Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

La je comprend plus !!!!! :P j'ai fais tous ce que tu m'a demandé, jusqu'a "redemarre en mode normal" et la : bim les pubs qui reviennent et tout le reste !!! Je suis dépitée !!! QU'est-ce que j'ai pu faire comme bétise ??? Je comprend pas.....

Ensuite j'ai quand même essayé le vundoxfix, et il n'affiche pas la case à cocher... et donc il ne trouve pas le malware....

 

Je vais faire l'analyse antivirus en attandant je t'envoie les rapports

 

Celui d'Ewido :

 

---------------------------------------------------------

ewido anti-spyware - Scan Report

---------------------------------------------------------

 

+ Created at: 21:20:51 12/09/2006

 

+ Scan result:

 

 

 

C:\Program Files\Fichiers communs\{F0EDA6F5-0710-1036-0420-051023030021}\Update.exe -> Adware.Agent : Cleaned with backup (quarantined).

C:\WINDOWS\T0dJ\asappsrv.dll -> Adware.CommAd : Cleaned with backup (quarantined).

HKLM\SOFTWARE\Effective-i -> Adware.EffectiveBrandToolbar : Cleaned with backup (quarantined).

HKLM\SOFTWARE\Effective-i\TheSearchAccelerator -> Adware.EffectiveBrandToolbar : Cleaned with backup (quarantined).

HKLM\SOFTWARE\Effective-i\TheSearchAccelerator\IE5 -> Adware.EffectiveBrandToolbar : Cleaned with backup (quarantined).

HKU\.DEFAULT\Software\Effective-i -> Adware.EffectiveBrandToolbar : Cleaned with backup (quarantined).

HKU\.DEFAULT\Software\Effective-i\TheSearchAccelerator -> Adware.EffectiveBrandToolbar : Cleaned with backup (quarantined).

HKU\.DEFAULT\Software\Effective-i\TheSearchAccelerator\IE5 -> Adware.EffectiveBrandToolbar : Cleaned with backup (quarantined).

HKU\S-1-5-18\Software\Effective-i -> Adware.EffectiveBrandToolbar : Cleaned with backup (quarantined).

HKU\S-1-5-18\Software\Effective-i\TheSearchAccelerator -> Adware.EffectiveBrandToolbar : Cleaned with backup (quarantined).

HKU\S-1-5-18\Software\Effective-i\TheSearchAccelerator\IE5 -> Adware.EffectiveBrandToolbar : Cleaned with backup (quarantined).

C:\WINDOWS\Temp\i12.tmp -> Adware.SurfSide : Cleaned with backup (quarantined).

HKLM\SOFTWARE\SurfSideKick3 -> Adware.SurfSide : Cleaned with backup (quarantined).

HKLM\SOFTWARE\SurfSideKick3\Internet Explorer -> Adware.SurfSide : Cleaned with backup (quarantined).

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\U982RERK\ucmoreiex[1].exe/IUCMORE.DLL -> Adware.Ucmore : Cleaned with backup (quarantined).

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\U982RERK\ucmoreiex[1].exe/UCMTSAIE.DLL -> Adware.Ucmore : Cleaned with backup (quarantined).

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\U982RERK\ucmoreiex[1].exe/empty_00000001 -> Adware.Ucmore : Cleaned with backup (quarantined).

C:\Documents and Settings\Default User\Menu Démarrer\Programmes\UCmore - The Search Accelerator -> Adware.Ucmore : Cleaned with backup (quarantined).

C:\Documents and Settings\Default User\Menu Démarrer\Programmes\UCmore - The Search Accelerator\How To Uninstall.lnk -> Adware.Ucmore : Cleaned with backup (quarantined).

C:\Documents and Settings\Default User\Menu Démarrer\Programmes\UCmore - The Search Accelerator\UCmore - The Search Accelerator.lnk -> Adware.Ucmore : Cleaned with backup (quarantined).

C:\Documents and Settings\Default User\Menu Démarrer\Programmes\UCmore - The Search Accelerator\UCmore Tour.lnk -> Adware.Ucmore : Cleaned with backup (quarantined).

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\UCmore - The Search Accelerator -> Adware.UCmore : Cleaned with backup (quarantined).

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\HZT68NF2\antec[1].jpg -> Downloader.Adload.ds : Cleaned with backup (quarantined).

C:\bintheredunthat\lksjkdn.exe -> Downloader.Adload.ds : Cleaned with backup (quarantined).

C:\bintheredunthat\wsds.exe -> Downloader.Adload.ds : Cleaned with backup (quarantined).

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\U982RERK\loader[1].exe -> Downloader.Adload.fg : Cleaned with backup (quarantined).

C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\U982RERK\SS1001[1].exe -> Dropper.Small.qn : Cleaned with backup (quarantined).

C:\Documents and Settings\Administrateur\Cookies\administrateur@247realmedia[2].txt -> TrackingCookie.247realmedia : Cleaned with backup (quarantined).

C:\Documents and Settings\Administrateur\Cookies\administrateur@adtech[2].txt -> TrackingCookie.Adtech : Cleaned with backup (quarantined).

C:\Documents and Settings\Administrateur\Cookies\administrateur@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned with backup (quarantined).

C:\Documents and Settings\Administrateur\Cookies\administrateur@casinotropez[1].txt -> TrackingCookie.Casinotropez : Cleaned with backup (quarantined).

C:\Documents and Settings\Administrateur\Cookies\administrateur@www.casinotropez[2].txt -> TrackingCookie.Casinotropez : Cleaned with backup (quarantined).

C:\WINDOWS\Temp\Cookies\administrateur@casinotropez[1].txt -> TrackingCookie.Casinotropez : Cleaned with backup (quarantined).

C:\Documents and Settings\Administrateur\Cookies\administrateur@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Cleaned with backup (quarantined).

C:\Documents and Settings\Administrateur\Local Settings\Temp\Cookies\administrateur@cpvfeed[1].txt -> TrackingCookie.Cpvfeed : Cleaned with backup (quarantined).

C:\Documents and Settings\florence\Cookies\florence@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Cleaned with backup (quarantined).

C:\WINDOWS\Temp\Cookies\administrateur@cpvfeed[1].txt -> TrackingCookie.Cpvfeed : Cleaned with backup (quarantined).

C:\WINDOWS\Temp\Cookies\administrateur@overture[1].txt -> TrackingCookie.Overture : Cleaned with backup (quarantined).

C:\Documents and Settings\Administrateur\Local Settings\Temp\Cookies\administrateur@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : Cleaned with backup (quarantined).

C:\WINDOWS\Temp\Cookies\administrateur@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : Cleaned with backup (quarantined).

C:\Documents and Settings\Administrateur\Cookies\administrateur@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Cleaned with backup (quarantined).

C:\Documents and Settings\clemence\Cookies\clemence@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Cleaned with backup (quarantined).

C:\Documents and Settings\Administrateur\Cookies\administrateur@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).

C:\Documents and Settings\Administrateur\Local Settings\Temp\Cookies\administrateur@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).

C:\WINDOWS\Temp\Cookies\administrateur@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).

 

 

::Report end

 

MEME HIJACKTHIS NE MARCHE PLUS !!!! IL S OUVRE ET SE REFERME 3 SECONDE APRES !!!!!

