Pub CiD intempestive
Dernière réponse : dans Sécurité
Salut,
bon voilà plusieurs jours que j'ai des pubs intempestives CiD qui apparaissent à chaque ouverture de Internet Explorer. En cette heure tardive j'ai enfin décidé d'y remédier. J'ai un peu feuilleté le forum et j'ai vu que beaucoup demandait un rapport HiJack alors voilà le mien:
Logfile of HijackThis v1.99.1
Scan saved at 02:21:24, on 08/04/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\SiteAdvisor\6061\SAService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\McAfee\MPS\mpsevh.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Fichiers communs\AOL\1167556882\ee\AOLSoftware.exe
C:\Program Files\SiteAdvisor\6061\SiteAdv.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\Program Files\McAfee\MSK\MskAgent.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\NetWaiting\netWaiting.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
C:\Program Files\AOL 9.0\waol.exe
C:\Program Files\AOL 9.0\shellmon.exe
C:\Program Files\Fichiers communs\Aol\aoltpspd.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Clément\Bureau\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.fr/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearch.myway.com/jsp/dellsidebar.jsp?p=DR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {944864A5-3916-46E2-96A9-A2E84F3F1208} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [NI.UERSV_0001_N68M0602] "C:\Documents and Settings\Clément\Bureau\Programmes\ErrorSafeScannerInstall_fr.exe" -nag
O4 - HKLM\..\Run: [NI.UWA6PV_0001_N86M0507] "C:\Documents and Settings\Clément\Mes documents\WinAntiVirusPro2006FreeInstall_fr.exe" -nag
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Fichiers communs\AOL\1167556882\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Fichiers communs\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6061\SiteAdv.exe
O4 - HKLM\..\Run: [Isothattickvc] C:\Documents and Settings\All Users\Application Data\List Junk Iso That\Platformamen.exe
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Global Startup: AOL 8.0 Icône AOL.lnk = C:\Program Files\AOL 8.0\aoltray.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: Picture Package Menu.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
O4 - Global Startup: Picture Package VCD Maker.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?bebe10dc350c4579bda3054c1f4623cc
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?bebe10dc350c4579bda3054c1f4623cc
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267....
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {341FF14B-00CB-49F5-A427-A164DF1D5E1F} (MALPlaybackCtrl Class) - http://musicstore.connect.com/XSL/mb_us//html/activexpl...
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.ca...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClie...
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
O17 - HKLM\System\CCS\Services\Tcpip\..\{4F09C454-3CCB-47F9-BAB1-6A506E2A2A2C}: NameServer = 205.188.146.145
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\FICHIE~1\McAfee\EmProxy\emproxy.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Imapi Helper - Alex Feinman - C:\Program Files\Alex Feinman\ISO Recorder\ImapiHelper.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SiteAdvisor Service - McAfee, Inc. - C:\Program Files\SiteAdvisor\6061\SAService.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
bon voilà plusieurs jours que j'ai des pubs intempestives CiD qui apparaissent à chaque ouverture de Internet Explorer. En cette heure tardive j'ai enfin décidé d'y remédier. J'ai un peu feuilleté le forum et j'ai vu que beaucoup demandait un rapport HiJack alors voilà le mien:
Logfile of HijackThis v1.99.1
Scan saved at 02:21:24, on 08/04/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\SiteAdvisor\6061\SAService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\McAfee\MPS\mpsevh.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Fichiers communs\AOL\1167556882\ee\AOLSoftware.exe
C:\Program Files\SiteAdvisor\6061\SiteAdv.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\Program Files\McAfee\MSK\MskAgent.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\NetWaiting\netWaiting.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
C:\Program Files\AOL 9.0\waol.exe
C:\Program Files\AOL 9.0\shellmon.exe
C:\Program Files\Fichiers communs\Aol\aoltpspd.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Clément\Bureau\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.fr/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearch.myway.com/jsp/dellsidebar.jsp?p=DR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {944864A5-3916-46E2-96A9-A2E84F3F1208} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [NI.UERSV_0001_N68M0602] "C:\Documents and Settings\Clément\Bureau\Programmes\ErrorSafeScannerInstall_fr.exe" -nag
O4 - HKLM\..\Run: [NI.UWA6PV_0001_N86M0507] "C:\Documents and Settings\Clément\Mes documents\WinAntiVirusPro2006FreeInstall_fr.exe" -nag
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Fichiers communs\AOL\1167556882\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Fichiers communs\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6061\SiteAdv.exe
O4 - HKLM\..\Run: [Isothattickvc] C:\Documents and Settings\All Users\Application Data\List Junk Iso That\Platformamen.exe
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Global Startup: AOL 8.0 Icône AOL.lnk = C:\Program Files\AOL 8.0\aoltray.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: Picture Package Menu.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
O4 - Global Startup: Picture Package VCD Maker.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?bebe10dc350c4579bda3054c1f4623cc
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?bebe10dc350c4579bda3054c1f4623cc
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267....
