Se connecter avec
S'enregistrer | Connectez-vous

Dialer Italien/U trojan

Dernière réponse : dans Sécurité

Bonjour, j'ai en effet vu des sujets sur ce dialer Italien, cependant les log de hijack ne se ressemblent pas, je me suis dit que pour rêgler mon problèeme les actions sont différentes.

J'ai donc ce dialer qui se met en route toutes les 30 minutes, mais mon antivirus (Nod32) m'a détecté un trojan.

J'ai passé Ad-aware, Spybot mais rien n'est retiré. Voici le log fait avec Hijack
Spoiler
Logfile of HijackThis v1.99.1
Scan saved at 17:10:50, on 28/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\system32\VTtrayp.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
D:\Logiciels\Winamp\winampa.exe
C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe
C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe
C:\Program Files\Philips\Philips Lime Service\bin\Lime.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\Program Files\NETGEAR\WG111v2 Configuration Utility\RtlWake.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Bureau\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [PhilipsDM] "C:\Program Files\Philips\Philips Device

Manager\Bin\DeviceManager.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [WinampAgent] D:\Logiciels\Winamp\winampa.exe
O4 - HKCU\..\Run: [PhilipsLime] "C:\Program Files\Philips\Philips Lime

Service\bin\LimeAlive.exe"
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities

2004\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program

Files\Nikon\PictureProject\NkbMonitor.exe
O4 - Global Startup: WG111v2 Smart Wizard Wireless Setting.lnk = ?
O8 - Extra context menu item: E&xporter vers Microsoft Excel -

res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program

Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -

C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -

C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN

Messenger\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: MsgPlusLoader.dll
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program

Files\Eset\nod32krn.exe
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH

- C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC -

C:\WINDOWS\system32\ZoneLabs\vsmon.exe


Merci d'avance de votre aide

Autres pages sur : dialer italien trojan

Lassé par la pub ? Créez un compte

Bonjour,

Télécharge Blacklight (d'F-Secure), clique sur " I ACCEPT " en bas de la page :

https://europe.f-secure.com/blacklight/try.shtml

Sauvegarde le sur ton Bureau.
Double-clique blbeta.exe et accepte la licence; clique Scan puis Next

Tu verras peut être une liste de fichiers détectés apparaître.
Tu verras également un rapport, sur ton Bureau, nommé fsbl.xxxxxxx.log (les xxxxxxx sont des chiffres).

NE TOUCHE A RIEN !
Nous devons analyser le rapport, ferme donc le programme.

Poste le rapport sur le forum.

Aide sur BlackLight de Malekal_Morte

Merci de ta réponse, voici le rapport:
08/28/06 18:51:57 [Info]: BlackLight Engine 1.0.46 initialized
08/28/06 18:51:57 [Info]: OS: 5.1 build 2600 (Service Pack 2)
08/28/06 18:51:58 [Note]: 7019 4
08/28/06 18:51:58 [Note]: 7005 0
08/28/06 18:52:03 [Note]: 7006 0
08/28/06 18:52:04 [Note]: 7011 452
08/28/06 18:52:05 [Note]: 7026 0
08/28/06 18:52:05 [Note]: 7026 0
08/28/06 18:52:13 [Note]: FSRAW library version 1.7.1019
08/28/06 18:54:42 [Note]: 7007 0

Installe Ewido
Lance Ewido puis mets le à jour en cliquant sur " Update Now "
Ferme le programme.
Aide sur Ewido de Rub_Mic

Redémarre en mode sans échec

Relance Ewido puis choisis l'onglet " Scanner "
Fais un " Complete System Scan "
* Si un fichier est infecté, choisis l'option " Apply All Actions " en fin d'analyse *
Clique sur " Save Report " puis sur " Save Report As "
Enregistre ce fichier .txt sur ton bureau, Copie/Colle le ici en mode normal.

