1\DEFENO~1\APPLIC~1\ScanSoft [24/10/2007|18:53] C:\DOCUME~1\DEFENO~1\APPLIC~1\SecuROM [24/11/2009|11:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\she_is_a_shadow [07/05/2010|19:44] C:\DOCUME~1\DEFENO~1\APPLIC~1\Skype [07/05/2010|16:04] C:\DOCUME~1\DEFENO~1\APPLIC~1\skypePM [30/01/2010|13:15] C:\DOCUME~1\DEFENO~1\APPLIC~1\Software Informer [25/10/2009|09:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\SulusGames [24/02/2007|12:48] C:\DOCUME~1\DEFENO~1\APPLIC~1\Sun [24/02/2007|13:31] C:\DOCUME~1\DEFENO~1\APPLIC~1\Talkback [27/02/2007|21:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\teamspeak2 [23/04/2010|21:35] C:\DOCUME~1\DEFENO~1\APPLIC~1\Teleca [24/02/2007|18:12] C:\DOCUME~1\DEFENO~1\APPLIC~1\Thunderbird [23/11/2009|12:10] C:\DOCUME~1\DEFENO~1\APPLIC~1\Total Eclipse [04/12/2009|23:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\uTorrent [03/12/2009|15:19] C:\DOCUME~1\DEFENO~1\APPLIC~1\VampireSaga [27/11/2009|13:52] C:\DOCUME~1\DEFENO~1\APPLIC~1\V-Games [21/10/2009|14:05] C:\DOCUME~1\DEFENO~1\APPLIC~1\ViquaSoft [06/05/2010|17:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\vlc [30/08/2009|14:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\Vogat Interactive [07/10/2007|18:30] C:\DOCUME~1\DEFENO~1\APPLIC~1\Vso [24/02/2007|19:21] C:\DOCUME~1\DEFENO~1\APPLIC~1\WinRAR [01/09/2009|14:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\YoudaGames [24/02/2007|13:06] C:\DOCUME~1\DEFENO~1\APPLIC~1\You've Got Pictures Screensaver [11/12/2009|10:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\Zylom [16/08/2004|18:54] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft [16/08/2004|18:54] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft --------------------\\ Tâches planifiées dans C:\WINDOWS\tasks [04/03/2010 20:01][--a------] C:\WINDOWS\tasks\Install_NSS.job [07/05/2010 19:11][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [07/05/2010 12:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [17/04/2010 20:11][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job [07/05/2010 06:02][--ah-----] C:\WINDOWS\tasks\SA.DAT [05/08/2004 15:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini --------------------\\ Listing des dossiers dans C:\Program Files [20/01/2010|21:56] C:\Program Files\Adobe [09/12/2009|14:03] C:\Program Files\Affair Bureau [10/03/2010|14:15] C:\Program Files\AGEIA Technologies [25/07/2009|23:40] C:\Program Files\Apple Software Update [22/03/2010|16:25] C:\Program Files\bfgclient [22/02/2010|14:14] C:\Program Files\Big Fish Games Toolbar Installer [23/02/2010|12:18] C:\Program Files\Bonjour [12/07/2009|10:25] C:\Program Files\Brother [16/03/2007|13:45] C:\Program Files\Capturino 1.4 [05/05/2010|23:54] C:\Program Files\CCleaner [01/11/2009|16:15] C:\Program Files\Common Files [01/12/2009|19:39] C:\Program Files\ConvertHelper [24/02/2007|12:57] C:\Program Files\CyberLink [28/08/2009|16:21] C:\Program Files\DivX [01/10/2007|10:25] C:\Program Files\DVD Shrink [01/10/2007|12:47] C:\Program Files\DVDFab HD Decrypter 3 [08/07/2009|19:12] C:\Program Files\EA Games [29/09/2008|19:30] C:\Program Files\eMule [18/02/2010|14:22] C:\Program Files\Extrafilm Designer FR [06/05/2010|10:19] C:\Program Files\Fichiers communs [01/12/2009|19:21] C:\Program Files\Free Download Manager [10/12/2009|15:40] C:\Program Files\Gamenext [08/03/2010|12:24] C:\Program Files\Gamesgames.com [05/05/2010|16:11] C:\Program Files\Google [10/02/2010|12:05] C:\Program Files\Hercules [23/04/2010|21:23] C:\Program Files\HTC [10/02/2010|12:05] C:\Program Files\InstallShield Installation Information [31/03/2010|07:15] C:\Program Files\Internet Explorer [23/02/2010|12:19] C:\Program Files\iPod [23/02/2010|12:21] C:\Program Files\iTunes [31/03/2010|08:08] C:\Program Files\Java [27/11/2009|14:54] C:\Program Files\Jeux.fr [16/09/2009|10:56] C:\Program Files\JRE [08/12/2009|23:44] C:\Program Files\Kaspersky Lab [21/10/2007|19:11] C:\Program Files\K-Lite Codec Pack [01/06/2008|20:11] C:\Program Files\KONAMI [29/07/2009|10:53] C:\Program Files\LG Electronics [29/07/2009|10:52] C:\Program Files\LG PC Suite 2 [27/07/2009|11:45] C:\Program Files\LIVREPHOTO.FR [01/11/2009|16:10] C:\Program Files\Logitech [13/05/2007|21:38] C:\Program Files\Macrogaming [08/07/2009|11:42] C:\Program Files\Magic Seeds [06/05/2010|21:04] C:\Program Files\Malwarebytes' Anti-Malware [04/11/2009|16:22] C:\Program Files\Megaplex Madness - Summer Blockbuster [18/09/2008|22:06] C:\Program Files\Messenger [07/07/2009|22:11] C:\Program Files\Microsoft [24/02/2007|22:45] C:\Program Files\Microsoft ActiveSync [15/11/2007|04:00] C:\Program Files\Microsoft CAPICOM 2.1.0.2 [16/08/2004|19:11] C:\Program Files\microsoft frontpage [24/01/2008|22:32] C:\Program Files\Microsoft Office [20/01/2010|08:33] C:\Program Files\Microsoft Silverlight [13/11/2007|13:58] C:\Program Files\Microsoft SQL Server Compact Edition [06/09/2009|12:27] C:\Program Files\monAlbumPhoto [21/10/2007|10:31] C:\Program Files\Motherboard Monitor 5 [11/03/2010|07:48] C:\Program Files\Movie Maker [07/05/2010|19:25] C:\Program Files\Mozilla Firefox [07/05/2010|09:44] C:\Program Files\Mozilla Thunderbird [06/08/2009|12:15] C:\Program Files\MSBuild [07/07/2009|21:55] C:\Program Files\MSN [16/08/2004|19:03] C:\Program Files\MSN Gaming Zone [13/11/2007|13:58] C:\Program Files\MSN Messenger [06/07/2009|22:26] C:\Program Files\MSXML 4.0 [24/02/2007|22:46] C:\Program Files\Navman [27/02/2007|06:17] C:\Program Files\Nero [18/09/2008|22:00] C:\Program Files\NetMeeting [10/03/2010|14:18] C:\Program Files\NVIDIA Corporation [09/12/2009|17:20] C:\Program Files\Oberon Media [16/09/2009|10:55] C:\Program Files\OpenOffice.org 3 [12/08/2009|12:50] C:\Program Files\Outlook Express [21/11/2009|23:01] C:\Program Files\QuickTime [18/11/2007|20:23] C:\Program Files\Real [24/02/2007|12:45] C:\Program Files\Realtek [06/08/2009|12:15] C:\Program Files\Reference Assemblies [12/07/2009|10:23] C:\Program Files\ScanSoft [08/02/2010|12:50] C:\Program Files\Skype [01/12/2009|19:14] C:\Program Files\Software Informer [18/03/2010|13:32] C:\Program Files\SpeedFan [23/04/2010|21:21] C:\Program Files\Spirent Communications [07/05/2010|06:05] C:\Program Files\Steam [12/07/2009|10:43] C:\Program Files\SYSTRAN [27/02/2007|21:41] C:\Program Files\Teamspeak2_RC2 [06/05/2010|22:46] C:\Program Files\Trend Micro [04/05/2010|23:12] C:\Program Files\UltraVNC [06/01/2008|12:07] C:\Program Files\Uninstall Information [09/12/2009|15:34] C:\Program Files\UrbanTerror [22/08/2009|21:50] C:\Program Files\uTorrent [22/02/2010|16:17] C:\Program Files\Vacation Mogul [03/03/2007|18:16] C:\Program Files\VID_0E8F&PID_0003 [27/10/2009|10:45] C:\Program Files\VideoLAN [07/10/2009|12:18] C:\Program Files\Windows Live [07/07/2009|22:11] C:\Program Files\Windows Live SkyDrive [28/09/2008|21:10] C:\Program Files\Windows Media Connect 2 [28/09/2008|21:10] C:\Program Files\Windows Media Player [18/09/2008|22:00] C:\Program Files\Windows NT [24/02/2007|19:20] C:\Program Files\WinRAR [24/02/2007|22:00] C:\Program Files\WinRAR 3.51 [31/08/2009|13:54] C:\Program Files\World Mosaics 2 [16/08/2004|19:11] C:\Program Files\xerox [06/01/2008|12:37] C:\Program Files\Yahoo! [08/07/2009|11:50] C:\Program Files\Youda Marina [11/12/2009|15:00] C:\Program Files\Zylom Games --------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs [20/01/2010|21:58] C:\Program Files\Fichiers communs\Adobe [10/02/2010|12:02] C:\Program Files\Fichiers communs\Adobe AIR [27/02/2007|06:17] C:\Program Files\Fichiers communs\Ahead [23/02/2010|12:19] C:\Program Files\Fichiers communs\Apple [31/05/2007|19:58] C:\Program Files\Fichiers communs\Blizzard Entertainment [28/08/2009|16:20] C:\Program Files\Fichiers communs\DivX Shared [12/07/2009|10:25] C:\Program Files\Fichiers communs\InstallShield [24/02/2007|12:48] C:\Program Files\Fichiers communs\Java [01/11/2009|16:10] C:\Program Files\Fichiers communs\Logishrd [13/08/2009|15:39] C:\Program Files\Fichiers communs\Microsoft Shared [16/08/2004|19:06] C:\Program Files\Fichiers communs\MSSoap [07/08/2009|09:30] C:\Program Files\Fichiers communs\Oberon Media [18/11/2007|20:24] C:\Program Files\Fichiers communs\Real [12/07/2009|10:23] C:\Program Files\Fichiers communs\ScanSoft Shared [16/08/2004|19:06] C:\Program Files\Fichiers communs\Services [28/10/2009|22:21] C:\Program Files\Fichiers communs\Skype [17/08/2007|19:22] C:\Program Files\Fichiers communs\Sonic Shared [16/08/2004|18:56] C:\Program Files\Fichiers communs\SpeechEngines [29/09/2009|14:32] C:\Program Files\Fichiers communs\SWF Studio [18/09/2008|22:00] C:\Program Files\Fichiers communs\System [23/04/2010|21:23] C:\Program Files\Fichiers communs\Teleca Shared [07/07/2009|21:41] C:\Program Files\Fichiers communs\Windows Live [13/11/2007|13:56] C:\Program Files\Fichiers communs\WindowsLiveInstaller [10/03/2010|14:15] C:\Program Files\Fichiers communs\Wise Installation Wizard [18/11/2007|20:24] C:\Program Files\Fichiers communs\xing shared --------------------\\ Process ( 66 Processes ) ... OK ! --------------------\\ Recherche avec S_Lop Aucun fichier / dossier Lop trouvé ! --------------------\\ Recherche de Fichiers / Dossiers Lop Aucun fichier / dossier Lop trouvé ! --------------------\\ Verification du Registre ..... OK ! --------------------\\ Verification du fichier Hosts Fichier Hosts PROPRE --------------------\\ Recherche de fichiers avec Catchme catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2010-05-07 20:04:14 Windows 5.1.2600 Service Pack 3 NTFS scanning hidden processes ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden files: 2 --------------------\\ Recherche d'autres infections --------------------\\ Cracks & Keygens .. C:\DOCUME~1\DEFENO~1\Bureau\allpeers\destop62\Nero-7.5.9.0_fra_lite\keygen.exe [F:22][D:7]-> C:\DOCUME~1\DEFENO~1\LOCALS~1\Temp [F:18][D:0]-> C:\DOCUME~1\DEFENO~1\Cookies [F:79][D:4]-> C:\DOCUME~1\DEFENO~1\LOCALS~1\TEMPOR~1\content.IE5 1 - "C:\Lop SD\LopR_1.txt" - 07/05/2010|19:55 - Option : [1] 2 - "C:\Lop SD\LopR_2.txt" - 07/05/2010|20:06 - Option : [2] --------------------\\ Fin du rapport a 20:06:43
  4. --------------------\\ Lop S&D 4.2.5-0 XP/Vista Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3 X86-based PC ( Uniprocessor Free : Intel® Pentium® 4 CPU 3.06GHz ) BIOS : Award Medallion BIOS v6.00PG USER : defenouillere ( Administrator ) BOOT : Normal boot Antivirus : Kaspersky Internet Security 9.0.0.736 (Activated) Firewall : Kaspersky Internet Security 9.0.0.736 (Activated) A:\ (USB) C:\ (Local Disk) - NTFS - Total:186 Go (Free:137 Go) D:\ (Local Disk) - NTFS - Total:233 Go (Free:165 Go) E:\ (CD or DVD) F:\ (CD or DVD) G:\ (USB) H:\ (USB) I:\ (USB) J:\ (USB) K:\ (Local Disk) - NTFS - Total:153 Go (Free:29 Go) "C:\Lop SD" ( MAJ : 19-12-2008|23:40 ) Option : [1] ( 07/05/2010|19:47 ) --------------------\\ Listing des dossiers dans APPLIC~1 [23/02/2010|12:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{755AC846-7372-4AC8-8550-C52491DAA8BD} [10/02/2010|12:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe [16/11/2009|15:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Alawar Stargaze [13/08/2009|19:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\albumphoto [19/08/2007|13:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL [19/08/2007|13:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads [25/07/2009|23:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple [23/02/2010|12:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer [17/12/2009|15:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Artist Colony [22/03/2010|16:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BigFishGamesCache [30/11/2009|15:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\blg [11/07/2007|11:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY [12/07/2009|10:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Brother [14/09/2009|11:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CasualForge [24/02/2007|12:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink [01/10/2007|10:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink [22/01/2010|14:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EscapeTheMuseum2 [05/09/2009|17:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ExtraFilm [09/09/2009|17:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FarmFrenzy2 [13/09/2009|13:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FarmFrenzy3 [01/09/2009|21:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FarmFrenzy-PizzaParty [03/01/2010|16:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fenomen Games [29/09/2007|17:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FlashFXP [22/01/2010|13:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Flood Light Games [29/09/2009|14:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fugazo [17/11/2009|12:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\GameHouse [12/01/2008|19:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google [23/04/2010|21:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HTC [12/07/2009|10:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield [07/05/2010|13:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab [08/12/2009|23:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files [02/12/2009|17:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kristanix Games [21/09/2009|11:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Little Games Company [01/11/2009|16:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LogiShrd [19/08/2007|13:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macromedia [06/05/2010|21:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes [02/12/2009|12:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MarcoPolo [04/01/2010|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Merscom [28/01/2010|20:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft [02/08/2009|15:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MythPeople [06/07/2009|21:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NortonInstaller [10/03/2010|14:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NVIDIA Corporation [25/07/2007|20:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles [07/08/2009|09:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Oberon Media [24/02/2007|13:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2 [17/12/2009|15:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PlayFirst [16/12/2009|15:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\rionix [11/10/2009|14:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sandlot Games [16/08/2004|19:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI [12/07/2009|10:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft [28/10/2009|22:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype [06/07/2009|21:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy [31/03/2010|08:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sun [24/08/2009|16:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SuperRanch [04/03/2010|19:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec [23/04/2010|21:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Teleca [08/03/2010|12:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP [25/05/2008|18:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TrackMania [24/02/2007|13:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint [31/08/2009|18:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\VirtualFarm [20/03/2007|20:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage [13/11/2007|13:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller [10/12/2009|15:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\XLab [24/02/2007|21:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! [16/08/2009|12:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom [04/05/2010|13:59] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer [07/04/2010|22:15] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Google [16/08/2004|19:19] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities [10/02/2010|12:02] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia [24/02/2007|12:59] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft [24/02/2007|13:00] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Real [24/02/2007|12:48] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun [24/02/2007|13:00] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec [24/02/2007|13:06] C:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver [10/02/2010|12:00] C:\DOCUME~1\DEFENO~1\APPLIC~1\Adobe [27/02/2007|13:07] C:\DOCUME~1\DEFENO~1\APPLIC~1\AdobeUM [27/02/2007|06:19] C:\DOCUME~1\DEFENO~1\APPLIC~1\Ahead [19/08/2007|14:53] C:\DOCUME~1\DEFENO~1\APPLIC~1\AOL [23/02/2010|12:30] C:\DOCUME~1\DEFENO~1\APPLIC~1\Apple Computer [10/11/2009|18:05] C:\DOCUME~1\DEFENO~1\APPLIC~1\Artogon [24/07/2007|22:03] C:\DOCUME~1\DEFENO~1\APPLIC~1\ATI [17/10/2009|20:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\Awem [09/12/2009|13:02] C:\DOCUME~1\DEFENO~1\APPLIC~1\Azuaz Games [22/02/2010|14:16] C:\DOCUME~1\DEFENO~1\APPLIC~1\bfgbar [14/06/2008|14:36] C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload [30/11/2009|15:08] C:\DOCUME~1\DEFENO~1\APPLIC~1\BlamGames [30/11/2009|15:03] C:\DOCUME~1\DEFENO~1\APPLIC~1\blg [21/09/2009|20:45] C:\DOCUME~1\DEFENO~1\APPLIC~1\Boomzap [13/04/2007|13:01] C:\DOCUME~1\DEFENO~1\APPLIC~1\Brother [14/09/2009|11:13] C:\DOCUME~1\DEFENO~1\APPLIC~1\CasualForge [22/09/2009|19:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\CatmoonGames [18/03/2007|21:19] C:\DOCUME~1\DEFENO~1\APPLIC~1\CyberLink [16/11/2007|21:49] C:\DOCUME~1\DEFENO~1\APPLIC~1\DivX [17/02/2010|20:48] C:\DOCUME~1\DEFENO~1\APPLIC~1\dvdcss [25/11/2009|13:02] C:\DOCUME~1\DEFENO~1\APPLIC~1\EleFun Games [10/12/2009|15:57] C:\DOCUME~1\DEFENO~1\APPLIC~1\Enlightenus [10/11/2009|20:52] C:\DOCUME~1\DEFENO~1\APPLIC~1\ERS G-Studio [27/07/2009|12:21] C:\DOCUME~1\DEFENO~1\APPLIC~1\ExtraFilm [04/02/2010|15:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\Facebook [13/09/2009|18:00] C:\DOCUME~1\DEFENO~1\APPLIC~1\FarmerJane [08/11/2009|18:14] C:\DOCUME~1\DEFENO~1\APPLIC~1\FirstColony [22/01/2010|13:22] C:\DOCUME~1\DEFENO~1\APPLIC~1\Flood Light Games [23/01/2010|15:14] C:\DOCUME~1\DEFENO~1\APPLIC~1\Friday's games [18/12/2009|11:12] C:\DOCUME~1\DEFENO~1\APPLIC~1\Game Mill Entertainment [23/11/2009|14:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\GameInvest [30/11/2009|10:58] C:\DOCUME~1\DEFENO~1\APPLIC~1\Gold Casual Games [15/05/2007|21:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\Google [02/12/2009|14:44] C:\DOCUME~1\DEFENO~1\APPLIC~1\HiT-MM [14/11/2009|15:40] C:\DOCUME~1\DEFENO~1\APPLIC~1\HSA [11/12/2009|10:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\Identities [24/02/2007|22:44] C:\DOCUME~1\DEFENO~1\APPLIC~1\InstallShield [13/11/2009|15:40] C:\DOCUME~1\DEFENO~1\APPLIC~1\Island [07/07/2009|21:49] C:\DOCUME~1\DEFENO~1\APPLIC~1\Lavasoft [07/12/2009|12:26] C:\DOCUME~1\DEFENO~1\APPLIC~1\Lazy Turtle Games [19/01/2008|17:02] C:\DOCUME~1\DEFENO~1\APPLIC~1\Leadertech [29/07/2009|10:54] C:\DOCUME~1\DEFENO~1\APPLIC~1\LG Electronics [29/09/2008|22:38] C:\DOCUME~1\DEFENO~1\APPLIC~1\LimeWire [21/09/2009|11:58] C:\DOCUME~1\DEFENO~1\APPLIC~1\Little Games Company [09/11/2009|12:14] C:\DOCUME~1\DEFENO~1\APPLIC~1\Little Worlds Online [12/11/2009|19:07] C:\DOCUME~1\DEFENO~1\APPLIC~1\MA [24/02/2007|12:59] C:\DOCUME~1\DEFENO~1\APPLIC~1\Macromedia [08/07/2009|11:56] C:\DOCUME~1\DEFENO~1\APPLIC~1\Magic Seeds [06/05/2010|21:04] C:\DOCUME~1\DEFENO~1\APPLIC~1\Malwarebytes [02/10/2007|05:32] C:\DOCUME~1\DEFENO~1\APPLIC~1\Media Player Classic [04/11/2009|16:20] C:\DOCUME~1\DEFENO~1\APPLIC~1\MegaplexMadnessSummerBlockbuster [24/08/2009|14:50] C:\DOCUME~1\DEFENO~1\APPLIC~1\Meridian93 [04/01/2010|14:46] C:\DOCUME~1\DEFENO~1\APPLIC~1\Merscom [05/02/2010|21:54] C:\DOCUME~1\DEFENO~1\APPLIC~1\Microsoft [24/02/2007|18:12] C:\DOCUME~1\DEFENO~1\APPLIC~1\Mozilla [07/07/2009|21:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\MSNInstaller [24/10/2009|14:08] C:\DOCUME~1\DEFENO~1\APPLIC~1\My Games [22/11/2009|17:37] C:\DOCUME~1\DEFENO~1\APPLIC~1\MysteryStudio [29/08/2009|12:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\NevoSoft Games [03/03/2007|13:25] C:\DOCUME~1\DEFENO~1\APPLIC~1\OD2 [23/08/2009|22:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\OpenOffice.org [25/10/2009|09:07] C:\DOCUME~1\DEFENO~1\APPLIC~1\panoramik [15/11/2007|20:34] C:\DOCUME~1\DEFENO~1\APPLIC~1\Participatory Culture Foundation [12/01/2008|16:20] C:\DOCUME~1\DEFENO~1\APPLIC~1\PCF-VLC [10/08/2009|19:09] C:\DOCUME~1\DEFENO~1\APPLIC~1\Peace Craft [23/11/2009|15:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\Ph03nixNewMedia [17/12/2009|15:57] C:\DOCUME~1\DEFENO~1\APPLIC~1\PlayFirst [11/11/2009|17:23] C:\DOCUME~1\DEFENO~1\APPLIC~1\Playrix Entertainment [23/11/2007|07:04] C:\DOCUME~1\DEFENO~1\APPLIC~1\Real [17/11/2009|19:08] C:\DOCUME~1\DEFENO~1\APPLIC~1\ScanSoft [24/10/2007|18:53] C:\DOCUME~1\DEFENO~1\APPLIC~1\SecuROM [24/11/2009|11:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\she_is_a_shadow [07/05/2010|19:44] C:\DOCUME~1\DEFENO~1\APPLIC~1\Skype [07/05/2010|16:04] C:\DOCUME~1\DEFENO~1\APPLIC~1\skypePM [30/01/2010|13:15] C:\DOCUME~1\DEFENO~1\APPLIC~1\Software Informer [25/10/2009|09:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\SulusGames [24/02/2007|12:48] C:\DOCUME~1\DEFENO~1\APPLIC~1\Sun [24/02/2007|13:31] C:\DOCUME~1\DEFENO~1\APPLIC~1\Talkback [27/02/2007|21:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\teamspeak2 [23/04/2010|21:35] C:\DOCUME~1\DEFENO~1\APPLIC~1\Teleca [24/02/2007|18:12] C:\DOCUME~1\DEFENO~1\APPLIC~1\Thunderbird [23/11/2009|12:10] C:\DOCUME~1\DEFENO~1\APPLIC~1\Total Eclipse [04/12/2009|23:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\uTorrent [03/12/2009|15:19] C:\DOCUME~1\DEFENO~1\APPLIC~1\VampireSaga [27/11/2009|13:52] C:\DOCUME~1\DEFENO~1\APPLIC~1\V-Games [21/10/2009|14:05] C:\DOCUME~1\DEFENO~1\APPLIC~1\ViquaSoft [06/05/2010|17:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\vlc [30/08/2009|14:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\Vogat Interactive [07/10/2007|18:30] C:\DOCUME~1\DEFENO~1\APPLIC~1\Vso [24/02/2007|19:21] C:\DOCUME~1\DEFENO~1\APPLIC~1\WinRAR [01/09/2009|14:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\YoudaGames [24/02/2007|13:06] C:\DOCUME~1\DEFENO~1\APPLIC~1\You've Got Pictures Screensaver [11/12/2009|10:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\Zylom [16/08/2004|18:54] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft [16/08/2004|18:54] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft --------------------\\ Tâches planifiées dans C:\WINDOWS\tasks [04/03/2010 