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {341FF14B-00CB-49F5-A427-A164DF1D5E1F} (MALPlaybackCtrl Class) - http://musicstore.connect.com/XSL/mb_us//html/activexpl...
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.ca...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClie...
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
O17 - HKLM\System\CCS\Services\Tcpip\..\{4F09C454-3CCB-47F9-BAB1-6A506E2A2A2C}: NameServer = 205.188.146.145
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\FICHIE~1\McAfee\EmProxy\emproxy.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Imapi Helper - Alex Feinman - C:\Program Files\Alex Feinman\ISO Recorder\ImapiHelper.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SiteAdvisor Service - McAfee, Inc. - C:\Program Files\SiteAdvisor\6061\SAService.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
Autres pages sur : pub cid intempestive
Lassé par la pub ? Créez un compte
Bonjour,
Télécharge LopResearch.zip
Dézippe-le sur ton Bureau.
Lance le fichier Scan.bat
Un rapport sera généré, poste son contenu ici.
Télécharge LopResearch.zip
Dézippe-le sur ton Bureau.
Lance le fichier Scan.bat
Un rapport sera généré, poste son contenu ici.
Salut!
Voilà le rapport:
Rapport fait à 14:00:26,73 le 08/04/2007
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Administrateur\Application Data
15/12/2005 04:52 <REP> Jasc Software Inc
15/12/2005 04:50 <REP> You've Got Pictures Screensaver
15/12/2005 04:44 <REP> Sun
01/09/2005 08:25 <REP> Identities
01/09/2005 08:25 62 desktop.ini
01/09/2005 08:25 <REP> Microsoft
01/09/2005 08:25 <REP> ..
01/09/2005 08:25 <REP> .
1 fichier(s) 62 octets
7 R‚p(s) 75333984256 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\All Users\Application Data
01/04/2007 13:57 <REP> Yahoo! Companion
17/03/2007 19:04 <REP> List Junk Iso That
01/03/2007 19:53 <REP> SiteAdvisor
01/03/2007 19:29 <REP> McAfee
08/02/2007 18:11 <REP> Skype
07/02/2007 15:29 <REP> Adobe
31/01/2007 15:28 <REP> DVD Shrink
01/01/2007 18:14 <REP> Google
01/01/2007 18:13 <REP> Google Updater
31/12/2006 11:19 <REP> AOL Downloads
12/11/2006 16:54 <REP> MSScanAppDataDir
25/08/2006 12:47 <REP> Windows Live Toolbar
24/07/2006 18:13 <REP> POPWWPROFILES
25/06/2006 19:06 <REP> Messenger Plus!
10/06/2006 01:39 <REP> Windows Genuine Advantage
03/06/2006 13:51 <REP> Adobe Systems
05/02/2006 10:25 2148 QTSBandwidthCache
22/12/2005 22:46 <REP> Kodak
22/12/2005 12:19 <REP> Apple Computer
15/12/2005 04:52 <REP> InstallShield
15/12/2005 04:50 <REP> McAfee.com
15/12/2005 04:50 <REP> Viewpoint
15/12/2005 04:50 <REP> QuickTime
15/12/2005 04:49 <REP> AOL
01/09/2005 08:08 62 desktop.ini
01/09/2005 08:04 <REP> Microsoft
01/09/2005 08:04 <REP> .
01/09/2005 08:04 <REP> ..
2 fichier(s) 2210 octets
26 R‚p(s) 75333980160 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Aymeric
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Cl‚ment\Application Data
12/03/2007 20:09 <REP> Skype
12/03/2007 17:58 <REP> Template
01/03/2007 20:29 <REP> SiteAdvisor
28/02/2007 00:25 33 UEYXDOCE.log
28/02/2007 00:25 7812 ezplay.cat
28/02/2007 00:25 1104 UEYXDOCE.inf
28/02/2007 00:25 125 UEYXDOCE.ini
28/02/2007 00:25 94080 ezplay.sys
02/02/2007 22:02 <REP> Talkback
29/01/2007 19:25 <REP> Media Player Classic
02/01/2007 18:27 <REP> AdobeUM
05/11/2006 17:47 33 pcouffin.log
05/11/2006 17:47 87608 ezpinst.exe
05/11/2006 17:47 7824 pcouffin.cat
05/11/2006 17:47 47360 pcouffin.sys
05/11/2006 17:47 1144 pcouffin.inf
05/11/2006 17:47 <REP> Vso
10/09/2006 22:07 <REP> Google
24/07/2006 14:24 <REP> Sonic
24/07/2006 14:24 <REP> Leadertech
09/07/2006 14:32 <REP> BitTorrent
09/07/2006 09:42 <REP> CyberLink
29/06/2006 00:53 <REP> Real
05/06/2006 20:44 187 G-Force Prefs (WindowsMediaPlayer).txt
03/06/2006 13:47 <REP> Opera
28/04/2006 14:37 <REP> Mozilla
19/03/2006 11:25 <REP> AOL
08/03/2006 17:03 284 ViewerApp.dat
10/02/2006 17:09 1883 mercuryrc
22/12/2005 21:51 <REP> Help
22/12/2005 14:07 <REP> Apple Computer
21/12/2005 20:31 <REP> Adobe
21/12/2005 00:33 <REP> MSNInstaller
21/12/2005 00:13 <REP> Macromedia
20/12/2005 22:36 62 desktop.ini
20/12/2005 22:36 <REP> Jasc Software Inc
20/12/2005 22:36 <REP> Identities
20/12/2005 22:36 <REP> Microsoft
20/12/2005 22:36 <REP> ..