 

Je ne sais plus quoi faire...

 

Raport de clean :

 

Script clean par Malekal_morte - http://www.malekal.com

 

Microsoft Windows [version 5.2.3790]

Script execute en mode sans echec

 

*** Suppression de fichiers sur C:

C:\deskbar?.exe FOUND

C:\dfndr*.exe FOUND

C:\drsmartload*.exe FOUND

C:\Installer*.exe FOUND

C:\kybr*.exe FOUND

C:\fra.exe FOUND

C:\powpip.exe FOUND

C:\M*DoxNg.exe FOUND

C:\MTE*NDI6ODoxNg*.exe FOUND

C:\no-ip.exe FOUND

C:\nwnm*.exe FOUND

C:\plplo.exe FOUND

C:\stub_*_?_?_*.exe FOUND

C:\SS1001newer.exe FOUND

C:\ucmoreiex.exe FOUND

C:\uy*.exe FOUND

C:\vhsot.exe FOUND

C:\warebundlenewer.exe FOUND

 

*** Suppression des fichiers dans C:\WINDOWS\

C:\WINDOWS\keyboard*.dat FOUND

C:\WINDOWS\newname.dat FOUND

 

*** Suppression des fichiers dans C:\WINDOWS\system32

C:\WINDOWS\system32\dsquery.exe FOUND

C:\WINDOWS\system32\atmtd.dll FOUND

 

"C:\Program Files\Deskbar\" FOUND

"C:\Program Files\Network Monitor\" FOUND

"C:\Program Files\TheSearchAccelerator\" FOUND

"C:\Program Files\Toolbar888\" FOUND

 

*** Suppression des clefs du registre effectuee..

 

 

 

Si quelqu'un peut m'aider....

Posté(e)

Télécharge F-Secure Blacklight : https://europe.f-secure.com/blacklight/try.shtml

- Clic en bas sur "I accept"

- Dans la nouvelle fenêtre, clic sur le bouton en haut du tableau Download.

- Lance-le en double-cliquant sur le fichier blbeta.exe

- Accepte la licence, et clique enfin sur "Scan" puis Next et exit.

- Un rapport fsbl-bxxxx.log va être créé dans le même dossier que blbeta.exe

- Ouvre fsbl-bxxxx.log et copie/colle le contenu ici, pour cela :

- Menu Edition / copier

- ici dans un nouveau message : clic droit / coller

Aide : Tu peux consulter le tutorial de F-Secure BlackLight

Posté(e)

- Télécharge l2mfix de Shadowwar

- Double clic sur l2mfix.exe pour lancer l'extraction

- Dans le dossier l2mfix, double clic sur l2mfix.bat, appuie sur n'importe quelle touche puis choisis l'option #1 (et pas autre chose) et valide avec la touche entrée.

- Le bloc note va s'ouvrir avec le résultat du scan.

- Fais un copier coller du résultat ici.

Posté(e)

Voici le résultat du fix :

 

L2MFIX find log 051206

These are the registry keys present

**********************************************************************************

Winlogon/notify:

Windows Registry Editor Version 5.00

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify]

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]

"Asynchronous"=dword:00000000

"Impersonate"=dword:00000000

"DllName"=hex(2):63,00,72,00,79,00,70,00,74,00,33,00,32,00,2e,00,64,00,6c,00,\

6c,00,00,00

"Logoff"="ChainWlxLogoffEvent"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]

"Asynchronous"=dword:00000000

"Impersonate"=dword:00000000

"DllName"=hex(2):63,00,72,00,79,00,70,00,74,00,6e,00,65,00,74,00,2e,00,64,00,\

6c,00,6c,00,00,00

"Logoff"="CryptnetWlxLogoffEvent"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]

"DLLName"="cscdll.dll"

"Logon"="WinlogonLogonEvent"

"Logoff"="WinlogonLogoffEvent"

"ScreenSaver"="WinlogonScreenSaverEvent"

"Startup"="WinlogonStartupEvent"

"Shutdown"="WinlogonShutdownEvent"

"StartShell"="WinlogonStartShellEvent"

"Impersonate"=dword:00000000

"Asynchronous"=dword:00000001

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Installer]

"Asynchronous"=dword:00000000

"DllName"="C:\\WINDOWS\\system32\\saringres110_chs.dll"

"Impersonate"=dword:00000000

"Logon"="WinLogon"

"Logoff"="WinLogoff"

"Shutdown"="WinShutdown"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]

"DLLName"="wlnotify.dll"

"Logon"="SCardStartCertProp"

"Logoff"="SCardStopCertProp"

"Lock"="SCardSuspendCertProp"

"Unlock"="SCardResumeCertProp"

"Enabled"=dword:00000001

"Impersonate"=dword:00000001

"Asynchronous"=dword:00000001

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]

"Asynchronous"=dword:00000000

"DllName"=hex(2):77,00,6c,00,6e,00,6f,00,74,00,69,00,66,00,79,00,2e,00,64,00,\

6c,00,6c,00,00,00

"Impersonate"=dword:00000000

"StartShell"="SchedStartShell"

"Logoff"="SchedEventLogOff"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]

"Logoff"="WLEventLogoff"

"Impersonate"=dword:00000000

"Asynchronous"=dword:00000001

"DllName"=hex(2):73,00,63,00,6c,00,67,00,6e,00,74,00,66,00,79,00,2e,00,64,00,\

6c,00,6c,00,00,00

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]

"DLLName"="WlNotify.dll"

"Lock"="SensLockEvent"

"Logon"="SensLogonEvent"

"Logoff"="SensLogoffEvent"

"Safe"=dword:00000001

"MaxWait"=dword:00000258

"StartScreenSaver"="SensStartScreenSaverEvent"

"StopScreenSaver"="SensStopScreenSaverEvent"

"Startup"="SensStartupEvent"

"Shutdown"="SensShutdownEvent"

"StartShell"="SensStartShellEvent"

"PostShell"="SensPostShellEvent"

"Disconnect"="SensDisconnectEvent"

"Reconnect"="SensReconnectEvent"

"Unlock"="SensUnlockEvent"

"Impersonate"=dword:00000001

"Asynchronous"=dword:00000001

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]

"Asynchronous"=dword:00000000

"DllName"=hex(2):77,00,6c,00,6e,00,6f,00,74,00,69,00,66,00,79,00,2e,00,64,00,\

6c,00,6c,00,00,00

"Impersonate"=dword:00000000

"Logoff"="TSEventLogoff"

"Logon"="TSEventLogon"

"PostShell"="TSEventPostShell"

"Shutdown"="TSEventShutdown"

"StartShell"="TSEventStartShell"

"Startup"="TSEventStartup"

"MaxWait"=dword:00000258

"Reconnect"="TSEventReconnect"

"Disconnect"="TSEventDisconnect"

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]

"DLLName"="wlnotify.dll"

"Logon"="RegisterTicketExpiredNotificationEvent"

"Logoff"="UnregisterTicketExpiredNotificationEvent"

"Impersonate"=dword:00000001

"Asynchronous"=dword:00000001

 

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WRNotifier]

"Asynchronous"=dword:00000000

"DllName"="WRLogonNTF.dll"

"Impersonate"=dword:00000001

"Lock"="WRLock"

