Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

--------------------\\ Lop S&D 4.2.5-0 XP/Vista

 

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3

X86-based PC ( Uniprocessor Free : Intel® Pentium® 4 CPU 3.06GHz )

BIOS : Award Medallion BIOS v6.00PG

USER : defenouillere ( Administrator )

BOOT : Normal boot

Antivirus : Kaspersky Internet Security 9.0.0.736 (Activated)

Firewall : Kaspersky Internet Security 9.0.0.736 (Activated)

A:\ (USB)

C:\ (Local Disk) - NTFS - Total:186 Go (Free:137 Go)

D:\ (Local Disk) - NTFS - Total:233 Go (Free:165 Go)

E:\ (CD or DVD)

F:\ (CD or DVD)

G:\ (USB)

H:\ (USB)

I:\ (USB)

J:\ (USB)

K:\ (Local Disk) - NTFS - Total:153 Go (Free:29 Go)

 

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )

Option : [1] ( 07/05/2010|19:47 )

 

--------------------\\ Listing des dossiers dans APPLIC~1

 

[23/02/2010|12:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{755AC846-7372-4AC8-8550-C52491DAA8BD}

[10/02/2010|12:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe

[16/11/2009|15:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Alawar Stargaze

[13/08/2009|19:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\albumphoto

[19/08/2007|13:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL

[19/08/2007|13:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads

[25/07/2009|23:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple

[23/02/2010|12:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer

[17/12/2009|15:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Artist Colony

[22/03/2010|16:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BigFishGamesCache

[30/11/2009|15:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\blg

[11/07/2007|11:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY

[12/07/2009|10:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Brother

[14/09/2009|11:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CasualForge

[24/02/2007|12:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink

[01/10/2007|10:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink

[22/01/2010|14:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EscapeTheMuseum2

[05/09/2009|17:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ExtraFilm

[09/09/2009|17:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FarmFrenzy2

[13/09/2009|13:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FarmFrenzy3

[01/09/2009|21:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FarmFrenzy-PizzaParty

[03/01/2010|16:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fenomen Games

[29/09/2007|17:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FlashFXP

[22/01/2010|13:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Flood Light Games

[29/09/2009|14:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fugazo

[17/11/2009|12:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\GameHouse

[12/01/2008|19:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google

[23/04/2010|21:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HTC

[12/07/2009|10:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield

[07/05/2010|13:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab

[08/12/2009|23:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files

[02/12/2009|17:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kristanix Games

[21/09/2009|11:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Little Games Company

[01/11/2009|16:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LogiShrd

[19/08/2007|13:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macromedia

[06/05/2010|21:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes

[02/12/2009|12:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MarcoPolo

[04/01/2010|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Merscom

[28/01/2010|20:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft

[02/08/2009|15:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MythPeople

[06/07/2009|21:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NortonInstaller

[10/03/2010|14:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NVIDIA Corporation

[25/07/2007|20:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles

[07/08/2009|09:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Oberon Media

[24/02/2007|13:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2

[17/12/2009|15:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PlayFirst

[16/12/2009|15:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\rionix

[11/10/2009|14:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sandlot Games

[16/08/2004|19:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI

[12/07/2009|10:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft

[28/10/2009|22:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype

[06/07/2009|21:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy

[31/03/2010|08:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sun

[24/08/2009|16:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SuperRanch

[04/03/2010|19:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec

[23/04/2010|21:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Teleca

[08/03/2010|12:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP

[25/05/2008|18:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TrackMania

[24/02/2007|13:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint

[31/08/2009|18:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\VirtualFarm

[20/03/2007|20:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage

[13/11/2007|13:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller

[10/12/2009|15:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\XLab

[24/02/2007|21:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo!

[16/08/2009|12:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom

 

[04/05/2010|13:59] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer

[07/04/2010|22:15] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Google

[16/08/2004|19:19] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities

[10/02/2010|12:02] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia

[24/02/2007|12:59] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft

[24/02/2007|13:00] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Real

[24/02/2007|12:48] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun

[24/02/2007|13:00] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec

[24/02/2007|13:06] C:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver

 

[10/02/2010|12:00] C:\DOCUME~1\DEFENO~1\APPLIC~1\Adobe

[27/02/2007|13:07] C:\DOCUME~1\DEFENO~1\APPLIC~1\AdobeUM

[27/02/2007|06:19] C:\DOCUME~1\DEFENO~1\APPLIC~1\Ahead

[19/08/2007|14:53] C:\DOCUME~1\DEFENO~1\APPLIC~1\AOL

[23/02/2010|12:30] C:\DOCUME~1\DEFENO~1\APPLIC~1\Apple Computer

[10/11/2009|18:05] C:\DOCUME~1\DEFENO~1\APPLIC~1\Artogon

[24/07/2007|22:03] C:\DOCUME~1\DEFENO~1\APPLIC~1\ATI

[17/10/2009|20:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\Awem

[09/12/2009|13:02] C:\DOCUME~1\DEFENO~1\APPLIC~1\Azuaz Games

[22/02/2010|14:16] C:\DOCUME~1\DEFENO~1\APPLIC~1\bfgbar

[14/06/2008|14:36] C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload

[30/11/2009|15:08] C:\DOCUME~1\DEFENO~1\APPLIC~1\BlamGames

[30/11/2009|15:03] C:\DOCUME~1\DEFENO~1\APPLIC~1\blg

[21/09/2009|20:45] C:\DOCUME~1\DEFENO~1\APPLIC~1\Boomzap

[13/04/2007|13:01] C:\DOCUME~1\DEFENO~1\APPLIC~1\Brother

[14/09/2009|11:13] C:\DOCUME~1\DEFENO~1\APPLIC~1\CasualForge

[22/09/2009|19:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\CatmoonGames