20/12/2005 22:36 <REP> .
20/12/2005 22:36 <REP> Sun
20/12/2005 22:36 <REP> You've Got Pictures Screensaver
14 fichier(s) 249539 octets
28 R‚p(s) 75333976064 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Default User\Application Data
20/12/2005 22:36 <REP> Jasc Software Inc
20/12/2005 22:36 <REP> Identities
20/12/2005 22:36 <REP> Sun
20/12/2005 22:36 <REP> You've Got Pictures Screensaver
01/09/2005 08:08 62 desktop.ini
01/09/2005 08:04 <REP> Microsoft
01/09/2005 08:04 <REP> ..
01/09/2005 08:04 <REP> .
1 fichier(s) 62 octets
7 R‚p(s) 75333976064 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Dominique\Application Data
02/03/2007 05:06 <REP> Talkback
01/03/2007 22:28 <REP> SiteAdvisor
27/01/2007 08:11 <REP> Real
22/01/2007 23:00 <REP> AdobeUM
01/01/2007 18:54 <REP> Skype
01/01/2007 18:23 <REP> Google
01/07/2006 21:55 <REP> AOL
12/05/2006 01:04 <REP> Mozilla
27/04/2006 20:14 560 ViewerApp.dat
10/02/2006 09:41 1883 mercuryrc
08/02/2006 11:01 <REP> Help
20/01/2006 23:27 <REP> Apple Computer
22/12/2005 09:17 <REP> Macromedia
20/12/2005 23:28 <REP> Adobe
20/12/2005 23:25 <REP> Sonic
20/12/2005 23:25 <REP> Leadertech
20/12/2005 23:21 62 desktop.ini
20/12/2005 23:21 <REP> Identities
20/12/2005 23:21 <REP> Jasc Software Inc
20/12/2005 23:21 <REP> Sun
20/12/2005 23:21 <REP> ..
20/12/2005 23:21 <REP> .
20/12/2005 23:21 <REP> Microsoft
20/12/2005 23:21 <REP> You've Got Pictures Screensaver
3 fichier(s) 2505 octets
21 R‚p(s) 75333980160 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Isabelle\Application Data
03/03/2007 22:29 <REP> Talkback
02/03/2007 13:39 <REP> SiteAdvisor
05/02/2007 17:27 <REP> Sonic
05/02/2007 17:27 <REP> Leadertech
12/01/2007 22:48 <REP> U3
07/01/2007 18:15 <REP> Google
03/01/2007 18:25 <REP> Real
31/10/2006 20:54 1112 ViewerApp.dat
29/06/2006 09:08 <REP> Adobe
19/06/2006 23:51 <REP> Mozilla
03/01/2006 19:47 <REP> Macromedia
03/01/2006 19:34 62 desktop.ini
03/01/2006 19:34 <REP> Identities
03/01/2006 19:34 <REP> Jasc Software Inc
03/01/2006 19:34 <REP> Microsoft
03/01/2006 19:34 <REP> ..
03/01/2006 19:34 <REP> .
03/01/2006 19:34 <REP> Sun
03/01/2006 19:34 <REP> You've Got Pictures Screensaver
2 fichier(s) 1174 octets
17 R‚p(s) 75333980160 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Josselin\Application Data
29/03/2007 17:33 <REP> Leadertech
21/03/2007 22:56 <REP> Screenshot Sender
17/03/2007 19:04 <REP> UPLOAD SAFE COPY
03/03/2007 18:41 <REP> Talkback
03/03/2007 18:37 <REP> SiteAdvisor
10/12/2006 20:34 <REP> Help
13/09/2006 09:23 <REP> Google
13/05/2006 12:10 <REP> Mozilla
01/03/2006 11:54 <REP> Adobe
25/02/2006 10:25 187 G-Force Prefs (WindowsMediaPlayer).txt
25/01/2006 11:21 <REP> Apple Computer
21/12/2005 12:41 <REP> Macromedia
21/12/2005 12:38 62 desktop.ini
21/12/2005 12:38 <REP> Identities
21/12/2005 12:38 <REP> Jasc Software Inc
21/12/2005 12:38 <REP> Sun
21/12/2005 12:38 <REP> ..