20:01][--a------] C:\WINDOWS\tasks\Install_NSS.job [07/05/2010 19:11][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job [07/05/2010 12:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job [17/04/2010 20:11][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job [07/05/2010 06:02][--ah-----] C:\WINDOWS\tasks\SA.DAT [05/08/2004 15:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini --------------------\\ Listing des dossiers dans C:\Program Files [20/01/2010|21:56] C:\Program Files\Adobe [09/12/2009|14:03] C:\Program Files\Affair Bureau [10/03/2010|14:15] C:\Program Files\AGEIA Technologies [25/07/2009|23:40] C:\Program Files\Apple Software Update [22/03/2010|16:25] C:\Program Files\bfgclient [22/02/2010|14:14] C:\Program Files\Big Fish Games Toolbar Installer [23/02/2010|12:18] C:\Program Files\Bonjour [12/07/2009|10:25] C:\Program Files\Brother [16/03/2007|13:45] C:\Program Files\Capturino 1.4 [05/05/2010|23:54] C:\Program Files\CCleaner [01/11/2009|16:15] C:\Program Files\Common Files [01/12/2009|19:39] C:\Program Files\ConvertHelper [24/02/2007|12:57] C:\Program Files\CyberLink [28/08/2009|16:21] C:\Program Files\DivX [01/10/2007|10:25] C:\Program Files\DVD Shrink [01/10/2007|12:47] C:\Program Files\DVDFab HD Decrypter 3 [08/07/2009|19:12] C:\Program Files\EA Games [29/09/2008|19:30] C:\Program Files\eMule [18/02/2010|14:22] C:\Program Files\Extrafilm Designer FR [06/05/2010|10:19] C:\Program Files\Fichiers communs [01/12/2009|19:21] C:\Program Files\Free Download Manager [10/12/2009|15:40] C:\Program Files\Gamenext [08/03/2010|12:24] C:\Program Files\Gamesgames.com [05/05/2010|16:11] C:\Program Files\Google [10/02/2010|12:05] C:\Program Files\Hercules [23/04/2010|21:23] C:\Program Files\HTC [10/02/2010|12:05] C:\Program Files\InstallShield Installation Information [31/03/2010|07:15] C:\Program Files\Internet Explorer [23/02/2010|12:19] C:\Program Files\iPod [23/02/2010|12:21] C:\Program Files\iTunes [31/03/2010|08:08] C:\Program Files\Java [27/11/2009|14:54] C:\Program Files\Jeux.fr [16/09/2009|10:56] C:\Program Files\JRE [08/12/2009|23:44] C:\Program Files\Kaspersky Lab [21/10/2007|19:11] C:\Program Files\K-Lite Codec Pack [01/06/2008|20:11] C:\Program Files\KONAMI [29/07/2009|10:53] C:\Program Files\LG Electronics [29/07/2009|10:52] C:\Program Files\LG PC Suite 2 [27/07/2009|11:45] C:\Program Files\LIVREPHOTO.FR [01/11/2009|16:10] C:\Program Files\Logitech [13/05/2007|21:38] C:\Program Files\Macrogaming [08/07/2009|11:42] C:\Program Files\Magic Seeds [06/05/2010|21:04] C:\Program Files\Malwarebytes' Anti-Malware [04/11/2009|16:22] C:\Program Files\Megaplex Madness - Summer Blockbuster [18/09/2008|22:06] C:\Program Files\Messenger [07/07/2009|22:11] C:\Program Files\Microsoft [24/02/2007|22:45] C:\Program Files\Microsoft ActiveSync [15/11/2007|04:00] C:\Program Files\Microsoft CAPICOM 2.1.0.2 [16/08/2004|19:11] C:\Program Files\microsoft frontpage [24/01/2008|22:32] C:\Program Files\Microsoft Office [20/01/2010|08:33] C:\Program Files\Microsoft Silverlight [13/11/2007|13:58] C:\Program Files\Microsoft SQL Server Compact Edition [06/09/2009|12:27] C:\Program Files\monAlbumPhoto [21/10/2007|10:31] C:\Program Files\Motherboard Monitor 5 [11/03/2010|07:48] C:\Program Files\Movie Maker [07/05/2010|19:25] C:\Program Files\Mozilla Firefox [07/05/2010|09:44] C:\Program Files\Mozilla Thunderbird [06/08/2009|12:15] C:\Program Files\MSBuild [07/07/2009|21:55] C:\Program Files\MSN [16/08/2004|19:03] C:\Program Files\MSN Gaming Zone [13/11/2007|13:58] C:\Program Files\MSN Messenger [06/07/2009|22:26] C:\Program Files\MSXML 4.0 [24/02/2007|22:46] C:\Program Files\Navman [27/02/2007|06:17] C:\Program Files\Nero [18/09/2008|22:00] C:\Program Files\NetMeeting [10/03/2010|14:18] C:\Program Files\NVIDIA Corporation [09/12/2009|17:20] C:\Program Files\Oberon Media [16/09/2009|10:55] C:\Program Files\OpenOffice.org 3 [12/08/2009|12:50] C:\Program Files\Outlook Express [21/11/2009|23:01] C:\Program Files\QuickTime [18/11/2007|20:23] C:\Program Files\Real [24/02/2007|12:45] C:\Program Files\Realtek [06/08/2009|12:15] C:\Program Files\Reference Assemblies [12/07/2009|10:23] C:\Program Files\ScanSoft [08/02/2010|12:50] C:\Program Files\Skype [01/12/2009|19:14] C:\Program Files\Software Informer [18/03/2010|13:32] C:\Program Files\SpeedFan [23/04/2010|21:21] C:\Program Files\Spirent Communications [07/05/2010|06:05] C:\Program Files\Steam [12/07/2009|10:43] C:\Program Files\SYSTRAN [27/02/2007|21:41] C:\Program Files\Teamspeak2_RC2 [06/05/2010|22:46] C:\Program Files\Trend Micro [04/05/2010|23:12] C:\Program Files\UltraVNC [06/01/2008|12:07] C:\Program Files\Uninstall Information [09/12/2009|15:34] C:\Program Files\UrbanTerror [22/08/2009|21:50] C:\Program Files\uTorrent [22/02/2010|16:17] C:\Program Files\Vacation Mogul [03/03/2007|18:16] C:\Program Files\VID_0E8F&PID_0003 [27/10/2009|10:45] C:\Program Files\VideoLAN [24/02/2007|13:06] C:\Program Files\Viewpoint [07/10/2009|12:18] C:\Program Files\Windows Live [07/07/2009|22:11] C:\Program Files\Windows Live SkyDrive [28/09/2008|21:10] C:\Program Files\Windows Media Connect 2 [28/09/2008|21:10] C:\Program Files\Windows Media Player [18/09/2008|22:00] C:\Program Files\Windows NT [24/02/2007|19:20] C:\Program Files\WinRAR [24/02/2007|22:00] C:\Program Files\WinRAR 3.51 [31/08/2009|13:54] C:\Program Files\World Mosaics 2 [16/08/2004|19:11] C:\Program Files\xerox [06/01/2008|12:37] C:\Program Files\Yahoo! [08/07/2009|11:50] C:\Program Files\Youda Marina [11/12/2009|15:00] C:\Program Files\Zylom Games --------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs [20/01/2010|21:58] C:\Program Files\Fichiers communs\Adobe [10/02/2010|12:02] C:\Program Files\Fichiers communs\Adobe AIR [27/02/2007|06:17] C:\Program Files\Fichiers communs\Ahead [23/02/2010|12:19] C:\Program Files\Fichiers communs\Apple [31/05/2007|19:58] C:\Program Files\Fichiers communs\Blizzard Entertainment [28/08/2009|16:20] C:\Program Files\Fichiers communs\DivX Shared [12/07/2009|10:25] C:\Program Files\Fichiers communs\InstallShield [24/02/2007|12:48] C:\Program Files\Fichiers communs\Java [01/11/2009|16:10] C:\Program Files\Fichiers communs\Logishrd [13/08/2009|15:39] C:\Program Files\Fichiers communs\Microsoft Shared [16/08/2004|19:06] C:\Program Files\Fichiers communs\MSSoap [07/08/2009|09:30] C:\Program Files\Fichiers communs\Oberon Media [18/11/2007|20:24] C:\Program Files\Fichiers communs\Real [12/07/2009|10:23] C:\Program Files\Fichiers communs\ScanSoft Shared [16/08/2004|19:06] C:\Program Files\Fichiers communs\Services [28/10/2009|22:21] C:\Program Files\Fichiers communs\Skype [17/08/2007|19:22] C:\Program Files\Fichiers communs\Sonic Shared [16/08/2004|18:56] C:\Program Files\Fichiers communs\SpeechEngines [29/09/2009|14:32] C:\Program Files\Fichiers communs\SWF Studio [18/09/2008|22:00] C:\Program Files\Fichiers communs\System [23/04/2010|21:23] C:\Program Files\Fichiers communs\Teleca Shared [07/07/2009|21:41] C:\Program Files\Fichiers communs\Windows Live [13/11/2007|13:56] C:\Program Files\Fichiers communs\WindowsLiveInstaller [10/03/2010|14:15] C:\Program Files\Fichiers communs\Wise Installation Wizard [18/11/2007|20:24] C:\Program Files\Fichiers communs\xing shared --------------------\\ Process ( 66 Processes ) ... OK ! --------------------\\ Recherche avec S_Lop Aucun fichier / dossier Lop trouvé ! --------------------\\ Recherche de Fichiers / Dossiers Lop C:\DOCUME~1\DEFENO~1\APPLIC~1\Bitdownload C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\BitDownload.ini C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\btdht.dat