[18/03/2007|21:19] C:\DOCUME~1\DEFENO~1\APPLIC~1\CyberLink

[16/11/2007|21:49] C:\DOCUME~1\DEFENO~1\APPLIC~1\DivX

[17/02/2010|20:48] C:\DOCUME~1\DEFENO~1\APPLIC~1\dvdcss

[25/11/2009|13:02] C:\DOCUME~1\DEFENO~1\APPLIC~1\EleFun Games

[10/12/2009|15:57] C:\DOCUME~1\DEFENO~1\APPLIC~1\Enlightenus

[10/11/2009|20:52] C:\DOCUME~1\DEFENO~1\APPLIC~1\ERS G-Studio

[27/07/2009|12:21] C:\DOCUME~1\DEFENO~1\APPLIC~1\ExtraFilm

[04/02/2010|15:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\Facebook

[13/09/2009|18:00] C:\DOCUME~1\DEFENO~1\APPLIC~1\FarmerJane

[08/11/2009|18:14] C:\DOCUME~1\DEFENO~1\APPLIC~1\FirstColony

[22/01/2010|13:22] C:\DOCUME~1\DEFENO~1\APPLIC~1\Flood Light Games

[23/01/2010|15:14] C:\DOCUME~1\DEFENO~1\APPLIC~1\Friday's games

[18/12/2009|11:12] C:\DOCUME~1\DEFENO~1\APPLIC~1\Game Mill Entertainment

[23/11/2009|14:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\GameInvest

[30/11/2009|10:58] C:\DOCUME~1\DEFENO~1\APPLIC~1\Gold Casual Games

[15/05/2007|21:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\Google

[02/12/2009|14:44] C:\DOCUME~1\DEFENO~1\APPLIC~1\HiT-MM

[14/11/2009|15:40] C:\DOCUME~1\DEFENO~1\APPLIC~1\HSA

[11/12/2009|10:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\Identities

[24/02/2007|22:44] C:\DOCUME~1\DEFENO~1\APPLIC~1\InstallShield

[13/11/2009|15:40] C:\DOCUME~1\DEFENO~1\APPLIC~1\Island

[07/07/2009|21:49] C:\DOCUME~1\DEFENO~1\APPLIC~1\Lavasoft

[07/12/2009|12:26] C:\DOCUME~1\DEFENO~1\APPLIC~1\Lazy Turtle Games

[19/01/2008|17:02] C:\DOCUME~1\DEFENO~1\APPLIC~1\Leadertech

[29/07/2009|10:54] C:\DOCUME~1\DEFENO~1\APPLIC~1\LG Electronics

[29/09/2008|22:38] C:\DOCUME~1\DEFENO~1\APPLIC~1\LimeWire

[21/09/2009|11:58] C:\DOCUME~1\DEFENO~1\APPLIC~1\Little Games Company

[09/11/2009|12:14] C:\DOCUME~1\DEFENO~1\APPLIC~1\Little Worlds Online

[12/11/2009|19:07] C:\DOCUME~1\DEFENO~1\APPLIC~1\MA

[24/02/2007|12:59] C:\DOCUME~1\DEFENO~1\APPLIC~1\Macromedia

[08/07/2009|11:56] C:\DOCUME~1\DEFENO~1\APPLIC~1\Magic Seeds

[06/05/2010|21:04] C:\DOCUME~1\DEFENO~1\APPLIC~1\Malwarebytes

[02/10/2007|05:32] C:\DOCUME~1\DEFENO~1\APPLIC~1\Media Player Classic

[04/11/2009|16:20] C:\DOCUME~1\DEFENO~1\APPLIC~1\MegaplexMadnessSummerBlockbuster

[24/08/2009|14:50] C:\DOCUME~1\DEFENO~1\APPLIC~1\Meridian93

[04/01/2010|14:46] C:\DOCUME~1\DEFENO~1\APPLIC~1\Merscom

[05/02/2010|21:54] C:\DOCUME~1\DEFENO~1\APPLIC~1\Microsoft

[24/02/2007|18:12] C:\DOCUME~1\DEFENO~1\APPLIC~1\Mozilla

[07/07/2009|21:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\MSNInstaller

[24/10/2009|14:08] C:\DOCUME~1\DEFENO~1\APPLIC~1\My Games

[22/11/2009|17:37] C:\DOCUME~1\DEFENO~1\APPLIC~1\MysteryStudio

[29/08/2009|12:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\NevoSoft Games

[03/03/2007|13:25] C:\DOCUME~1\DEFENO~1\APPLIC~1\OD2

[23/08/2009|22:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\OpenOffice.org

[25/10/2009|09:07] C:\DOCUME~1\DEFENO~1\APPLIC~1\panoramik

[15/11/2007|20:34] C:\DOCUME~1\DEFENO~1\APPLIC~1\Participatory Culture Foundation

[12/01/2008|16:20] C:\DOCUME~1\DEFENO~1\APPLIC~1\PCF-VLC

[10/08/2009|19:09] C:\DOCUME~1\DEFENO~1\APPLIC~1\Peace Craft

[23/11/2009|15:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\Ph03nixNewMedia

[17/12/2009|15:57] C:\DOCUME~1\DEFENO~1\APPLIC~1\PlayFirst

[11/11/2009|17:23] C:\DOCUME~1\DEFENO~1\APPLIC~1\Playrix Entertainment

[23/11/2007|07:04] C:\DOCUME~1\DEFENO~1\APPLIC~1\Real

[17/11/2009|19:08] C:\DOCUME~1\DEFENO~1\APPLIC~1\ScanSoft

[24/10/2007|18:53] C:\DOCUME~1\DEFENO~1\APPLIC~1\SecuROM

[24/11/2009|11:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\she_is_a_shadow

[07/05/2010|19:44] C:\DOCUME~1\DEFENO~1\APPLIC~1\Skype

[07/05/2010|16:04] C:\DOCUME~1\DEFENO~1\APPLIC~1\skypePM

[30/01/2010|13:15] C:\DOCUME~1\DEFENO~1\APPLIC~1\Software Informer

[25/10/2009|09:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\SulusGames

[24/02/2007|12:48] C:\DOCUME~1\DEFENO~1\APPLIC~1\Sun

[24/02/2007|13:31] C:\DOCUME~1\DEFENO~1\APPLIC~1\Talkback

[27/02/2007|21:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\teamspeak2

[23/04/2010|21:35] C:\DOCUME~1\DEFENO~1\APPLIC~1\Teleca

[24/02/2007|18:12] C:\DOCUME~1\DEFENO~1\APPLIC~1\Thunderbird

[23/11/2009|12:10] C:\DOCUME~1\DEFENO~1\APPLIC~1\Total Eclipse

[04/12/2009|23:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\uTorrent

[03/12/2009|15:19] C:\DOCUME~1\DEFENO~1\APPLIC~1\VampireSaga

[27/11/2009|13:52] C:\DOCUME~1\DEFENO~1\APPLIC~1\V-Games

[21/10/2009|14:05] C:\DOCUME~1\DEFENO~1\APPLIC~1\ViquaSoft

[06/05/2010|17:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\vlc

[30/08/2009|14:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\Vogat Interactive

[07/10/2007|18:30] C:\DOCUME~1\DEFENO~1\APPLIC~1\Vso

[24/02/2007|19:21] C:\DOCUME~1\DEFENO~1\APPLIC~1\WinRAR

[01/09/2009|14:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\YoudaGames

[24/02/2007|13:06] C:\DOCUME~1\DEFENO~1\APPLIC~1\You've Got Pictures Screensaver

[11/12/2009|10:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\Zylom

 

[16/08/2004|18:54] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

 

[16/08/2004|18:54] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

 

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

 

[04/03/2010 20:01][--a------] C:\WINDOWS\tasks\Install_NSS.job

[07/05/2010 19:11][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

[07/05/2010 12:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job

[17/04/2010 20:11][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job

[07/05/2010 06:02][--ah-----] C:\WINDOWS\tasks\SA.DAT

[05/08/2004 15:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini

 

--------------------\\ Listing des dossiers dans C:\Program Files

 