Alors voici le rapport :

---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 19:56:50 28/08/2006

+ Scan result:



C:\WINDOWS\Temp\idd1.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd2.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd40.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd62A8.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd62BF.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd6DFD.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd708D.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd71FA.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\idd72E4.tmp.exe -> Dialer.Agent.z : Cleaned with backup (quarantined).
C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Local Settings\Temporary Internet Files\Content.IE5\LVFZDDCE\srvvuj[1].exe -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\win3E.tmp.exe -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\win453.tmp.exe -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\win5D15.tmp.exe -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\win6B3F.tmp.exe -> Dialer.IDialer.m : Cleaned with backup (quarantined).
C:\WINDOWS\system32\gptknynk.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Ignored.
:mozilla.100:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.101:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.98:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.99:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.148:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.149:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.150:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.151:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.152:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.153:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.154:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.155:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.591:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.592:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.593:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.594:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.595:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.596:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.597:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.598:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.599:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.600:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.627:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.818:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.329:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.330:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.415:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.464:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.483:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.913:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.951:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.569:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.573:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.574:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.582:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.583:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.397:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.241:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.242:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.448:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.449:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.344:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.345:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.346:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.347:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.375:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.376:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.377:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.70:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.75:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Cookies\administrateur@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.509:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Bfast : Cleaned.
:mozilla.11:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.160:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.68:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Cookies\administrateur@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.952:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
:mozilla.457:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.458:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.459:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.664:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.321:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.322:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.323:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.491:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.492:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.493:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.494:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.495:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.496:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.103:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.437:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.607:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.608:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.609:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.681:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.682:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.683:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Comclick : Cleaned.
:mozilla.217:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.72:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.354:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Estat : Cleaned.
:mozilla.399:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
:mozilla.534:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.537:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.538:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.539:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.540:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.118:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.120:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.121:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.122:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.123:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.124:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.267:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.269:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.270:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.271:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.345:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.346:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.347:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.348:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.349:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.351:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.352:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.353:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.354:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.355:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.356:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.357:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.358:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.359:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.363:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.47:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.49:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.51:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.53:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.61:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.62:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.63:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.64:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.65:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.67:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.171:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.172:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.173:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.174:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.175:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.176:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.177:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.178:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.179:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.180:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.181:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.182:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.675:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Findwhat : Cleaned.
:mozilla.490:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.560:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.564:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.667:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.825:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.872:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.895:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.930:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.676:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.677:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.678:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.679:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.765:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.945:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.946:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.619:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.620:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.621:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.622:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.479:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Komtrack : Cleaned.
:mozilla.480:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Komtrack : Cleaned.
:mozilla.491:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Komtrack : Cleaned.
:mozilla.492:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Komtrack : Cleaned.
:mozilla.678:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Linkbuddies : Cleaned.
:mozilla.668:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.669:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.670:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.283:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.28:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.299:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.300:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.637:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Paycounter : Cleaned.
:mozilla.774:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Paycounter : Cleaned.
:mozilla.119:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Popularix : Cleaned.
:mozilla.288:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.289:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.743:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.744:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.746:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Cookies\administrateur@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.486:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
:mozilla.76:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.777:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.778:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.779:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.77:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.780:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.781:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.78:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.79:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.80:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.772:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.773:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.775:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.776:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.428:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.429:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.849:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.850:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.17:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.18:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.19:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.20:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.236:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.237:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.238:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Cookies\administrateur@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.266:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.268:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.785:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Spylog : Cleaned.
:mozilla.403:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.404:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.405:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.406:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.407:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.408:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.514:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.515:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.516:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.517:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.518:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.519:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.520:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.521:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.522:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.523:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.524:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.525:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.889:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Targetnet : Cleaned.
:mozilla.114:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.115:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.116:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.117:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.118:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.119:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.120:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.121:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.40:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.41:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.42:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.43:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.186:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.506:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.140:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
:mozilla.141:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
:mozilla.703:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
:mozilla.704:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
:mozilla.196:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.197:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.198:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.82:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.83:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.84:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.243:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.33:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.698:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Yadro : Cleaned.
:mozilla.263:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.264:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.265:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.311:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.312:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.313:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.314:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.551:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.552:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.553:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\ajbb5zkj.Claire\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.566:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.567:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.568:C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Application Data\Mozilla\Firefox\Profiles\faxviyuf.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Local Settings\Temporary Internet Files\Content.IE5\LVFZDDCE\srvazo[1].exe -> Trojan.Pakes : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\win69C6.tmp.exe -> Trojan.Pakes : Cleaned with backup (quarantined).