C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\lib.vcs C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\PlayLists C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\RoutingTree.bin C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\search.ini C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\Shared.dat C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\ShareHistory.dat C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\SPK.bin C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\Storage C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\Torrents C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\trdnld.vcs C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\trupld.vcs C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\URLs.ini --------------------\\ Verification du Registre ..... OK ! --------------------\\ Verification du fichier Hosts Fichier Hosts PROPRE --------------------\\ Recherche de fichiers avec Catchme catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2010-05-07 19:52:02 Windows 5.1.2600 Service Pack 3 NTFS scanning hidden processes ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden files: 2 --------------------\\ Recherche d'autres infections --------------------\\ Cracks & Keygens .. C:\DOCUME~1\DEFENO~1\Bureau\allpeers\destop62\Nero-7.5.9.0_fra_lite\keygen.exe [F:22][D:7]-> C:\DOCUME~1\DEFENO~1\LOCALS~1\Temp [F:18][D:0]-> C:\DOCUME~1\DEFENO~1\Cookies [F:79][D:4]-> C:\DOCUME~1\DEFENO~1\LOCALS~1\TEMPOR~1\content.IE5 1 - "C:\Lop SD\LopR_1.txt" - 07/05/2010|19:55 - Option : [1] --------------------\\ Fin du rapport a 19:55:55
  5. Voila le rapport MBAM Malwarebytes' Anti-Malware 1.46 www.malwarebytes.org Version de la base de données: 4060 Windows 5.1.2600 Service Pack 3 Internet Explorer 8.0.6001.18702 07/05/2010 05:57:35 mbam-log-2010-05-07 (05-57-35).txt Type d'examen: Examen complet (C:\|D:\|K:\|) Elément(s) analysé(s): 266625 Temps écoulé: 4 heure(s), 28 minute(s), 35 seconde(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 3 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 1 Dossier(s) infecté(s): 1 Fichier(s) infecté(s): 6 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): HKEY_CLASSES_ROOT\BitDownload (Trojan.Swizzor) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\affri (Malware.Trace) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\affri (Malware.Trace) -> Quarantined and deleted successfully. Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Search\Local Page (Hijack.SearchPage) -> Bad: (http://www.iesearch.com/) Good: (http://www.Google.com/) -> Quarantined and deleted successfully. Dossier(s) infecté(s): C:\Documents and Settings\defenouillere\Menu Démarrer\Programmes\BitDownload (Trojan.Swizzor) -> Quarantined and deleted successfully. Fichier(s) infecté(s): C:\Documents and Settings\defenouillere\Menu Démarrer\Programmes\BitDownload\BitDownload Downloads.lnk (Trojan.Swizzor) -> Quarantined and deleted successfully. C:\Documents and Settings\defenouillere\Menu Démarrer\Programmes\BitDownload\BitDownload Uninstall.lnk (Trojan.Swizzor) -> Quarantined and deleted successfully. C:\Documents and Settings\defenouillere\Menu Démarrer\Programmes\BitDownload\BitDownload.lnk (Trojan.Swizzor) -> Quarantined and deleted successfully. C:\WINDOWS\system32\clkcnt.txt (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\BM63ee8c81.txt (Trojan.Vundo) -> Quarantined and deleted successfully. C:\WINDOWS\BM63ee8c81.xml (Trojan.Vundo) -> Quarantined and deleted successfully.
  6. bon toujours pas fini le scan avec MBAM voici le log Hijackthis Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 22:28:45, on 06/05/2010 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\nvsvc32.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\brss01a.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe C:\Program Files\Bonjour\mDNSResponder.exe c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe C:\Program Files\Extrafilm Designer FR\EFUploadSrv.exe C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe c:\APPS\HIDSERVICE\HIDSERVICE.exe C:\WINDOWS\system32\HerculesWiFiService.exe C:\WINDOWS\SOUNDMAN.EXE C:\WINDOWS\ALCWZRD.EXE C:\Apps\Powercinema\PCMService.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe C:\Program Files\Brother\ControlCenter2\brctrcen.exe C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe C:\Program Files\iTunes\iTunesHelper.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\WINDOWS\system32\PnkBstrA.exe C:\Program Files\HTC\HTC Sync\Application Launcher\Application Launcher.exe C:\WINDOWS\system32\PnkBstrB.exe C:\Program Files\Microsoft ActiveSync\wcescomm.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\program files\steam\steam.exe C:\PROGRA~1\MICROS~2\rapimgr.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\UltraVNC\WinVNC.exe c:\APPS\Powercinema\Kernel\TV\CLSched.exe C:\Program Files\Logitech\SetPoint II\SetpointII.exe C:\Program Files\Hercules\WiFiStationN\WiFiN.exe C:\Program Files\Fichiers communs\Logishrd\KHAL2\KHALMNPR.EXE C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe C:\Program Files\Fichiers communs\Teleca Shared\logger.exe C:\Program Files\Fichiers communs\Teleca Shared\CapabilityManager.exe C:\Program Files\HTC\HTC Sync\ClientInitiatedStarter\ClientInitiatedStarter.exe C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\epmworker.exe C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\HTCVBTServer.exe C:\Program Files\iPod\bin\iPodService.exe C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\FsynSrvStarter.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\WINDOWS\explorer.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtblfs.exe C:\Program Files\Skype\Phone\Skype.exe C:\Program Files\Skype\Plugin Manager\skypePM.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe C:\Documents and Settings\defenouillere\Mes documents\Téléchargements\HiJackThis(2).exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\Internet Explorer\IEXPLORE.EXE R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.gamesgames.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file) O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file) O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O3 - Toolbar: SYSTRAN Web Translator 5.0 - {A5899B52-3AF9-4F56-85FE-AD7B3BE8490F} - C:\Program Files\SYSTRAN\5.0\Personal\IEPlugIn.dll O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe" O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe" O4 - HKLM\..\Run: [WinVNC] "C:\Program Files\UltraVNC\WinVNC.exe" -servicehelper O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe" O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe" O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [Mobile Connectivity Suite] "C:\Program Files\HTC\HTC Sync\Application Launcher\Application Launcher.exe" /startoptions O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe" O4 - HKCU\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear O4 - HKCU\..\Run: [steam] "c:\program files\steam\steam.exe" -silent O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Contrôleur d’état.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O4 - Global Startup: SetPointII.lnk = ? O4 - Global Startup: WiFi Station N.lnk = C:\Program Files\Hercules\WiFiStationN\WiFiN.exe O8 - Extra context menu item: Ajouter à l'Anti-bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll O9 - Extra button: Clavier &virtuel - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll O9 - Extra button: Analyse des &liens - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://www.extrafilm.fr/ImageUploader5.cab O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O23 - Service: AOL Connectivity Service (AOL ACS) - Unknown owner - C:\Program Files\Fichiers communs\AOL\ACS\AOLAcsd.exe (file missing) O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe O23 - Service: ExtraFilm upload service (EFUploadSrv) - Textalk AB - C:\Program Files\Extrafilm Designer FR\EFUploadSrv.exe O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: HerculesWiFi - Guillemot Corporation - C:\WINDOWS\system32\HerculesWiFiService.exe O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: MysqlInventime - Unknown owner - C:\Apps\INVENT~1\mysql\bin\mysqld-nt.exe (file missing) O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe O23 - Service: Spyware Doctor Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\svcntaux.exe O23 - Service: Spyware Doctor Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe O23 - Service: VNC Server (winvnc) - www.ultravnc.fr - C:\Program Files\UltraVNC\WinVNC.exe -- End of file - 13832 bytes