[20/01/2010|21:56] C:\Program Files\Adobe

[09/12/2009|14:03] C:\Program Files\Affair Bureau

[10/03/2010|14:15] C:\Program Files\AGEIA Technologies

[25/07/2009|23:40] C:\Program Files\Apple Software Update

[22/03/2010|16:25] C:\Program Files\bfgclient

[22/02/2010|14:14] C:\Program Files\Big Fish Games Toolbar Installer

[23/02/2010|12:18] C:\Program Files\Bonjour

[12/07/2009|10:25] C:\Program Files\Brother

[16/03/2007|13:45] C:\Program Files\Capturino 1.4

[05/05/2010|23:54] C:\Program Files\CCleaner

[01/11/2009|16:15] C:\Program Files\Common Files

[01/12/2009|19:39] C:\Program Files\ConvertHelper

[24/02/2007|12:57] C:\Program Files\CyberLink

[28/08/2009|16:21] C:\Program Files\DivX

[01/10/2007|10:25] C:\Program Files\DVD Shrink

[01/10/2007|12:47] C:\Program Files\DVDFab HD Decrypter 3

[08/07/2009|19:12] C:\Program Files\EA Games

[29/09/2008|19:30] C:\Program Files\eMule

[18/02/2010|14:22] C:\Program Files\Extrafilm Designer FR

[06/05/2010|10:19] C:\Program Files\Fichiers communs

[01/12/2009|19:21] C:\Program Files\Free Download Manager

[10/12/2009|15:40] C:\Program Files\Gamenext

[08/03/2010|12:24] C:\Program Files\Gamesgames.com

[05/05/2010|16:11] C:\Program Files\Google

[10/02/2010|12:05] C:\Program Files\Hercules

[23/04/2010|21:23] C:\Program Files\HTC

[10/02/2010|12:05] C:\Program Files\InstallShield Installation Information

[31/03/2010|07:15] C:\Program Files\Internet Explorer

[23/02/2010|12:19] C:\Program Files\iPod

[23/02/2010|12:21] C:\Program Files\iTunes

[31/03/2010|08:08] C:\Program Files\Java

[27/11/2009|14:54] C:\Program Files\Jeux.fr

[16/09/2009|10:56] C:\Program Files\JRE

[08/12/2009|23:44] C:\Program Files\Kaspersky Lab

[21/10/2007|19:11] C:\Program Files\K-Lite Codec Pack

[01/06/2008|20:11] C:\Program Files\KONAMI

[29/07/2009|10:53] C:\Program Files\LG Electronics

[29/07/2009|10:52] C:\Program Files\LG PC Suite 2

[27/07/2009|11:45] C:\Program Files\LIVREPHOTO.FR

[01/11/2009|16:10] C:\Program Files\Logitech

[13/05/2007|21:38] C:\Program Files\Macrogaming

[08/07/2009|11:42] C:\Program Files\Magic Seeds

[06/05/2010|21:04] C:\Program Files\Malwarebytes' Anti-Malware

[04/11/2009|16:22] C:\Program Files\Megaplex Madness - Summer Blockbuster

[18/09/2008|22:06] C:\Program Files\Messenger

[07/07/2009|22:11] C:\Program Files\Microsoft

[24/02/2007|22:45] C:\Program Files\Microsoft ActiveSync

[15/11/2007|04:00] C:\Program Files\Microsoft CAPICOM 2.1.0.2

[16/08/2004|19:11] C:\Program Files\microsoft frontpage

[24/01/2008|22:32] C:\Program Files\Microsoft Office

[20/01/2010|08:33] C:\Program Files\Microsoft Silverlight

[13/11/2007|13:58] C:\Program Files\Microsoft SQL Server Compact Edition

[06/09/2009|12:27] C:\Program Files\monAlbumPhoto

[21/10/2007|10:31] C:\Program Files\Motherboard Monitor 5

[11/03/2010|07:48] C:\Program Files\Movie Maker

[07/05/2010|19:25] C:\Program Files\Mozilla Firefox

[07/05/2010|09:44] C:\Program Files\Mozilla Thunderbird

[06/08/2009|12:15] C:\Program Files\MSBuild

[07/07/2009|21:55] C:\Program Files\MSN

[16/08/2004|19:03] C:\Program Files\MSN Gaming Zone

[13/11/2007|13:58] C:\Program Files\MSN Messenger

[06/07/2009|22:26] C:\Program Files\MSXML 4.0

[24/02/2007|22:46] C:\Program Files\Navman

[27/02/2007|06:17] C:\Program Files\Nero

[18/09/2008|22:00] C:\Program Files\NetMeeting

[10/03/2010|14:18] C:\Program Files\NVIDIA Corporation

[09/12/2009|17:20] C:\Program Files\Oberon Media

[16/09/2009|10:55] C:\Program Files\OpenOffice.org 3

[12/08/2009|12:50] C:\Program Files\Outlook Express

[21/11/2009|23:01] C:\Program Files\QuickTime

[18/11/2007|20:23] C:\Program Files\Real

[24/02/2007|12:45] C:\Program Files\Realtek

[06/08/2009|12:15] C:\Program Files\Reference Assemblies

[12/07/2009|10:23] C:\Program Files\ScanSoft

[08/02/2010|12:50] C:\Program Files\Skype

[01/12/2009|19:14] C:\Program Files\Software Informer

[18/03/2010|13:32] C:\Program Files\SpeedFan

[23/04/2010|21:21] C:\Program Files\Spirent Communications

[07/05/2010|06:05] C:\Program Files\Steam

[12/07/2009|10:43] C:\Program Files\SYSTRAN

[27/02/2007|21:41] C:\Program Files\Teamspeak2_RC2

[06/05/2010|22:46] C:\Program Files\Trend Micro

[04/05/2010|23:12] C:\Program Files\UltraVNC

[06/01/2008|12:07] C:\Program Files\Uninstall Information

[09/12/2009|15:34] C:\Program Files\UrbanTerror

[22/08/2009|21:50] C:\Program Files\uTorrent

[22/02/2010|16:17] C:\Program Files\Vacation Mogul

[03/03/2007|18:16] C:\Program Files\VID_0E8F&PID_0003

[27/10/2009|10:45] C:\Program Files\VideoLAN

[24/02/2007|13:06] C:\Program Files\Viewpoint

[07/10/2009|12:18] C:\Program Files\Windows Live

[07/07/2009|22:11] C:\Program Files\Windows Live SkyDrive

[28/09/2008|21:10] C:\Program Files\Windows Media Connect 2

[28/09/2008|21:10] C:\Program Files\Windows Media Player

[18/09/2008|22:00] C:\Program Files\Windows NT

[24/02/2007|19:20] C:\Program Files\WinRAR

[24/02/2007|22:00] C:\Program Files\WinRAR 3.51

[31/08/2009|13:54] C:\Program Files\World Mosaics 2

[16/08/2004|19:11] C:\Program Files\xerox

[06/01/2008|12:37] C:\Program Files\Yahoo!

[08/07/2009|11:50] C:\Program Files\Youda Marina

[11/12/2009|15:00] C:\Program Files\Zylom Games

 

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

 

[20/01/2010|21:58] C:\Program Files\Fichiers communs\Adobe

[10/02/2010|12:02] C:\Program Files\Fichiers communs\Adobe AIR

[27/02/2007|06:17] C:\Program Files\Fichiers communs\Ahead

[23/02/2010|12:19] C:\Program Files\Fichiers communs\Apple

[31/05/2007|19:58] C:\Program Files\Fichiers communs\Blizzard Entertainment

[28/08/2009|16:20] C:\Program Files\Fichiers communs\DivX Shared

[12/07/2009|10:25] C:\Program Files\Fichiers communs\InstallShield

[24/02/2007|12:48] C:\Program Files\Fichiers communs\Java

[01/11/2009|16:10] C:\Program Files\Fichiers communs\Logishrd

[13/08/2009|15:39] C:\Program Files\Fichiers communs\Microsoft Shared

[16/08/2004|19:06] C:\Program Files\Fichiers communs\MSSoap

[07/08/2009|09:30] C:\Program Files\Fichiers communs\Oberon Media

[18/11/2007|20:24] C:\Program Files\Fichiers communs\Real

[12/07/2009|10:23] C:\Program Files\Fichiers communs\ScanSoft Shared

[16/08/2004|19:06] C:\Program Files\Fichiers communs\Services

[28/10/2009|22:21] C:\Program Files\Fichiers communs\Skype

[17/08/2007|19:22] C:\Program Files\Fichiers communs\Sonic Shared

[16/08/2004|18:56] C:\Program Files\Fichiers communs\SpeechEngines

[29/09/2009|14:32] C:\Program Files\Fichiers communs\SWF Studio

[18/09/2008|22:00] C:\Program Files\Fichiers communs\System

[23/04/2010|21:23] C:\Program Files\Fichiers communs\Teleca Shared

[07/07/2009|21:41] C:\Program Files\Fichiers communs\Windows Live

[13/11/2007|13:56] C:\Program Files\Fichiers communs\WindowsLiveInstaller

[10/03/2010|14:15] C:\Program Files\Fichiers communs\Wise Installation Wizard

[18/11/2007|20:24] C:\Program Files\Fichiers communs\xing shared

 

--------------------\\ Process

 

( 66 Processes )

 

... OK !

 

--------------------\\ Recherche avec S_Lop

 

Aucun fichier / dossier Lop trouvé !

