Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

salut

j'ai un problème mais je ne pourrais pas dire extactement si c'est un virus ou autre car j'ai des choses sur mon ordinateur qui disparaissent et d'autres qui on réapparut comme par exemple sa fesait un moment que j'avais mon disque amovible pour graver sur des dvd qui avait disparut du coup je ne pouvais pas graver sur des dvd rw mais que sur des cd rw et maintenant il a réapparut et je peux maintenant recommencer à graver sur mes dvd rw par contre quand on ouvre le lecteur amovibe je voyais le fichier gravé et sur la gauche je pouvais cliquer sur supprimer et sa me l'effacé directement maintenant cette fonction a disparu je ne peus supprimer mes fichiers gravés sur cd ou dvd que par le bias de record now

de plus j'ai le volume qui avait complétement disparu et jai réusssis à le retrouver mais il n'est plus à sa place qui était à côté de l'endroit où l'on lit lheure sur mon bureau en bas à droite et hier javais plus de son j'étais obligé d'éteindre et de rallumer mon pc et sa a refonctionné mais le bouton volume na jamais reprit sa place initial

mais le problème qui est vraiment le pus génant et important c'est que quand je surf sur internet tout est au ralentit et au début sa marcher très bien et vite tout en sachant que j'ai avast qui la derniere fois à trouver par deux fois un cheval de troie et autres

merçi si vous pourriez m'aider c'est une amie qui m'a parler du site et qui m'a dit qu ici on pourrait peut être m'aider

à bientôt

Posté(e)

slt merci pr ton aide

voila je tenvoi mon dernier rapport avec celui de kapersky

 

bonjour voici

 

LE RAPPORT DE KAPERSKY

 

<html>

<head>

<title>KASPERSKY ON-LINE SCANNER REPORT</title>

<meta http-equiv='Content-Type' content='text/html; charset=utf-8'>

</head>

 

<style>

.pagetitle { font-size:20px; color:#FFFFFF; font-family: Arial, Geneva, sans-serif; }

.text { font-size:11px; font-family: Arial, Geneva, sans-serif; }

TD { font-size:11px; font-family: Arial, Geneva, sans-serif; }

</style>

 

<body>

<table width='100%' height='110' border='0'>

<tr height='30' align='center' bgcolor='#005447'>

<td colspan='2' height='30' class='pagetitle'>

<b>KASPERSKY ON-LINE SCANNER REPORT</b>

</td>

</tr>

<tr height='70'>

<td colspan='2' height='70'>

Saturday, August 11, 2007 3:57:59 PM<br>

Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)<br>

Kaspersky On-line Scanner version : 5.0.83.0<br>

Dernière mise à jour de la base antivirus Kaspersky : 11/08/2007<br>

Enregistrements dans la base antivirus Kaspersky : 355229<br>

</td>

</tr>

<tr height='10'>

<td colspan='2' height='10'>

</td>

</tr>

</table>

<table width='100%' height='145' border='0'>

<tr height='20' bgcolor='#EFEBDE'>

<td colspan='2' height='20'><b>Paramètres d'analyse</b></td>

</tr>

<tr height='15'>

<td height='15' width='250'>Analyser avec la base antivirus suivante</td>

<td>standard</td>

</tr>

<tr height='15'>

<td height='15'>Analyser les archives</td>

<td>vrai</td>

</tr>

<tr height='15'>

<td height='15'>Analyser les bases de messagerie</td>

<td>vrai</td>

</tr>

<tr height='10'>

<td colspan='2' height='10'>

</td>

</tr>

<tr height='20' bgcolor='#EFEBDE'>

<td height='20'><b>Cible de l'analyse</b></td>

<td>Zones critiques</td>

</tr>

<tr height='20'>

<td colspan='2' height='20'>

C:\WINDOWS<br>

C:\DOCUME~1\fatiha\LOCALS~1\Temp\

</td>

</tr>

<tr height='10'>

<td colspan='2' height='10'>

</td>

</tr>

<tr height='20' bgcolor='#EFEBDE'>

<td colspan='2' height='20'><b>Statistiques de l'analyse</b></td>

</tr>

<tr height='15'>

<td height='15'>Total d'objets analysés</td>

<td>24484</td>

</tr>

<tr height='15'>

<td height='15'>Nombre de virus trouvés</td>

<td>0</td>

</tr>

<tr height='15'>

<td height='15'>Nombre d'objets infectés</td>

<td>0 / 0</td>

</tr>

<tr height='15'>

<td height='15'>Nombre d'objets suspects</td>

<td>0</td>

</tr>

<tr height='15'>

<td height='15'>Durée de l'analyse</td>

<td>00:33:31</td>

</tr>

</table>

<br>

<table width='100%' border='0'>

<tr height='20' bgcolor='#EFEBDE'>

<td height='20'><b>Nom de l'objet infecté</b></td>

<td width='200'><b>Nom du virus</b></td>

<td width='100'><b>Dernière action</b></td>

</tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\Debug\PASSWD.LOG </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\SchedLgU.Txt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\SoftwareDistribution\ReportingEvents.log </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\Sti_Trace.log </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\CatRoot2\edb.log </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\CatRoot2\tmp.edb </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\Antivirus.Evt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\AppEvent.Evt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\DEFAULT </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\default.LOG </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\Internet.evt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SAM </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SAM.LOG </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SecEvent.Evt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SECURITY </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SECURITY.LOG </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SOFTWARE </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\software.LOG </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SysEvent.Evt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SYSTEM </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\system.LOG </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\h323log.txt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\Temp\Perflib_Perfdata_694.dat </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\Temp\_avast4_\Webshlock.txt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\wiadebug.log </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\wiaservc.log </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\WindowsUpdate.log </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\DOCUME~1\fatiha\LOCALS~1\Temp\_avast4_\unp128040681.tmp </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\DOCUME~1\fatiha\LOCALS~1\Temp\~DF2450.tmp </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\DOCUME~1\fatiha\LOCALS~1\Temp\~DF8BFC.tmp </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\DOCUME~1\fatiha\LOCALS~1\Temp\~DF8C11.tmp </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\DOCUME~1\fatiha\LOCALS~1\Temp\~DFCA75.tmp </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\DOCUME~1\fatiha\LOCALS~1\Temp\~DFCA82.tmp </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td colspan='3' height='20'><b>Analyse terminée.</b></td>

</tr>

</table>

</body>

</html>

 

 

ET VOICI LE RAPPORT DE HIJACK THIS

 

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 17:28:46, on 11/08/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\spoolsv.exe

C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

C:\WINDOWS\VM303_STI.EXE

C:\Program Files\Athan\Athan.exe

C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe

C:\Program Files\Panicware\Pop-Up Stopper\dpps2.exe

C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

C:\WINDOWS\System32\FTRTSVC.exe

C:\WINDOWS\System32\HPZipm12.exe

C:\WINDOWS\system32\slserv.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe

C:\WINDOWS\wanmpsvc.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\WINDOWS\system32\wscntfy.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Windows Live\Messenger\msnmsgr.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Ares\Ares.exe

C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe

C:\Program Files\Windows NT\Accessoires\WORDPAD.EXE

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.orange.fr/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.01net.com/telecharger/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.01net.com/telecharger/

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

R3 - URLSearchHook: (no name) - {0A94B116-4504-4e26-AB05-E61E474AA38B} - C:\Program Files\AskPBar\SrchAstt\1.bin\A9SRCHAS.DLL

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: Ask Search Assistant BHO - {0A94B111-4504-4e26-AB05-E61E474AA38B} - C:\Program Files\AskPBar\SrchAstt\1.bin\A9SRCHAS.DLL

O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\eoRezo\EoAdv\EoRezoBHO.dll (file missing)

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll

O2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll

O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [bigDog303] C:\WINDOWS\VM303_STI.EXE VIMICRO USB PC Camera (ZC0301PLH)

O4 - HKLM\..\Run: [Athan] C:\Program Files\Athan\Athan.exe

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [Pop-Up Stopper] "C:\Program Files\Panicware\Pop-Up Stopper\dpps2.exe"

O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [Creative Error] C:\DOCUME~1\fatiha\APPLIC~1\PLATFO~1\LITEFRAGHOLD.exe

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')

O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/...arch.jhtml?p=ZN

O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.orange.fr (file missing) (HKCU)

O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm

O16 - DPF: {0878F049-D33E-45E0-A157-C36A6683CF25} - http://es6-scripts.dlv4.com/binaries/egacc...ss4_1063_XP.cab

O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab

O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204

O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) - http://housecall65.trendmicro.com/housecal...ivex/hcImpl.cab

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.mail.live.com/mail/w1/resources/MSNPUpld.cab

O16 - DPF: {54823A9D-6BAE-11D5-B519-0050BA2413EB} (ChkDVDCtl Class) - http://www.cyberlink.com/winxp/CheckDVD.cab

O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/11157ad6e01eea...RdxIE601_fr.cab

O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...wlscbase969.cab

O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicro.com/spyware-scan/as4web.cab

O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/a...AdSignerADP.cab

O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe (file missing)

O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - NetGroup - Politecnico di Torino - C:\Program Files\WinPcap\rpcapd.exe

O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe

O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe

O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe

O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe

 

--

End of file - 9038 bytes

 

 

Salut c-dyana

 

Poste un rapport HijackThis, stp ...

http://forum.telecharger.01net.com/microhe...messages-1.html

Posté(e)

slt

ces vraimen un mal entendu je texplike

car j connai pas tres bien ce forum pr tt te dire pas du tt ces une amie ki men a parler

et come je nai pas eu assez dexplication sur ce site javai poster un courrier depui hier et jai vu ke javai pas eu de nouvel de ki ke ce soit alor comme je ne sai pas commen sa fonctione jai vu ke mon message commencer a descendre en bas de la liste juska ce ke je le voyai plus sur la liste alor jai ecri dautre message pr ke lon puisse maider je pensai ke si lon voyai plus mon message on allai pas pouvoir me repondre et du coup jen ai poster 4 jcroi bien en tt et il reaparaissait alor du coup jme ss retrouver comme meme avec plusieur reponse et jme ss dit ke cest pas poli si je repon pas a tt le monde alor kon a bien voulu repondre a ma détresse

dsl jai pas fait expres jne c pas par contre yen une pers ki ma dit ke lon pouvait mettre nos mess en haut d la liste mais jne c tjr pas comen

excuse moi encore mais en tt cas je promet ke jai suivi ta procedure au debut jai pas tt compri car jsui vraimen une nul en ordi mais jai essayé de me raptrapé ds mes erreur et jespere ke jai bien suivi ta procedure jtenvoi tt mes rapport merci de me contacter jten pris

 

jtai mis celle la je sai ke tu ma pas demander de faire sa mai cetai une demande dune autre persone comme sa tu comprendra peut mieux et peut etre ke sa pourra nous aider jten poste dautre juska celle ke tu ma demander ok

 

LE RAPPORT DE KAPERSKY

 

<html>

<head>

<title>KASPERSKY ON-LINE SCANNER REPORT</title>

<meta http-equiv='Content-Type' content='text/html; charset=utf-8'>

</head>

 

<style>

.pagetitle { font-size:20px; color:#FFFFFF; font-family: Arial, Geneva, sans-serif; }

.text { font-size:11px; font-family: Arial, Geneva, sans-serif; }

TD { font-size:11px; font-family: Arial, Geneva, sans-serif; }

</style>

 

<body>

<table width='100%' height='110' border='0'>

<tr height='30' align='center' bgcolor='#005447'>

<td colspan='2' height='30' class='pagetitle'>

<b>KASPERSKY ON-LINE SCANNER REPORT</b>

</td>

</tr>

<tr height='70'>

<td colspan='2' height='70'>

Saturday, August 11, 2007 3:57:59 PM<br>

Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)<br>

Kaspersky On-line Scanner version : 5.0.83.0<br>

Dernière mise à jour de la base antivirus Kaspersky : 11/08/2007<br>

Enregistrements dans la base antivirus Kaspersky : 355229<br>

</td>

</tr>

<tr height='10'>

<td colspan='2' height='10'>

</td>

</tr>

</table>

<table width='100%' height='145' border='0'>

<tr height='20' bgcolor='#EFEBDE'>

<td colspan='2' height='20'><b>Paramètres d'analyse</b></td>

</tr>

<tr height='15'>

<td height='15' width='250'>Analyser avec la base antivirus suivante</td>

<td>standard</td>

</tr>

<tr height='15'>

<td height='15'>Analyser les archives</td>

<td>vrai</td>

</tr>

<tr height='15'>

<td height='15'>Analyser les bases de messagerie</td>

<td>vrai</td>

</tr>

<tr height='10'>

<td colspan='2' height='10'>

</td>

</tr>

<tr height='20' bgcolor='#EFEBDE'>

<td height='20'><b>Cible de l'analyse</b></td>

<td>Zones critiques</td>

</tr>

<tr height='20'>

<td colspan='2' height='20'>

C:\WINDOWS<br>

C:\DOCUME~1\fatiha\LOCALS~1\Temp\

</td>

</tr>

<tr height='10'>

<td colspan='2' height='10'>

</td>

</tr>

<tr height='20' bgcolor='#EFEBDE'>

<td colspan='2' height='20'><b>Statistiques de l'analyse</b></td>

</tr>

<tr height='15'>

<td height='15'>Total d'objets analysés</td>

<td>24484</td>

</tr>

<tr height='15'>

<td height='15'>Nombre de virus trouvés</td>

<td>0</td>

</tr>

<tr height='15'>

<td height='15'>Nombre d'objets infectés</td>

<td>0 / 0</td>

</tr>

<tr height='15'>

<td height='15'>Nombre d'objets suspects</td>

<td>0</td>

</tr>

<tr height='15'>

<td height='15'>Durée de l'analyse</td>

<td>00:33:31</td>

</tr>

</table>

<br>

<table width='100%' border='0'>

<tr height='20' bgcolor='#EFEBDE'>

<td height='20'><b>Nom de l'objet infecté</b></td>

<td width='200'><b>Nom du virus</b></td>

<td width='100'><b>Dernière action</b></td>

</tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\Debug\PASSWD.LOG </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\SchedLgU.Txt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\SoftwareDistribution\ReportingEvents.log </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\Sti_Trace.log </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\CatRoot2\edb.log </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\CatRoot2\tmp.edb </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\Antivirus.Evt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\AppEvent.Evt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\DEFAULT </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\default.LOG </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\Internet.evt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SAM </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SAM.LOG </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SecEvent.Evt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SECURITY </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SECURITY.LOG </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SOFTWARE </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\software.LOG </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SysEvent.Evt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\SYSTEM </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\config\system.LOG </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\h323log.txt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\Temp\Perflib_Perfdata_694.dat </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\Temp\_avast4_\Webshlock.txt </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\wiadebug.log </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\wiaservc.log </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\WINDOWS\WindowsUpdate.log </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\DOCUME~1\fatiha\LOCALS~1\Temp\_avast4_\unp128040681.tmp </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\DOCUME~1\fatiha\LOCALS~1\Temp\~DF2450.tmp </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\DOCUME~1\fatiha\LOCALS~1\Temp\~DF8BFC.tmp </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\DOCUME~1\fatiha\LOCALS~1\Temp\~DF8C11.tmp </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\DOCUME~1\fatiha\LOCALS~1\Temp\~DFCA75.tmp </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td height='20'>C:\DOCUME~1\fatiha\LOCALS~1\Temp\~DFCA82.tmp </td>