21/12/2005 12:38 <REP> .
21/12/2005 12:38 <REP> Microsoft
21/12/2005 12:38 <REP> You've Got Pictures Screensaver
2 fichier(s) 249 octets
18 R‚p(s) 75333976064 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\WINDOWS\Tasks
17/03/2007 19:05 272 B152B6C090352634.job
01/03/2007 19:51 366 McDefragTask.job
01/03/2007 19:51 356 McQcTask.job
18/11/2006 11:00 284 AppleSoftwareUpdate.job
07/11/2006 19:08 256 V‚rifier les mises … jour de Windows Live Toolbar.job
20/12/2005 22:36 258 Rappel d'abonnement 1 auprŠs de l'ISP.job
01/09/2005 08:24 6 SA.DAT
01/09/2005 08:15 <REP> ..
01/09/2005 08:15 <REP> .
01/09/2005 07:53 65 desktop.ini
8 fichier(s) 1ÿ863 octets
2 R‚p(s) 75ÿ333ÿ976ÿ064 octets libres
******************************************
Recherche dans Program files
C:\Program Files\Adverts Présent !
******************************************
Recherche d'infections connues
C:\WINDOWS\system32\csrss.exe Wareout possible ! [#ff0000]faux-positif si csrss.exe ![/#f]
*************** Fin du rapport ****************
Voilà le rapport:
Rapport fait à 14:00:26,73 le 08/04/2007
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Administrateur\Application Data
15/12/2005 04:52 <REP> Jasc Software Inc
15/12/2005 04:50 <REP> You've Got Pictures Screensaver
15/12/2005 04:44 <REP> Sun
01/09/2005 08:25 <REP> Identities
01/09/2005 08:25 62 desktop.ini
01/09/2005 08:25 <REP> Microsoft
01/09/2005 08:25 <REP> ..
01/09/2005 08:25 <REP> .
1 fichier(s) 62 octets
7 R‚p(s) 75333984256 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\All Users\Application Data
01/04/2007 13:57 <REP> Yahoo! Companion
17/03/2007 19:04 <REP> List Junk Iso That
01/03/2007 19:53 <REP> SiteAdvisor
01/03/2007 19:29 <REP> McAfee
08/02/2007 18:11 <REP> Skype
07/02/2007 15:29 <REP> Adobe
31/01/2007 15:28 <REP> DVD Shrink
01/01/2007 18:14 <REP> Google
01/01/2007 18:13 <REP> Google Updater
31/12/2006 11:19 <REP> AOL Downloads
12/11/2006 16:54 <REP> MSScanAppDataDir
25/08/2006 12:47 <REP> Windows Live Toolbar
24/07/2006 18:13 <REP> POPWWPROFILES
25/06/2006 19:06 <REP> Messenger Plus!
10/06/2006 01:39 <REP> Windows Genuine Advantage
03/06/2006 13:51 <REP> Adobe Systems
05/02/2006 10:25 2148 QTSBandwidthCache
22/12/2005 22:46 <REP> Kodak
22/12/2005 12:19 <REP> Apple Computer
15/12/2005 04:52 <REP> InstallShield
15/12/2005 04:50 <REP> McAfee.com
15/12/2005 04:50 <REP> Viewpoint
15/12/2005 04:50 <REP> QuickTime
15/12/2005 04:49 <REP> AOL
01/09/2005 08:08 62 desktop.ini
01/09/2005 08:04 <REP> Microsoft
01/09/2005 08:04 <REP> .
01/09/2005 08:04 <REP> ..
2 fichier(s) 2210 octets
26 R‚p(s) 75333980160 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Aymeric
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Cl‚ment\Application Data
12/03/2007 20:09 <REP> Skype
12/03/2007 17:58 <REP> Template
01/03/2007 20:29 <REP> SiteAdvisor
28/02/2007 00:25 33 UEYXDOCE.log
28/02/2007 00:25 7812 ezplay.cat
28/02/2007 00:25 1104 UEYXDOCE.inf
28/02/2007 00:25 125 UEYXDOCE.ini
28/02/2007 00:25 94080 ezplay.sys
02/02/2007 22:02 <REP> Talkback
29/01/2007 19:25 <REP> Media Player Classic
02/01/2007 18:27 <REP> AdobeUM
05/11/2006 17:47 33 pcouffin.log
05/11/2006 17:47 87608 ezpinst.exe
05/11/2006 17:47 7824 pcouffin.cat
05/11/2006 17:47 47360 pcouffin.sys
05/11/2006 17:47 1144 pcouffin.inf
05/11/2006 17:47 <REP> Vso
10/09/2006 22:07 <REP> Google
24/07/2006 14:24 <REP> Sonic
24/07/2006 14:24 <REP> Leadertech
09/07/2006 14:32 <REP> BitTorrent
09/07/2006 09:42 <REP> CyberLink
29/06/2006 00:53 <REP> Real
05/06/2006 20:44 187 G-Force Prefs (WindowsMediaPlayer).txt
03/06/2006 13:47 <REP> Opera
28/04/2006 14:37 <REP> Mozilla
19/03/2006 11:25 <REP> AOL
08/03/2006 17:03 284 ViewerApp.dat
10/02/2006 17:09 1883 mercuryrc
22/12/2005 21:51 <REP> Help
22/12/2005 14:07 <REP> Apple Computer
21/12/2005 20:31 <REP> Adobe
21/12/2005 00:33 <REP> MSNInstaller
21/12/2005 00:13 <REP> Macromedia
20/12/2005 22:36 62 desktop.ini
20/12/2005 22:36 <REP> Jasc Software Inc
20/12/2005 22:36 <REP> Identities
20/12/2005 22:36 <REP> Microsoft
20/12/2005 22:36 <REP> ..