 

--------------------\\ Recherche de Fichiers / Dossiers Lop

 

C:\DOCUME~1\DEFENO~1\APPLIC~1\Bitdownload

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\BitDownload.ini

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\btdht.dat

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\lib.vcs

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\PlayLists

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\RoutingTree.bin

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\search.ini

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\Shared.dat

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\ShareHistory.dat

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\SPK.bin

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\Storage

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\Torrents

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\trdnld.vcs

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\trupld.vcs

C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\URLs.ini

 

--------------------\\ Verification du Registre

 

..... OK !

 

--------------------\\ Verification du fichier Hosts

 

Fichier Hosts PROPRE

 

 

--------------------\\ Recherche de fichiers avec Catchme

 

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2010-05-07 19:52:02

Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden files ...

scan completed successfully

hidden processes: 0

hidden files: 2

 

--------------------\\ Recherche d'autres infections

 

--------------------\\ Cracks & Keygens ..

 

C:\DOCUME~1\DEFENO~1\Bureau\allpeers\destop62\Nero-7.5.9.0_fra_lite\keygen.exe

 

 

[F:22][D:7]-> C:\DOCUME~1\DEFENO~1\LOCALS~1\Temp

[F:18][D:0]-> C:\DOCUME~1\DEFENO~1\Cookies

[F:79][D:4]-> C:\DOCUME~1\DEFENO~1\LOCALS~1\TEMPOR~1\content.IE5

 

1 - "C:\Lop SD\LopR_1.txt" - 07/05/2010|19:55 - Option : [1]

 

--------------------\\ Fin du rapport a 19:55:55

Posté(e)

Bonsoir,

 

Y'en a encore :P

 

Passe à la désinfection comme demandé plus haut.

Rappel:

 

Relance Lop S&D

 

Choisis cette fois ci l'Option 2 (Suppression)

Ne ferme pas la fenêtre lors de la suppression !

Poste le rapport généré (C:\lopR.txt)

 

(Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide)

 

*** Fais gaffe avec les cracks, cela pourrait t'attirer des monstres de virus, genre Virut et c'est la cata avec lui... :P

 

Après le rapport de Lop S&D option 2: fais un nouveau log Hijackthis et donne-moi des nouvelles du pc.

 

@++

Posté(e)

Voila

--------------------\\ Lop S&D 4.2.5-0 XP/Vista

 

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3

X86-based PC ( Uniprocessor Free : Intel® Pentium® 4 CPU 3.06GHz )

BIOS : Award Medallion BIOS v6.00PG

USER : defenouillere ( Administrator )

BOOT : Normal boot

Antivirus : Kaspersky Internet Security 9.0.0.736 (Activated)

Firewall : Kaspersky Internet Security 9.0.0.736 (Activated)

A:\ (USB)

C:\ (Local Disk) - NTFS - Total:186 Go (Free:137 Go)

D:\ (Local Disk) - NTFS - Total:233 Go (Free:165 Go)

E:\ (CD or DVD)

F:\ (CD or DVD)

G:\ (USB)

H:\ (USB)

I:\ (USB)

J:\ (USB)

K:\ (Local Disk) - NTFS - Total:153 Go (Free:29 Go)

 

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )

Option : [2] ( 07/05/2010|19:58 )

 

 

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION

 

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\BitDownload.ini

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\btdht.dat

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\lib.vcs

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\PlayLists

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\RoutingTree.bin

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\search.ini

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\Shared.dat

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\ShareHistory.dat

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\SPK.bin

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\Storage

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\Torrents

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\trdnld.vcs

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\trupld.vcs

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\BitDownload\URLs.ini

Supprime! - C:\DOCUME~1\DEFENO~1\APPLIC~1\Bitdownload

 

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

 

Supprime! - C:\Program Files\Viewpoint

Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint

 

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

 

 

--------------------\\ Listing des dossiers dans APPLIC~1

 

[23/02/2010|12:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{755AC846-7372-4AC8-8550-C52491DAA8BD}

[10/02/2010|12:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe

[16/11/2009|15:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Alawar Stargaze

[13/08/2009|19:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\albumphoto

[19/08/2007|13:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL

[19/08/2007|13:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL Downloads

[25/07/2009|23:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple

[23/02/2010|12:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer

[17/12/2009|15:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Artist Colony

[22/03/2010|16:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BigFishGamesCache

[30/11/2009|15:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\blg

[11/07/2007|11:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY

[12/07/2009|10:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Brother

[14/09/2009|11:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CasualForge

[24/02/2007|12:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink

[01/10/2007|10:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink

[22/01/2010|14:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EscapeTheMuseum2

[05/09/2009|17:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ExtraFilm

[09/09/2009|17:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FarmFrenzy2

[13/09/2009|13:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FarmFrenzy3

[01/09/2009|21:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FarmFrenzy-PizzaParty

[03/01/2010|16:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fenomen Games

[29/09/2007|17:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FlashFXP

[22/01/2010|13:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Flood Light Games

[29/09/2009|14:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Fugazo

[17/11/2009|12:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\GameHouse

[12/01/2008|19:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google

[23/04/2010|21:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\HTC

[12/07/2009|10:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield

[07/05/2010|13:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab

[08/12/2009|23:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files

[02/12/2009|17:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kristanix Games

[21/09/2009|11:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Little Games Company

[01/11/2009|16:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LogiShrd

[19/08/2007|13:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macromedia

[06/05/2010|21:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes

[02/12/2009|12:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MarcoPolo

[04/01/2010|14:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Merscom

[28/01/2010|20:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft

[02/08/2009|15:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MythPeople

[06/07/2009|21:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NortonInstaller

[10/03/2010|14:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NVIDIA Corporation

[25/07/2007|20:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles

[07/08/2009|09:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Oberon Media

[24/02/2007|13:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2

[17/12/2009|15:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PlayFirst

[16/12/2009|15:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\rionix

[11/10/2009|14:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sandlot Games

[16/08/2004|19:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI

[12/07/2009|10:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft

[28/10/2009|22:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype

[06/07/2009|21:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy

[31/03/2010|08:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sun

[24/08/2009|16:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SuperRanch

[04/03/2010|19:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec

[23/04/2010|21:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Teleca

[08/03/2010|12:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP

[25/05/2008|18:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TrackMania

[31/08/2009|18:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\VirtualFarm

[20/03/2007|20:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage

[13/11/2007|13:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller

[10/12/2009|15:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\XLab

[24/02/2007|21:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo!

[16/08/2009|12:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom

 

[04/05/2010|13:59] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer

[07/04/2010|22:15] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Google

[16/08/2004|19:19] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities

[10/02/2010|12:02] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia

[24/02/2007|12:59] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft

[24/02/2007|13:00] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Real

[24/02/2007|12:48] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sun

[24/02/2007|13:00] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec

[24/02/2007|13:06] C:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver

 

[10/02/2010|12:00] C:\DOCUME~1\DEFENO~1\APPLIC~1\Adobe

[27/02/2007|13:07] C:\DOCUME~1\DEFENO~1\APPLIC~1\AdobeUM

[27/02/2007|06:19] C:\DOCUME~1\DEFENO~1\APPLIC~1\Ahead

[19/08/2007|14:53] C:\DOCUME~1\DEFENO~1\APPLIC~1\AOL

[23/02/2010|12:30] C:\DOCUME~1\DEFENO~1\APPLIC~1\Apple Computer

[10/11/2009|18:05] C:\DOCUME~1\DEFENO~1\APPLIC~1\Artogon

[24/07/2007|22:03] C:\DOCUME~1\DEFENO~1\APPLIC~1\ATI

[17/10/2009|20:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\Awem

[09/12/2009|13:02] C:\DOCUME~1\DEFENO~1\APPLIC~1\Azuaz Games

[22/02/2010|14:16] C:\DOCUME~1\DEFENO~1\APPLIC~1\bfgbar

[30/11/2009|15:08] C:\DOCUME~1\DEFENO~1\APPLIC~1\BlamGames

[30/11/2009|15:03] C:\DOCUME~1\DEFENO~1\APPLIC~1\blg

[21/09/2009|20:45] C:\DOCUME~1\DEFENO~1\APPLIC~1\Boomzap

[13/04/2007|13:01] C:\DOCUME~1\DEFENO~1\APPLIC~1\Brother

[14/09/2009|11:13] C:\DOCUME~1\DEFENO~1\APPLIC~1\CasualForge

[22/09/2009|19:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\CatmoonGames