<td>L'objet est verrouillé </td>

<td>ignoré </td>

</tr>

<tr><td colspan='3' height='1' bgcolor='#EFEBDE'></td></tr>

<tr height='20'>

<td colspan='3' height='20'><b>Analyse terminée.</b></td>

</tr>

</table>

</body>

</html>

 

 

ET VOICI LE RAPPORT DE HIJACK THIS

 

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 17:28:46, on 11/08/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\spoolsv.exe

C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

C:\WINDOWS\VM303_STI.EXE

C:\Program Files\Athan\Athan.exe

C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe

C:\Program Files\Panicware\Pop-Up Stopper\dpps2.exe

C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

C:\WINDOWS\System32\FTRTSVC.exe

C:\WINDOWS\System32\HPZipm12.exe

C:\WINDOWS\system32\slserv.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe

C:\WINDOWS\wanmpsvc.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\WINDOWS\system32\wscntfy.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Windows Live\Messenger\msnmsgr.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Ares\Ares.exe

C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe

C:\Program Files\Windows NT\Accessoires\WORDPAD.EXE

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.orange.fr/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.01net.com/telecharger/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.01net.com/telecharger/

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

R3 - URLSearchHook: (no name) - {0A94B116-4504-4e26-AB05-E61E474AA38B} - C:\Program Files\AskPBar\SrchAstt\1.bin\A9SRCHAS.DLL

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: Ask Search Assistant BHO - {0A94B111-4504-4e26-AB05-E61E474AA38B} - C:\Program Files\AskPBar\SrchAstt\1.bin\A9SRCHAS.DLL

O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\eoRezo\EoAdv\EoRezoBHO.dll (file missing)

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll

O2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll

O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [bigDog303] C:\WINDOWS\VM303_STI.EXE VIMICRO USB PC Camera (ZC0301PLH)

O4 - HKLM\..\Run: [Athan] C:\Program Files\Athan\Athan.exe

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [Pop-Up Stopper] "C:\Program Files\Panicware\Pop-Up Stopper\dpps2.exe"

O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [Creative Error] C:\DOCUME~1\fatiha\APPLIC~1\PLATFO~1\LITEFRAGHOLD.exe

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')

O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/...arch.jhtml?p=ZN

O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.orange.fr (file missing) (HKCU)

O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm

O16 - DPF: {0878F049-D33E-45E0-A157-C36A6683CF25} - http://es6-scripts.dlv4.com/binaries/egacc...ss4_1063_XP.cab

O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab

O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204

O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) - http://housecall65.trendmicro.com/housecal...ivex/hcImpl.cab

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.mail.live.com/mail/w1/resources/MSNPUpld.cab

O16 - DPF: {54823A9D-6BAE-11D5-B519-0050BA2413EB} (ChkDVDCtl Class) - http://www.cyberlink.com/winxp/CheckDVD.cab

O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/11157ad6e01eea...RdxIE601_fr.cab

O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...wlscbase969.cab

O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicro.com/spyware-scan/as4web.cab

O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/a...AdSignerADP.cab

O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe (file missing)

O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - NetGroup - Politecnico di Torino - C:\Program Files\WinPcap\rpcapd.exe

O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe

O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe

O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe

O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe

 

--

End of file - 9038 bytes

 

---------------------------------------------------------

AVG Anti-Spyware - Rapport d'analyse

---------------------------------------------------------

 

+ Créé à: 19:14:43 11/08/2007

 

+ Résultat de l'analyse:

 

 

 

C:\Documents and Settings\fatiha\Cookies\fatiha@adtech[2].txt -> TrackingCookie.Adtech : Aucune action entreprise.

C:\Documents and Settings\fatiha\Cookies\fatiha@perf.overture[1].txt -> TrackingCookie.Overture : Aucune action entreprise.

C:\Documents and Settings\fatiha\Cookies\fatiha@edge.ru4[1].txt -> TrackingCookie.Ru4 : Aucune action entreprise.

C:\Documents and Settings\fatiha\Cookies\fatiha@smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.

C:\Documents and Settings\fatiha\Cookies\fatiha@weborama[1].txt -> TrackingCookie.Weborama : Aucune action entreprise.

 

 

Fin du rapport

 

ET VOICI CE KE TU MA DEMANDER DE FAIRE MAI JAVAI COMMENCER COMME TU M DIT JME SUI TROMPER

NETTOYAGE COMPLET - (22,060 secs)

------------------------------------------------------------------------------------------

127,2MB supprimés.

------------------------------------------------------------------------------------------

 

Détails des fichiers effacés

------------------------------------------------------------------------------------------

Fichiers Temporaires d'Internet Explorer (fichiers 6527) 115,5MB

Cookie:fatiha@2xmoinscher.com/(&H100001) 267 bytes

Cookie:fatiha@eulerian.net/(&H100001) 340 bytes

Cookie:fatiha@ads-uk.spray.net/(&H100001) 108 bytes

Cookie:fatiha@p16689.upd.trinityacquisitions.com/(&H100001) 87 bytes

Cookie:fatiha@www.2xmoinscher.com/(&H100001) 217 bytes

Cookie:fatiha@questionmarket.com/(&H100001) 285 bytes

Cookie:fatiha@ratp.info/(&H100001) 81 bytes

Cookie:fatiha@lycos.co.uk/(&H100001) 357 bytes

Cookie:fatiha@tracker.roitesting.com/(&H100001) 124 bytes

Cookie:fatiha@fr.yahoo.com/(&H100001) 68 bytes

Cookie:fatiha@adserver.aol.fr/(&H100001) 182 bytes

Cookie:fatiha@www.opodo.fr/(&H100001) 106 bytes

Cookie:fatiha@mykingo.com/(&H100001) 215 bytes

Cookie:fatiha@www.adtraxx.de(&H100001) 114 bytes

Cookie:fatiha@metrixlab58.customers.luna.net/(&H100001) 375 bytes

Cookie:fatiha@ad.zanox.com/(&H100001) 234 bytes

Cookie:fatiha@h26429.upd.trinityacquisitions.com/(&H100001) 87 bytes

Cookie:fatiha@p13707.upd.trinityacquisitions.com/(&H100001) 87 bytes

Cookie:fatiha@www.promovols.com/(&H100001) 287 bytes

Cookie:fatiha@bladi.net/(&H100001) 369 bytes

Cookie:fatiha@www.pixmania.com/(&H100001) 2,23KB

Cookie:fatiha@www.turntoislam.com/(&H100001) 176 bytes

Cookie:fatiha@mappy.com/(&H100001) 138 bytes

Cookie:fatiha@h11246.upd.trinityacquisitions.com/(&H100001) 88 bytes

Cookie:fatiha@www.govoyages.fr/(&H100001) 160 bytes

Cookie:fatiha@click-fr.com/(&H100001) 269 bytes

Cookie:fatiha@yoopitravel.com/(&H100001) 269 bytes

Cookie:fatiha@sysdepannage.com/(&H100001) 743 bytes

Cookie:fatiha@amazon.fr/(&H100001) 261 bytes

Cookie:fatiha@forum.astel.be/(&H100001) 489 bytes

Cookie:fatiha@tracker.affistats.com/(&H100001) 3,18KB

Cookie:fatiha@www.partners-finances.com/(&H100001) 113 bytes

Cookie:fatiha@webscanner.kaspersky.fr/(&H100001) 114 bytes

Cookie:fatiha@www.captainprice.com/(&H100001) 122 bytes

Cookie:fatiha@h4452.upd.trinityacquisitions.com/(&H100001) 87 bytes

Cookie:fatiha@linternaute.com/(&H100001) 1,24KB

Cookie:fatiha@q24990.upd.trinityacquisitions.com/(&H100001) 88 bytes

Cookie:fatiha@zebulon.fr/(&H100001) 602 bytes

Cookie:fatiha@update.microsoft.com/(&H100001) 148 bytes

Cookie:fatiha@www.googleadservices.com/pagead/conversion/1072648140/(&H100001) 412 bytes

Cookie:fatiha@c22033.upd.trinityacquisitions.com/(&H100001) 88 bytes

Cookie:fatiha@ebay.com/(&H100001) 173 bytes

Cookie:fatiha@banner.ambercoastcasino.com/(&H100001) 206 bytes

Cookie:fatiha@www.premiereclasse.fr/(&H100001) 145 bytes

Cookie:fatiha@affiliatis.com/(&H100001) 359 bytes

Cookie:fatiha@affilcenter.com/(&H100001) 105 bytes

Cookie:fatiha@wanadoo.w-ha.com/(&H100001) 99 bytes

Cookie:fatiha@live.com/(&H100001) 403 bytes

Cookie:fatiha@anyway.com/(&H100001) 80 bytes

Cookie:fatiha@deco-smart.com/(&H100001) 403 bytes

Cookie:fatiha@www.topachat.com/(&H100001) 600 bytes

Cookie:fatiha@humanite.fr/(&H100001) 290 bytes

Cookie:fatiha@www.france-credit.fr/(&H100001) 728 bytes

Cookie:fatiha@www.mediatis.fr/(&H100001) 72 bytes

Cookie:fatiha@revsci.net/(&H100001) 250 bytes

Cookie:fatiha@int.sitestat.com/ebookers/(&H100001) 93 bytes

Cookie:fatiha@real.com/(&H100001) 90 bytes

Cookie:fatiha@www.sephora.fr/(&H100001) 80 bytes

Cookie:fatiha@rad.live.com/(&H100001) 700 bytes

Cookie:fatiha@www.aidoforum.com/(&H100001) 174 bytes

Cookie:fatiha@karavel.112.2o7.net/(&H100001) 122 bytes

Cookie:fatiha@chtah.com/(&H100001) 106 bytes

Cookie:fatiha@login.live.com/(&H100001) 175 bytes

Cookie:fatiha@netavenir.com/(&H100001) 112 bytes

Cookie:fatiha@cdiscount.com/(&H100001) 1,15KB

Cookie:fatiha@i2as.idregie.com/(&H100001) 108 bytes

Cookie:fatiha@ads.highmetrics.com/meteof(&H100001) 767 bytes

Cookie:fatiha@wanadoo.fr/(&H100001) 87 bytes

Cookie:fatiha@pacificpoker.com/(&H100001) 76 bytes

Cookie:fatiha@www.laboutique.bouyguestelecom.fr/(&H100001) 113 bytes

Cookie:fatiha@www.fr.lastminute.com/(&H100001) 294 bytes

Cookie:fatiha@g29186.upd.maximumexperience.com/(&H100001) 85 bytes

Cookie:fatiha@cyberlink.com/(&H100001) 83 bytes

Cookie:fatiha@ratiatum.fr.intellitxt.com/(&H100001) 131 bytes

Cookie:fatiha@www.buycentral.fr/(&H100001) 481 bytes

Cookie:fatiha@lastminute.com/(&H100001) 76 bytes

Cookie:fatiha@fe.lea.lycos.fr/(&H100001) 106 bytes

Cookie:fatiha@www.onvapartir.com/(&H100001) 93 bytes

Cookie:fatiha@p6661.upd.trinityacquisitions.com/(&H100001) 87 bytes

Cookie:fatiha@stat.splio.com/(&H100001) 238 bytes

Cookie:fatiha@ad.uk.tangozebra.com/a(&H100001) 99 bytes

Cookie:fatiha@www.kaspersky.com/(&H100001) 94 bytes

Cookie:fatiha@france-abonnements.fr/(&H100001) 296 bytes

Cookie:fatiha@tracking.powerplatebybog.com/phpmv2/(&H100001) 372 bytes

Cookie:fatiha@google.com/(&H100001) 135 bytes

Cookie:fatiha@lediet.fr/(&H100001) 77 bytes

Cookie:fatiha@ask.com/(&H100001) 386 bytes

Cookie:fatiha@fl01.ct2.comclick.com/(&H100001) 405 bytes

Cookie:fatiha@expedia.com/(&H100001) 114 bytes

Cookie:fatiha@sdc.legitiname.net/(&H100001) 282 bytes

Cookie:fatiha@ad.directaclick.com/(&H100001) 186 bytes

Cookie:fatiha@tag.e-i.com/(&H100001) 90 bytes

Cookie:fatiha@adv.surinter.net/(&H100001) 692 bytes

Cookie:fatiha@www.wtselections.com/CarritoKalahari_Fr_tarjeta/(&H100001) 516 bytes