::Report end

volà:
Logfile of HijackThis v1.99.1
Scan saved at 20:05:59, on 28/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\system32\VTtrayp.exe
C:\WINDOWS\system32\RunDll32.exe
C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
D:\Logiciels\Winamp\winampa.exe
C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe
C:\Program Files\Eset\nod32krn.exe
C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Philips\Philips Lime Service\bin\Lime.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\NETGEAR\WG111v2 Configuration Utility\RtlWake.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\TEMP\win29.tmp.exe
C:\WINDOWS\TEMP\idd33.tmp.exe
C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Bureau\Scanner.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {8211BB94-7EB5-494F-BC5A-8CC4B3C19BBE} - C:\WINDOWS\system32\sstqq.dll
O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - D:\Logiciels\IEFlash.dll
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [PhilipsDM] "C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [WinampAgent] D:\Logiciels\Winamp\winampa.exe
O4 - HKCU\..\Run: [PhilipsLime] "C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe"
O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe" autostart
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
O4 - Global Startup: WG111v2 Smart Wizard Wireless Setting.lnk = ?
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN Messenger\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: MsgPlusLoader.dll
O20 - Winlogon Notify: sstqq - C:\WINDOWS\system32\sstqq.dll
O20 - Winlogon Notify: winmbj32 - C:\WINDOWS\SYSTEM32\winmbj32.dll
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

3 Vundo caches decouvert en un jour ca commence a faire beaucoup.

Télécharge VundoFix.exe (par Atribune) sur ton Bureau.
  • Double-clique VundoFix.exe afin de le lancer.
  • Coche Run VundoFix as a task.
  • Un message t'avertira que l'outil va se fermer et s'ouvrir à nouveau : clique Ok
  • Clique sur le bouton Scan for Vundo.
  • Lorsque le scan est complété, clique sur le bouton Remove Vundo.
  • Une invite te demandera si tu veux supprimer les fichiers, clique YES
  • Après avoir cliqué "Yes", le Bureau disparaîtra un moment lors de la suppression des fichiers.
  • Tu verras une invite qui t'annonce que ton PC va s'éteindre ("shutdown"); clique OK
  • Démarre ton PC à nouveau.
  • Copie/colle le contenu du rapport situé dans C:\vundofix.txt ainsi qu'un nouveau rapport HijackThis! dans ta prochaine réponse.

    rapport vundo:

    VundoFix V6.1.2

    Checking Java version...

    Java version is 1.5.0.6

    Scan started at 20:09:40 28/08/2006

    Listing files found while scanning....

    C:\WINDOWS\system32\pmnkjij.dll
    C:\WINDOWS\system32\sstqq.dll
    C:\WINDOWS\system32\qqtss.ini
    C:\WINDOWS\system32\qqtss.bak1
    C:\WINDOWS\system32\qqtss.bak2
    C:\WINDOWS\system32\qqtss.ini2
    C:\WINDOWS\system32\qqtss.tmp

    Beginning removal...

    Attempting to delete C:\WINDOWS\system32\pmnkjij.dll
    C:\WINDOWS\system32\pmnkjij.dll Has been deleted!

    Attempting to delete C:\WINDOWS\system32\sstqq.dll
    C:\WINDOWS\system32\sstqq.dll Could not be deleted.

    Attempting to delete C:\WINDOWS\system32\qqtss.ini
    C:\WINDOWS\system32\qqtss.ini Has been deleted!

    Attempting to delete C:\WINDOWS\system32\qqtss.bak1
    C:\WINDOWS\system32\qqtss.bak1 Has been deleted!

    Attempting to delete C:\WINDOWS\system32\qqtss.bak2
    C:\WINDOWS\system32\qqtss.bak2 Has been deleted!

    Attempting to delete C:\WINDOWS\system32\qqtss.ini2
    C:\WINDOWS\system32\qqtss.ini2 Has been deleted!