20/12/2005 22:36 <REP> .
20/12/2005 22:36 <REP> Sun
20/12/2005 22:36 <REP> You've Got Pictures Screensaver
14 fichier(s) 249539 octets
28 R‚p(s) 75333976064 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Default User\Application Data
20/12/2005 22:36 <REP> Jasc Software Inc
20/12/2005 22:36 <REP> Identities
20/12/2005 22:36 <REP> Sun
20/12/2005 22:36 <REP> You've Got Pictures Screensaver
01/09/2005 08:08 62 desktop.ini
01/09/2005 08:04 <REP> Microsoft
01/09/2005 08:04 <REP> ..
01/09/2005 08:04 <REP> .
1 fichier(s) 62 octets
7 R‚p(s) 75333976064 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Dominique\Application Data
02/03/2007 05:06 <REP> Talkback
01/03/2007 22:28 <REP> SiteAdvisor
27/01/2007 08:11 <REP> Real
22/01/2007 23:00 <REP> AdobeUM
01/01/2007 18:54 <REP> Skype
01/01/2007 18:23 <REP> Google
01/07/2006 21:55 <REP> AOL
12/05/2006 01:04 <REP> Mozilla
27/04/2006 20:14 560 ViewerApp.dat
10/02/2006 09:41 1883 mercuryrc
08/02/2006 11:01 <REP> Help
20/01/2006 23:27 <REP> Apple Computer
22/12/2005 09:17 <REP> Macromedia
20/12/2005 23:28 <REP> Adobe
20/12/2005 23:25 <REP> Sonic
20/12/2005 23:25 <REP> Leadertech
20/12/2005 23:21 62 desktop.ini
20/12/2005 23:21 <REP> Identities
20/12/2005 23:21 <REP> Jasc Software Inc
20/12/2005 23:21 <REP> Sun
20/12/2005 23:21 <REP> ..
20/12/2005 23:21 <REP> .
20/12/2005 23:21 <REP> Microsoft
20/12/2005 23:21 <REP> You've Got Pictures Screensaver
3 fichier(s) 2505 octets
21 R‚p(s) 75333980160 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Isabelle\Application Data
03/03/2007 22:29 <REP> Talkback
02/03/2007 13:39 <REP> SiteAdvisor
05/02/2007 17:27 <REP> Sonic
05/02/2007 17:27 <REP> Leadertech
12/01/2007 22:48 <REP> U3
07/01/2007 18:15 <REP> Google
03/01/2007 18:25 <REP> Real
31/10/2006 20:54 1112 ViewerApp.dat
29/06/2006 09:08 <REP> Adobe
19/06/2006 23:51 <REP> Mozilla
03/01/2006 19:47 <REP> Macromedia
03/01/2006 19:34 62 desktop.ini
03/01/2006 19:34 <REP> Identities
03/01/2006 19:34 <REP> Jasc Software Inc
03/01/2006 19:34 <REP> Microsoft
03/01/2006 19:34 <REP> ..
03/01/2006 19:34 <REP> .
03/01/2006 19:34 <REP> Sun
03/01/2006 19:34 <REP> You've Got Pictures Screensaver
2 fichier(s) 1174 octets
17 R‚p(s) 75333980160 octets libres
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\Documents and Settings\Josselin\Application Data
29/03/2007 17:33 <REP> Leadertech
21/03/2007 22:56 <REP> Screenshot Sender
17/03/2007 19:04 <REP> UPLOAD SAFE COPY
03/03/2007 18:41 <REP> Talkback
03/03/2007 18:37 <REP> SiteAdvisor
10/12/2006 20:34 <REP> Help
13/09/2006 09:23 <REP> Google
13/05/2006 12:10 <REP> Mozilla
01/03/2006 11:54 <REP> Adobe
25/02/2006 10:25 187 G-Force Prefs (WindowsMediaPlayer).txt
25/01/2006 11:21 <REP> Apple Computer
21/12/2005 12:41 <REP> Macromedia
21/12/2005 12:38 62 desktop.ini
21/12/2005 12:38 <REP> Identities
21/12/2005 12:38 <REP> Jasc Software Inc
21/12/2005 12:38 <REP> Sun
21/12/2005 12:38 <REP> ..