Cookie:fatiha@astel.be/(&H100001) 284 bytes

Cookie:fatiha@rms.adobe.com/(&H100001) 100 bytes

Cookie:fatiha@cuisineaz.com/(&H100001) 347 bytes

Cookie:fatiha@www.viamichelin.fr/(&H100001) 966 bytes

Cookie:fatiha@www1.lebonjob.net/(&H100001) 163 bytes

Cookie:fatiha@club-internet.fr/(&H100001) 288 bytes

Cookie:fatiha@x14163.upd.trinityacquisitions.com/(&H100001) 88 bytes

Cookie:fatiha@adbrite.com/(&H100001) 306 bytes

Cookie:fatiha@09518067.eu1.badoo.com/(&H100001) 328 bytes

Cookie:fatiha@voyages-sncf.com/(&H100001) 1,21KB

Cookie:fatiha@weborama.fr/(&H100001) 191 bytes

Cookie:fatiha@www.crickee.com/(&H100001) 115 bytes

Cookie:fatiha@espace.netavenir.com/diffusion/(&H100001) 371 bytes

Cookie:fatiha@hp.com/(&H100001) 169 bytes

Cookie:fatiha@dailymotion.com/(&H100001) 244 bytes

Cookie:fatiha@maps.yahoo.com/(&H100001) 73 bytes

Cookie:fatiha@l6501.upd.trinityacquisitions.com/(&H100001) 86 bytes

Cookie:fatiha@x29084.upd.trinityacquisitions.com/(&H100001) 86 bytes

Cookie:fatiha@windowsmarketplace.com/(&H100001) 147 bytes

Cookie:fatiha@www.kiaramedia.com/(&H100001) 81 bytes

Cookie:fatiha@www.boursorama.com/(&H100001) 269 bytes

Cookie:fatiha@www.netmastering2.net/(&H100001) 118 bytes

Cookie:fatiha@www.naxetris.com/(&H100001) 101 bytes

Cookie:fatiha@tuneup.fr/(&H100001) 519 bytes

Cookie:fatiha@iapref.orange.fr/(&H100001) 97 bytes

Cookie:fatiha@rad.msn.com/(&H100001) 798 bytes

Cookie:fatiha@kontera.com/(&H100001) 171 bytes

Cookie:fatiha@mysearch.com/(&H100001) 234 bytes

Cookie:fatiha@www.bouyguestelecom.fr/(&H100001) 98 bytes

Cookie:fatiha@www.agence-de-voyages.fr/(&H100001) 253 bytes

Cookie:fatiha@fr.netlog.com/(&H100001) 405 bytes

Cookie:fatiha@bigpoint.fr/(&H100001) 332 bytes

Cookie:fatiha@www.cofinoga.fr/reserve-credits/(&H100001) 100 bytes

Cookie:fatiha@ideesnet.com/(&H100001) 77 bytes

Cookie:fatiha@grouper.com/(&H100001) 100 bytes

Cookie:fatiha@www.toolbar.de/(&H100001) 100 bytes

Cookie:fatiha@z10598.upd.trinityacquisitions.com/(&H100001) 87 bytes

Cookie:fatiha@www.partage.org/(&H100001) 107 bytes

Cookie:fatiha@adnext.fr/(&H100001) 1,32KB

Cookie:fatiha@leblogconso.com/(&H100001) 335 bytes

Cookie:fatiha@ad.adserverplus.com/(&H100001) 416 bytes

Cookie:fatiha@shopping.monsieurprix.com/(&H100001) 196 bytes

Cookie:fatiha@32vegas.com/(&H100001) 102 bytes

Cookie:fatiha@g14715.upd.maximumexperience.com/(&H100001) 86 bytes

Cookie:fatiha@adtech.de/(&H100001) 172 bytes

Cookie:fatiha@monsieurprix.com/(&H100001) 100 bytes

Cookie:fatiha@k14338.upd.trinityacquisitions.com/(&H100001) 87 bytes

Cookie:fatiha@smooki.com/(&H100001) 257 bytes

Cookie:fatiha@startmeup.fr/(&H100001) 170 bytes

Cookie:fatiha@www.gsm3000.com/(&H100001) 74 bytes

Cookie:fatiha@abonnement.aliceadsl.fr/(&H100001) 364 bytes

Cookie:fatiha@d2.advertserve.com/(&H100001) 112 bytes

Cookie:fatiha@expedia.fr/(&H100001) 252 bytes

Cookie:fatiha@fr.sitestat.com/europcar/resaweb/(&H100001) 106 bytes

Cookie:fatiha@network.adsmarket.com/(&H100001) 463 bytes

Cookie:fatiha@samsungmobile.com/(&H100001) 103 bytes

Cookie:fatiha@edt02.net/(&H100001) 2,91KB

Cookie:fatiha@fr.ebayrtm.com/rtm(&H100001) 893 bytes

Cookie:fatiha@pub.amoureux.com/(&H100001) 579 bytes

Cookie:fatiha@polenord.net/(&H100001) 1,05KB

Cookie:fatiha@pagesjaunes.fr/(&H100001) 84 bytes

Cookie:fatiha@elle.fr/(&H100001) 315 bytes

Cookie:fatiha@askredir.com/(&H100001) 234 bytes

Cookie:fatiha@u2617.upd.trinityacquisitions.com/(&H100001) 87 bytes

Cookie:fatiha@hi5.com/(&H100001) 524 bytes

Cookie:fatiha@info.assedic.fr/(&H100001) 106 bytes

Cookie:fatiha@www.distrigame.com/(&H100001) 193 bytes

Cookie:fatiha@www.vivacances.fr/(&H100001) 82 bytes

Cookie:fatiha@mappy.com/user-addresses(&H100001) 368 bytes

Cookie:fatiha@112.2o7.net/(&H100001) 139 bytes

Cookie:fatiha@ibase.fr/(&H100001) 161 bytes

Cookie:fatiha@fr.wintersearch.com/(&H100001) 374 bytes

Cookie:fatiha@espace.netavenir.com/(&H100001) 104 bytes

Cookie:fatiha@cybermonitor.com/(&H100001) 93 bytes

Cookie:fatiha@yourmedia.com/(&H100001) 98 bytes

Cookie:fatiha@tracking.lsfinteractive.com/(&H100001) 134 bytes

Cookie:fatiha@budgetvoyages.com/(&H100001) 311 bytes

Cookie:fatiha@atraxio.com/(&H100001) 134 bytes

Cookie:fatiha@h10133.upd.trinityacquisitions.com/(&H100001) 88 bytes

Cookie:fatiha@fr.sitestat.com/europcar/europcar-fr/(&H100001) 110 bytes

Cookie:fatiha@agence.voyages-sncf.com/(&H100001) 101 bytes

Cookie:fatiha@abonnez-vous.orange.fr/(&H100001) 330 bytes

Cookie:fatiha@u24026.upd.trinityacquisitions.com/(&H100001) 88 bytes

Cookie:fatiha@tp.msn.com/fr-fr/(&H100001) 71 bytes

Cookie:fatiha@journaldunet.com/(&H100001) 521 bytes

Cookie:fatiha@allezdiscount.com/(&H100001) 370 bytes

Cookie:fatiha@ke.voila.fr/(&H100001) 89 bytes

Cookie:fatiha@l26113.upd.maximumexperience.com/(&H100001) 85 bytes

Cookie:fatiha@x30905.upd.maximumexperience.com/(&H100001) 86 bytes

Cookie:fatiha@rueducommerce.fr/(&H100001) 1,07KB

Cookie:fatiha@eu1.badoo.com/(&H100001) 300 bytes

Cookie:fatiha@accorhotels.com/(&H100001) 90 bytes

Cookie:fatiha@edge.ru4.com/(&H100001) 110 bytes

Cookie:fatiha@albani-center.com/(&H100001) 101 bytes

Cookie:fatiha@www.govoyages.com/(&H100001) 162 bytes

Cookie:fatiha@imrworldwide.com/cgi-bin(&H100001) 226 bytes

Cookie:fatiha@voyagermoinscher.com/(&H100001) 90 bytes

Cookie:fatiha@emailingfactory.com/(&H100001) 128 bytes

Cookie:fatiha@tsw0.com/(&H100001) 796 bytes

Cookie:fatiha@cmonjour.com/(&H100001) 441 bytes

Cookie:fatiha@www.caisse-epargne.fr/(&H100001) 333 bytes

Cookie:fatiha@d6213.upd.trinityacquisitions.com/(&H100001) 87 bytes

Cookie:fatiha@clic.reussissonsensemble.fr/(&H100001) 1,65KB

Cookie:fatiha@softcomputing.com/(&H100001) 109 bytes

Cookie:fatiha@dada.net/(&H100001) 389 bytes

Cookie:fatiha@reactivpub.fr/(&H100001) 314 bytes

Cookie:fatiha@www25.sephora.fr/(&H100001) 97 bytes

Cookie:fatiha@maisondugsm.com/(&H100001) 321 bytes

Cookie:fatiha@olx.fr/(&H100001) 1,33KB

Cookie:fatiha@ambercoastcasino.com/(&H100001) 113 bytes

Cookie:fatiha@webbooking.louvre-hotels.fr/(&H100001) 338 bytes

Cookie:fatiha@ads.adomos.com/(&H100001) 102 bytes

Cookie:fatiha@ccscan.com/(&H100001) 87 bytes

Cookie:fatiha@webtracker.sfr.fr/(&H100001) 130 bytes

Cookie:fatiha@personalfirewall.comodo.com/(&H100001) 462 bytes

Cookie:fatiha@benchmark.fr/(&H100001) 320 bytes

Cookie:fatiha@www.i-trail.com/(&H100001) 164 bytes

Cookie:fatiha@www.ponroy.com/(&H100001) 149 bytes

Cookie:fatiha@francetelecom.com/(&H100001) 233 bytes

Cookie:fatiha@kadodujour.com/(&H100001) 265 bytes

Cookie:fatiha@fr.kelkoo.com/(&H100001) 102 bytes

Cookie:fatiha@www.priceminister.com/(&H100001) 292 bytes

Cookie:fatiha@amoureux.com/(&H100001) 573 bytes

Cookie:fatiha@www.france-abonnements.fr/(&H100001) 152 bytes

Cookie:fatiha@forum.magicmaman.com/viepratique/allocation-familiale-pret-banque/(&H100001) 156 bytes