  7. Je n'ai pas diffuser mon mot de passe bien sure est j'en ai plusieurs pour des sites différents Est je sais aussi que combofix est un logiciel puissant c'est la seconde fois que je l'utilises, première fois je m'en suis servi avec msn que j'ai supprimé depuis plus de problème
  8. voila suite a un problème sur facebook ou un petit malin c'est amusez a changer tout mon profil est envoyer des messages sur mon compte, j'ai décider de lancer un combofix histoire de vérifier si tout aller bien voila le rapport complet de ce celi-ci merci d'avance pour votre aide: j'utilise Kapersky internet security 2010 en antivirus ComboFix 10-05-05.06 - defenouillere 06/05/2010 10:16:13.2.1 - x86 Microsoft Windows XP Édition familiale 5.1.2600.3.1252.33.1036.18.2047.1313 [GMT 2:00] Lancé depuis: c:\documents and settings\defenouillere\Mes documents\Téléchargements\ComboFix.exe AV: Kaspersky Internet Security *On-access scanning disabled* (Updated) {2C4D4BC6-0793-4956-A9F9-E252435469C0} FW: Kaspersky Internet Security *disabled* {2C4D4BC6-0793-4956-A9F9-E252435469C0} . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . c:\documents and settings\defenouillere\Application Data\inst.exe c:\windows\system32\Ijl11.dll c:\windows\system32\Thumbs.db K:\Autorun.inf . ((((((((((((((((((((((((((((((((((((((( Pilotes/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Legacy_BOONTY_GAMES -------\Service_Boonty Games ((((((((((((((((((((((((((((( Fichiers créés du 2010-04-06 au 2010-05-06 )))))))))))))))))))))))))))))))))))) . 2010-04-23 19:27 . 2007-11-27 01:24 14640 ------w- c:\windows\system32\spmsgXP_2k3.dll 2010-04-23 19:24 . 2010-04-23 19:24 -------- d-----w- c:\documents and settings\defenouillere\Local Settings\Application Data\HTC 2010-04-23 19:23 . 2010-04-23 19:23 -------- d-----w- c:\documents and settings\All Users\Application Data\HTC 2010-04-23 19:23 . 2010-04-23 19:23 -------- d-----w- c:\documents and settings\All Users\Application Data\Teleca 2010-04-23 19:21 . 2009-06-10 14:49 24576 ----a-w- c:\windows\system32\drivers\ANDROIDUSB.sys 2010-04-23 19:21 . 2009-06-09 12:41 1122664 ----a-w- c:\windows\system32\WdfCoInstaller01007.dll 2010-04-23 19:21 . 2010-04-23 19:21 -------- d-----w- c:\program files\Spirent Communications 2010-04-23 19:21 . 2010-04-23 19:23 -------- d-----w- c:\program files\HTC 2010-04-09 20:48 . 2010-04-09 20:48 3600384 ----a-w- c:\windows\system32\GPhotos.scr . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2010-05-06 08:32 . 2004-08-16 16:41 85154 ----a-w- c:\windows\system32\perfc00C.dat 2010-05-06 08:32 . 2004-08-16 16:41 511538 ----a-w- c:\windows\system32\perfh00C.dat 2010-05-06 08:28 . 2007-02-24 17:55 -------- d-----w- c:\program files\Steam 2010-05-06 08:27 . 2009-07-06 19:38 -------- d-----w- c:\documents and settings\All Users\Application Data\Kaspersky Lab 2010-05-05 22:18 . 2010-02-08 10:50 -------- d-----w- c:\documents and settings\defenouillere\Application Data\Skype 2010-05-05 22:10 . 2007-02-24 16:12 -------- d-----w- c:\program files\Mozilla Thunderbird 2010-05-05 22:09 . 2007-11-21 19:31 -------- d-----w- c:\documents and settings\defenouillere\Application Data\skypePM 2010-05-05 21:54 . 2009-08-29 08:19 -------- d-----w- c:\program files\CCleaner 2010-05-05 14:11 . 2007-03-31 17:04 -------- d-----w- c:\program files\Google 2010-05-05 11:12 . 2009-08-23 20:29 1 ----a-w- c:\documents and settings\defenouillere\Application Data\OpenOffice.org\3\user\uno_packages\cache\stamp.sys 2010-05-05 07:42 . 2009-12-08 21:46 113933 ----a-w- c:\windows\system32\drivers\klin.dat 2010-05-05 07:42 . 2009-12-08 21:46 97549 ----a-w- c:\windows\system32\drivers\klick.dat 2010-05-04 21:12 . 2008-01-06 13:46 -------- d-----w- c:\program files\UltraVNC 2010-04-24 16:06 . 2009-08-13 21:22 645960 ----a-w- c:\documents and settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat 2010-04-23 19:35 . 2007-09-24 16:38 -------- d-----w- c:\documents and settings\defenouillere\Application Data\Teleca 2010-04-23 19:27 . 2010-04-23 19:27 0 ---ha-w- c:\windows\system32\drivers\Msft_Kernel_ANDROIDUSB_01007.Wdf 2010-04-23 19:27 . 2010-04-23 19:27 0 ---ha-w- c:\windows\system32\drivers\MsftWdf_Kernel_01007_Coinstaller_Critical.Wdf 2010-04-23 19:23 . 2007-09-24 16:36 -------- d-----w- c:\program files\Fichiers communs\Teleca Shared 2010-04-19 11:48 . 2009-10-27 08:50 -------- d-----w- c:\documents and settings\defenouillere\Application Data\vlc 2010-03-31 06:10 . 2010-03-31 06:10 503808 ----a-w- c:\documents and settings\defenouillere\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-3348f5f8-n\msvcp71.dll 2010-03-31 06:10 . 2010-03-31 06:10 61440 ----a-w- c:\documents and settings\defenouillere\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-685cf94b-n\decora-sse.dll 2010-03-31 06:10 . 2010-03-31 06:10 499712 ----a-w- c:\documents and settings\defenouillere\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-3348f5f8-n\jmc.dll 2010-03-31 06:10 . 2010-03-31 06:10 348160 ----a-w- c:\documents and settings\defenouillere\Application Data\Sun\Java\Deployment\SystemCache\6.0\54\1a209876-3348f5f8-n\msvcr71.dll 2010-03-31 06:10 . 2010-03-31 06:10 12800 ----a-w- c:\documents and settings\defenouillere\Application Data\Sun\Java\Deployment\SystemCache\6.0\17\6d0ad391-685cf94b-n\decora-d3d.dll 2010-03-31 06:08 . 2007-02-24 10:48 -------- d-----w- c:\program files\Java 2010-03-25 16:44 . 2009-07-08 18:12 139456 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys 2010-03-25 16:44 . 2009-07-08 18:11 190160 ----a-w- c:\windows\system32\PnkBstrB.exe 2010-03-25 16:41 . 2009-07-08 18:11 138056 ----a-w- c:\documents and settings\defenouillere\Application Data\PnkBstrK.sys 2010-03-25 16:41 . 2009-07-08 18:11 138056 ----a-w- c:\documents and settings\defenouillere\Application Data\PnkBstrK.sys 2010-03-25 16:40 . 2009-07-08 18:11 75064 ----a-w- c:\windows\system32\PnkBstrA.exe 2010-03-25 16:40 . 2009-10-23 07:40 2407792 ----a-w- c:\windows\system32\pbsvc_heroes.exe 2010-03-22 14:25 . 2010-03-09 13:28 -------- d-----w- c:\program files\bfgclient 2010-03-22 14:25 . 2010-03-22 14:24 3085800 ----a-w- c:\documents and settings\All Users\Application Data\BigFishGamesCache\Upgrade\Unpack\bfgsetup_s5_l4.exe 2010-03-22 14:24 . 2010-03-09 13:27 -------- d-----w- c:\documents and settings\All Users\Application Data\BigFishGamesCache 2010-03-18 11:32 . 2007-04-17 17:25 -------- d-----w- c:\program files\SpeedFan 2010-03-10 12:18 . 2007-08-18 10:57 -------- d-----w- c:\program files\NVIDIA Corporation 2010-03-10 12:15 . 