"StartScreenSaver"="WRStartScreenSaver"

"StartShell"="WRStartShell"

"Startup"="WRStartup"

"StopScreenSaver"="WRStopScreenSaver"

"Unlock"="WRUnlock"

"Shutdown"="WRShutdown"

"Logoff"="WRLogoff"

"Logon"="WRLogon"

 

**********************************************************************************

useragent:

Windows Registry Editor Version 5.00

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]

"sv1"=""

 

**********************************************************************************

Shell Extension key:

Windows Registry Editor Version 5.00

 

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]

"{00022613-0000-0000-C000-000000000046}"="Feuille de propri‚t‚s du fichier multim‚dia"

"{176d6597-26d3-11d1-b350-080036a75b03}"="Gestion de scanneur ICM"

"{1F2E5C40-9550-11CE-99D2-00AA006E086C}"="Page de s‚curit‚ NTFS"

"{3EA48300-8CF6-101B-84FB-666CCB9BCD32}"="Page des propri‚t‚s de OLE DocFile"

"{40dd6e20-7c17-11ce-a804-00aa003ca9f6}"="Extensions de l'environnement pour le partage"

"{41E300E0-78B6-11ce-849B-444553540000}"="PlusPack CPL Extension"

"{42071712-76d4-11d1-8b24-00a0c9068ff3}"="Extension Affichage Carte du Panneau de configuration"

"{42071713-76d4-11d1-8b24-00a0c9068ff3}"="Extension Affichage ?cran du Panneau de configuration"

"{4E40F770-369C-11d0-8922-00A024AB2DBB}"="Page de s‚curit‚ DS"

"{513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8}"="Page de compatibilit‚"

"{56117100-C0CD-101B-81E2-00AA004AE837}"="Gestionnaire de donn‚es endommag‚es de l'environnement"

"{59099400-57FF-11CE-BD94-0020AF85B590}"="Extension copie de disquette"

"{59be4990-f85c-11ce-aff7-00aa003ca9f6}"="Extensions de l'environnement pour les objets r‚seau de Microsoft Windows"

"{5DB2625A-54DF-11D0-B6C4-0800091AA605}"="Gestion d'‚cran ICM"

"{675F097E-4C4D-11D0-B6C1-0800091AA605}"="Gestion d'imprimante ICM"

"{764BF0E1-F219-11ce-972D-00AA00A14F56}"="Extensions de l'environnement de compression de fichiers"

"{77597368-7b15-11d0-a0c2-080036af3f03}"="Extension de l'environnement d'impression Web"

"{7988B573-EC89-11cf-9C00-00AA00A14F56}"="Disk Quota UI"

"{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA}"="Menu contextuel de cryptage"

"{85BBD920-42A0-1069-A2E4-08002B30309D}"="Porte-documents"

"{88895560-9AA2-1069-930E-00AA0030EBC8}"="Extension ic“ne HyperTerminal"

"{BD84B380-8CA2-1069-AB1D-08000948F534}"="Fonts"

"{DBCE2480-C732-101B-BE72-BA78E9AD5B27}"="Profil ICC"

"{F37C5810-4D3F-11d0-B4BF-00AA00BBB723}"="Page de s‚curit‚ des imprimantes"

"{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}"="Extensions de l'environnement pour le partage"

"{f92e8c40-3d33-11d2-b1aa-080036a75b03}"="Display TroubleShoot CPL Extension"

"{7444C717-39BF-11D1-8CD9-00C04FC29D45}"="Extension de cryptographie PKO"

"{7444C719-39BF-11D1-8CD9-00C04FC29D45}"="Extension de cryptographie Sign"

"{7007ACC7-3202-11D1-AAD2-00805FC1270E}"="Connexions r‚seau"

"{992CFFA0-F557-101A-88EC-00DD010CCC48}"="Connexions r‚seau"

"{E211B736-43FD-11D1-9EFB-0000F8757FCD}"="Scanneurs et appareils photo"

"{FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD}"="Scanneurs et appareils photo"

"{905667aa-acd6-11d2-8080-00805f6596d2}"="Scanneurs et appareils photo"

"{3F953603-1008-4f6e-A73A-04AAC7A992F1}"="Scanneurs et appareils photo"

"{83bbcbf3-b28a-4919-a5aa-73027445d672}"="Scanneurs et appareils photo"

"{F0152790-D56E-4445-850E-4F3117DB740C}"="Remote Sessions CPL Extension"

"{1D2680C9-0E2A-469d-B787-065558BC7D43}"="Fusion Cache"

"{60254CA5-953B-11CF-8C96-00AA00B8708C}"="Extensions de l'interpr‚teur de commandes pour l'environnement d'ex‚cution de scripts Windows"

"{2206CDB2-19C1-11D1-89E0-00C04FD7A829}"="Liaison de donn‚es Microsoft"

"{DD2110F0-9EEF-11cf-8D8E-00AA0060F5BF}"="Tasks Folder Icon Handler"

"{797F1E90-9EDD-11cf-8D8E-00AA0060F5BF}"="Tasks Folder Shell Extension"

"{D6277990-4C6A-11CF-8D87-00AA0060F5BF}"="Tƒches planifi‚es"

"{0DF44EAA-FF21-4412-828E-260A8728E7F1}"="Barre des tƒches et menu D‚marrer"

"{2559a1f0-21d7-11d4-bdaf-00c04f60b9f0}"="Rechercher"

"{2559a1f1-21d7-11d4-bdaf-00c04f60b9f0}"="Aide et support"

"{2559a1f2-21d7-11d4-bdaf-00c04f60b9f0}"="Aide et support"

"{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}"="Ex‚cuter..."

"{2559a1f4-21d7-11d4-bdaf-00c04f60b9f0}"="Internet"

"{2559a1f5-21d7-11d4-bdaf-00c04f60b9f0}"="Courrier ‚lectronique"

"{D20EA4E1-3957-11d2-A40B-0C5020524152}"="Polices"

"{D20EA4E1-3957-11d2-A40B-0C5020524153}"="Outils d'administration"

"{875CB1A1-0F29-45de-A1AE-CFB4950D0B78}"="Audio Media Properties Handler"

"{40C3D757-D6E4-4b49-BB41-0E5BBEA28817}"="Video Media Properties Handler"

"{E4B29F9D-D390-480b-92FD-7DDB47101D71}"="Wav Properties Handler"

"{87D62D94-71B3-4b9a-9489-5FE6850DC73E}"="Avi Properties Handler"

"{A6FD9E45-6E44-43f9-8644-08598F5A74D9}"="Midi Properties Handler"

"{c5a40261-cd64-4ccf-84cb-c394da41d590}"="Video Thumbnail Extractor"

"{5E6AB780-7743-11CF-A12B-00AA004AE837}"="Barre d'outils Internet Microsoft"

"{22BF0C20-6DA7-11D0-B373-00A0C9034938}"="?tat du t‚l‚chargement"

"{91EA3F8B-C99B-11d0-9815-00C04FD91972}"="Dossier Bureau ‚tendu"

"{6413BA2C-B461-11d1-A18A-080036B11A03}"="Dossier du shell augment‚"

"{F61FFEC1-754F-11d0-80CA-00AA005B4383}"="BandProxy"