Cookie:fatiha@www.cdiscount.com/(&H100001) 317 bytes

Cookie:fatiha@carasexe.com/(&H100001) 474 bytes

Cookie:fatiha@www.teleshopping.fr/(&H100001) 162 bytes

Cookie:fatiha@www.regiecpm.com/gestion/(&H100001) 91 bytes

Cookie:fatiha@www.smooki.com/(&H100001) 112 bytes

Cookie:fatiha@w2467.upd.trinityacquisitions.com/(&H100001) 87 bytes

Cookie:fatiha@track.effiliation.com/(&H100001) 89 bytes

Cookie:fatiha@ebayobjects.com/(&H100001) 88 bytes

Cookie:fatiha@meetic.fr/(&H100001) 288 bytes

Cookie:fatiha@www.lahalle.com/(&H100001) 158 bytes

Cookie:fatiha@by118w.bay118.mail.live.com/(&H100001) 98 bytes

Cookie:fatiha@azjmp.com/(&H100001) 276 bytes

Cookie:fatiha@godlikeproductions.com/(&H100001) 281 bytes

Cookie:fatiha@c30442.upd.trinityacquisitions.com/(&H100001) 88 bytes

Cookie:fatiha@jessica-alba.com/(&H100001) 269 bytes

Cookie:fatiha@partyfriendfinder.com/(&H100001) 335 bytes

Cookie:fatiha@www1.monsieurprix.com/(&H100001) 80 bytes

Cookie:fatiha@www.expedia.fr/(&H100001) 75 bytes

Cookie:fatiha@eas.apm.emediate.eu/(&H100001) 100 bytes

Cookie:fatiha@holiday-rentals.co.uk/(&H100001) 122 bytes

Cookie:fatiha@catf.fr/(&H100001) 251 bytes

Cookie:fatiha@weba.cdiscount.com/(&H100001) 98 bytes

Cookie:fatiha@247realmedia.com/(&H100001) 194 bytes

Cookie:fatiha@j32616.upd.maximumexperience.com/(&H100001) 86 bytes

Cookie:fatiha@snap.com/(&H100001) 93 bytes

Cookie:fatiha@k.keyade.com/(&H100001) 172 bytes

Cookie:fatiha@www.ramdam.com/(&H100001) 74 bytes

Cookie:fatiha@ww2.affilcenter.com/(&H100001) 518 bytes

Cookie:fatiha@ads.pointroll.com/(&H100001) 412 bytes

Cookie:fatiha@clickaider.com/(&H100001) 93 bytes

Cookie:fatiha@acheter-moins-cher.com/(&H100001) 319 bytes

Cookie:fatiha@www.clickmanage.com/(&H100001) 238 bytes

Cookie:fatiha@www.evasion-online.com/(&H100001) 172 bytes

Cookie:fatiha@cofinoga.fr/(&H100001) 257 bytes

Cookie:fatiha@www.hi5.com/(&H100001) 143 bytes

Cookie:fatiha@europcar.fr/(&H100001) 338 bytes

Cookie:fatiha@torrent-dl.info/(&H100001) 371 bytes

Cookie:fatiha@www.access-voyage.fr/(&H100001) 249 bytes

Cookie:fatiha@l18238.upd.trinityacquisitions.com/(&H100001) 88 bytes

Cookie:fatiha@rdj.carasexe.com/(&H100001) 307 bytes

Cookie:fatiha@www.bigpoint.fr/(&H100001) 143 bytes

Cookie:fatiha@partirpascher.com/(&H100001) 365 bytes

Cookie:fatiha@track.webtrekk.de/349304523233998/(&H100001) 112 bytes

Cookie:fatiha@hotelformule1.com/(&H100001) 494 bytes

Cookie:fatiha@valueclick.net/(&H100001) 102 bytes

Cookie:fatiha@element5.com/(&H100001) 90 bytes

Cookie:fatiha@u14093.upd.maximumexperience.com/(&H100001) 85 bytes

Cookie:fatiha@kelkoo.com/(&H100001) 80 bytes

Cookie:fatiha@serving-sys.com/(&H100001) 2,99KB

Cookie:fatiha@ccbparis.fr/(&H100001) 183 bytes

Cookie:fatiha@sfr.122.2o7.net/(&H100001) 118 bytes

Cookie:fatiha@prizee.com/(&H100001) 412 bytes

Cookie:fatiha@048269285.eu1.badoo.com/(&H100001) 342 bytes

Cookie:fatiha@v20407.upd.trinityacquisitions.com/(&H100001) 88 bytes

Cookie:fatiha@vivelesrondes.com/(&H100001) 333 bytes

Cookie:fatiha@www.drumrush.com/go/(&H100001) 81 bytes

Cookie:fatiha@orange.fr/(&H100001) 167 bytes

Cookie:fatiha@kelkoo.fr/(&H100001) 165 bytes

Cookie:fatiha@www.mistergooddeal.com/v2(&H100001) 358 bytes

Cookie:fatiha@msnportal.112.2o7.net/(&H100001) 124 bytes

Cookie:fatiha@zlio.com/(&H100001) 491 bytes

Cookie:fatiha@www.jessica-alba.com/(&H100001) 242 bytes

Cookie:fatiha@www.gsa-sport.com/(&H100001) 92 bytes

Cookie:fatiha@tagged.com/(&H100001) 93 bytes

Cookie:fatiha@vueling.com/(&H100001) 315 bytes

Cookie:fatiha@www.partirpascher.com/(&H100001) 245 bytes

Cookie:fatiha@shopreflex.com/(&H100001) 325 bytes

Cookie:fatiha@www.chicdressing.com/(&H100001) 105 bytes

Cookie:fatiha@www.promosejours.com/(&H100001) 346 bytes

Cookie:fatiha@www.ricaud.com/(&H100001) 72 bytes

Cookie:fatiha@www.ocean-villas.com/(&H100001) 169 bytes

Cookie:fatiha@g14480.upd.maximumexperience.com/(&H100001) 86 bytes

Cookie:fatiha@www.espanabed.com/(&H100001) 111 bytes

Cookie:fatiha@sonyeurope.112.2o7.net/(&H100001) 125 bytes

Cookie:fatiha@ads.planetactive.com/(&H100001) 93 bytes

Cookie:fatiha@lycos.fr/(&H100001) 677 bytes

Cookie:fatiha@ftv-publicite.fr/(&H100001) 171 bytes

Cookie:fatiha@t-a-o.com/(&H100001) 254 bytes

Cookie:fatiha@c27283.upd.maximumexperience.com/(&H100001) 86 bytes

Cookie:fatiha@hightech-occasion.com/(&H100001) 276 bytes

Cookie:fatiha@f22652.upd.trinityacquisitions.com/(&H100001) 86 bytes

Cookie:fatiha@xiti.com/(&H100001) 106 bytes

Cookie:fatiha@coriolis.com/(&H100001) 273 bytes

Cookie:fatiha@hebergement.lycos.fr/(&H100001) 294 bytes

Cookie:fatiha@sprice.com/(&H100001) 566 bytes

Cookie:fatiha@kiabi.com/(&H100001) 424 bytes

Cookie:fatiha@girlygadget.fr/(&H100001) 330 bytes

Cookie:fatiha@pcentraide.com/(&H100001) 375 bytes

Cookie:fatiha@statsweb.bnpparibas.com/(&H100001) 200 bytes

Cookie:fatiha@od2.com/(&H100001) 102 bytes

Cookie:fatiha@v20239.upd.trinityacquisitions.com/(&H100001) 88 bytes

Cookie:fatiha@fnac.112.2o7.net/(&H100001) 119 bytes

Cookie:fatiha@evasion-online.com/(&H100001) 335 bytes

Cookie:fatiha@o29104.upd.trinityacquisitions.com/(&H100001) 88 bytes

Cookie:fatiha@www.vivelesrondes.com/(&H100001) 178 bytes

Cookie:fatiha@h24444.upd.trinityacquisitions.com/(&H100001) 87 bytes

Cookie:fatiha@adinterax.com/(&H100001) 279 bytes

Cookie:fatiha@banner.32vegas.com/(&H100001) 386 bytes

Cookie:fatiha@www.laredoute.fr/(&H100001) 93 bytes

Cookie:fatiha@www.01net.com/(&H100001) 236 bytes

Cookie:fatiha@pprnl.net/(&H100001) 100 bytes

Cookie:fatiha@mvacances.com/(&H100001) 401 bytes

Cookie:fatiha@www.boostore.com/(&H100001) 350 bytes

Cookie:fatiha@extrafilm.fr/(&H100001) 261 bytes

Cookie:fatiha@p9716.upd.maximumexperience.com/(&H100001) 84 bytes

Cookie:fatiha@quelle.fr/(&H100001) 358 bytes

Cookie:fatiha@onlinestores.metaservices.microsoft.com/serviceswitching/(&H100001) 146 bytes

Cookie:fatiha@opodo.122.2o7.net/(&H100001) 121 bytes

Cookie:fatiha@voyages.anyway.com/(&H100001) 187 bytes

Cookie:fatiha@www.fitnessboutique.fr/(&H100001) 200 bytes

Cookie:fatiha@perf.overture.com/(&H100001) 114 bytes

Cookie:fatiha@tradedoubler.parship.fr/(&H100001) 408 bytes

Cookie:fatiha@www.cibleclick.com/(&H100001) 127 bytes

Cookie:fatiha@estat.com/(&H100001) 85 bytes

Cookie:fatiha@indextools.com/(&H100001) 409 bytes

Cookie:fatiha@cpvfeed.com/(&H100001) 1,48KB

Cookie:fatiha@a.az4.com/(&H100001) 200 bytes

Cookie:fatiha@fnac.com/(&H100001) 878 bytes

Cookie:fatiha@ads.adbrite.com/(&H100001) 94 bytes

Cookie:fatiha@g21153.upd.trinityacquisitions.com/(&H100001) 88 bytes

Cookie:fatiha@carrefourinternet.com/(&H100001) 82 bytes

Cookie:fatiha@timecash.ebuyclub.com/(&H100001) 184 bytes

Cookie:fatiha@action.metaffiliation.com/(&H100001) 844 bytes

Cookie:fatiha@www.grandjeu.fr/switchcup/(&H100001) 374 bytes

Cookie:fatiha@masalledesport.com/(&H100001) 341 bytes

Cookie:fatiha@w7980.upd.trinityacquisitions.com/(&H100001) 87 bytes

Cookie:fatiha@fr.match.com/(&H100001) 637 bytes

Cookie:fatiha@www.bobs-tools.com/go/(&H100001) 84 bytes

Cookie:fatiha@caprices-a-deux.com/(&H100001) 114 bytes

Cookie:fatiha@ems6.net/(&H100001) 1,69KB

Cookie:fatiha@bs.serving-sys.com/(&H100001) 139 bytes

Cookie:fatiha@slyck.com/(&H100001) 257 bytes

Cookie:fatiha@power-plate.fr/(&H100001) 366 bytes

Cookie:fatiha@www.elleadore.com/(&H100001) 281 bytes

Cookie:fatiha@idregie.com/(&H100001) 574 bytes

Cookie:fatiha@www.adserver5.com/(&H100001) 74 bytes

Cookie:fatiha@www.googleadservices.com/pagead/conversion/1061999757/(&H100001) 525 bytes

Cookie:fatiha@fr.sitestat.com/europcar/(&H100001) 98 bytes

Cookie:fatiha@eqtracking.com/(&H100001) 239 bytes

Cookie:fatiha@aidoforum.fr.intellitxt.com/(&H100001) 133 bytes

Cookie:fatiha@infos.pierrericaud.com/(&H100001) 123 bytes

Cookie:fatiha@toilokdo.com/(&H100001) 340 bytes

Cookie:fatiha@ratiatum.com/(&H100001) 300 bytes

Cookie:fatiha@avantivirus.fr/(&H100001) 304 bytes

Cookie:fatiha@w19398.upd.maximumexperience.com/(&H100001) 86 bytes

Cookie:fatiha@banner.eurogrand.com/(&H100001) 190 bytes

Cookie:fatiha@www.01men.com/(&H100001) 152 bytes

Cookie:fatiha@capublicite.fr/(&H100001) 90 bytes

Cookie:fatiha@preview.qiran.com/(&H100001) 398 bytes

Cookie:fatiha@nioumedia.com/(&H100001) 95 bytes

Cookie:fatiha@www.malekal.com/phpmv2/(&H100001) 780 bytes

Cookie:fatiha@o28845.upd.maximumexperience.com/(&H100001) 86 bytes

Cookie:fatiha@avast.com/(&H100001) 270 bytes

Cookie:fatiha@www.hotelclub.com/(&H100001) 90 bytes

Cookie:fatiha@ilyesfff.carrefourinternet.com/(&H100001) 298 bytes

Cookie:fatiha@www.aeroportsdeparis.fr/(&H100001) 198 bytes

Cookie:fatiha@www.commentcamarche.net/(&H100001) 115 bytes

Cookie:fatiha@www.googleadservices.com/pagead/conversion/1070643409/(&H100001) 388 bytes

Cookie:fatiha@materielfitness.com/(&H100001) 405 bytes

Cookie:fatiha@quantserve.com/(&H100001) 101 bytes

Cookie:fatiha@clubic.com/(&H100001) 78 bytes

Cookie:fatiha@s3164.upd.maximumexperience.com/(&H100001) 84 bytes

Cookie:fatiha@vertbaudet.fr/(&H100001) 150 bytes

Cookie:fatiha@meteo.espace2001.com/(&H100001) 404 bytes

Cookie:fatiha@hotelclub.com/(&H100001) 334 bytes

Cookie:fatiha@p10130.upd.trinityacquisitions.com/(&H100001) 87 bytes

Cookie:fatiha@www.musulmane.com/(&H100001) 78 bytes

Cookie:fatiha@majoke.com/(&H100001) 255 bytes

Cookie:fatiha@sdv.fr/(&H100001) 83 bytes

Cookie:fatiha@forum.malekal.com/(&H100001) 99 bytes

Cookie:fatiha@forum.telecharger.01net.com/(&H100001) 86 bytes

Cookie:fatiha@tf1.fr/(&H100001) 83 bytes

Cookie:fatiha@www.infos-du-net.com/(&H100001) 88 bytes

Cookie:fatiha@www.googleadservices.com/pagead/conversion/1062308990/(&H100001) 556 bytes