    Attempting to delete C:\WINDOWS\system32\qqtss.tmp
    C:\WINDOWS\system32\qqtss.tmp Has been deleted!

    Performing Repairs to the registry.
    Done!


    >> rapport Hijack
    Logfile of HijackThis v1.99.1
    Scan saved at 20:22:36, on 28/08/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\csrss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\Eset\nod32krn.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\wdfmgr.exe
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    C:\WINDOWS\System32\alg.exe
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\Program Files\Eset\nod32kui.exe
    C:\Program Files\MessengerPlus! 3\MsgPlus.exe
    C:\WINDOWS\system32\VTTimer.exe
    C:\WINDOWS\system32\VTtrayp.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\QuickTime\qttask.exe
    D:\Logiciels\Winamp\winampa.exe
    C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe
    C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe
    C:\Program Files\Philips\Philips Lime Service\bin\Lime.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
    C:\Program Files\NETGEAR\WG111v2 Configuration Utility\RtlWake.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\system32\wbem\wmiprvse.exe
    C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Bureau\Scanner.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: (no name) - {7CD4C032-7DBA-4CB9-A3F2-C5473319F0D9} - C:\WINDOWS\system32\sstqq.dll
    O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - D:\Logiciels\IEFlash.dll
    O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
    O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [PhilipsDM] "C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [WinampAgent] D:\Logiciels\Winamp\winampa.exe
    O4 - HKCU\..\Run: [PhilipsLime] "C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe"
    O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe" autostart
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
    O4 - Global Startup: WG111v2 Smart Wizard Wireless Setting.lnk = ?
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN Messenger\msgrapp.dll" (file missing)
    O20 - AppInit_DLLs: MsgPlusLoader.dll
    O20 - Winlogon Notify: sstqq - C:\WINDOWS\system32\sstqq.dll
    O20 - Winlogon Notify: winmbj32 - C:\WINDOWS\SYSTEM32\winmbj32.dll
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
    O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe


    >> Merci de ton aide, je verrais bien dans 30 min si sa continue, mais j'ai l'impression qu'il n'existe plus

    O20 - Winlogon Notify: sstqq - C:\WINDOWS\system32\sstqq.dll
    O20 - Winlogon Notify: winmbj32 - C:\WINDOWS\SYSTEM32\winmbj32.dll
    -> toujours la

    Télécharge : Pocket KillBox

    Mets le dans un dossier ou sur ton bureau (Clique droit puis Extraire tout)
    Selectionne le texte dans le cadre:

    Citation :
    C:\WINDOWS\SYSTEM32\winmbj32.dll


    Clique droit puis Copier.
    ----------

    . Ouvre Killbox.exe
    . Choisis "Delete on reboot"
    . Clique sur :
    - " File " -> " Paste from Clipboard "
    - " Unregister .dll Before Deleting "

    Pour terminer clique sur le rond rouge avec une croix blanche.

    Une question te sera alors posée :
    " File will be Removed on Reboot, Do you want to reboot now ? "

    . Repond par "oui", un compte à rebour s'enclenche, ton PC va redémarrer.

    Supprime ce dossier : C:\!KillBox

    + rapport Hijackthis

    Oui j'avais vu juste au moment que je postais que ce dial ce remettais.

    Logfile of HijackThis v1.99.1
    Scan saved at 20:36:59, on 28/08/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\csrss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\Program Files\Eset\nod32kui.exe
    C:\Program Files\MessengerPlus! 3\MsgPlus.exe
    C:\WINDOWS\system32\VTTimer.exe
    C:\WINDOWS\system32\VTtrayp.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\QuickTime\qttask.exe
    D:\Logiciels\Winamp\winampa.exe
    C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe
    C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe
    C:\Program Files\Eset\nod32krn.exe
    C:\Program Files\Philips\Philips Lime Service\bin\Lime.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
    C:\Program Files\NETGEAR\WG111v2 Configuration Utility\RtlWake.exe
    C:\WINDOWS\system32\wdfmgr.exe
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\WINDOWS\System32\alg.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Bureau\Scanner.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: (no name) - {8E0F9EF9-905C-4FD8-87A1-8E4ADCD899C0} - C:\WINDOWS\system32\sstqq.dll
    O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - D:\Logiciels\IEFlash.dll
    O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
    O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [PhilipsDM] "C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [WinampAgent] D:\Logiciels\Winamp\winampa.exe
    O4 - HKCU\..\Run: [PhilipsLime] "C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe"
    O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe" autostart
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
    O4 - Global Startup: WG111v2 Smart Wizard Wireless Setting.lnk = ?
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN Messenger\msgrapp.dll" (file missing)
    O20 - AppInit_DLLs: MsgPlusLoader.dll
    O20 - Winlogon Notify: sstqq - C:\WINDOWS\system32\sstqq.dll
    O20 - Winlogon Notify: winmbj32 - winmbj32.dll (file missing)
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
    O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