2010-03-10 12:15 -------- d-----w- c:\program files\AGEIA Technologies 2010-03-10 12:15 . 2010-03-10 12:15 -------- d-----w- c:\program files\Fichiers communs\Wise Installation Wizard 2010-03-10 12:15 . 2010-03-10 12:15 -------- d-----w- c:\documents and settings\All Users\Application Data\NVIDIA Corporation 2010-03-10 06:16 . 2004-08-16 16:41 420352 ----a-w- c:\windows\system32\vbscript.dll 2010-03-09 02:28 . 2009-07-06 18:58 411368 ----a-w- c:\windows\system32\deploytk.dll 2010-03-08 10:24 . 2010-03-05 13:21 -------- d-----w- c:\program files\Gamesgames.com 2010-03-08 10:23 . 2007-04-29 18:37 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP 2010-02-26 12:00 . 2010-03-17 05:40 1291640 ----a-w- c:\documents and settings\defenouillere\Application Data\Mozilla\Firefox\Profiles\jsa7wgkr.default\extensions\[email protected]\platform\WINNT_x86-msvc\plugins\BFHUpdater.exe 2010-02-26 12:00 . 2010-03-17 05:40 724992 ----a-w- c:\documents and settings\defenouillere\Application Data\Mozilla\Firefox\Profiles\jsa7wgkr.default\extensions\[email protected]\platform\WINNT_x86-msvc\plugins\npBFHUpdater.dll 2010-02-25 06:17 . 2004-08-16 16:41 916480 ----a-w- c:\windows\system32\wininet.dll 2010-02-24 13:11 . 2004-08-16 16:40 455680 ----a-w- c:\windows\system32\drivers\mrxsmb.sys 2010-02-17 12:07 . 2004-08-16 16:40 2192000 ----a-w- c:\windows\system32\ntoskrnl.exe 2010-02-16 19:07 . 2004-08-03 23:48 2068864 ----a-w- c:\windows\system32\ntkrnlpa.exe 2010-02-15 17:41 . 2010-02-15 17:41 72488 ----a-w- c:\documents and settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 9.0.3.15\SetupAdmin.exe 2010-02-12 10:03 . 2010-02-24 18:15 293376 ------w- c:\windows\system32\browserchoice.exe 2010-02-12 04:34 . 2004-08-16 16:39 100864 ----a-w- c:\windows\system32\6to4svc.dll 2010-02-11 12:02 . 2004-08-16 16:41 226880 ----a-w- c:\windows\system32\drivers\tcpip6.sys 2010-02-10 10:02 . 2010-02-10 10:00 38784 ----a-w- c:\documents and settings\defenouillere\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe 2010-02-08 10:53 . 2010-02-08 10:53 56 ---ha-w- c:\windows\system32\ezsidmv.dat 2010-02-06 15:35 . 2007-09-29 16:06 222404 ----a-w- c:\program files\DeeEnEs.log 2005-01-01 14:41 . 2007-09-29 16:06 151552 ----a-w- c:\program files\DeeEnEs.exe 2004-11-22 00:36 . 2007-09-29 16:06 86016 ----a-w- c:\program files\DeeEnEs_lang.dll 2009-05-01 21:02 . 2009-05-01 21:02 1044480 ----a-w- c:\program files\mozilla firefox\plugins\libdivx.dll 2009-05-01 21:02 . 2009-05-01 21:02 200704 ----a-w- c:\program files\mozilla firefox\plugins\ssldivx.dll . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "NVIDIA nTune"="c:\program files\NVIDIA Corporation\nTune\nTuneCmd.exe" [2007-04-04 81920] "Steam"="c:\program files\steam\steam.exe" [2010-05-04 1238352] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SoundMan"="SOUNDMAN.EXE" [2004-09-10 77824] "AlcWzrd"="ALCWZRD.EXE" [2004-09-15 2557952] "Adobe Photo Downloader"="c:\program files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe" [2007-03-16 63712] "Raccourci vers la page des propriétés de High Definition Audio"="HDAudPropShortcut.exe" [2004-03-17 61952] "PCMService"="c:\apps\Powercinema\PCMService.exe" [2005-05-11 127118] "WinVNC"="c:\program files\UltraVNC\WinVNC.exe" [2006-07-17 364544] "IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2004-08-05 208952] "PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-05 455168] "PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-05 455168] "SSBkgdUpdate"="c:\program files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2003-10-14 155648] "PaperPort PTD"="c:\program files\ScanSoft\PaperPort\pptd40nt.exe" [2005-03-17 57393] "IndexSearch"="c:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2005-03-17 40960] "ControlCenter2.0"="c:\program files\Brother\ControlCenter2\brctrcen.exe" [2005-05-17 933888] "Kernel and Hardware Abstraction Layer"="KHALMNPR.EXE" [2007-07-17 55824] "SunJavaUpdateSched"="c:\program files\Fichiers communs\Java\Java Update\jusched.exe" [2010-02-18 248040] "QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2009-11-10 417792] "AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe" [2009-10-20 340456] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2010-04-02 40368] "Adobe ARM"="c:\program files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe" [2010-03-24 952768] "iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2010-02-15 141608] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-01-11 13666408] "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2010-01-11 110696] "Mobile Connectivity Suite"="c:\program files\HTC\HTC Sync\Application Launcher\Application Launcher.exe" [2009-11-19 598016] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360] c:\documents and settings\All Users\Menu D‚marrer\Programmes\D‚marrage\ Contr“leur d'‚tat.lnk - c:\program files\Brother\Brmfcmon\BrMfcWnd.exe [2009-7-12 802816] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdauxservice] @="" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\sdcoreservice] @="" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WdfLoadGroup] @="" [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus] "DisableMonitoring"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus] "DisableMonitoring"=dword:00000001 [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall] "DisableMonitoring"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%ProgramFiles%\\AOL 9.0\\aol.exe"= "%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\logo_ubi.exe"= "%ProgramFiles%\\UBISOFT\\Splinter Cell Pandora Tomorrow\\pandora.exe"= "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Mozilla Firefox\\firefox.exe"= "c:\\Program Files\\KONAMI\\Pro Evolution Soccer 6\\PES6.exe"= "c:\program files\Microsoft ActiveSync\rapimgr.exe"= c:\program files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager "c:\program files\Microsoft ActiveSync\wcescomm.exe"= c:\program files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager "c:\program files\Microsoft ActiveSync\WCESMgr.exe"= c:\program files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application "c:\\Program Files\\eMule\\emule.exe"= "c:\\Program Files\\Steam\\steamapps\\[email protected]\\counter-strike source\\hl2.exe"= "c:\\Program Files\\Steam\\steamapps\\[email protected]\\condition zero\\hl.exe"= "c:\\WINDOWS\\system32\\dpnsvr.exe"= "c:\\Program Files\\Steam\\steamapps\\[email protected]\\half-life 2 deathmatch\\hl2.exe"= "c:\\WINDOWS\\system32\\dpvsetup.exe"= "c:\\Program Files\\Steam\\steamapps\\[email protected]\\source sdk base\\hl2.exe"= "c:\\Program Files\\Steam\\steam.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Program Files\\Steam\\steamapps\\common\\trackmania nations forever\\TmForever.exe"= "c:\\Program Files\\Steam\\steamapps\\common\\trackmania nations forever\\TmForeverLauncher.exe"= "c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"= "c:\\WINDOWS\\system32\\PnkBstrA.exe"= "c:\\WINDOWS\\system32\\PnkBstrB.exe"= "c:\\Program Files\\uTorrent\\uTorrent.exe"= "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"= "c:\\Program Files\\Skype\\Plugin Manager\\skypePM.exe"= "c:\\Program Files\\Bonjour\\mDNSResponder.exe"= "c:\\Program Files\\bfgclient\\bfgclient.exe"= "c:\\Program Files\\bfgclient\\bfggameservices.exe"= "c:\\Program Files\\bfgclient\\bfgprocess.exe"= "c:\\Program Files\\iTunes\\iTunes.exe"= "c:\\Program Files\\Skype\\Phone\\Skype.exe"= "c:\\Program Files\\Steam\\steamapps\\[email protected]\\counter-strike\\hl.exe"= "c:\\Program Files\\Steam\\steamapps\\[email protected]\\day of defeat source\\hl2.