"{7BA4C742-9E81-11CF-99D3-00AA004AE837}"="Bande du navigateur Microsoft"

"{30D02401-6A81-11d0-8274-00C04FD5AE38}"="Bande de recherche"

"{32683183-48a0-441b-a342-7c2a440a9478}"="Media Band"

"{169A0691-8DF9-11d1-A1C4-00C04FD75D13}"="Volet int‚gr‚ de recherche"

"{07798131-AF23-11d1-9111-00A0C98BA67D}"="Recherche Web"

"{AF4F6510-F982-11d0-8595-00AA004CD6D8}"="Utilitaire des options de l'arborescence du Registre"

"{01E04581-4EEE-11d0-BFE9-00AA005B4383}"="&Adresse"

"{A08C11D2-A228-11d0-825B-00AA005B4383}"="BoŒte d'entr‚e de l'adresse"

"{00BB2763-6A77-11D0-A535-00C04FD7D062}"="Saisie semi-automatique Microsoft"

"{7376D660-C583-11d0-A3A5-00C04FD706EC}"="TridentImageExtractor"

"{6756A641-DE71-11d0-831B-00AA005B4383}"="Liste de saisie semi-automatique MRU"

"{6935DB93-21E8-4ccc-BEB9-9FE3C77A297A}"="Liste de saisie semi-automatique personnalis‚e MRU"

"{7e653215-fa25-46bd-a339-34a2790f3cb7}"="Accessible"

"{acf35015-526e-4230-9596-becbe19f0ac9}"="Barre de progrŠs auto-ouvrante"

"{00BB2764-6A77-11D0-A535-00C04FD7D062}"="Liste de saisie semi-automatique de l'historique Microsoft"

"{03C036F1-A186-11D0-824A-00AA005B4383}"="Liste de saisie semi-automatique du dossier Shell Microsoft"

"{00BB2765-6A77-11D0-A535-00C04FD7D062}"="Conteneur de la liste de saisie semi-automatique multiple Microsoft"

"{ECD4FC4E-521C-11D0-B792-00A0C90312E1}"="Menu Site de bandes"

"{3CCF8A41-5C85-11d0-9796-00AA00B90ADF}"="Shell DeskBarApp"

"{ECD4FC4C-521C-11D0-B792-00A0C90312E1}"="Barre du Bureau"

"{ECD4FC4D-521C-11D0-B792-00A0C90312E1}"="Shell Rebar BandSite"

"{DD313E04-FEFF-11d1-8ECD-0000F87A470C}"="Assistance utilisateur"

"{EF8AD2D1-AE36-11D1-B2D2-006097DF8C11}"="ParamŠtres du dossier global"

"{EFA24E61-B078-11d0-89E4-00C04FC9E26E}"="Favorites Band"

"{0A89A860-D7B1-11CE-8350-444553540000}"="Shell Automation Inproc Service"

"{E7E4BC40-E76A-11CE-A9BB-00AA004AE837}"="Shell DocObject Viewer"

"{A5E46E3A-8849-11D1-9D8C-00C04FC99D61}"="Microsoft Browser Architecture"

"{FBF23B40-E3F0-101B-8488-00AA003E56F8}"="InternetShortcut"

"{3C374A40-BAE4-11CF-BF7D-00AA006946EE}"="Microsoft Url History Service"

"{FF393560-C2A7-11CF-BFF4-444553540000}"="Historique"

"{7BD29E00-76C1-11CF-9DD0-00A0C9034933}"="Temporary Internet Files"

"{7BD29E01-76C1-11CF-9DD0-00A0C9034933}"="Temporary Internet Files"

"{CFBFAE00-17A6-11D0-99CB-00C04FD64497}"="Microsoft Url Search Hook"

"{A2B0DD40-CC59-11d0-A3A5-00C04FD706EC}"="Image de d‚marrage de la Suite IE4"

"{67EA19A0-CCEF-11d0-8024-00C04FD75D13}"="CDF Extension Copy Hook"

"{131A6951-7F78-11D0-A979-00C04FD705A2}"="ISFBand OC"

"{9461b922-3c5a-11d2-bf8b-00c04fb93661}"="Search Assistant OC"

"{3DC7A020-0ACD-11CF-A9BB-00AA004AE837}"="Internet"

"{871C5380-42A0-1069-A2EA-08002B30309D}"="Internet Name Space"

"{EFA24E64-B078-11d0-89E4-00C04FC9E26E}"="Explorer Band"

"{9E56BE60-C50F-11CF-9A2C-00A0C90A90CE}"="Sendmail service"

"{9E56BE61-C50F-11CF-9A2C-00A0C90A90CE}"="Sendmail service"

"{88C6C381-2E85-11D0-94DE-444553540000}"="Dossier ActiveX Cache"

"{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"="WebCheck"

"{ABBE31D0-6DAE-11D0-BECA-00C04FD940BE}"="Subscription Mgr"

"{F5175861-2688-11d0-9C5E-00AA00A45957}"="Dossier Inscription"

"{08165EA0-E946-11CF-9C87-00AA005127ED}"="WebCheckWebCrawler"

"{E3A8BDE6-ABCE-11d0-BC4B-00C04FD929DB}"="WebCheckChannelAgent"

"{E8BB6DC0-6B4E-11d0-92DB-00A0C90C2BD7}"="TrayAgent"

"{7D559C10-9FE9-11d0-93F7-00AA0059CE02}"="Code Download Agent"

"{E6CC6978-6B6E-11D0-BECA-00C04FD940BE}"="ConnectionAgent"

"{D8BD2030-6FC9-11D0-864F-00AA006809D9}"="PostAgent"

"{7FC0B86E-5FA7-11d1-BC7C-00C04FD929DB}"="WebCheck SyncMgr Handler"

"{352EC2B7-8B9A-11D1-B8AE-006008059382}"="Gestionnaire d'applications d'environnement"

"{0B124F8F-91F0-11D1-B8B5-006008059382}"="?num‚rateur d'applications install‚es"

"{CFCCC7A0-A282-11D1-9082-006008059382}"="Publication d'application Darwin"

"{e84fda7c-1d6a-45f6-b725-cb260c236066}"="Shell Image Verbs"

"{66e4e4fb-f385-4dd0-8d74-a2efd1bc6178}"="Shell Image Data Factory"

"{00E7B358-F65B-4dcf-83DF-CD026B94BFD4}"="Autoplay for SlideShow"

"{3F30C968-480A-4C6C-862D-EFC0897BB84B}"="Extracteur de miniatures de fichier + GDI"

"{9DBD2C50-62AD-11d0-B806-00C04FD706EC}"="Gestionnaire de miniatures - Informations de r‚sum‚ (DOCFILES)"

"{EAB841A0-9550-11cf-8C16-00805F1408F3}"="Extracteur de miniatures HTML"

"{eb9b1153-3b57-4e68-959a-a3266bc3d7fe}"="Shell Image Property Handler"

"{CC6EEFFB-43F6-46c5-9619-51D571967F7D}"="Assistant Publication de sites Web"

"{add36aa8-751a-4579-a266-d66f5202ccbb}"="Commande d'impressions via le Web"

"{6b33163c-76a5-4b6c-bf21-45de9cd503a1}"="Objet Assistant de publication Shell"