    Re,

  • Double-clique VundoFix.exe afin de le lancer.
  • Coche Run VundoFix as a task.
  • Un message t'avertira que l'outil va se fermer et s'ouvrir à nouveau : clique Ok
  • Clique sur le bouton Scan for Vundo.
  • Lorsque le scan est complété, clique sur le bouton Remove Vundo.
  • Si l'outil rapporte qu'aucune infection n'a été trouvée ("No infected files were found"), fais un clic droit dans la fenêtre blanche et clique "Add more files?"
  • Dans la nouvelle fenêtre qui apparait, Copie/colle le chemin du fichier suivant dans la première case (au haut):
    C:\WINDOWS\system32\sstqq.dll
  • Copie/colle le chemin du fichier suivant dans la seconde case (au centre):
    C:\WINDOWS\system32\qqtss.*
  • Clique sur le bouton "Add File(s)"
  • Clique sur le bouton "Close Window"
  • Clique à nouveau sur "Remove Vundo"
  • Une invite te demandera si tu veux supprimer les fichiers, clique YES
  • Après avoir cliqué "Yes", le Bureau disparaîtra un moment lors de la suppression des fichiers.
  • Tu verras une invite qui t'annonce que ton PC va s'éteindre ("shutdown"); clique OK
  • Démarre ton PC à nouveau.
  • Copie/colle le contenu du rapport situé dans C:\vundofix.txt ainsi qu'un nouveau rapport HijackThis dans ta prochaine réponse.

    Apparement y 'en a un qui n'a pas pu s'enlever (j'ai eu une notice qui me l'indiquait)
    Rapport vundo:

    VundoFix V6.1.2

    Checking Java version...

    Java version is 1.5.0.6

    Scan started at 20:09:40 28/08/2006

    Listing files found while scanning....

    C:\WINDOWS\system32\pmnkjij.dll
    C:\WINDOWS\system32\sstqq.dll
    C:\WINDOWS\system32\qqtss.ini
    C:\WINDOWS\system32\qqtss.bak1
    C:\WINDOWS\system32\qqtss.bak2
    C:\WINDOWS\system32\qqtss.ini2
    C:\WINDOWS\system32\qqtss.tmp

    Beginning removal...

    Attempting to delete C:\WINDOWS\system32\pmnkjij.dll
    C:\WINDOWS\system32\pmnkjij.dll Has been deleted!

    Attempting to delete C:\WINDOWS\system32\sstqq.dll
    C:\WINDOWS\system32\sstqq.dll Could not be deleted.

    Attempting to delete C:\WINDOWS\system32\qqtss.ini
    C:\WINDOWS\system32\qqtss.ini Has been deleted!

    Attempting to delete C:\WINDOWS\system32\qqtss.bak1
    C:\WINDOWS\system32\qqtss.bak1 Has been deleted!

    Attempting to delete C:\WINDOWS\system32\qqtss.bak2
    C:\WINDOWS\system32\qqtss.bak2 Has been deleted!

    Attempting to delete C:\WINDOWS\system32\qqtss.ini2
    C:\WINDOWS\system32\qqtss.ini2 Has been deleted!

    Attempting to delete C:\WINDOWS\system32\qqtss.tmp
    C:\WINDOWS\system32\qqtss.tmp Has been deleted!

    Performing Repairs to the registry.
    Done!