Cookie:fatiha@partners-finances.com/(&H100001) 115 bytes

Cookie:fatiha@www.pagesjaunes.fr/(&H100001) 128 bytes

Cookie:fatiha@pap.fr/(&H100001) 727 bytes

Cookie:fatiha@u18980.upd.maximumexperience.com/(&H100001) 86 bytes

Cookie:fatiha@k23069.upd.maximumexperience.com/(&H100001) 85 bytes

Cookie:fatiha@mininova.org/(&H100001) 340 bytes

Cookie:fatiha@redcatsusa.com/(&H100001) 117 bytes

Cookie:fatiha@gsm3000.com/(&H100001) 258 bytes

Cookie:fatiha@partners-finances.netmastering2.net/(&H100001) 135 bytes

Cookie:fatiha@s8440.upd.maximumexperience.com/(&H100001) 85 bytes

Cookie:fatiha@leo.hi5.com/(&H100001) 68 bytes

Cookie:fatiha@spaces.live.com/(&H100001) 626 bytes

Cookie:fatiha@searchportal.information.com/(&H100001) 469 bytes

Cookie:fatiha@moncompte.neuf.fr/(&H100001) 75 bytes

Cookie:fatiha@eurogrand.com/(&H100001) 104 bytes

Cookie:fatiha@toujoursmoinscher.com/(&H100001) 280 bytes

Cookie:fatiha@toplist.cz/(&H100001) 74 bytes

Cookie:fatiha@cid-3d80b232001be8ad.spaces.live.com/(&H100001) 459 bytes

Cookie:fatiha@la-rose-des-vents.fr/(&H100001) 345 bytes

Cookie:fatiha@int.sitestat.com/cassava/new-pcp/(&H100001) 106 bytes

Cookie:fatiha@www.clubic.com/(&H100001) 121 bytes

Cookie:fatiha@ewido.net/(&H100001) 129 bytes

Cookie:fatiha@kingoloto.fr/(&H100001) 391 bytes

Cookie:fatiha@i-trail.com/(&H100001) 259 bytes

Cookie:fatiha@www.rencontres-musulmanes.com/chat/(&H100001) 519 bytes

Cookie:fatiha@wysistat.com/(&H100001) 426 bytes

Cookie:fatiha@emsisoft.net/(&H100001) 302 bytes

Cookie:fatiha@tictacphoto.com/(&H100001) 371 bytes

Cookie:fatiha@promobenef.com/(&H100001) 929 bytes

Cookie:fatiha@lefigaro.fr/(&H100001) 271 bytes

Cookie:fatiha@fe.lea.lycos.co.uk/(&H100001) 181 bytes

Cookie:fatiha@revenue.net/(&H100001) 196 bytes

Cookie:fatiha@mypersonalexpression.com/(&H100001) 571 bytes

Cookie:fatiha@ad.directanetworks.com/(&H100001) 192 bytes

Cookie:fatiha@smartadserver.com/(&H100001) 397 bytes

Cookie:fatiha@www.maiparis.com/phpmyvisites/(&H100001) 126 bytes

Cookie:fatiha@livebackstage.spaces.live.com/(&H100001) 451 bytes

Cookie:fatiha@z19110.upd.maximumexperience.com/(&H100001) 86 bytes

Cookie:fatiha@aufeminin.com/(&H100001) 78 bytes

Cookie:fatiha@g23166.upd.maximumexperience.com/(&H100001) 86 bytes

Cookie:fatiha@m20049.upd.maximumexperience.com/(&H100001) 85 bytes

Cookie:fatiha@avis-membres.ebay.fr/(&H100001) 1,09KB

Cookie:fatiha@spock.com/(&H100001) 312 bytes

Cookie:fatiha@t17806.upd.maximumexperience.com/(&H100001) 86 bytes

Cookie:fatiha@yves-rocher.fr/(&H100001) 74 bytes

Cookie:fatiha@www.maisondugsm.com/(&H100001) 217 bytes

Cookie:fatiha@k9213.upd.maximumexperience.com/(&H100001) 85 bytes

Cookie:fatiha@indexstats.com/(&H100001) 518 bytes

Cookie:fatiha@www.googleadservices.com/pagead/conversion/1062189249/(&H100001) 390 bytes

Cookie:fatiha@attr-search.ebay.fr/(&H100001) 1,09KB

Cookie:fatiha@boutique-power-plate.fr/(&H100001) 414 bytes

Cookie:fatiha@www.personalfirewall.comodo.com/(&H100001) 287 bytes

Cookie:fatiha@p.live.com/(&H100001) 103 bytes

Cookie:fatiha@ssl-hints.netflame.cc/(&H100001) 163 bytes

Cookie:fatiha@phonimedia.com/(&H100001) 266 bytes

Cookie:fatiha@3.adbrite.com/(&H100001) 90 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@031546163.eu1.badoo[2].txt 302 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@2xmoinscher[2].txt 368 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@3suisses[1].txt 85 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@81.255.72[2].txt 383 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@action.metaffiliation[1].txt 1,27KB

C:\Documents and Settings\fatiha\Cookies\fatiha@action.metaffiliation[2].txt 164 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@ad.cibleclick[2].txt 110 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@ad.uk.tangozebra[1].txt 100 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@ads.revsci[1].txt 964 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@affiliates.babylon[2].txt 259 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@affiliation.fotovista[1].txt 230 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@aidoforum[1].txt 264 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@appartcity[2].txt 267 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@ask-traduction[2].txt 414 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@atraxio[1].txt 134 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@aufeminin[1].txt 653 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@ayb.netbios-wait[1].txt 76 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@b11506.upd.trinityacquisitions[1].txt 88 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@b9657.upd.maximumexperience[1].txt 85 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@babylon[2].txt 431 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@benchmark[2].txt 318 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@bladi[1].txt 351 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@bladi[2].txt 361 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@blog.chiwalou[2].txt 407 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@CA09D284.txt 408 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@cabestan[1].txt 218 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@CAEFX5DP.txt 528 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@CAFOI5R0.txt 524 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@CALCUK70.txt 576 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@categorie.francite[3].txt 357 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@chicdressing[1].txt 326 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@count.sysdepannage[1].txt 529 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@crickee[1].txt 316 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@d10635.upd.maximumexperience[1].txt 84 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@d4767.upd.trinityacquisitions[1].txt 87 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@decdna[2].txt 182 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@digixo[2].txt 386 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@directivepub[1].txt 275 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@doctissimo[1].txt 423 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@download[2].txt 645 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@ebayobjects[2].txt 88 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@ebay[1].txt 141 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@ebay[4].txt 141 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@ebuyclub[1].txt 612 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@edgb2b[1].txt 444 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@edt02[2].txt 815 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@elleraconte[1].txt 269 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@empruntis[1].txt 262 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@ems6[1].txt 170 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@espanabed[1].txt 308 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@eulerian[1].txt 342 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@eulerian[2].txt 654 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@evenement.bnpparibas[1].txt 110 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@ext.adfeelgood[1].txt 347 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@fitnessboutique[1].txt 422 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@fnac[2].txt 887 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@fr.alljackpots[2].txt 207 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@fr.sitestat[1].txt 105 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@fr.sitestat[2].txt 110 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@fr.xl[1].txt 565 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@fruitrouge[2].txt 403 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@g25801.upd.maximumexperience[1].txt 86 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@google[2].txt 131 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@gouv[2].txt 151 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@h.live[1].txt 68 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@h18593.upd.trinityacquisitions[1].txt 88 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@h27920.upd.trinityacquisitions[1].txt 87 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@h3850.upd.trinityacquisitions[1].txt 86 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@h41306.www4.hp[2].txt 123 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@hi5[3].txt 76 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@hotels.france-bookings[1].txt 755 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@i2as.idregie[1].txt 107 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@iapref.orange[1].txt 97 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@iapref.orange[2].txt 98 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@imrworldwide[2].txt 226 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@imrworldwide[3].txt 224 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@indexstats[2].txt 566 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@indextools[2].txt 1,10KB

C:\Documents and Settings\fatiha\Cookies\fatiha@inkclub[1].txt 79 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@int.sitestat[2].txt 97 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@j13540.upd.trinityacquisitions[1].txt 88 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@jereserve[1].txt 340 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@jeux.expedia-france[2].txt 103 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@jeux.priceminister[1].txt 111 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@k1608.upd.trinityacquisitions[1].txt 85 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@kabiloo[2].txt 301 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@kelkoo[1].txt 82 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@kelkoo[3].txt 168 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@l18646.upd.maximumexperience[1].txt 86 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@l6338.upd.trinityacquisitions[1].txt 87 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@le-voyage.mylinea[1].txt 422 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@lediet[1].txt 79 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@lesocial[1].txt 315 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@live[2].txt 335 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@live[3].txt 335 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@login.live[2].txt 175 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@lycos[1].txt 336 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@m12204.upd.trinityacquisitions[1].txt 88 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@m15145.upd.maximumexperience[1].txt 86 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@m29903.upd.trinityacquisitions[1].txt 87 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@n26283.upd.maximumexperience[1].txt 85 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@national[1].txt 104 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@netlog[1].txt 74 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@netmastering[2].txt 290 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@o2730.upd.maximumexperience[1].txt 84 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@onedirect[1].txt 387 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@oumma[1].txt 256 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@pagesjaunes[1].txt 257 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@pap[1].txt 750 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@partners-finances.netmastering2[1].txt 135 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@partners-finances[1].txt 114 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@partners-finances[2].txt 115 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@pctools[2].txt 334 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@pixum[1].txt 92 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@power-plate[2].txt 314 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@promosejours.expedia[2].txt 334 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@q10493.upd.maximumexperience[1].txt 84 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@quantserve[1].txt 101 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@quotatis[2].txt 259 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@r23930.upd.trinityacquisitions[1].txt 88 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@rad.live[2].txt 700 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@rad.live[3].txt 700 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@rad.microsoft[2].txt 750 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@rad.msn[2].txt 690 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@ramdam.fr.intellitxt[1].txt 130 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@redcatsusa[1].txt 118 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@s30932.upd.trinityacquisitions[1].txt 87 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@sdc.windowsmarketplace[1].txt 149 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@sdc.windowsmarketplace[2].txt 191 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@service-voyages[2].txt 93 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@sitemng.pctools[2].txt 384 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@solution-devis[2].txt 355 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@statsweb.bnpparibas[1].txt 201 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@statsweb.bnpparibas[2].txt 205 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@t.voila[1].txt 90 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@t22557.upd.trinityacquisitions[1].txt 87 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@t8650.upd.trinityacquisitions[1].txt 86 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@tag.regieci[1].txt 88 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@teleshopping[2].txt 266 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@terminala[1].txt 107 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@topachat[1].txt 305 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@tracking.publicidees[1].txt 378 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@trafiz[1].txt 743 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@v6452.upd.trinityacquisitions[1].txt 86 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@vertbaudet[1].txt 260 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@voyager.partirpascher[1].txt 289 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@w21381.upd.trinityacquisitions[1].txt 88 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@weba.cdiscount[1].txt 98 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@westernunion[2].txt 269 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.01men[2].txt 155 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.01net[1].txt 71 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.2xmoinscher[1].txt 217 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.adserver5[1].txt 74 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.argusauto[2].txt 163 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.assurland[1].txt 86 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.bobs-tools[1].txt 87 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.bonprixsecure[1].txt 303 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.caisseepargne[2].txt 412 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.chaussures-desmazieres[1].txt 136 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.cibleclick[2].txt 126 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.confidentielles[1].txt 182 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.distrigame[2].txt 192 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.download[2].txt 224 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.ebuyclub[2].txt 180 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.extrafilm[1].txt 73 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.googleadservices[10].txt 430 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.googleadservices[1].txt 476 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.googleadservices[2].txt 479 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.googleadservices[3].txt 488 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.googleadservices[4].txt 404 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.jereserve[1].txt 113 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.linternaute[1].txt 124 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.lookvoyages[1].txt 525 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.love-oriental[1].txt 99 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.maisondugsm[2].txt 216 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.meetmuslimsingle[2].txt 91 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.officedepot[1].txt 83 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.officedepot[3].txt 107 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.orientaltrading[2].txt 201 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.pagesjaunes[1].txt 155 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.partners-finances[1].txt 113 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.pricerunner[2].txt 743 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.rueducommerce[1].txt 148 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.smstonic[1].txt 118 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.sony[1].txt 96 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.t-a-o[1].txt 82 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.tomob[1].txt 78 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.utarget.co[2].txt 166 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.voyage-prive[1].txt 85 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www.yahoo[1].txt 67 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www18.officedepot[1].txt 107 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www2.educatel[1].txt 734 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www2.viamichelin[2].txt 102 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@www26.orientaltrading[1].txt 105 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@x20950.upd.maximumexperience[1].txt 86 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@x2588.upd.trinityacquisitions[1].txt 85 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@xiti[1].txt 106 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@yourmedia[1].txt 99 bytes

C:\Documents and Settings\fatiha\Cookies\fatiha@z24860.upd.trinityacquisitions[1].txt 88 bytes

Marqué pour l'effacement: C:\Documents and Settings\fatiha\Local Settings\Temporary Internet Files\Content.IE5\index.dat

C:\WINDOWS\TEMP\T30DebugLogFile.txt 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\6BAD1CF.dmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\9D1C63E.dmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\aax4.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\aaxCA.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\aaxCB.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\aaxCC.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\aaxCE.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\aaxCF.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\aaxD0.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\D7E1FD.dmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\PSK119.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\Twunk002.MTX 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGX10.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGX11.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGX12.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGX13.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGX14.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGX15.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGX28.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGX29.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGX2A.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGX9.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGXA.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGXB.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGXC.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGXD.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGXE.tmp 0 bytes

C:\DOCUME~1\fatiha\LOCALS~1\Temp\VGXF.tmp 0 bytes

C:\WINDOWS\system32\wbem\Logs\FrameWork.log 42,77KB

C:\WINDOWS\system32\wbem\Logs\wbemess.log 59,55KB

C:\WINDOWS\system32\wbem\Logs\wmiprov.log 55,56KB

C:\WINDOWS\system32\wbem\Logs\wbemess.lo_ 64,12KB

C:\WINDOWS.log 0 bytes

C:\WINDOWS\comsetup.log 2,01KB

C:\WINDOWS\DPINST.LOG 6,16KB

C:\WINDOWS\FaxSetup.log 6,02KB

C:\WINDOWS\IDNMitigationAPIs.log 8,71KB

C:\WINDOWS\ie7.log 77,48KB

C:\WINDOWS\ie7Uninst.log 27,24KB

C:\WINDOWS\ie7_main.log 51,50KB

C:\WINDOWS\iereseticons.log 1,73KB

C:\WINDOWS\iis6.log 976 bytes

C:\WINDOWS\imsins.log 1,34KB

C:\WINDOWS\KB915865.log 4,98KB

C:\WINDOWS\msgsocm.log 303 bytes

C:\WINDOWS\NLSDownlevelMapping.log 8,68KB

C:\WINDOWS\ntdtcsetup.log 1,22KB

C:\WINDOWS\ocgen.log 2,85KB

C:\WINDOWS\ocmsn.log 342 bytes

C:\WINDOWS\setupact.log 827 bytes

C:\WINDOWS\setupapi.log 95,88KB

C:\WINDOWS\setuperr.log 0 bytes

C:\WINDOWS\spupdsvc.log 7,29KB

C:\WINDOWS\tsoc.log 2,30KB

C:\WINDOWS\updspapi.log 46,53KB

C:\WINDOWS\wmsetup.log 1,20KB

C:\WINDOWS\ntbtlog.txt 0,24MB

C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\drwtsn32.log 10,4MB

C:\Documents and Settings\All Users\Application Data\Microsoft\Dr Watson\user.dmp 78,95KB