21/12/2005 12:38 <REP> .
21/12/2005 12:38 <REP> Microsoft
21/12/2005 12:38 <REP> You've Got Pictures Screensaver
2 fichier(s) 249 octets
18 R‚p(s) 75333976064 octets libres
******************************************
Recherche des taches planifiées dans C:\WINDOWS\tasks
Le volume dans le lecteur C n'a pas de nom.
Le num‚ro de s‚rie du volume est 5860-9AC9
R‚pertoire de C:\WINDOWS\Tasks
17/03/2007 19:05 272 B152B6C090352634.job
01/03/2007 19:51 366 McDefragTask.job
01/03/2007 19:51 356 McQcTask.job
18/11/2006 11:00 284 AppleSoftwareUpdate.job
07/11/2006 19:08 256 V‚rifier les mises … jour de Windows Live Toolbar.job
20/12/2005 22:36 258 Rappel d'abonnement 1 auprŠs de l'ISP.job
01/09/2005 08:24 6 SA.DAT
01/09/2005 08:15 <REP> ..
01/09/2005 08:15 <REP> .
01/09/2005 07:53 65 desktop.ini
8 fichier(s) 1ÿ863 octets
2 R‚p(s) 75ÿ333ÿ976ÿ064 octets libres
******************************************
Recherche dans Program files
C:\Program Files\Adverts Présent !
******************************************
Recherche d'infections connues
C:\WINDOWS\system32\csrss.exe Wareout possible ! [#ff0000]faux-positif si csrss.exe ![/#f]
*************** Fin du rapport ****************
Re,
- Lance Hijackthis ->Do a system scan only
->Coche les lignes ci-dessous :
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: (no name) - {944864A5-3916-46E2-96A9-A2E84F3F1208} - (no file)
O4 - HKLM\..\Run: [NI.UERSV_0001_N68M0602] "C:\Documents and Settings\Clément\Bureau\Programmes\ErrorSafeScannerInstall_fr.exe" -nag
O4 - HKLM\..\Run: [NI.UWA6PV_0001_N86M0507] "C:\Documents and Settings\Clément\Mes documents\WinAntiVirusPro2006FreeInstall_fr.exe" -nag
O4 - HKLM\..\Run: [Isothattickvc] C:\Documents and Settings\All Users\Application Data\List Junk Iso That\Platformamen.exe
Clique sur Fix checked (en bas à gauche)
Télécharge OTMoveIt (d'OldTimer). Sauvegarde-le sur ton Bureau.
Sélectionne TOUS les emplacements en gras ci-dessous :
C:\Documents and Settings\Clément\Bureau\Programmes\ErrorSafeScannerInstall_fr.exe
C:\Documents and Settings\Clément\Mes documents\WinAntiVirusPro2006FreeInstall_fr.exe
C:\Documents and Settings\Administrateur\Application Data\You've Got Pictures Screensaver
C:\Documents and Settings\All Users\Application Data\List Junk Iso That
C:\Documents and Settings\Clément\Application Data\You've Got Pictures Screensaver
C:\Documents and Settings\Default User\Application Data\You've Got Pictures Screensaver
C:\Documents and Settings\Dominique\Application Data\You've Got Pictures Screensaver
C:\Documents and Settings\Isabelle\Application Data\You've Got Pictures Screensaver
C:\Documents and Settings\Josselin\Application Data\Screenshot Sender
C:\Documents and Settings\Josselin\Application Data\UPLOAD SAFE COPY
C:\Documents and Settings\Josselin\Application Data\You've Got Pictures Screensaver
C:\WINDOWS\Tasks\B152B6C090352634.job
C:\Program Files\Adverts
C:\Program Files\MyWaySA
---> Clique-droit puis Copier
Double-clique sur OTMoveIt.exe afin de le lancer.
Fais un Clique-droit sur le cadre de gauche puis choisis Coller.
Clique maintenant sur [#ff0000]MoveIt![/#f]
! Si un fichier ou dossier ne peut être supprimé immédiatement, le logiciel te demandera de redémarrer. Accepte en cliquant sur YES !
Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles\
Le nom du rapport est la date de sa création.