[18/03/2007|21:19] C:\DOCUME~1\DEFENO~1\APPLIC~1\CyberLink

[16/11/2007|21:49] C:\DOCUME~1\DEFENO~1\APPLIC~1\DivX

[17/02/2010|20:48] C:\DOCUME~1\DEFENO~1\APPLIC~1\dvdcss

[25/11/2009|13:02] C:\DOCUME~1\DEFENO~1\APPLIC~1\EleFun Games

[10/12/2009|15:57] C:\DOCUME~1\DEFENO~1\APPLIC~1\Enlightenus

[10/11/2009|20:52] C:\DOCUME~1\DEFENO~1\APPLIC~1\ERS G-Studio

[27/07/2009|12:21] C:\DOCUME~1\DEFENO~1\APPLIC~1\ExtraFilm

[04/02/2010|15:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\Facebook

[13/09/2009|18:00] C:\DOCUME~1\DEFENO~1\APPLIC~1\FarmerJane

[08/11/2009|18:14] C:\DOCUME~1\DEFENO~1\APPLIC~1\FirstColony

[22/01/2010|13:22] C:\DOCUME~1\DEFENO~1\APPLIC~1\Flood Light Games

[23/01/2010|15:14] C:\DOCUME~1\DEFENO~1\APPLIC~1\Friday's games

[18/12/2009|11:12] C:\DOCUME~1\DEFENO~1\APPLIC~1\Game Mill Entertainment

[23/11/2009|14:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\GameInvest

[30/11/2009|10:58] C:\DOCUME~1\DEFENO~1\APPLIC~1\Gold Casual Games

[15/05/2007|21:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\Google

[02/12/2009|14:44] C:\DOCUME~1\DEFENO~1\APPLIC~1\HiT-MM

[14/11/2009|15:40] C:\DOCUME~1\DEFENO~1\APPLIC~1\HSA

[11/12/2009|10:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\Identities

[24/02/2007|22:44] C:\DOCUME~1\DEFENO~1\APPLIC~1\InstallShield

[13/11/2009|15:40] C:\DOCUME~1\DEFENO~1\APPLIC~1\Island

[07/07/2009|21:49] C:\DOCUME~1\DEFENO~1\APPLIC~1\Lavasoft

[07/12/2009|12:26] C:\DOCUME~1\DEFENO~1\APPLIC~1\Lazy Turtle Games

[19/01/2008|17:02] C:\DOCUME~1\DEFENO~1\APPLIC~1\Leadertech

[29/07/2009|10:54] C:\DOCUME~1\DEFENO~1\APPLIC~1\LG Electronics

[29/09/2008|22:38] C:\DOCUME~1\DEFENO~1\APPLIC~1\LimeWire

[21/09/2009|11:58] C:\DOCUME~1\DEFENO~1\APPLIC~1\Little Games Company

[09/11/2009|12:14] C:\DOCUME~1\DEFENO~1\APPLIC~1\Little Worlds Online

[12/11/2009|19:07] C:\DOCUME~1\DEFENO~1\APPLIC~1\MA

[24/02/2007|12:59] C:\DOCUME~1\DEFENO~1\APPLIC~1\Macromedia

[08/07/2009|11:56] C:\DOCUME~1\DEFENO~1\APPLIC~1\Magic Seeds

[06/05/2010|21:04] C:\DOCUME~1\DEFENO~1\APPLIC~1\Malwarebytes

[02/10/2007|05:32] C:\DOCUME~1\DEFENO~1\APPLIC~1\Media Player Classic

[04/11/2009|16:20] C:\DOCUME~1\DEFENO~1\APPLIC~1\MegaplexMadnessSummerBlockbuster

[24/08/2009|14:50] C:\DOCUME~1\DEFENO~1\APPLIC~1\Meridian93

[04/01/2010|14:46] C:\DOCUME~1\DEFENO~1\APPLIC~1\Merscom

[05/02/2010|21:54] C:\DOCUME~1\DEFENO~1\APPLIC~1\Microsoft

[24/02/2007|18:12] C:\DOCUME~1\DEFENO~1\APPLIC~1\Mozilla

[07/07/2009|21:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\MSNInstaller

[24/10/2009|14:08] C:\DOCUME~1\DEFENO~1\APPLIC~1\My Games

[22/11/2009|17:37] C:\DOCUME~1\DEFENO~1\APPLIC~1\MysteryStudio

[29/08/2009|12:55] C:\DOCUME~1\DEFENO~1\APPLIC~1\NevoSoft Games

[03/03/2007|13:25] C:\DOCUME~1\DEFENO~1\APPLIC~1\OD2

[23/08/2009|22:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\OpenOffice.org

[25/10/2009|09:07] C:\DOCUME~1\DEFENO~1\APPLIC~1\panoramik

[15/11/2007|20:34] C:\DOCUME~1\DEFENO~1\APPLIC~1\Participatory Culture Foundation

[12/01/2008|16:20] C:\DOCUME~1\DEFENO~1\APPLIC~1\PCF-VLC

[10/08/2009|19:09] C:\DOCUME~1\DEFENO~1\APPLIC~1\Peace Craft

[23/11/2009|15:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\Ph03nixNewMedia

[17/12/2009|15:57] C:\DOCUME~1\DEFENO~1\APPLIC~1\PlayFirst

[11/11/2009|17:23] C:\DOCUME~1\DEFENO~1\APPLIC~1\Playrix Entertainment

[23/11/2007|07:04] C:\DOCUME~1\DEFENO~1\APPLIC~1\Real

[17/11/2009|19:08] C:\DOCUME~1\DEFENO~1\APPLIC~1\ScanSoft

[24/10/2007|18:53] C:\DOCUME~1\DEFENO~1\APPLIC~1\SecuROM

[24/11/2009|11:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\she_is_a_shadow

[07/05/2010|19:44] C:\DOCUME~1\DEFENO~1\APPLIC~1\Skype

[07/05/2010|16:04] C:\DOCUME~1\DEFENO~1\APPLIC~1\skypePM

[30/01/2010|13:15] C:\DOCUME~1\DEFENO~1\APPLIC~1\Software Informer

[25/10/2009|09:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\SulusGames

[24/02/2007|12:48] C:\DOCUME~1\DEFENO~1\APPLIC~1\Sun

[24/02/2007|13:31] C:\DOCUME~1\DEFENO~1\APPLIC~1\Talkback

[27/02/2007|21:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\teamspeak2

[23/04/2010|21:35] C:\DOCUME~1\DEFENO~1\APPLIC~1\Teleca

[24/02/2007|18:12] C:\DOCUME~1\DEFENO~1\APPLIC~1\Thunderbird

[23/11/2009|12:10] C:\DOCUME~1\DEFENO~1\APPLIC~1\Total Eclipse

[04/12/2009|23:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\uTorrent

[03/12/2009|15:19] C:\DOCUME~1\DEFENO~1\APPLIC~1\VampireSaga

[27/11/2009|13:52] C:\DOCUME~1\DEFENO~1\APPLIC~1\V-Games

[21/10/2009|14:05] C:\DOCUME~1\DEFENO~1\APPLIC~1\ViquaSoft

[06/05/2010|17:28] C:\DOCUME~1\DEFENO~1\APPLIC~1\vlc

[30/08/2009|14:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\Vogat Interactive