C:\WINDOWS\Debug\mrt.log 1,97KB

C:\WINDOWS\Debug\mrteng.log 1,13KB

C:\WINDOWS\security\logs\scecomp.old 210 bytes

C:\Documents and Settings\fatiha\Application Data\Google\Local Search History\google%2Emaps.w 66 bytes

C:\Documents and Settings\fatiha\Application Data\Google\Local Search History\google%2Esite.w 18 bytes

C:\Documents and Settings\fatiha\Application Data\Google\Local Search History\google%2Eweb.w 6,92KB

C:\Documents and Settings\fatiha\Application Data\Real\RealOne Player\cookies.txt 122 bytes

C:\Documents and Settings\fatiha\Application Data\Real\RealOne Player\realplayer.ste 832 bytes

C:\Documents and Settings\fatiha\Application Data\Real\RealOne Player\History\-- ãä ÓæÑÉ ÚÈÓ Åáì ÓæÑÉ ÇáäÈà -- ÌÒÁ ....lnk 1,98KB

C:\Documents and Settings\fatiha\Application Data\Real\RealOne Player\History56.lnk 1,82KB

C:\Documents and Settings\fatiha\Application Data\Real\RealOne Player\History\AVSEQ01.lnk 1,76KB

C:\Documents and Settings\fatiha\Application Data\Real\RealOne Player\History\Istikhara.lnk 1,79KB

C:\Documents and Settings\fatiha\Application Data\Real\RealOne Player\History\Jourani tape1.lnk 1,96KB

C:\Documents and Settings\fatiha\Application Data\Real\RealOne Player\History\Jourani tape2.lnk 1,96KB

C:\Documents and Settings\fatiha\Application Data\Real\RealOne Player\History\tape1.lnk 1,89KB

C:\Documents and Settings\fatiha\Application Data\Real\RealOne Player\History\tape2.lnk 1,89KB

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\2mdn.net\ft659-11.sol 73 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\fr.youtube.com\soundData.sol 58 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\images.badoo.com\370\-\-\flash\Baloon.swf\ConnectType2.sol 64 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\images.badoo.com\374\-\-\flash\Baloon.swf\ConnectType2.sol 64 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\images.badoo.com\381\-\-\flash\Baloon.swf\ConnectType2.sol 64 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\localhost\CDLR2006.sol 53,23KB

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\luckyloft.rueducommerce.fr\swf\clic_rue.swf\ruegargul.sol 62 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\pagead2.googlesyndication.com\pagead\googleadplayer.swf\mediaPlayerUserSettings.sol 94 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\pan.fotovista.com\pixmania\grafx\multipays\flashAS\Bann_580_100.swf\TestMovie_Config_Info.sol 341 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\quiestlemoinscher.com\texteColonne.swf\leclercVu2.sol 50 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\quiestlemoinscher.com\texteHome.swf\leclercVu.sol 49 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\skype.com\#ui\preferences.sol 233 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\us.js2.yimg.com\us.yimg.com\lib\map\swf\loader.mxml_200706151742.swf\YMaps.sol 51 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\video.google.com\googleplayer.swf\mediaPlayerUserSettings.sol 94 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\vip-rappcollins-toquiot.integra.fr\swf\main.swf\participant.sol 154 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\viphttp.yacast.net\DodgeNitroSkipVideo.sol 58 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\www.bigpoint.com\bpid\bpid.swf\bpid.sol 68 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\www.instant-detente.fr\KOOK.sol 57 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\www.pixmania.com\dev\gui_web\shopping\flashAS\Bann_580_100.swf\TestMovie_Config_Info.sol 341 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\www.pixmania.com\dev\gui_web\shopping\flashAS\Mac_180_150.swf\TestMovie_Config_Info.sol 341 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\#SharedObjects\95SYQHGZ\www.youtube.com\soundData.sol 58 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#2mdn.net\settings.sol 78 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#espace2001.com\settings.sol 84 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#fr.youtube.com\settings.sol 84 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#images.badoo.com\settings.sol 86 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#local\settings.sol 75 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#luckyloft.rueducommerce.fr\settings.sol 96 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pagead2.googlesyndication.com\settings.sol 99 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pan.fotovista.com\settings.sol 87 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#quiestlemoinscher.com\settings.sol 91 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#us.js2.yimg.com\settings.sol 85 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.google.com\settings.sol 86 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#vip-rappcollins-toquiot.integra.fr\settings.sol 104 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#viphttp.yacast.net\settings.sol 88 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.bigpoint.com\settings.sol 86 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.instant-detente.fr\settings.sol 92 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.pixmania.com\settings.sol 86 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.youtube.com\settings.sol 85 bytes

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol 728 bytes

C:\Program Files\eMule\config\AC_SearchStrings.dat 0 bytes

C:\Documents and Settings\fatiha\Application Data\Sun\Java\Deployment\cache\6.0\14\a87734e-6ac841d3 6,53KB

C:\Documents and Settings\fatiha\Application Data\Sun\Java\Deployment\cache\6.0\14\a87734e-6ac841d3.idx 417 bytes

C:\Documents and Settings\fatiha\Application Data\Sun\Java\Deployment\cache\6.0\26\3d8cb69a-1af28c90 0,21MB

C:\Documents and Settings\fatiha\Application Data\Sun\Java\Deployment\cache\6.0\26\3d8cb69a-1af28c90.idx 16,68KB

C:\Documents and Settings\fatiha\Application Data\Sun\Java\Deployment\cache\6.0\9\3c0ee589-31779835 7,65KB

C:\Documents and Settings\fatiha\Application Data\Sun\Java\Deployment\cache\6.0\9\3c0ee589-31779835.idx 317 bytes

C:\Documents and Settings\fatiha\Application Data\Sun\Java\Deployment\cache\6.0\lastAccessed 1 bytes

------------------------------------------------------------------------------------------

 

 

LA PAR CONTRE JE LAI FAIT COMME TU ME LA DIT

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 22:00:31, on 11/08/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\spoolsv.exe

C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

C:\WINDOWS\VM303_STI.EXE

C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe

C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

C:\WINDOWS\System32\FTRTSVC.exe

C:\WINDOWS\System32\HPZipm12.exe

C:\WINDOWS\system32\slserv.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe

C:\WINDOWS\wanmpsvc.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\WINDOWS\system32\wscntfy.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe

C:\Program Files\CCleaner\ccleaner.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.orange.fr/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.01net.com/telecharger/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.01net.com/telecharger/

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

R3 - URLSearchHook: (no name) - {0A94B116-4504-4e26-AB05-E61E474AA38B} - C:\Program Files\AskPBar\SrchAstt\1.bin\A9SRCHAS.DLL

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: Ask Search Assistant BHO - {0A94B111-4504-4e26-AB05-E61E474AA38B} - C:\Program Files\AskPBar\SrchAstt\1.bin\A9SRCHAS.DLL

O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll

O2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll

O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [bigDog303] C:\WINDOWS\VM303_STI.EXE VIMICRO USB PC Camera (ZC0301PLH)

O4 - HKLM\..\Run: [Athan] C:\Program Files\Athan\Athan.exe

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [Pop-Up Stopper] "C:\Program Files\Panicware\Pop-Up Stopper\dpps2.exe"

O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')

O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/...arch.jhtml?p=ZN

O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.orange.fr (file missing) (HKCU)

O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm

O16 - DPF: {0878F049-D33E-45E0-A157-C36A6683CF25} - http://es6-scripts.dlv4.com/binaries/egacc...ss4_1063_XP.cab

O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab

O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204

O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) - http://housecall65.trendmicro.com/housecal...ivex/hcImpl.cab

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.mail.live.com/mail/w1/resources/MSNPUpld.cab

O16 - DPF: {54823A9D-6BAE-11D5-B519-0050BA2413EB} (ChkDVDCtl Class) - http://www.cyberlink.com/winxp/CheckDVD.cab

O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/11157ad6e01eea...RdxIE601_fr.cab

O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...wlscbase969.cab

O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicro.com/spyware-scan/as4web.cab

O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/a...AdSignerADP.cab

O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe (file missing)

O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - NetGroup - Politecnico di Torino - C:\Program Files\WinPcap\rpcapd.exe

O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe

O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe

O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe

O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe

 

--

End of file - 8714 bytes

 

LA CELUI LA JE SS PLUS SUR KE JE LAI FAIT COMME TU MA DIT EN EFFACAN LES FICHIER KE TU MAVAI DEMANDER ALOR REGARD STP CAR MOI JE COMPREN RIEN A RIEN EN PLUS COMME TA PU VOIR JME SUIS EMELLER LES PINCEAUX

 

LE VOILA

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 22:00:31, on 11/08/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\spoolsv.exe

C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

C:\WINDOWS\VM303_STI.EXE

C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe

C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

C:\WINDOWS\System32\FTRTSVC.exe

C:\WINDOWS\System32\HPZipm12.exe

C:\WINDOWS\system32\slserv.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe

C:\WINDOWS\wanmpsvc.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\WINDOWS\system32\wscntfy.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe

C:\Program Files\CCleaner\ccleaner.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.orange.fr/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.01net.com/telecharger/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.01net.com/telecharger/

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

R3 - URLSearchHook: (no name) - {0A94B116-4504-4e26-AB05-E61E474AA38B} - C:\Program Files\AskPBar\SrchAstt\1.bin\A9SRCHAS.DLL

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: Ask Search Assistant BHO - {0A94B111-4504-4e26-AB05-E61E474AA38B} - C:\Program Files\AskPBar\SrchAstt\1.bin\A9SRCHAS.DLL

O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll

O2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll

O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [bigDog303] C:\WINDOWS\VM303_STI.EXE VIMICRO USB PC Camera (ZC0301PLH)

O4 - HKLM\..\Run: [Athan] C:\Program Files\Athan\Athan.exe

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [Pop-Up Stopper] "C:\Program Files\Panicware\Pop-Up Stopper\dpps2.exe"

O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')

O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/...arch.jhtml?p=ZN

O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.orange.fr (file missing) (HKCU)

O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm

O16 - DPF: {0878F049-D33E-45E0-A157-C36A6683CF25} - http://es6-scripts.dlv4.com/binaries/egacc...ss4_1063_XP.cab

O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab

O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204

O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) - http://housecall65.trendmicro.com/housecal...ivex/hcImpl.cab

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.mail.live.com/mail/w1/resources/MSNPUpld.cab

O16 - DPF: {54823A9D-6BAE-11D5-B519-0050BA2413EB} (ChkDVDCtl Class) - http://www.cyberlink.com/winxp/CheckDVD.cab

O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/11157ad6e01eea...RdxIE601_fr.cab

O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...wlscbase969.cab

O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicro.com/spyware-scan/as4web.cab

O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/a...AdSignerADP.cab

O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe (file missing)

O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - NetGroup - Politecnico di Torino - C:\Program Files\WinPcap\rpcapd.exe

O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe

O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe

O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe

O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe

 

nd of file - 8714 bytes

 

VOICI LANALYSE DE CCLEANER APRES AVIR REDEMARER LE PC

 

NETTOYAGE COMPLET - (4,365 secs)

------------------------------------------------------------------------------------------

2,35MB supprimés.

------------------------------------------------------------------------------------------

 

Détails des fichiers effacés

------------------------------------------------------------------------------------------

Fichiers Temporaires d'Internet Explorer (fichiers 398) 2,22MB

Cookie:fatiha@zebulon.fr/(&H100001) 300 bytes

Cookie:fatiha@live.com/(&H100001) 334 bytes

Cookie:fatiha@rad.live.com/(&H100001) 690 bytes

Cookie:fatiha@i2as.idregie.com/(&H100001) 108 bytes

Cookie:fatiha@login.live.com/(&H100001) 175 bytes

Cookie:fatiha@google.com/(&H100001) 131 bytes

Cookie:fatiha@rad.msn.com/(&H100001) 789 bytes

Cookie:fatiha@iapref.orange.fr/(&H100001) 96 bytes

Cookie:fatiha@yourmedia.com/(&H100001) 99 bytes

Cookie:fatiha@serving-sys.com/(&H100001) 514 bytes

Cookie:fatiha@xiti.com/(&H100001) 106 bytes

Cookie:fatiha@bs.serving-sys.com/(&H100001) 141 bytes

Cookie:fatiha@idregie.com/(&H100001) 303 bytes

Marqué pour l'effacement: C:\Documents and Settings\fatiha\Local Settings\Temporary Internet Files\Content.IE5\index.dat

Poubelle vidée (2 fichiers) 102,38KB

C:\WINDOWS\system32\wbem\Logs\FrameWork.log 261 bytes

C:\WINDOWS\system32\wbem\Logs\wbemess.log 13,57KB

C:\WINDOWS\system32\wbem\Logs\wmiprov.log 67 bytes

C:\WINDOWS.log 0 bytes

C:\WINDOWS\DPINST.LOG 5,42KB

C:\Documents and Settings\fatiha\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol 348 bytes

------------------------------------------------------------------------------------------

 

PAR CONTRE POUR lopxpMH2

 

voila ce ke jai trouveren fesan ce ke tu ma demander

 

Rapport lopxpMH2 version 2.0 fait à 0:27:53,56 le 12/08/2007

C:\Documents and Settings\fatiha\Bureau\lopxpMH2\lopxpMH2

 

******************************************

## Répertoires Application Data

 

Le volume dans le lecteur C s'appelle HDD

Le numéro de série du volume est 54AB-FA9A

 

Répertoire de C:\Documents and Settings\All Users\Application Data

 

27/10/2004 20:27 <REP> .