- Lance Hijackthis ->Do a system scan only
->Coche les lignes ci-dessous :
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: (no name) - {944864A5-3916-46E2-96A9-A2E84F3F1208} - (no file)
O4 - HKLM\..\Run: [NI.UERSV_0001_N68M0602] "C:\Documents and Settings\Clément\Bureau\Programmes\ErrorSafeScannerInstall_fr.exe" -nag
O4 - HKLM\..\Run: [NI.UWA6PV_0001_N86M0507] "C:\Documents and Settings\Clément\Mes documents\WinAntiVirusPro2006FreeInstall_fr.exe" -nag
O4 - HKLM\..\Run: [Isothattickvc] C:\Documents and Settings\All Users\Application Data\List Junk Iso That\Platformamen.exe
Clique sur Fix checked (en bas à gauche)
Télécharge OTMoveIt (d'OldTimer). Sauvegarde-le sur ton Bureau.
Sélectionne TOUS les emplacements en gras ci-dessous :
C:\Documents and Settings\Clément\Bureau\Programmes\ErrorSafeScannerInstall_fr.exe
C:\Documents and Settings\Clément\Mes documents\WinAntiVirusPro2006FreeInstall_fr.exe
C:\Documents and Settings\Administrateur\Application Data\You've Got Pictures Screensaver
C:\Documents and Settings\All Users\Application Data\List Junk Iso That
C:\Documents and Settings\Clément\Application Data\You've Got Pictures Screensaver
C:\Documents and Settings\Default User\Application Data\You've Got Pictures Screensaver
C:\Documents and Settings\Dominique\Application Data\You've Got Pictures Screensaver
C:\Documents and Settings\Isabelle\Application Data\You've Got Pictures Screensaver
C:\Documents and Settings\Josselin\Application Data\Screenshot Sender
C:\Documents and Settings\Josselin\Application Data\UPLOAD SAFE COPY
C:\Documents and Settings\Josselin\Application Data\You've Got Pictures Screensaver
C:\WINDOWS\Tasks\B152B6C090352634.job
C:\Program Files\Adverts
C:\Program Files\MyWaySA
---> Clique-droit puis Copier
Double-clique sur OTMoveIt.exe afin de le lancer.
Fais un Clique-droit sur le cadre de gauche puis choisis Coller.
Clique maintenant sur [#ff0000]MoveIt![/#f]
! Si un fichier ou dossier ne peut être supprimé immédiatement, le logiciel te demandera de redémarrer. Accepte en cliquant sur YES !
Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles\
Le nom du rapport est la date de sa création.
Re et merci de ton aide
Donc voilà le rapport:
File/Folder C:\Documents and Settings\Clément\Bureau\Programmes\ErrorSafeScannerInstall_fr.exe not found.
File/Folder C:\Documents and Settings\Clément\Mes documents\WinAntiVirusPro2006FreeInstall_fr.exe not found.
C:\Documents and Settings\Administrateur\Application Data\You've Got Pictures Screensaver\PictureDir moved successfully.
C:\Documents and Settings\Administrateur\Application Data\You've Got Pictures Screensaver moved successfully.
Folder cleanup failed. C:\Documents and Settings\All Users\Application Data\List Junk Iso That scheduled to be deleted on reboot.
C:\Documents and Settings\Clément\Application Data\You've Got Pictures Screensaver\PictureDir moved successfully.
C:\Documents and Settings\Clément\Application Data\You've Got Pictures Screensaver moved successfully.
C:\Documents and Settings\Default User\Application Data\You've Got Pictures Screensaver\PictureDir moved successfully.
C:\Documents and Settings\Default User\Application Data\You've Got Pictures Screensaver moved successfully.
C:\Documents and Settings\Dominique\Application Data\You've Got Pictures Screensaver\PictureDir moved successfully.
C:\Documents and Settings\Dominique\Application Data\You've Got Pictures Screensaver moved successfully.
C:\Documents and Settings\Isabelle\Application Data\You've Got Pictures Screensaver\PictureDir moved successfully.
C:\Documents and Settings\Isabelle\Application Data\You've Got Pictures Screensaver moved successfully.
C:\Documents and Settings\Josselin\Application Data\Screenshot Sender moved successfully.
C:\Documents and Settings\Josselin\Application Data\UPLOAD SAFE COPY moved successfully.
C:\Documents and Settings\Josselin\Application Data\You've Got Pictures Screensaver\PictureDir moved successfully.
C:\Documents and Settings\Josselin\Application Data\You've Got Pictures Screensaver moved successfully.
C:\WINDOWS\Tasks\B152B6C090352634.job moved successfully.
C:\Program Files\Adverts moved successfully.
C:\Program Files\MyWaySA\SrchAsDe moved successfully.
C:\Program Files\MyWaySA moved successfully.
Created on 04/08/2007 20:13:45
Donc voilà le rapport:
File/Folder C:\Documents and Settings\Clément\Bureau\Programmes\ErrorSafeScannerInstall_fr.exe not found.
File/Folder C:\Documents and Settings\Clément\Mes documents\WinAntiVirusPro2006FreeInstall_fr.exe not found.
C:\Documents and Settings\Administrateur\Application Data\You've Got Pictures Screensaver\PictureDir moved successfully.