"{58f1f272-9240-4f51-b6d4-fd63d1618591}"="Assistant Obtenir une identit‚ Passport"

"{BD472F60-27FA-11cf-B8B4-444553540000}"="Compressed (zipped) Folder Right Drag Handler"

"{888DCA60-FC0A-11CF-8F0F-00C04FD7D062}"="Compressed (zipped) Folder SendTo Target"

"{f39a0dc0-9cc8-11d0-a599-00c04fd64433}"="Fichier de chaŒne"

"{f3aa0dc0-9cc8-11d0-a599-00c04fd64434}"="Raccourci de chaŒne"

"{f3ba0dc0-9cc8-11d0-a599-00c04fd64435}"="Channel Handler Object"

"{f3da0dc0-9cc8-11d0-a599-00c04fd64437}"="Channel Menu"

"{f3ea0dc0-9cc8-11d0-a599-00c04fd64438}"="Channel Properties"

"{596AB062-B4D2-4215-9F74-E9109B0A8153}"="Page de propri‚t‚s des versions pr‚c‚dentes"

"{9DB7A13C-F208-4981-8353-73CC61AE2783}"="Versions pr‚c‚dentes"

"{63da6ec0-2e98-11cf-8d82-444553540000}"="FTP Folders Webview"

"{883373C3-BF89-11D1-BE35-080036B11A03}"="Microsoft DocProp Shell Ext"

"{A9CF0EAE-901A-4739-A481-E35B73E47F6D}"="Microsoft DocProp Inplace Edit Box Control"

"{8EE97210-FD1F-4B19-91DA-67914005F020}"="Microsoft DocProp Inplace ML Edit Box Control"

"{0EEA25CC-4362-4A12-850B-86EE61B0D3EB}"="Microsoft DocProp Inplace Droplist Combo Control"

"{6A205B57-2567-4A2C-B881-F787FAB579A3}"="Microsoft DocProp Inplace Calendar Control"

"{28F8A4AC-BBB3-4D9B-B177-82BFC914FA33}"="Microsoft DocProp Inplace Time Control"

"{8A23E65E-31C2-11d0-891C-00A024AB2DBB}"="Directory Query UI"

"{9E51E0D0-6E0F-11d2-9601-00C04FA31A86}"="Shell properties for a DS object"

"{163FDC20-2ABC-11d0-88F0-00A024AB2DBB}"="Directory Object Find"

"{F020E586-5264-11d1-A532-0000F8757D7E}"="Directory Start/Search Find"

"{0D45D530-764B-11d0-A1CA-00AA00C16E65}"="Directory Property UI"

"{62AE1F9A-126A-11D0-A14B-0800361B1103}"="Directory Context Menu Verbs"

"{ECF03A33-103D-11d2-854D-006008059367}"="MyDocs Copy Hook"

"{ECF03A32-103D-11d2-854D-006008059367}"="MyDocs Drop Target"

"{4a7ded0a-ad25-11d0-98a8-0800361b1103}"="MyDocs Properties"

"{750fdf0e-2a26-11d1-a3ea-080036587f03}"="Offline Files Menu"

"{10CFC467-4392-11d2-8DB4-00C04FA31A66}"="Offline Files Folder Options"

"{AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E}"="Dossier Fichiers hors connexion"

"{143A62C8-C33B-11D1-84FE-00C04FA34A14}"="Microsoft Agent Character Property Sheet Handler"

"{ECCDF543-45CC-11CE-B9BF-0080C87CDBA6}"="DfsShell"

"{60fd46de-f830-4894-a628-6fa81bc0190d}"="%DESC_PublishDropTarget%"

"{7A80E4A8-8005-11D2-BCF8-00C04F72C717}"="MMC Icon Handler"

"{0CD7A5C0-9F37-11CE-AE65-08002B2E1262}"=".CAB file viewer"

"{4648F940-EFE3-4BAB-9211-3BE45CD5029D}"="VSSShellExt"

"{32714800-2E5F-11d0-8B85-00AA0044F941}"="Des &personnes..."

"{8DD448E6-C188-4aed-AF92-44956194EB1F}"="Windows Media Player Play as Playlist Context Menu Handler"

"{CE3FB1D1-02AE-4a5f-A6E9-D9F1B4073E6C}"="Windows Media Player Burn Audio CD Context Menu Handler"

"{F1B9284F-E9DC-4e68-9D7E-42362A59F0FD}"="Windows Media Player Add to Playlist Context Menu Handler"

"{5F327514-6C5E-4d60-8F16-D07FA08A78ED}"="Auto Update Property Sheet Extension"

"{BDA77241-42F6-11d0-85E2-00AA001FE28C}"="LDVP Shell Extensions"

"{5a61f7a0-cde1-11cf-9113-00aa00425c62}"="IIS Shell Extension"

"{BDEADF00-C265-11D0-BCED-00A0C90AB50F}"="Dossiers Web"

"{00020D75-0000-0000-C000-000000000046}"="Microsoft Office Outlook Desktop Icon Handler"

"{0006F045-0000-0000-C000-000000000046}"="Microsoft Office Outlook Custom Icon Handler"

"{42042206-2D85-11D3-8CFF-005004838597}"="Microsoft Office HTML Icon Handler"

"{692F0339-CBAA-47e6-B5B5-3B84DB604E87}"="Extensions Manager Folder"

"{640167b4-59b0-47a6-b335-a6b3c0695aea}"="Portable Media Devices"

"{cc86590a-b60a-48e6-996b-41d25ed39a1e}"="Portable Media Devices Menu"

"{21B03E28-427A-49CE-850B-E1A245848F14}"="Terminal Server Redirected Drive"

"{0B63475F-4D07-40CD-9325-23F1B5DDCFA8}"="Terminal Server Redirected Drive"

"{91C3B2EA-A451-4E37-8B76-AB29953408F8}"="Terminal Server Redirected Drive"

"{DF496528-5E69-4A5E-9616-951CA17021B2}"="Terminal Server Redirected Drive"

"{606AEDCA-BC51-4C26-B5DB-15089D8E32C2}"="Terminal Server Redirected Drive"

"{84D29C3A-5A16-4E04-B4C5-CF17861DA864}"="Terminal Server Redirected Drive"

"{347EA9D1-99D2-40C7-AE13-467D436D2766}"="Terminal Server Redirected Drive"

"{18151C96-94CD-4D23-8A63-31CB773F1C38}"="Terminal Server Redirected Drive"

"{4CE0D244-1177-4093-B318-8C98B1179DFE}"="Terminal Server Redirected Drive"

"{702B87BB-4D30-4582-85A6-3F26B4596615}"="Terminal Server Redirected Drive"

"{9DC0DB10-E17A-4F2C-8A85-292856BE8FB2}"="Terminal Server Redirected Drive"

"{CDF29311-1198-4EFD-928C-98B240256D96}"="Terminal Server Redirected Drive"

"{3914A654-F0C6-4062-A9E9-8936B2732DD5}"="Terminal Server Redirected Drive"

"{E7AEE3DF-4246-4DE6-993F-89E9FA6FAA1E}"="Terminal Server Redirected Drive"

"{26E5E69A-15D3-4C3E-933A-05C1A60D81E3}"="Terminal Server Redirected Drive"