[07/10/2007|18:30] C:\DOCUME~1\DEFENO~1\APPLIC~1\Vso

[24/02/2007|19:21] C:\DOCUME~1\DEFENO~1\APPLIC~1\WinRAR

[01/09/2009|14:11] C:\DOCUME~1\DEFENO~1\APPLIC~1\YoudaGames

[24/02/2007|13:06] C:\DOCUME~1\DEFENO~1\APPLIC~1\You've Got Pictures Screensaver

[11/12/2009|10:41] C:\DOCUME~1\DEFENO~1\APPLIC~1\Zylom

 

[16/08/2004|18:54] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

 

[16/08/2004|18:54] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

 

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

 

[04/03/2010 20:01][--a------] C:\WINDOWS\tasks\Install_NSS.job

[07/05/2010 19:11][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

[07/05/2010 12:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job

[17/04/2010 20:11][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job

[07/05/2010 06:02][--ah-----] C:\WINDOWS\tasks\SA.DAT

[05/08/2004 15:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini

 

--------------------\\ Listing des dossiers dans C:\Program Files

 

[20/01/2010|21:56] C:\Program Files\Adobe

[09/12/2009|14:03] C:\Program Files\Affair Bureau

[10/03/2010|14:15] C:\Program Files\AGEIA Technologies

[25/07/2009|23:40] C:\Program Files\Apple Software Update

[22/03/2010|16:25] C:\Program Files\bfgclient

[22/02/2010|14:14] C:\Program Files\Big Fish Games Toolbar Installer

[23/02/2010|12:18] C:\Program Files\Bonjour

[12/07/2009|10:25] C:\Program Files\Brother

[16/03/2007|13:45] C:\Program Files\Capturino 1.4

[05/05/2010|23:54] C:\Program Files\CCleaner

[01/11/2009|16:15] C:\Program Files\Common Files

[01/12/2009|19:39] C:\Program Files\ConvertHelper

[24/02/2007|12:57] C:\Program Files\CyberLink

[28/08/2009|16:21] C:\Program Files\DivX

[01/10/2007|10:25] C:\Program Files\DVD Shrink

[01/10/2007|12:47] C:\Program Files\DVDFab HD Decrypter 3

[08/07/2009|19:12] C:\Program Files\EA Games

[29/09/2008|19:30] C:\Program Files\eMule

[18/02/2010|14:22] C:\Program Files\Extrafilm Designer FR

[06/05/2010|10:19] C:\Program Files\Fichiers communs

[01/12/2009|19:21] C:\Program Files\Free Download Manager

[10/12/2009|15:40] C:\Program Files\Gamenext

[08/03/2010|12:24] C:\Program Files\Gamesgames.com

[05/05/2010|16:11] C:\Program Files\Google

[10/02/2010|12:05] C:\Program Files\Hercules

[23/04/2010|21:23] C:\Program Files\HTC

[10/02/2010|12:05] C:\Program Files\InstallShield Installation Information

[31/03/2010|07:15] C:\Program Files\Internet Explorer

[23/02/2010|12:19] C:\Program Files\iPod

[23/02/2010|12:21] C:\Program Files\iTunes

[31/03/2010|08:08] C:\Program Files\Java

[27/11/2009|14:54] C:\Program Files\Jeux.fr

[16/09/2009|10:56] C:\Program Files\JRE

[08/12/2009|23:44] C:\Program Files\Kaspersky Lab

[21/10/2007|19:11] C:\Program Files\K-Lite Codec Pack

[01/06/2008|20:11] C:\Program Files\KONAMI

[29/07/2009|10:53] C:\Program Files\LG Electronics

[29/07/2009|10:52] C:\Program Files\LG PC Suite 2

[27/07/2009|11:45] C:\Program Files\LIVREPHOTO.FR

[01/11/2009|16:10] C:\Program Files\Logitech

[13/05/2007|21:38] C:\Program Files\Macrogaming

[08/07/2009|11:42] C:\Program Files\Magic Seeds

[06/05/2010|21:04] C:\Program Files\Malwarebytes' Anti-Malware

[04/11/2009|16:22] C:\Program Files\Megaplex Madness - Summer Blockbuster

[18/09/2008|22:06] C:\Program Files\Messenger

[07/07/2009|22:11] C:\Program Files\Microsoft

[24/02/2007|22:45] C:\Program Files\Microsoft ActiveSync

[15/11/2007|04:00] C:\Program Files\Microsoft CAPICOM 2.1.0.2

[16/08/2004|19:11] C:\Program Files\microsoft frontpage

[24/01/2008|22:32] C:\Program Files\Microsoft Office

[20/01/2010|08:33] C:\Program Files\Microsoft Silverlight

[13/11/2007|13:58] C:\Program Files\Microsoft SQL Server Compact Edition

[06/09/2009|12:27] C:\Program Files\monAlbumPhoto

[21/10/2007|10:31] C:\Program Files\Motherboard Monitor 5

[11/03/2010|07:48] C:\Program Files\Movie Maker

[07/05/2010|19:25] C:\Program Files\Mozilla Firefox

[07/05/2010|09:44] C:\Program Files\Mozilla Thunderbird

[06/08/2009|12:15] C:\Program Files\MSBuild

[07/07/2009|21:55] C:\Program Files\MSN

[16/08/2004|19:03] C:\Program Files\MSN Gaming Zone

[13/11/2007|13:58] C:\Program Files\MSN Messenger

[06/07/2009|22:26] C:\Program Files\MSXML 4.0

[24/02/2007|22:46] C:\Program Files\Navman

[27/02/2007|06:17] C:\Program Files\Nero

[18/09/2008|22:00] C:\Program Files\NetMeeting

[10/03/2010|14:18] C:\Program Files\NVIDIA Corporation

[09/12/2009|17:20] C:\Program Files\Oberon Media

[16/09/2009|10:55] C:\Program Files\OpenOffice.org 3

[12/08/2009|12:50] C:\Program Files\Outlook Express

[21/11/2009|23:01] C:\Program Files\QuickTime

[18/11/2007|20:23] C:\Program Files\Real

[24/02/2007|12:45] C:\Program Files\Realtek

[06/08/2009|12:15] C:\Program Files\Reference Assemblies

[12/07/2009|10:23] C:\Program Files\ScanSoft

[08/02/2010|12:50] C:\Program Files\Skype

[01/12/2009|19:14] C:\Program Files\Software Informer

[18/03/2010|13:32] C:\Program Files\SpeedFan

[23/04/2010|21:21] C:\Program Files\Spirent Communications

[07/05/2010|06:05] C:\Program Files\Steam

[12/07/2009|10:43] C:\Program Files\SYSTRAN

[27/02/2007|21:41] C:\Program Files\Teamspeak2_RC2

[06/05/2010|22:46] C:\Program Files\Trend Micro

[04/05/2010|23:12] C:\Program Files\UltraVNC

[06/01/2008|12:07] C:\Program Files\Uninstall Information

[09/12/2009|15:34] C:\Program Files\UrbanTerror

[22/08/2009|21:50] C:\Program Files\uTorrent

[22/02/2010|16:17] C:\Program Files\Vacation Mogul

[03/03/2007|18:16] C:\Program Files\VID_0E8F&PID_0003

[27/10/2009|10:45] C:\Program Files\VideoLAN

[07/10/2009|12:18] C:\Program Files\Windows Live

[07/07/2009|22:11] C:\Program Files\Windows Live SkyDrive

[28/09/2008|21:10] C:\Program Files\Windows Media Connect 2

[28/09/2008|21:10] C:\Program Files\Windows Media Player

[18/09/2008|22:00] C:\Program Files\Windows NT

[24/02/2007|19:20] C:\Program Files\WinRAR

[24/02/2007|22:00] C:\Program Files\WinRAR 3.51

[31/08/2009|13:54] C:\Program Files\World Mosaics 2

[16/08/2004|19:11] C:\Program Files\xerox

[06/01/2008|12:37] C:\Program Files\Yahoo!