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service "5900:TCP"= 5900:TCP:vnc [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings] "AllowInboundEchoRequest"= 1 (0x1) R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [14/10/2009 21:18 36880] R2 EFUploadSrv;ExtraFilm upload service;c:\program files\Extrafilm Designer FR\EFUploadSrv.exe [09/07/2009 14:27 1716224] R2 HerculesWiFi;HerculesWiFi;c:\windows\system32\HerculesWiFiService.exe [30/01/2010 12:40 53544] R3 3xHybrid;3xHybrid service;c:\windows\system32\drivers\3xHybrid.sys [24/02/2007 12:45 799744] R3 camvid20;Philips ToUcam Camera; Video;c:\windows\system32\drivers\camdrv21.sys [24/02/2007 12:40 223232] R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [14/09/2009 14:42 32272] R3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\drivers\klmouflt.sys [02/10/2009 19:39 19472] S2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [17/07/2009 05:50 133104] S3 HTCAND32;HTC Device Driver;c:\windows\system32\drivers\ANDROIDUSB.sys [23/04/2010 21:21 24576] S3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8192su.sys [28/01/2010 20:38 583552] . Contenu du dossier 'Tâches planifiées' 2010-04-17 c:\windows\Tasks\AppleSoftwareUpdate.job - c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 10:34] 2010-05-06 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2009-07-17 03:49] 2010-05-06 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2009-07-17 03:49] 2010-03-04 c:\windows\Tasks\Install_NSS.job - c:\windows\system32\Adobe\Shockwave 11\nssstub.exe [2010-03-04 14:18] . . ------- Examen supplémentaire ------- . uStart Page = hxxp://start.gamesgames.com uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 uInternet Settings,ProxyOverride = *.local uSearchAssistant = hxxp://www.google.com/ie uSearchURL,(Default) = hxxp://www.google.com/search?q=%s IE: Ajouter à l'Anti-bannière - c:\program files\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm FF - ProfilePath - c:\documents and settings\defenouillere\Application Data\Mozilla\Firefox\Profiles\jsa7wgkr.default\ FF - prefs.js: browser.search.selectedEngine - Yahoo! FF - prefs.js: browser.startup.homepage - hxxp://www.google.fr/ FF - prefs.js: keyword.URL - hxxp://search.live.com/results.aspx?mkt=fr-FR&FORM=MIMWA2&q= FF - component: c:\program files\Mozilla Firefox\extensions\[email protected]\components\KavLinkFilter.dll FF - plugin: c:\documents and settings\All Users\Application Data\Zylom\ZylomGamesPlayer\npzylomgamesplayer.dll FF - plugin: c:\documents and settings\defenouillere\Application Data\Facebook\npfbplugin_1_0_0.dll FF - plugin: c:\documents and settings\defenouillere\Application Data\Facebook\npfbplugin_1_0_1.dll FF - plugin: c:\documents and settings\defenouillere\Application Data\Mozilla\Firefox\Profiles\jsa7wgkr.default\extensions\[email protected]\platform\WINNT_x86-msvc\plugins\npBFHUpdater.dll FF - plugin: c:\progra~1\Yahoo!\Common\npyaxmpb.dll FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll FF - plugin: c:\program files\Google\Update\1.2.183.23\npGoogleOneClick8.dll FF - plugin: c:\program files\Mozilla Firefox\plugins\np-mswmp.dll FF - plugin: c:\program files\Mozilla Firefox\plugins\npzylomgamesplayer.dll FF - plugin: c:\program files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ ---- PARAMETRES FIREFOX ---- FF - user.js: yahoo.homepage.dontask - truec:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pr ef", true); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", ""); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false); . - - - - ORPHELINS SUPPRIMES - - - - BHO-{58CEDC4A-E1B8-46D5-A2C1-6C414932ADF1} - c:\windows\system32\efcYSmKe.dll BHO-{9B5DA7DB-6884-46C0-AECF-754B31AB99F4} - (no file) BHO-{DB440750-F8E8-4755-9B22-612D9D4B2858} - (no file) BHO-{dfe8a365-4875-45f6-aa64-334f2a6f6a7a} - (no file) BHO-{E5D8056D-6431-4B8A-A449-5CDC368FE12E} - c:\windows\system32\vtUklkHx.dll BHO-{F9E8A02A-D4B7-46E6-BCCA-934467D51A70} - (no file) HKCU-Run-Miro - c:\program files\Participatory Culture Foundation\Miro\Miro.exe HKCU-Run-StartCCC - c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe HKCU-Run-updateMgr - c:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe HKCU-Run-fsm - (no file) HKLM-Run-HostManager - c:\program files\Fichiers communs\AOL\1187523321\ee\AOLSoftware.exe HKLM-Run-ACTIVBOARD - c:\apps\ABoard\ABoard.exe HKLM-Run-Google Desktop Search - c:\program files\Google\Google Desktop Search\GoogleDesktop.exe HKLM-Run-nwiz - nwiz.exe Notify-AtiExtEvent - (no file) AddRemove-DynDns-2.0 - c:\program files\DarSite\DynDns-2.0\Uninst.isu AddRemove-NVIDIA Display Control Panel - c:\program files\NVIDIA Corporation\Uninstall\nvuninst.exe ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2010-05-06 10:31 Windows 5.1.2600 Service Pack 3 NTFS Recherche de processus cachés ... Recherche d'éléments en démarrage automatique cachés ... Recherche de fichiers cachés ... Scan terminé avec succès Fichiers cachés: 0 ************************************************************************** [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\MysqlInventime] "ImagePath"="c:\apps\INVENT~1\mysql\bin\mysqld-nt --defaults-file=c:\apps\Inventime\mysql\my.ini MysqlInventime" . --------------------- DLLs chargées dans les processus actifs --------------------- - - - - - - - > 'explorer.exe'(308) c:\windows\system32\eappprxy.dll c:\windows\system32\webcheck.dll c:\windows\system32\WPDShServiceObj.dll c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll . ------------------------ Autres processus actifs ------------------------ . c:\windows\system32\nvsvc32.exe c:\windows\system32\brss01a.exe c:\program files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe c:\program files\Bonjour\mDNSResponder.exe c:\apps\Powercinema\Kernel\TV\CLCapSvc.exe c:\program files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe c:\program files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe c:\apps\HIDSERVICE\HIDSERVICE.exe c:\windows\SOUNDMAN.EXE c:\windows\ALCWZRD.EXE c:\program files\Java\jre6\bin\jqs.exe c:\program files\NVIDIA Corporation\nTune\nTuneService.exe c:\windows\system32\RUNDLL32.EXE c:\windows\system32\PnkBstrA.exe c:\windows\system32\PnkBstrB.exe c:\program files\Microsoft ActiveSync\wcescomm.exe c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\progra~1\MICROS~2\rapimgr.exe c:\apps\Powercinema\Kernel\TV\CLSched.exe c:\program files\Logitech\SetPoint II\SetpointII.exe c:\program files\Hercules\WiFiStationN\WiFiN.exe c:\program files\Fichiers communs\Logishrd\KHAL2\KHALMNPR.EXE c:\program files\Fichiers communs\Teleca Shared\Generic.exe c:\program files\Fichiers communs\Teleca Shared\logger.exe c:\program files\Fichiers communs\Teleca Shared\CapabilityManager.exe c:\program files\HTC\HTC Sync\ClientInitiatedStarter\ClientInitiatedStarter.exe c:\program files\HTC\HTC Sync\Mobile Phone Monitor\epmworker.exe c:\program files\HTC\HTC Sync\Mobile Phone Monitor\HTCVBTServer.exe c:\program files\iPod\bin\iPodService.exe c:\program files\HTC\HTC Sync\Mobile Phone Monitor\FsynSrvStarter.exe c:\windows\system32\wbem\wmiapsrv.exe . ************************************************************************** . Heure de fin: 2010-05-06 10:42:48 - La machine a redémarré ComboFix-quarantined-files.txt 2010-05-06 08:42 ComboFix2.txt 2008-05-07 17:44 Avant-CF: 140 963 291 136 octets libres Après-CF: 143 625 637 888 octets libres - - End Of File - - CB1454E3B8B0AC48FF599BDB7F19D107
×
×
  • Créer...