"{C3C0EF46-A8ED-47ED-82D1-2A05B482D401}"="Terminal Server Redirected Drive"

"{2F568B34-7C00-4E8C-9690-23572E232148}"="Terminal Server Redirected Drive"

"{F8051080-D78D-44D6-8C39-4F99EFE8DA72}"="Terminal Server Redirected Drive"

"{815FF5D8-7040-4963-A848-CA13878C6259}"="Terminal Server Redirected Drive"

"{065994D0-ABFC-4638-A4B3-3F7D69CB6A77}"="Terminal Server Redirected Drive"

"{BD4B4CB1-7F66-48B1-8C8E-9ED26DD06259}"="Terminal Server Redirected Drive"

"{BF365623-14E9-4B14-AC16-707E24B587C0}"="Terminal Server Redirected Drive"

"{9C545C0B-EE9A-422D-A712-6E138725958A}"="Terminal Server Redirected Drive"

"{3FC8E1B0-6A81-4F83-9CC0-8E5F8F129C01}"="Terminal Server Redirected Drive"

"{144DE0DC-7F57-40E7-8B7F-3E53A4062A6B}"="Terminal Server Redirected Drive"

"{CF91AE58-53B3-4999-883E-A772B5941C12}"="Terminal Server Redirected Drive"

"{CE4E6AB2-70EE-4AB8-8650-8551CCECE152}"="Terminal Server Redirected Drive"

"{141236B9-A545-413D-965D-AF06F25A3BC2}"="Terminal Server Redirected Drive"

"{4E1E21C3-F13F-4C58-8D28-B3A51ED7A060}"="Terminal Server Redirected Drive"

"{1072245E-E814-459D-A22C-110C9B5E9511}"="Terminal Server Redirected Drive"

"{607C1DA2-2EB1-4157-8829-D967143DB211}"="Terminal Server Redirected Drive"

"{66B7153E-EE90-434B-A354-57CA95B6E329}"="Terminal Server Redirected Drive"

"{E6903838-141E-498C-B80E-3BAF7EF9A402}"="Terminal Server Redirected Drive"

"{E7BDC0AA-E923-4531-BA7C-66A0FA72446A}"="Terminal Server Redirected Drive"

"{59D35C08-7A8B-46E5-B24A-A86BD2012175}"="Terminal Server Redirected Drive"

"{0259EDED-773F-4FBA-B8F9-1099CCC2E6B6}"="Terminal Server Redirected Drive"

"{B983CB2A-99E2-435F-92EA-E2338B3C4199}"="Terminal Server Redirected Drive"

"{035C003F-A435-4391-9C86-A01C4305D0EC}"="Terminal Server Redirected Drive"

"{8F165376-02BE-495F-B81F-7B1A25AEDCDB}"="Terminal Server Redirected Drive"

"{CDDA9D98-D41C-4BB0-BC0C-1B7FDF68471F}"="Terminal Server Redirected Drive"

"{B123AB52-A3B9-4919-8630-2DF7253E5405}"="Terminal Server Redirected Drive"

"{ABCD666E-B08A-471A-AB61-C0EA8D97B328}"="Terminal Server Redirected Drive"

"{A5CEFE2C-B586-48D5-A224-DDBFBBB0F7F7}"="Terminal Server Redirected Drive"

"{03C5139A-F7D8-4937-84A1-5547CB2C0E8A}"="Terminal Server Redirected Drive"

"{1CD535F7-4108-4B5F-8807-F25DC677FA10}"="Terminal Server Redirected Drive"

"{8E404398-EEC9-42D6-BED1-6271E1A80B40}"="Terminal Server Redirected Drive"

"{93319B17-60FA-4ACF-ACD9-39D8CEB07FBA}"="Terminal Server Redirected Drive"

"{CE3CD22A-1711-46A7-8437-B25312AD5920}"="Terminal Server Redirected Drive"

"{B52D8FC6-FE18-4E7B-AAC1-3680A278DFC2}"="Terminal Server Redirected Drive"

"{3DC89CB3-0D63-4DDD-9FD3-8207FB557C37}"="Terminal Server Redirected Drive"

"{F94D9FFD-5F16-4BBE-9AF0-E17E1BF0D99B}"="Terminal Server Redirected Drive"

"{092408E7-934F-4B55-A53F-953C45A9F47A}"="Terminal Server Redirected Drive"

"{96CFE4EB-E864-421F-AE28-97A0A840BA40}"="Terminal Server Redirected Drive"

"{3A274781-3823-4DED-A895-2FAA9A8525DC}"="Terminal Server Redirected Drive"

"{8CD9445B-384F-4945-B653-81468B06BAB9}"="Terminal Server Redirected Drive"

"{C31400C1-86AB-4650-9E71-159891C34716}"="Terminal Server Redirected Drive"

"{96AFA64F-0508-414A-BA70-AAE9FFE2E7D7}"="Terminal Server Redirected Drive"

"{0115A55A-57E8-496E-AB9F-954DBC67AEB2}"="Terminal Server Redirected Drive"

"{E12D4FD7-A194-4AB0-8940-7E732D60E37D}"="Terminal Server Redirected Drive"

"{B60CEBF3-39B0-41E6-8CF6-298FA6420A64}"="Terminal Server Redirected Drive"

"{3B3545DB-F198-4F87-8C77-424DEFEFDBF1}"="Terminal Server Redirected Drive"

"{AF5FCBE8-A6CE-409F-8EDC-3F53D85D7FCC}"="Terminal Server Redirected Drive"

"{AD76862F-3419-4BEC-9B95-2B070DCCBC9E}"="Terminal Server Redirected Drive"

"{3827142F-F168-4B9F-96B5-50E4237980AC}"="Terminal Server Redirected Drive"

"{EAAA0A05-3D0D-4CDF-B326-D239D6B97DBB}"="Terminal Server Redirected Drive"

"{AADE4E4C-F3EF-49D0-A7F5-60F8323A0CE1}"="Terminal Server Redirected Drive"

"{8159382C-F7D9-47A4-A716-C081DCAE3EA1}"="Terminal Server Redirected Drive"

"{C28D90CA-1CC4-4413-922D-7DD62A585887}"="Terminal Server Redirected Drive"

"{16ED8C08-59FF-4240-A024-A0E511905C72}"="Terminal Server Redirected Drive"

"{F4E96852-38F5-40BC-B594-57F7E2ABE81E}"="Terminal Server Redirected Drive"

"{640BB85D-49E4-46D7-AFB5-C125D893CC4C}"="Terminal Server Redirected Drive"

"{8FF58822-BF85-4B3F-A9B7-3D33B9CE8B9B}"="Terminal Server Redirected Drive"

"{BFC819ED-E6B8-467A-B443-0DE1DAD13705}"="Terminal Server Redirected Drive"

"{4164D529-2949-4893-A0AC-2366C5DCCA2E}"="Terminal Server Redirected Drive"

"{DE6B89ED-8B91-4D54-BDFE-B5541E6A01CB}"="Terminal Server Redirected Drive"

"{21569614-B795-46b1-85F4-E737A8DC09AD}"="Shell Search Band"

"{892E10CB-0EDC-4EE9-B44A-D2759AE87950}"="Terminal Server Redirected Drive"