    VundoFix V6.1.2

    Checking Java version...

    Java version is 1.5.0.6

    Scan started at 20:41:45 28/08/2006

    Listing files found while scanning....

    C:\WINDOWS\system32\sstqq.dll
    C:\WINDOWS\system32\qqtss.ini
    C:\WINDOWS\system32\qqtss.bak1

    Beginning removal...

    Attempting to delete C:\WINDOWS\system32\sstqq.dll
    C:\WINDOWS\system32\sstqq.dll Could not be deleted.

    Attempting to delete C:\WINDOWS\system32\qqtss.ini
    C:\WINDOWS\system32\qqtss.ini Has been deleted!

    Attempting to delete C:\WINDOWS\system32\qqtss.bak1
    C:\WINDOWS\system32\qqtss.bak1 Has been deleted!

    Performing Repairs to the registry.
    Done!


    >> Rapport Hijack:
    Logfile of HijackThis v1.99.1
    Scan saved at 20:55:21, on 28/08/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\csrss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\Eset\nod32krn.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\wdfmgr.exe
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    C:\WINDOWS\System32\alg.exe
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\Program Files\Eset\nod32kui.exe
    C:\Program Files\MessengerPlus! 3\MsgPlus.exe
    C:\WINDOWS\system32\VTTimer.exe
    C:\WINDOWS\system32\VTtrayp.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\QuickTime\qttask.exe
    D:\Logiciels\Winamp\winampa.exe
    C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe
    C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\Program Files\Philips\Philips Lime Service\bin\Lime.exe
    C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
    C:\Program Files\NETGEAR\WG111v2 Configuration Utility\RtlWake.exe
    C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Bureau\Scanner.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: (no name) - {8E0F9EF9-905C-4FD8-87A1-8E4ADCD899C0} - C:\WINDOWS\system32\sstqq.dll
    O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - D:\Logiciels\IEFlash.dll
    O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
    O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [PhilipsDM] "C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [WinampAgent] D:\Logiciels\Winamp\winampa.exe
    O4 - HKCU\..\Run: [PhilipsLime] "C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe"
    O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe" autostart
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
    O4 - Global Startup: WG111v2 Smart Wizard Wireless Setting.lnk = ?
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN Messenger\msgrapp.dll" (file missing)
    O20 - AppInit_DLLs: MsgPlusLoader.dll
    O20 - Winlogon Notify: winmbj32 - winmbj32.dll (file missing)
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
    O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

    Logfile of HijackThis v1.99.1
    Scan saved at 21:46:04, on 28/08/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\csrss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\Eset\nod32krn.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\wdfmgr.exe
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    C:\WINDOWS\System32\alg.exe
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\Program Files\Eset\nod32kui.exe
    C:\Program Files\MessengerPlus! 3\MsgPlus.exe
    C:\WINDOWS\system32\VTTimer.exe
    C:\WINDOWS\system32\VTtrayp.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\QuickTime\qttask.exe
    D:\Logiciels\Winamp\winampa.exe
    C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe
    C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\Program Files\Philips\Philips Lime Service\bin\Lime.exe
    C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
    C:\Program Files\NETGEAR\WG111v2 Configuration Utility\RtlWake.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Bureau\Scanner.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - D:\Logiciels\IEFlash.dll
    O2 - BHO: (no name) - {FF2A6F44-6136-4A57-A39D-FC9CD099036D} - C:\WINDOWS\system32\sstqq.dll
    O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
    O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [PhilipsDM] "C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [WinampAgent] D:\Logiciels\Winamp\winampa.exe
    O4 - HKCU\..\Run: [PhilipsLime] "C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe"
    O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe" autostart
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
    O4 - Global Startup: WG111v2 Smart Wizard Wireless Setting.lnk = ?
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN Messenger\msgrapp.dll" (file missing)
    O20 - AppInit_DLLs: MsgPlusLoader.dll
    O20 - Winlogon Notify: sstqq - C:\WINDOWS\system32\sstqq.dll
    O20 - Winlogon Notify: winmbj32 - winmbj32.dll (file missing)
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
    O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