27/10/2004 20:27 <REP> ..

18/01/2007 23:28 <REP> Adobe

20/11/2006 17:56 <REP> Apple Computer

07/05/2007 19:25 <REP> funk ping drive poll

29/10/2006 19:56 <REP> Google

10/08/2007 20:30 <REP> Grisoft

26/04/2006 21:05 <REP> HP

25/06/2007 17:15 <REP> Lavasoft

07/05/2007 20:11 <REP> Messenger Plus!

27/10/2004 20:27 <REP> Microsoft

24/04/2006 23:08 <REP> MSN6

27/10/2004 20:27 <REP> QuickTime

27/10/2004 20:27 <REP> SBSI

17/11/2006 01:38 <REP> Symantec

07/04/2007 22:03 <REP> TEMP

16/05/2006 13:51 <REP> Windows Genuine Advantage

04/07/2007 13:44 <REP> WindowsLiveInstaller

04/07/2007 13:44 <REP> WLInstaller

30/09/2002 12:55 62 desktop.ini

26/04/2006 20:57 7 680 hpzinstall.log

12/06/2007 16:29 0 LauncherAccess.dt

20/11/2006 19:37 1 751 QTSBandwidthCache

4 fichier(s) 9 493 octets

19 Rép(s) 61 101 707 264 octets libres

Le volume dans le lecteur C s'appelle HDD

Le numéro de série du volume est 54AB-FA9A

 

Répertoire de C:\Documents and Settings\Default User\Application Data

 

27/10/2004 20:27 <REP> .

27/10/2004 20:27 <REP> ..

16/07/2005 15:03 <REP> Identities

27/10/2004 20:27 <REP> Microsoft

16/07/2005 15:03 <REP> Real

30/09/2002 12:55 62 desktop.ini

1 fichier(s) 62 octets

5 Rép(s) 61 101 707 264 octets libres

Le volume dans le lecteur C s'appelle HDD

Le numéro de série du volume est 54AB-FA9A

 

Répertoire de C:\Documents and Settings\Default User\Local Settings\Application Data

 

27/10/2004 20:27 <REP> .

27/10/2004 20:27 <REP> ..

16/07/2005 15:03 <REP> Microsoft

16/07/2005 15:03 <REP> Powercinema

16/07/2005 15:03 2 691 404 IconCache.db

1 fichier(s) 2 691 404 octets

4 Rép(s) 61 101 707 264 octets libres

Le volume dans le lecteur C s'appelle HDD

Le numéro de série du volume est 54AB-FA9A

 

Répertoire de C:\Documents and Settings\fatiha\Application Data

 

05/04/2006 20:39 <REP> .

05/04/2006 20:39 <REP> ..

26/04/2006 21:47 <REP> Adobe

17/05/2006 16:20 <REP> AdobeUM

05/12/2006 07:53 <REP> Ahead

20/11/2006 19:28 <REP> Apple Computer

22/04/2006 01:31 <REP> CyberLink

17/12/2006 09:40 <REP> dvdcss

02/12/2006 22:29 <REP> EoRezo

09/04/2007 03:51 <REP> FunWebProducts

12/05/2006 01:20 <REP> Google

21/04/2006 22:12 <REP> Help

26/04/2006 20:57 <REP> HP

05/04/2006 20:39 <REP> Identities

26/04/2006 21:41 <REP> Image Zone Express

23/05/2007 22:07 <REP> ItsLabel

07/06/2006 15:40 <REP> Lavasoft

24/04/2006 14:05 <REP> Leadertech

29/04/2006 00:50 <REP> Macromedia

09/04/2007 03:24 <REP> MessengerSkinner

05/04/2006 20:39 <REP> Microsoft

09/07/2006 01:20 <REP> Mozilla

24/04/2006 23:08 <REP> MSN6

05/04/2006 20:40 <REP> Ontrack

20/05/2006 18:10 <REP> Paltalk

07/05/2007 19:24 <REP> Platform Trans

05/04/2006 20:39 <REP> Real

22/07/2007 15:50 <REP> Samsung

04/10/2006 03:08 <REP> Shareaza

30/11/2006 21:36 <REP> Skype

24/04/2006 14:05 <REP> Sonic

13/11/2006 13:24 <REP> Sun

22/05/2007 20:48 <REP> TaoUSign

16/05/2006 14:26 <REP> Template

05/06/2006 15:10 <REP> vlc

05/04/2006 20:39 62 desktop.ini

27/06/2006 00:37 6 739 GdiplusUpgrade_MSIApproach_Wrapper.log

26/04/2006 21:59 0 Hewlett-PackardHP PSC 1400 series1146078350_API.log

26/04/2006 21:59 899 Hewlett-PackardHP PSC 1400 series1146078350_PROTOCOL.log

26/04/2006 21:59 366 Hewlett-PackardHP PSC 1400 series1146078350_UI.log

23/11/2006 16:38 0 Hewlett-PackardHP PSC 1400 series1161103767_API.log

23/11/2006 16:38 906 Hewlett-PackardHP PSC 1400 series1161103767_PROTOCOL.log

23/11/2006 16:38 368 Hewlett-PackardHP PSC 1400 series1161103767_UI.log

27/06/2006 00:51 4 196 HPSU_48BitScanUpdate.log

27/06/2006 00:55 324 793 PatchUpdate_HP_CounterReport_Update_HPSU.log

24/04/2006 23:13 2 072 QuickZip45.ini

27/06/2006 00:17 471 476 Update_HP_RedboxHprblog_HPSU.log

12 fichier(s) 811 877 octets

35 Rép(s) 61 101 703 168 octets libres

Le volume dans le lecteur C s'appelle HDD

Le numéro de série du volume est 54AB-FA9A

 

Répertoire de C:\Documents and Settings\fatiha\Local Settings\Application Data

 

05/04/2006 20:39 <REP> .

05/04/2006 20:39 <REP> ..

14/10/2006 22:06 <REP> {3248F0A6-6813-11D6-A77B-00B0D0150030}

17/05/2006 16:20 <REP> Adobe

05/12/2006 07:59 <REP> Ahead

20/11/2006 19:37 <REP> Apple Computer

06/08/2007 05:04 <REP> Ares

12/05/2006 01:20 <REP> Google

21/04/2006 22:12 <REP> Help

13/10/2006 14:52 <REP> Identities

05/04/2006 20:39 <REP> Microsoft

07/05/2007 00:51 <REP> MicroVision Applications

09/07/2006 01:34 <REP> Mozilla

20/07/2007 08:18 <REP> PCHealth

05/04/2006 20:39 <REP> Powercinema

14/10/2006 22:10 <REP> Shareaza

01/06/2006 05:25 <REP> WMTools Downloaded Files

21/04/2006 22:57 85 504 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

22/04/2006 00:03 45 096 GDIPFONTCACHEV1.DAT

12/05/2006 04:16 1 993 794 IconCache.db

3 fichier(s) 2 124 394 octets

17 Rép(s) 61 101 703 168 octets libres

Le volume dans le lecteur C s'appelle HDD

Le numéro de série du volume est 54AB-FA9A

 

Répertoire de C:\Documents and Settings\LocalService\Application Data

 

27/10/2004 20:27 <REP> .

27/10/2004 20:27 <REP> ..

16/12/2006 23:03 <REP> Ahead

27/10/2004 20:27 <REP> Microsoft

0 fichier(s) 0 octets

4 Rép(s) 61 101 703 168 octets libres

Le volume dans le lecteur C s'appelle HDD

Le numéro de série du volume est 54AB-FA9A

 

Répertoire de C:\Documents and Settings\LocalService\Local Settings\Application Data

 

27/10/2004 20:27 <REP> .

27/10/2004 20:27 <REP> ..

27/10/2004 20:27 <REP> Microsoft

0 fichier(s) 0 octets

3 Rép(s) 61 101 703 168 octets libres

Le volume dans le lecteur C s'appelle HDD

Le numéro de série du volume est 54AB-FA9A

 

Répertoire de C:\Documents and Settings\NetworkService\Application Data

 

27/10/2004 20:27 <REP> .

27/10/2004 20:27 <REP> ..

24/07/2006 22:01 <REP> Identities

27/10/2004 20:27 <REP> Microsoft

0 fichier(s) 0 octets

4 Rép(s) 61 101 703 168 octets libres

Le volume dans le lecteur C s'appelle HDD

Le numéro de série du volume est 54AB-FA9A

 

Répertoire de C:\Documents and Settings\NetworkService\Local Settings\Application Data

 

27/10/2004 20:27 <REP> .

27/10/2004 20:27 <REP> ..

27/10/2004 20:27 <REP> Microsoft

0 fichier(s) 0 octets

3 Rép(s) 61 101 699 072 octets libres

Le volume dans le lecteur C s'appelle HDD

Le numéro de série du volume est 54AB-FA9A

 

Répertoire de C:\Documents and Settings\Propriétaire

 

Le volume dans le lecteur C s'appelle HDD

Le numéro de série du volume est 54AB-FA9A

 

Répertoire de C:\WINDOWS\system32\config\systemprofile\Application Data

 

27/10/2004 20:27 <REP> .

27/10/2004 20:27 <REP> ..

16/07/2005 15:03 <REP> Identities

27/10/2004 20:27 <REP> Microsoft

16/07/2005 15:03 <REP> Real

30/09/2002 13:08 62 desktop.ini

1 fichier(s) 62 octets

5 Rép(s) 61 101 699 072 octets libres

Le volume dans le lecteur C s'appelle HDD

Le numéro de série du volume est 54AB-FA9A

 

Répertoire de C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data

 

27/10/2004 20:27 <REP> .

27/10/2004 20:27 <REP> ..

27/10/2004 11:35 <REP> Microsoft

16/07/2005 15:03 <REP> Powercinema

16/07/2005 15:03 2 691 404 IconCache.db

1 fichier(s) 2 691 404 octets

4 Rép(s) 61 101 699 072 octets libres

 

******************************************

Recherche des taches planifiées dans C:\WINDOWS\tasks

 

 

C:\WINDOWS\Tasks\AppleSoftwareUpdate.job

s €!× N : C : \ P r o g r a m F i l e s \ A p p l e S o f t w a r e U p d a t e \ S o f t w a r e U p d a t e . e x e - T a s k S Y S T E M 0 Ö

 

C:\WINDOWS\Tasks\Rappel

Rappel inexploitable

 

 

C:\WINDOWS\Tasks\Rappel

Rappel inexploitable

 

******************************************

## Répertoires de C:\Program Files

 

Le volume dans le lecteur C s'appelle HDD

Le numéro de série du volume est 54AB-FA9A

 

Répertoire de C:\Program Files

 

12/08/2007 00:20 <REP> .

12/08/2007 00:20 <REP> ..

11/10/2006 20:45 <REP> ACDSee32

31/10/2006 00:08 <REP> Adobe

20/07/2007 23:28 <REP> Adverts

26/05/2007 11:31 <REP> Alwil Software

15/05/2007 21:23 <REP> Anuman Interactive

21/11/2006 08:27 <REP> Apple Software Update

06/08/2007 05:04 <REP> Ares

10/05/2007 06:42 <REP> AskPBar

08/04/2007 17:41 <REP> Athan

29/12/2006 23:47 <REP> AudioSphere

25/04/2006 13:59 <REP> Beston

11/08/2007 19:34 <REP> CCleaner

07/10/2006 01:59 <REP> Common Files

27/10/2004 20:27 <REP> CyberLink

10/05/2006 14:26 <REP> DIFX

13/04/2007 00:42 <REP> eMule

21/07/2007 15:00 <REP> Fichiers communs

11/10/2006 22:19 <REP> GameSpy Arcade

08/05/2007 13:55 <REP> Google

17/10/2006 18:46 <REP> Hewlett-Packard

17/10/2006 19:29 <REP> HP

25/06/2007 18:16 <REP> Internet Explorer

08/10/2006 01:25 <REP> Inventel

16/07/2005 20:18 <REP> IZArc

18/04/2007 21:44 <REP> Java

26/12/2006 23:51 <REP> LimeWire

21/12/2006 19:59 <REP> lycos

20/05/2006 21:39 <REP> Macrogaming

11/06/2007 23:36 <REP> Messenger Plus! Live

27/10/2004 20:27 <REP> microsoft frontpage

05/04/2006 21:07 <REP> Microsoft Office

16/05/2006 14:56 <REP> Microsoft SQL Server

27/10/2004 20:30 <REP> Microsoft Works

05/08/2006 15:21 <REP> Movie Maker

27/10/2004 20:30 <REP> MSN

27/10/2004 20:27 <REP> MSN Gaming Zone

04/07/2007 13:48 <REP> MSN Messenger

12/08/2007 00:23 <REP> Navilog1

05/08/2006 15:18 <REP> NetMeeting

27/10/2004 20:27 <REP> Nullsoft

16/07/2005 20:29 <REP> Ontrack

13/12/2006 23:52 <REP> Outlook Express

07/10/2006 01:59 <REP> Pack Securite

10/05/2007 06:40 <REP> Paltalk Messenger

29/06/2007 21:37 <REP> Panicware

13/04/2007 01:23 <REP> PCPitstop

03/10/2006 01:33 <REP> Plus!