"{0A630805-0A9C-44EC-9DFD-D3A9C189EF70}"="Terminal Server Redirected Drive"

"{532D9B16-1DC2-47E0-B0E3-84EC1AC235A6}"="Terminal Server Redirected Drive"

"{EFFE1114-9A68-489E-9BD5-3D2AF511E51E}"="Terminal Server Redirected Drive"

"{17402E7F-EC14-4069-85CE-B9F4D7EF4746}"="Terminal Server Redirected Drive"

"{5B1C122B-DAE1-4B46-9278-E8CFCE807F04}"="Terminal Server Redirected Drive"

"{473FB294-DBC7-4C97-B3F2-2564EF82D5A6}"="Terminal Server Redirected Drive"

"{5B71807B-1371-43E6-A83C-DC0ACF89F5DE}"="Terminal Server Redirected Drive"

"{A2E7C4A6-56EA-43CD-AC4C-789CC205FB51}"="Terminal Server Redirected Drive"

"{FB5B3F2F-3C1D-4C44-9942-CEB72C7C9507}"="Terminal Server Redirected Drive"

"{FAE0F110-C67B-4988-ABDB-DC1092F7C01F}"="Terminal Server Redirected Drive"

"{F269242E-E58B-4801-B2B3-BCD9356B168F}"="Terminal Server Redirected Drive"

"{7A685A69-FE84-4743-B133-449F097E07F5}"="Terminal Server Redirected Drive"

"{13A612BC-73CE-4595-B9AB-12471CA1EC5E}"="Terminal Server Redirected Drive"

"{F222A0FD-1B93-4CA2-856A-DBE18A39E914}"="Terminal Server Redirected Drive"

"{BED91186-A385-42B8-A5E1-6C2C8F97C467}"="Terminal Server Redirected Drive"

"{B13DB046-2ED5-4985-B1A2-DD88F5D9EF83}"="Terminal Server Redirected Drive"

"{7BE5360B-C49D-431D-95DB-E57A995FE0EB}"="Terminal Server Redirected Drive"

"{54CB9311-8F31-44EF-852E-80357C3C6B9C}"="Terminal Server Redirected Drive"

"{6D0CD6F4-3E59-4D36-B7A5-D4E5302D337A}"="Terminal Server Redirected Drive"

"{7AE29125-722E-47ED-AA66-31F76C473A8D}"="Terminal Server Redirected Drive"

"{DEF7D3EF-EFB1-4156-8E86-FB6E7618074D}"="Terminal Server Redirected Drive"

"{C420E11E-FC4A-4FB6-B1FD-77CF1AF63565}"="Terminal Server Redirected Drive"

"{31A90A17-4A55-4A60-9F08-E16C3AC528F0}"="Terminal Server Redirected Drive"

"{5B7D0C47-532A-4B8F-8E68-DA341A77BC2A}"="Terminal Server Redirected Drive"

"{098FA0E7-0FC8-4FF7-AE84-E551DD2C76EE}"="Terminal Server Redirected Drive"

"{E8969187-3EB1-479B-87B0-636479475595}"="Terminal Server Redirected Drive"

"{A99A5E9E-2BFC-4D64-9D21-EBBC940ADDF0}"="Terminal Server Redirected Drive"

"{F1E3E9B6-D819-464C-9515-3AFBAB630546}"="Terminal Server Redirected Drive"

"{CDE68AEE-715D-4BF2-8AD6-1128E8BE36E2}"="Terminal Server Redirected Drive"

"{FA5859E5-2B6C-4543-818A-F9B254C035FC}"="Terminal Server Redirected Drive"

"{A0784032-6627-4124-8822-C3DDC4A98FD0}"="Terminal Server Redirected Drive"

"{ECBC154E-BE4F-42CA-B171-AD2C2FFE527E}"="Terminal Server Redirected Drive"

"{6128B0CC-D654-4D01-BC66-6483CEC39FAF}"="Terminal Server Redirected Drive"

"{548F281A-112C-4ECB-93BB-11B6226C6C34}"="Terminal Server Redirected Drive"

"{D25C8555-A1F9-479A-B70A-85CE79A337DE}"="Terminal Server Redirected Drive"

"{2EAB8C06-D72A-41D5-9BB2-E135ABA3250E}"="Terminal Server Redirected Drive"

"{FE4AA4CE-5642-4C63-AB78-150DB64D59DE}"="Terminal Server Redirected Drive"

"{9762AA35-FFDC-4469-B062-7101ED19750A}"="Terminal Server Redirected Drive"

"{B2F917D9-4595-49A3-9C4E-8467BE9B4078}"="Terminal Server Redirected Drive"

"{4714FB67-52FF-4E5F-9578-775AC604A54A}"="Terminal Server Redirected Drive"

"{C43398E9-9026-4911-BB01-2A40A7B7FA30}"="Terminal Server Redirected Drive"

"{415CA134-486B-4167-9A23-6297B9A54D6C}"="Terminal Server Redirected Drive"

"{4362300D-2114-4390-8546-AA373A7D0B3D}"="Terminal Server Redirected Drive"

"{F470111D-305E-496B-B819-5A62316845B2}"="Terminal Server Redirected Drive"

"{F267B796-D620-492E-8142-363FF250A6AE}"="Terminal Server Redirected Drive"

"{C36CF331-101F-416B-AB30-DBC97225AC80}"="Terminal Server Redirected Drive"

"{7D66DE14-9290-476F-9F1E-0EDBA06E81AF}"="Terminal Server Redirected Drive"

"{3BD024B5-FD79-48F1-8DD1-A517E17A7F1E}"="Terminal Server Redirected Drive"

"{F168E4B3-158E-4423-A23A-53CAD6DB772D}"="Terminal Server Redirected Drive"

"{18338CD7-411E-4890-8ADA-A9C3F3AD085D}"="Terminal Server Redirected Drive"

"{F2D7A09F-4B8D-4A9A-8211-373774DC14C7}"="Terminal Server Redirected Drive"

"{B8C53055-79F2-4A0B-B76F-8C876CBF1B18}"="Terminal Server Redirected Drive"

"{3C875B7E-8ACB-4A78-AAD8-43302507B6C5}"="Terminal Server Redirected Drive"

"{81F84650-CBD7-41D9-B102-126A46CE0EA1}"="Terminal Server Redirected Drive"

"{8E2DF5CF-266B-4A93-BACE-428D626DE52F}"="Terminal Server Redirected Drive"

"{252561F8-A91A-4963-BAAB-48C91216075D}"="Terminal Server Redirected Drive"

"{437BF012-1026-4005-8044-302DECBB7320}"="Terminal Server Redirected Drive"

"{678B1A2F-A19F-4343-99F0-456E805AD7A9}"="Terminal Server Redirected Drive"

"{D0D1BDFB-5A5B-4AEB-8B3C-F88DB9F5AA4A}"="Terminal Server Redirected Drive"

"{E8E3A7CA-C199-44FF-AF78-661067F46B90}"="Terminal Server Redirected Drive"

"{CDC74A80-9CEE-4BC9-AC24-754BBF950D72}"="Terminal Server Redirected Drive"

"{C95AE266-0C29-4426-B035-A564699C19EE}"="Terminal Server Redirected Drive"