    Je l'ai fixée et sa me fait pareil.
    J'ai fait un rapport:
    Logfile of HijackThis v1.99.1
    Scan saved at 21:51:36, on 28/08/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\csrss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\Eset\nod32krn.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\wdfmgr.exe
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    C:\WINDOWS\System32\alg.exe
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\Program Files\Eset\nod32kui.exe
    C:\Program Files\MessengerPlus! 3\MsgPlus.exe
    C:\WINDOWS\system32\VTTimer.exe
    C:\WINDOWS\system32\VTtrayp.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\QuickTime\qttask.exe
    D:\Logiciels\Winamp\winampa.exe
    C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe
    C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\Program Files\Philips\Philips Lime Service\bin\Lime.exe
    C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
    C:\Program Files\NETGEAR\WG111v2 Configuration Utility\RtlWake.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Bureau\Scanner.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - D:\Logiciels\IEFlash.dll
    O2 - BHO: (no name) - {FF2A6F44-6136-4A57-A39D-FC9CD099036D} - C:\WINDOWS\system32\sstqq.dll
    O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
    O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [PhilipsDM] "C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [WinampAgent] D:\Logiciels\Winamp\winampa.exe
    O4 - HKCU\..\Run: [PhilipsLime] "C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe"
    O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe" autostart
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
    O4 - Global Startup: WG111v2 Smart Wizard Wireless Setting.lnk = ?
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN Messenger\msgrapp.dll" (file missing)
    O20 - AppInit_DLLs: MsgPlusLoader.dll
    O20 - Winlogon Notify: sstqq - C:\WINDOWS\system32\sstqq.dll
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
    O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

    j'ai du refaire vundo (et au passage je n'ai toujours pas revu le message)
    J'ai refait un rapport :
    Logfile of HijackThis v1.99.1
    Scan saved at 22:18:43, on 28/08/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\csrss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\Program Files\Eset\nod32kui.exe
    C:\Program Files\MessengerPlus! 3\MsgPlus.exe
    C:\WINDOWS\system32\VTTimer.exe
    C:\WINDOWS\system32\VTtrayp.exe
    C:\WINDOWS\system32\RunDll32.exe
    C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\QuickTime\qttask.exe
    D:\Logiciels\Winamp\winampa.exe
    C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe
    C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
    C:\Program Files\NETGEAR\WG111v2 Configuration Utility\RtlWake.exe
    C:\Program Files\Philips\Philips Lime Service\bin\Lime.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\Eset\nod32krn.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\wdfmgr.exe
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    C:\WINDOWS\System32\alg.exe
    C:\WINDOWS\system32\NOTEPAD.EXE
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Documents and Settings\Administrateur.ORDI-XPSP2.000\Bureau\Scanner.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/ie
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.fr
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - D:\Logiciels\IEFlash.dll
    O2 - BHO: (no name) - {FF2A6F44-6136-4A57-A39D-FC9CD099036D} - C:\WINDOWS\system32\sstqq.dll
    O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
    O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
    O4 - HKLM\..\Run: [VTTrayp] VTtrayp.exe
    O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
    O4 - HKLM\..\Run: [PhilipsDM] "C:\Program Files\Philips\Philips Device Manager\Bin\DeviceManager.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [WinampAgent] D:\Logiciels\Winamp\winampa.exe
    O4 - HKCU\..\Run: [PhilipsLime] "C:\Program Files\Philips\Philips Lime Service\bin\LimeAlive.exe"
    O4 - HKCU\..\Run: [TuneUp MemOptimizer] "C:\Program Files\TuneUp Utilities 2004\MemOptimizer.exe" autostart
    O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
    O4 - Global Startup: NkbMonitor.exe.lnk = C:\Program Files\Nikon\PictureProject\NkbMonitor.exe
    O4 - Global Startup: WG111v2 Smart Wizard Wireless Setting.lnk = ?
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~1\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\OFFICE11\REFIEBAR.DLL
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSN Messenger\msgrapp.dll" (file missing)
    O20 - AppInit_DLLs: MsgPlusLoader.dll
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
    O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - C:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe

    Lassé par la pub ? Créez un compte
    Tom's guide dans le monde