[08/07/2009|11:50] C:\Program Files\Youda Marina

[11/12/2009|15:00] C:\Program Files\Zylom Games

 

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

 

[20/01/2010|21:58] C:\Program Files\Fichiers communs\Adobe

[10/02/2010|12:02] C:\Program Files\Fichiers communs\Adobe AIR

[27/02/2007|06:17] C:\Program Files\Fichiers communs\Ahead

[23/02/2010|12:19] C:\Program Files\Fichiers communs\Apple

[31/05/2007|19:58] C:\Program Files\Fichiers communs\Blizzard Entertainment

[28/08/2009|16:20] C:\Program Files\Fichiers communs\DivX Shared

[12/07/2009|10:25] C:\Program Files\Fichiers communs\InstallShield

[24/02/2007|12:48] C:\Program Files\Fichiers communs\Java

[01/11/2009|16:10] C:\Program Files\Fichiers communs\Logishrd

[13/08/2009|15:39] C:\Program Files\Fichiers communs\Microsoft Shared

[16/08/2004|19:06] C:\Program Files\Fichiers communs\MSSoap

[07/08/2009|09:30] C:\Program Files\Fichiers communs\Oberon Media

[18/11/2007|20:24] C:\Program Files\Fichiers communs\Real

[12/07/2009|10:23] C:\Program Files\Fichiers communs\ScanSoft Shared

[16/08/2004|19:06] C:\Program Files\Fichiers communs\Services

[28/10/2009|22:21] C:\Program Files\Fichiers communs\Skype

[17/08/2007|19:22] C:\Program Files\Fichiers communs\Sonic Shared

[16/08/2004|18:56] C:\Program Files\Fichiers communs\SpeechEngines

[29/09/2009|14:32] C:\Program Files\Fichiers communs\SWF Studio

[18/09/2008|22:00] C:\Program Files\Fichiers communs\System

[23/04/2010|21:23] C:\Program Files\Fichiers communs\Teleca Shared

[07/07/2009|21:41] C:\Program Files\Fichiers communs\Windows Live

[13/11/2007|13:56] C:\Program Files\Fichiers communs\WindowsLiveInstaller

[10/03/2010|14:15] C:\Program Files\Fichiers communs\Wise Installation Wizard

[18/11/2007|20:24] C:\Program Files\Fichiers communs\xing shared

 

--------------------\\ Process

 

( 66 Processes )

 

... OK !

 

--------------------\\ Recherche avec S_Lop

 

Aucun fichier / dossier Lop trouvé !

 

--------------------\\ Recherche de Fichiers / Dossiers Lop

 

Aucun fichier / dossier Lop trouvé !

 

--------------------\\ Verification du Registre

 

..... OK !

 

--------------------\\ Verification du fichier Hosts

 

Fichier Hosts PROPRE

 

 

--------------------\\ Recherche de fichiers avec Catchme

 

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net

Rootkit scan 2010-05-07 20:04:14

Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden files ...

scan completed successfully

hidden processes: 0

hidden files: 2

 

--------------------\\ Recherche d'autres infections

 

--------------------\\ Cracks & Keygens ..

 

C:\DOCUME~1\DEFENO~1\Bureau\allpeers\destop62\Nero-7.5.9.0_fra_lite\keygen.exe

 

 

[F:22][D:7]-> C:\DOCUME~1\DEFENO~1\LOCALS~1\Temp

[F:18][D:0]-> C:\DOCUME~1\DEFENO~1\Cookies

[F:79][D:4]-> C:\DOCUME~1\DEFENO~1\LOCALS~1\TEMPOR~1\content.IE5

 

1 - "C:\Lop SD\LopR_1.txt" - 07/05/2010|19:55 - Option : [1]

2 - "C:\Lop SD\LopR_2.txt" - 07/05/2010|20:06 - Option : [2]

 

--------------------\\ Fin du rapport a 20:06:43

Posté(e) (modifié)

Bonsoir apollo est voila le rapport

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 20:10:43, on 07/05/2010

Platform: Windows XP SP3 (WinNT 5.01.2600)

MSIE: Internet Explorer v8.00 (8.00.6001.18702)

Boot mode: Normal

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\nvsvc32.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\brsvc01a.exe

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\system32\brss01a.exe

C:\WINDOWS\SOUNDMAN.EXE

C:\WINDOWS\ALCWZRD.EXE

C:\Apps\Powercinema\PCMService.exe

C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe

C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe

C:\Program Files\iTunes\iTunesHelper.exe

C:\WINDOWS\system32\RUNDLL32.EXE

C:\Program Files\HTC\HTC Sync\Application Launcher\Application Launcher.exe

C:\Program Files\Microsoft ActiveSync\wcescomm.exe

C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

C:\Program Files\Bonjour\mDNSResponder.exe

c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe

C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Extrafilm Designer FR\EFUploadSrv.exe

C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe

C:\PROGRA~1\MICROS~2\rapimgr.exe

c:\APPS\HIDSERVICE\HIDSERVICE.exe

C:\WINDOWS\system32\HerculesWiFiService.exe

C:\Program Files\Logitech\SetPoint II\SetpointII.exe

C:\Program Files\Fichiers communs\Logishrd\KHAL2\KHALMNPR.EXE

C:\Program Files\Java\jre6\bin\jqs.exe

C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe

C:\WINDOWS\system32\PnkBstrA.exe

C:\WINDOWS\system32\PnkBstrB.exe

C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe

C:\WINDOWS\system32\svchost.exe

C:\Program Files\UltraVNC\WinVNC.exe

c:\APPS\Powercinema\Kernel\TV\CLSched.exe

C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe

C:\Program Files\Fichiers communs\Teleca Shared\logger.exe

C:\Program Files\Fichiers communs\Teleca Shared\CapabilityManager.exe

C:\Program Files\HTC\HTC Sync\ClientInitiatedStarter\ClientInitiatedStarter.exe

C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\epmworker.exe

C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\HTCVBTServer.exe

C:\Program Files\HTC\HTC Sync\Mobile Phone Monitor\FsynSrvStarter.exe

C:\Program Files\iPod\bin\iPodService.exe

C:\Program Files\Windows Live\Messenger\msnmsgr.exe

C:\Program Files\Windows Live\Contacts\wlcomm.exe

C:\Program Files\Skype\Phone\Skype.exe

C:\Program Files\Skype\Plugin Manager\skypePM.exe

C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe

C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe

C:\Program Files\Mozilla Firefox\firefox.exe

C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtblfs.exe

C:\WINDOWS\system32\cmd.exe

C:\WINDOWS\system32\NOTEPAD.EXE

C:\Documents and Settings\defenouillere\Mes documents\Téléchargements\HiJackThis(3).exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://start.gamesgames.com

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)

O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll

O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll

O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll

O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll

O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll

O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll

O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll

O3 - Toolbar: SYSTRAN Web Translator 5.0 - {A5899B52-3AF9-4F56-85FE-AD7B3BE8490F} - C:\Program Files\SYSTRAN\5.0\Personal\IEPlugIn.dll

O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE

O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE

O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.2\Apps\apdproxy.exe"

O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAudPropShortcut.exe

O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"

O4 - HKLM\..\Run: [WinVNC] "C:\Program Files\UltraVNC\WinVNC.exe" -servicehelper

O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32

O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC

O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName

O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot

O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe

O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe

O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun

O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE

O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Fichiers communs\Java\Java Update\jusched.exe"

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe"

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe"

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit

O4 - HKLM\..\Run: [Mobile Connectivity Suite] "C:\Program Files\HTC\HTC Sync\Application Launcher\Application Launcher.exe" /startoptions

O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"

O4 - HKCU\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\nTuneCmd.exe" clear

O4 - HKCU\..\Run: [steam] "c:\program files\steam\steam.exe" -silent

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')

O4 - Global Startup: Contrôleur d’état.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe

O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe

O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe

O4 - Global Startup: SetPointII.lnk = ?