"{ED3444A7-14EF-404E-B349-2EC01C3148BC}"="Terminal Server Redirected Drive"

"{81CFBB00-3192-4F36-85C8-145AC860A171}"="Terminal Server Redirected Drive"

"{E0D79304-84BE-11CE-9641-444553540000}"="WinZip"

"{E0D79305-84BE-11CE-9641-444553540000}"="WinZip"

"{E0D79306-84BE-11CE-9641-444553540000}"="WinZip"

"{E0D79307-84BE-11CE-9641-444553540000}"="WinZip"

"{2F3EA51D-7A87-4206-BBC4-C352F1D72F4C}"="Terminal Server Redirected Drive"

"{FBED52C8-EC50-4830-80DE-328EF6366EEA}"="Terminal Server Redirected Drive"

"{57F024FD-1438-4DD3-B4F2-50CD029F0802}"="Terminal Server Redirected Drive"

"{B55F3EBC-46FE-4C4C-B389-47A3F2D9D99E}"="Terminal Server Redirected Drive"

"{C43C25D9-9672-40C0-9CC5-2491CBAF401C}"="Terminal Server Redirected Drive"

"{3B01DBFC-154A-463C-BECD-9E40A56B7E3C}"="Terminal Server Redirected Drive"

"{98A298DB-94DC-44BD-97B8-9DB133F2AAE0}"=""

 

**********************************************************************************

HKEY ROOT CLASSIDS:

Windows Registry Editor Version 5.00

 

[HKEY_CLASSES_ROOT\CLSID\{98A298DB-94DC-44BD-97B8-9DB133F2AAE0}]

@=""

"IDEx"="ADDR"

 

[HKEY_CLASSES_ROOT\CLSID\{98A298DB-94DC-44BD-97B8-9DB133F2AAE0}\Implemented Categories]

@=""

 

[HKEY_CLASSES_ROOT\CLSID\{98A298DB-94DC-44BD-97B8-9DB133F2AAE0}\Implemented Categories\{00021492-0000-0000-C000-000000000046}]

@=""

 

[HKEY_CLASSES_ROOT\CLSID\{98A298DB-94DC-44BD-97B8-9DB133F2AAE0}\InprocServer32]

@="C:\\WINDOWS\\system32\\saringres110_chs.dll"

"ThreadingModel"="Apartment"

 

**********************************************************************************

Files Found are not all bad files:

 

C:\WINDOWS\SYSTEM32\

atmtd.dll Tue 12 Sep 2006 21:46:12 A.... 687 592 671,48 K

browseui.dll Fri 23 Jun 2006 22:46:08 A.... 1 037 312 1013,00 K

danim.dll Fri 23 Jun 2006 22:46:08 A.... 1 060 864 1,01 M

dnsapi.dll Wed 12 Jul 2006 21:00:04 A.... 177 664 173,50 K

dxtmsft.dll Fri 23 Jun 2006 22:46:08 A.... 363 008 354,50 K

dxtrans.dll Fri 23 Jun 2006 22:46:08 A.... 212 480 207,50 K

hlink.dll Tue 18 Jul 2006 0:41:06 A.... 72 704 71,00 K

iepeers.dll Fri 23 Jun 2006 22:46:08 A.... 253 952 248,00 K

inetcomm.dll Wed 26 Jul 2006 19:10:08 A.... 681 472 665,50 K

isasss~1.dll Wed 13 Sep 2006 8:20:48 A.... 597 0,58 K

jsproxy.dll Fri 23 Jun 2006 22:46:08 A.... 16 384 16,00 K

kernel32.dll Tue 25 Jul 2006 14:36:56 A.... 1 106 432 1,05 M

mnltus35.dll Tue 12 Sep 2006 23:14:08 ..S.R 234 272 228,78 K

mshtml.dll Fri 28 Jul 2006 16:43:12 A.... 3 173 888 3,02 M

mstime.dll Fri 23 Jun 2006 22:46:10 A.... 537 088 524,50 K

netapi32.dll Mon 17 Jul 2006 11:52:58 A.... 349 696 341,50 K

ntaudi~1.dll Wed 13 Sep 2006 8:20:46 A.... 1 513 1,48 K

pngfilt.dll Fri 23 Jun 2006 22:46:10 A.... 42 496 41,50 K

rasadhlp.dll Wed 12 Jul 2006 21:00:06 A.... 12 288 12,00 K

saring~1.dll Wed 13 Sep 2006 8:24:32 A.... 234 272 228,78 K

shdocvw.dll Tue 25 Jul 2006 22:41:12 A.... 1 514 496 1,44 M

shell32.dll Thu 13 Jul 2006 14:58:28 A.... 8 439 808 8,05 M

shlwapi.dll Fri 23 Jun 2006 22:46:10 A.... 322 048 314,50 K

urlmon.dll Tue 25 Jul 2006 17:44:06 A.... 698 880 682,50 K

w03a2409.dll Tue 25 Jul 2006 22:41:26 A.... 4 608 4,50 K

wininet.dll Fri 23 Jun 2006 22:46:10 A.... 666 624 651,00 K

 

26 items found: 26 files (1 H/S), 0 directories.

Total of file sizes: 21 902 438 bytes 20,89 M

Locate .tmp files:

 

C:\WINDOWS\SYSTEM32\

guard.tmp Wed 13 Sep 2006 8:24:36 A.... 235 588 230,07 K

tmp10.tmp Fri 8 Sep 2006 22:48:48 A.... 0 0,00 K

tmp1a.tmp Mon 11 Sep 2006 10:24:58 A.... 0 0,00 K

tmpa.tmp Thu 7 Sep 2006 15:58:10 A.... 23 341 22,79 K

 

4 items found: 4 files, 0 directories.

Total of file sizes: 258 929 bytes 252,86 K

**********************************************************************************

Directory Listing of system files:

Le volume dans le lecteur C n'a pas de nom.

Le num‚ro de s‚rie du volume est F0ED-A6F5

 

R‚pertoire de C:\WINDOWS\System32

 

13/09/2006 08:24 <REP> dllcache

12/09/2006 23:14 234ÿ272 MNLTUS35.DLL

19/09/2005 16:33 <REP> Microsoft

1 fichier(s) 234ÿ272 octets

2 R‚p(s) 107ÿ625ÿ623ÿ552 octets libres

Posté(e)

Relance lm2fix mais avec l'option 2 cette fois-ci.

Redémarre l'ordinateur.

 

Télécharge F-Secure Blacklight : https://europe.f-secure.com/blacklight/try.shtml

- Clic en bas sur "I accept"

- Dans la nouvelle fenêtre, clic sur le bouton en haut du tableau Download.

- Lance-le en double-cliquant sur le fichier blbeta.exe

- Accepte la licence, et clique enfin sur "Scan" puis Next et exit.

- Un rapport fsbl-bxxxx.log va être créé dans le même dossier que blbeta.exe

- Ouvre fsbl-bxxxx.log et copie/colle le contenu ici, pour cela :

- Menu Edition / copier

- ici dans un nouveau message : clic droit / coller

Aide : Tu peux consulter le tutorial de F-Secure BlackLight

 

 

Colle aussi le rapport lm2fix.

  • Tonton a modifié le titre en Analyse de rapport HiJackThis svp...

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...