27/10/2004 20:27 <REP> Real

27/10/2004 20:27 <REP> S3Inc

22/07/2007 14:31 <REP> Samsung

13/10/2006 14:40 <REP> Securitoo

27/10/2004 20:30 <REP> Services en ligne

14/10/2006 22:10 <REP> Shareaza

30/11/2006 21:35 <REP> Skype

16/07/2005 20:08 <REP> SolidDocuments

27/10/2004 20:27 <REP> Sonic

29/12/2006 23:58 <REP> TopThemesXP

11/08/2007 17:26 <REP> Trend Micro

12/05/2006 02:49 <REP> UltimateZip

13/04/2007 00:56 <REP> VideoLAN

27/10/2004 20:27 <REP> Viewpoint

21/04/2006 22:44 <REP> Vimicro

27/10/2004 20:27 <REP> Virtual CD v4 SDK

27/05/2007 16:20 <REP> Wanadoo

07/10/2006 01:59 <REP> WebCam

16/07/2005 21:53 <REP> WinAce

04/07/2007 13:44 <REP> Windows Live

20/10/2006 13:29 <REP> Windows Live Safety Center

21/04/2006 22:17 <REP> Windows Media Components

08/12/2006 00:46 <REP> Windows Media Connect 2

08/12/2006 00:46 <REP> Windows Media Player

05/04/2006 21:06 <REP> Windows Messaging

07/10/2006 01:59 <REP> Windows NT

03/05/2007 01:11 <REP> WinPcap

03/12/2006 19:52 <REP> Winsos

25/04/2006 13:58 <REP> wmv_vcm

27/10/2004 20:27 <REP> xerox

0 fichier(s) 0 octets

79 Rép(s) 61 101 694 976 octets libres

 

******************************************

## Popups autorisées

 

* Internet Explorer

 

! REG.EXE VERSION 3.0

 

HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\New Windows\Allow

 

* Mozilla Firefox (1 autorisé 2 interdit)

 

******************************************

## Registre

 

******************************************

## Zones de sécurité

 

* HKCU Domains (4)

 

* P3P History (5)

 

******************************************

## Recherche C:\WINDOWS\*.htm, "C:\WINDOWS\*.gif"

 

 

*************** Fin du rapport ****************

 

et voici pour la dernier aplication javoue cetai tres long sa pri bocou de tem mai jespere ke tt rentrera ds lordre et mercibeaucoup par avance

 

Search Navipromo version 2.0.7 commencé le 12/08/2007 à 0:23:15,51

 

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!

!!! Poster ce rapport sur le forum pour le faire analyser !!!

!!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!

 

Fix lancé depuis C:\Program Files\navilog1

Mise a jour le 11.08.2007 a 18h00 by IL-MAFIOSO

 

Executé en mode normal

 

*** Recherche Programmes installes ***

 

 

 

 

*** Recherche dossiers dans C:\WINDOWS ***

 

 

 

 

*** Recherche dossiers dans C:\Program Files ***

 

 

 

 

*** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data ***

 

 

 

 

*** Recherche dossiers dans C:\Documents and Settings\fatiha\Application Data ***

 

 

...\Application Data\MessengerSkinner trouvé !

 

*** Recherche avec BlackLight Engine/F-secure ***

BlackLight Engine est un produit de F-secure, pour + d'infos :

http://www.f-secure.com/blacklight/blacklight_help.html

 

Fichier(s) caché(s) dans C:\WINDOWS\system32 :

 

c:\WINDOWS\system32\sguoxajoxh.dat

C:\windows\system32\sguoxajoxh.exe

c:\WINDOWS\system32\sguoxajoxh_nav.dat

c:\WINDOWS\system32\sguoxajoxh_navps.dat

 

Processus caché(s) dans C:\WINDOWS\system32 :

 

C:\windows\system32\sguoxajoxh.exe

 

 

*** Recherche fichiers ***

 

 

C:\WINDOWS\pack.epk trouvé !

C:\WINDOWS\system32\nvs2.inf trouvé !

 

 

*** Recherche cles registre ***

 

 

Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]

 

 

 

Recherche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]

 

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/System32/egaccess4_1063.dll

 

 

Recherche Clé Magic Control

 

HKEY_CURRENT_USER\Software\Lanconfig trouvé !

 

 

*** Module de Recherche complémentaire ***

(Recherche fichiers spécifiques)

 

1)Recherche fichiers connus:

 

 

2)Recherche Heuristique :

*

C:\WINDOWS\system32\mvqgtxjoa.dat trouvé !

C:\WINDOWS\system32\sguoxajoxh.dat trouvé !

**

C:\WINDOWS\system32\mvqgtxjoa.dat trouvé !

C:\WINDOWS\system32\sguoxajoxh.dat trouvé !

***

****

C:\WINDOWS\system32\mvqgtxjoa_navps.dat trouvé !

*****

C:\WINDOWS\system32\mvqgtxjoa_nav.dat trouvé !

C:\WINDOWS\system32\sguoxajoxh_nav.dat trouvé !

******

*******

********

 

 

3)Recherche Certificats :

 

 

*** Recherche avec GenericNaviSearch Beta ***

!!! Tous Ces résultats peuvent révéler des fichiers légitimes !!!

!!! A verifier impérativement avant toute suppression manuelle !!!

 

Fichiers trouvés :

 

C:\WINDOWS\system32\sguoxajoxh.exe trouvé !

 

Fichiers suspects :

 

Aucun Fichier suspect trouvé !

 

 

*** Analyse Terminé le 12/08/2007 à 0:32:14,68 ***

 

comme tu peu voir par rapport au horaire jy ai passer tt mon apres midi a faire tt ce ke lon ma demndr de faire jespere ke tu va me repondre merci bocoup

 

....

 

Je jette l' éponge : tu postes partout :tsss:

 

Posté(e)

...

 

Merci de respecter ce qui suit ...

 

1. Merci de ne pas employer le langage SMS :P

2. Ne poste pas partout ...

3. N' envoie pas plusieurs réponses/messages à la suite, sinon, on ne

s' y retrouve plus !

 

*******************************************************************

Fais ceci dans l' ordre, stp ...

 

1. (si ce n’ est déjà fait) Télécharge et installe CCleaner :

http://www.pcentraide.com/index.php?showtopic=3847

Sur le site, clique sur > Download latest version et laisse-toi guider.

Ne coche pas "Ajouter la barre d' outils Yahoo".

Laisse-le s’ installer tel que …

 

2. Ferme toutes les fenêtres et applications.

Relance HijackThis et clique sur > Do a system scan only puis, coche les

cases devant les lignes qui suivent (et uniquement ces lignes), si tjrs présentes :

 

R3 - URLSearchHook: (no name) - {0A94B116-4504-4e26-AB05-E61E474AA38B} - C:\Program Files\AskPBar\SrchAstt\1.bin\A9SRCHAS.DLL

O2 - BHO: Ask Search Assistant BHO - {0A94B111-4504-4e26-AB05-E61E474AA38B} - C:\Program Files\AskPBar\SrchAstt\1.bin\A9SRCHAS.DLL

O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - (no file)

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Ask Toolbar BHO - {F4D76F01-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL

O3 - Toolbar: Ask Toolbar - {F4D76F09-7896-458a-890F-E1F05C46069F} - C:\Program Files\AskPBar\bar\1.bin\ASKPBAR.DLL

O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/...arch.jhtml?p=ZN

O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)

O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.orange.fr (file missing) (HKCU)

O16 - DPF: {0878F049-D33E-45E0-A157-C36A6683CF25} - http://es6-scripts.dlv4.com/binaries/egacc...ss4_1063_XP.cab

 

Puis, clique sur > Fix checked et valide par « Yes ». Referme HijackThis.

 

3. Affiche les fichiers et dossiers cachés

Pour ce faire, tu vas dans un dossier, par ex. "Mes Images".

Ensuite, clique sur > Outils > Options des dossiers ...

clique sur l' onglet « Affichage » et ...

coche ---> Afficher les fichiers et dossiers cachés

décoche > Masquer les extensions des fichiers dont le type est connu

décoche > Masquer les fichiers protégés du système d' exploitation (recommandé).

« Appliquer » et « OK ».

 

4. Rends-toi dans > Démarrer > Panneau de config. > Ajout/suppres… de prog.

 

Supprime, si tu le(s) trouves > AskPBar - Macrogaming - FunWebProducts

 

5. Ensuite, va dans > Démarrer > Poste de travail > C:\

 

C:\Program Files\AskPBar

C:\Program Files\Adverts

C:\Program Files\Macrogaming

C:\Documents and Settings\fatiha\Application Data\EoRezo

C:\Documents and Settings\fatiha\Application Data\FunWebProducts

C:\Documents and Settings\fatiha\Application Data\MessengerSkinner

C:\Documents and Settings\All Users\Application Data\funk ping drive poll

 

Supprime le(s) fichier(s)/dossier(s)/programme(s) en gras, si tu le(s) trouves.

 

6. Vide la Corbeille.

 

7. Remet les fichiers et dossiers cachés dans leur configuration initiale.

 

8. Redémarre le PC.

 

****************************************************************

9. Double clique sur le raccourci Navilog1 présent sur le bureau

et laisse-toi guider. Au menu principal, choisis 2 et valide.

 

Le fix va t'informer qu'il va alors redémarrer ton PC.

Ferme toutes les fenêtres ouvertes et enregistre tes documents

personnels ouverts.

Appuie sur une touche comme demandé

(si ton Pc ne redémarre pas automatiquement, fais le toi même).

Au redémarrage de ton PC, choisis ta session habituelle.

 

Patiente jusqu'au message :

*** Nettoyage Termine le ..... ***

 

Le bloc-notes va s'ouvrir.

Sauvegarde le rapport de manière à le retrouver.

Referme le bloc-notes. Ton bureau va réapparaitre

 

PS : si ton bureau ne réapparait pas, fais CTRL+ALT+SUPP

pour ouvrir le Gestionnaire de Tâches.

Puis rends-toi à l'onglet "Processus".

Clique en haut à gauche sur fichiers et choisis "Exécuter".

Tape Explorer et valide ; celà te fera apparaitre ton bureau.

 

Poste le rapport.

Posté(e)

dsl je ne sai pas men servir du forum mai jcroi ke je commence a savoir men servir mai reste cool stp jai besoin daide merci par avance

 

....

 

Je jette l' éponge : tu postes partout :P

Posté(e)

voici le peu ke jai pu faire jai pas fini

mais il y'a des chose que tu m'avai demander de supprimer je n'ai pu supprimer que les 3 premier je ne me souvien plus des noms les autres n'étais pas dans programme file je sui en train de finir se que tu m'as demander de faire mai dis dnc ces vraimen les probleme a resoudre sur les pc je vou dit a tous chapeau et merci encore

tu vois jessaye ed faire des effort dans mon ecriture mais par contre je vais pas me prendre la tete pour les fautes d'ortographe car franchemen c'est pas mon truc d'écrire corectemen mais par respect pour toi je vais faire un effort

si je compren bien tu va dormir tu 'as bien mérité car tu travail beaucoup travail pour ma part je vai continuer a travailler sur ce que tu m'a demander comme une bonne éleve enfin presque bonne eleve bon et je te dit bonne nuitet a demain repose toi bien tchao

 

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 02:11:44, on 12/08/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Alwil Software\Avast4\ashServ.exe

C:\WINDOWS\system32\spoolsv.exe

C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

C:\WINDOWS\VM303_STI.EXE

C:\Program Files\Athan\Athan.exe

C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe

C:\Program Files\Panicware\Pop-Up Stopper\dpps2.exe

C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

C:\WINDOWS\System32\FTRTSVC.exe

C:\WINDOWS\System32\HPZipm12.exe

C:\WINDOWS\system32\slserv.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe

C:\WINDOWS\wanmpsvc.exe

C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

C:\WINDOWS\System32\svchost.exe

C:\Program Files\Windows Live\Messenger\msnmsgr.exe

C:\WINDOWS\system32\wuauclt.exe

C:\Program Files\Windows Live\Messenger\usnsvc.exe

C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe

C:\Program Files\Internet Explorer\iexplore.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.orange.fr/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.01net.com/telecharger/

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.01net.com/telecharger/

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll

O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll

O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll

O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe

O4 - HKLM\..\Run: [bigDog303] C:\WINDOWS\VM303_STI.EXE VIMICRO USB PC Camera (ZC0301PLH)

O4 - HKLM\..\Run: [Athan] C:\Program Files\Athan\Athan.exe

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot

O4 - HKLM\..\Run: [Pop-Up Stopper] "C:\Program Files\Panicware\Pop-Up Stopper\dpps2.exe"

O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm

O16 - DPF: {0878F049-D33E-45E0-A157-C36A6683CF25} - http://es6-scripts.dlv4.com/binaries/egacc...ss4_1063_XP.cab

O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab

O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204

O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) - http://housecall65.trendmicro.com/housecal...ivex/hcImpl.cab

O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.mail.live.com/mail/w1/resources/MSNPUpld.cab

O16 - DPF: {54823A9D-6BAE-11D5-B519-0050BA2413EB} (ChkDVDCtl Class) - http://www.cyberlink.com/winxp/CheckDVD.cab

O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/11157ad6e01eea...RdxIE601_fr.cab

O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...wlscbase969.cab

O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicro.com/spyware-scan/as4web.cab

O16 - DPF: {B79A53C0-1DAC-4636-BACE-FD086A7A79BF} (AdSignerLCContrl Class) - https://static.impots.gouv.fr/tdir/static/a...AdSignerADP.cab

O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe

O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe

O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe

O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe

O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe

O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe (file missing)

O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - NetGroup - Politecnico di Torino - C:\Program Files\WinPcap\rpcapd.exe

O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe

O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe

O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe

O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe

 

...

Bonne nuit.

Posté(e)

ah oui javais oublier je nai plus le fichier navilog je lavai effacer bien avan que tu me le demande et je ne sai plus ou le retrouver merci si tu peu me le poster

 

...

Bonne nuit.

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...