O4 - Global Startup: WiFi Station N.lnk = C:\Program Files\Hercules\WiFiStationN\WiFiN.exe

O8 - Extra context menu item: Ajouter à l'Anti-bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm

O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll

O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll

O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll

O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~2\INetRepl.dll

O9 - Extra button: Clavier &virtuel - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll

O9 - Extra button: Analyse des &liens - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll

O16 - DPF: {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} (Image Uploader Control) - http://www.extrafilm.fr/ImageUploader5.cab

O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab

O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL

O23 - Service: AOL Connectivity Service (AOL ACS) - Unknown owner - C:\Program Files\Fichiers communs\AOL\ACS\AOLAcsd.exe (file missing)

O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe

O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe

O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe

O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe

O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe

O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe

O23 - Service: ExtraFilm upload service (EFUploadSrv) - Textalk AB - C:\Program Files\Extrafilm Designer FR\EFUploadSrv.exe

O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe

O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe

O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe

O23 - Service: HerculesWiFi - Guillemot Corporation - C:\WINDOWS\system32\HerculesWiFiService.exe

O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: MysqlInventime - Unknown owner - C:\Apps\INVENT~1\mysql\bin\mysqld-nt.exe (file missing)

O23 - Service: nTune Service (nTuneService) - NVIDIA - C:\Program Files\NVIDIA Corporation\nTune\nTuneService.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe

O23 - Service: PnkBstrB - Unknown owner - C:\WINDOWS\system32\PnkBstrB.exe

O23 - Service: VNC Server (winvnc) - www.ultravnc.fr - C:\Program Files\UltraVNC\WinVNC.exe

 

--

End of file - 13470 bytes

Modifié par prope
Posté(e)

Re :P

 

Relance Hijackthis avec Do a system scan only et coche les cases devant les lignes suivantes: SOUS VISTA/7: Clic droit sur Hijackthis/exécuter en temps qu'administrateur!

 

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file) O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)

O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)

O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE

O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32

O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC

O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName

O4 - HKLM\..\Run: [sSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot

O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe

O4 - HKLM\..\Run: [indexSearch] C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe

O4 - HKLM\..\Run: [ControlCenter2.0] C:\Program Files\Brother\ControlCenter2\brctrcen.exe /autorun

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime

O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKCU\..\Run: [steam] "c:\program files\steam\steam.exe" -silent

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')

O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: Contrôleur détat.lnk = C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe

O4 - Global Startup: SetPointII.lnk = ?

O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe

O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe

O23 - Service: MysqlInventime - Unknown owner - C:\Apps\INVENT~1\mysql\bin\mysqld-nt.exe (file missing)

 

Ferme toutes les applications ouvertes et les navigateurs et clique sur Fix Checked

 

-----------------------------------

Pour supprimer le lancement de ctfmon.exe au démarrage:

 

Va dans Panneau de configuration/Options régionales et linguistiques/Langues, clique sur Détails puis sur Barre de langue et coche la case "Arrêtez les services de texte avancés".

Clique sur OK autant de fois que nécessaire pour enregistrer la modification.

 

ctmon.jpg

 

----------------------------------------

Télécharge systemsr4.pngOTM de OldTimer sur ton Bureau en cliquant sur ce lien:

 

OTM

 

Ou ici: http://ottools.noahdfear.net/OTM.exe

 

  • Double-clique sur OTM.exe pour le lancer (l'extension .exe peut ne pas apparaître)
     
    ---> sous VISTA/7: clic droit: exécuter en temps qu'administrateur.
     
  • Copie l'entièreté du code ci-dessous.
    GO
    
    :Files
    
    C:\Program Files\Bonjour
    :Services
    
    Bonjour Service
    :Reg
    
    :Commands
    [purity]
    [emptytemp]
    [start explorer]


     

  • Colle ce code dans la partie jaune de OtMoveIt3 intitulée:
    "Paste Instructions for Items to be Moved" img-025804xb055.png
     
  • Clique sur le bouton Moveit! pour lancer le nettoyage: img-025919bxiq4.png
     
  • Copie-colle dans ta prochaine réponse tout ce qui se trouve dans la fenêtre Results img-030027q93ue.png
    --> Un rapport sera généré dans le dossier C:\ _OTMoveIt\MovedFiles avec la date et l'heure du passage de l'outil (mmddyyyy_hhmmss.log)
  • Ferme OTM en cliquant sur Exit: img-030110c5gvf.png

Note : Si un fichier ou un dossier ne peut être supprimé directement, l'outil peut demander un redémarrage pour terminer le processus. Clique alors sur "Yes" pour accepter.

 

*** L'outil va terminer son travail après le redémarrage du pc puis fournira son rapport; copie/colle le dans ta réponse stp.

 

---------------------------------------

 

img-0957469x7jp.gifFais ces quelques vérifications de sécurité stp.

 

Quand cela sera fait, viens poster un dernier log Hijacthis stp.

 

@++

Posté(e)

All processes killed

Error: Unable to interpret <GO> in the current context!

========== FILES ==========

C:\Program Files\Bonjour folder moved successfully.

========== SERVICES/DRIVERS ==========

Service Bonjour Service stopped successfully!

Service Bonjour Service deleted successfully!

========== REGISTRY ==========

========== COMMANDS ==========

 

[EMPTYTEMP]

 

User: All Users

->Flash cache emptied: 38 bytes

 

User: Default User

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 43186 bytes

->Flash cache emptied: 41620 bytes

 

User: defenouillere

->Temp folder emptied: 9088298 bytes

->Temporary Internet Files folder emptied: 397148 bytes

->Java cache emptied: 0 bytes

->FireFox cache emptied: 139407318 bytes

->Google Chrome cache emptied: 0 bytes

->Flash cache emptied: 52845 bytes

 

User: LocalService

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 32902 bytes

 

User: NetworkService

->Temp folder emptied: 0 bytes

->Temporary Internet Files folder emptied: 33170 bytes

 

%systemdrive% .tmp files removed: 0 bytes

%systemroot% .tmp files removed: 14567825 bytes

%systemroot%\System32 .tmp files removed: 4348928 bytes

%systemroot%\System32\dllcache .tmp files removed: 0 bytes

%systemroot%\System32\drivers .tmp files removed: 0 bytes

Windows Temp folder emptied: 664 bytes

%systemroot%\system32\config\systemprofile\Local Settings\Temp folder emptied: 0 bytes

%systemroot%\system32\config\systemprofile\Local Settings\Temporary Internet Files folder emptied: 34293 bytes

RecycleBin emptied: 0 bytes

 

Total Files Cleaned = 160,00 mb

 

 

OTM by OldTimer - Version 3.1.12.0 log created on 05072010_211132

 

Files moved on Reboot...

 

Registry entries deleted on Reboot...

Posté(e)

Ok,

 

si tu as fixé les lignes que j'ai indiquées dans Hijackthis, cela me parait bon.

 

Ton pc va mieux?

Si oui, tu peux lancer OTM et cette fois cliquer sur Clean Up! Cela désinstallera les outils utilisés pour désinfecter, sauf MBAM.

 

Pense à consulter le tuto pour ton KIS 2010, c'est un programme sûr quand on reste relativement prudent, surtout avec les programmes louches... :P

 

Tu trouveras aussi l'adresse du forum en français de Kaspersky dans ma signature, il te sera sûrement très utile.

 

@++

Posté(e)

De rien, on est là pour aider :P

 

  • Pense à éditer ton premier post pour rajouter "Résolu" dans le titre. Pour cela clique sur "Editer dans ton premier post. Tu pourras alors changer le titre.

 

:P

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...