C:\Documents and Settings\Administrateur\Application Data\You've Got Pictures Screensaver moved successfully.
Folder cleanup failed. C:\Documents and Settings\All Users\Application Data\List Junk Iso That scheduled to be deleted on reboot.
C:\Documents and Settings\Clément\Application Data\You've Got Pictures Screensaver\PictureDir moved successfully.
C:\Documents and Settings\Clément\Application Data\You've Got Pictures Screensaver moved successfully.
C:\Documents and Settings\Default User\Application Data\You've Got Pictures Screensaver\PictureDir moved successfully.
C:\Documents and Settings\Default User\Application Data\You've Got Pictures Screensaver moved successfully.
C:\Documents and Settings\Dominique\Application Data\You've Got Pictures Screensaver\PictureDir moved successfully.
C:\Documents and Settings\Dominique\Application Data\You've Got Pictures Screensaver moved successfully.
C:\Documents and Settings\Isabelle\Application Data\You've Got Pictures Screensaver\PictureDir moved successfully.
C:\Documents and Settings\Isabelle\Application Data\You've Got Pictures Screensaver moved successfully.
C:\Documents and Settings\Josselin\Application Data\Screenshot Sender moved successfully.
C:\Documents and Settings\Josselin\Application Data\UPLOAD SAFE COPY moved successfully.
C:\Documents and Settings\Josselin\Application Data\You've Got Pictures Screensaver\PictureDir moved successfully.
C:\Documents and Settings\Josselin\Application Data\You've Got Pictures Screensaver moved successfully.
C:\WINDOWS\Tasks\B152B6C090352634.job moved successfully.
C:\Program Files\Adverts moved successfully.
C:\Program Files\MyWaySA\SrchAsDe moved successfully.
C:\Program Files\MyWaySA moved successfully.
Created on 04/08/2007 20:13:45
Voilà le rapport
Logfile of HijackThis v1.99.1
Scan saved at 22:11:54, on 08/04/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\SiteAdvisor\6061\SAService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\Explorer.EXE
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\McAfee\MPS\mpsevh.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Fichiers communs\AOL\1167556882\ee\AOLSoftware.exe
C:\Program Files\SiteAdvisor\6061\SiteAdv.exe
C:\Program Files\McAfee\MSK\MskAgent.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\NetWaiting\netWaiting.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe
C:\PROGRA~1\Mozilla Firefox\firefox.exe
C:\Program Files\AOL 9.0\waol.exe
C:\Program Files\AOL 9.0\shellmon.exe
C:\Program Files\Fichiers communs\Aol\aoltpspd.exe
C:\Documents and Settings\Clément\Bureau\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.fr/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearch.myway.com/jsp/dellsidebar.jsp?p=DR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Fichiers communs\AOL\1167556882\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Fichiers communs\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6061\SiteAdv.exe
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Global Startup: AOL 8.0 Icône AOL.lnk = C:\Program Files\AOL 8.0\aoltray.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: Picture Package Menu.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
O4 - Global Startup: Picture Package VCD Maker.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?bebe10dc350c4579bda3054c1f4623cc
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?bebe10dc350c4579bda3054c1f4623cc
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267....
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {341FF14B-00CB-49F5-A427-A164DF1D5E1F} (MALPlaybackCtrl Class) - http://musicstore.connect.com/XSL/mb_us//html/activexpl...
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.ca...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClie...
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
O17 - HKLM\System\CCS\Services\Tcpip\..\{4F09C454-3CCB-47F9-BAB1-6A506E2A2A2C}: NameServer = 205.188.146.145
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\FICHIE~1\McAfee\EmProxy\emproxy.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Imapi Helper - Alex Feinman - C:\Program Files\Alex Feinman\ISO Recorder\ImapiHelper.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SiteAdvisor Service - McAfee, Inc. - C:\Program Files\SiteAdvisor\6061\SAService.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
Logfile of HijackThis v1.99.1
Scan saved at 22:11:54, on 08/04/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\SiteAdvisor\6061\SAService.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\Explorer.EXE
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\McAfee\MPS\mpsevh.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Fichiers communs\AOL\1167556882\ee\AOLSoftware.exe
C:\Program Files\SiteAdvisor\6061\SiteAdv.exe
C:\Program Files\McAfee\MSK\MskAgent.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\NetWaiting\netWaiting.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe
C:\PROGRA~1\Mozilla Firefox\firefox.exe
C:\Program Files\AOL 9.0\waol.exe
C:\Program Files\AOL 9.0\shellmon.exe
C:\Program Files\Fichiers communs\Aol\aoltpspd.exe
C:\Documents and Settings\Clément\Bureau\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.fr/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearch.myway.com/jsp/dellsidebar.jsp?p=DR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Fichiers communs\AOL\1167556882\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Fichiers communs\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6061\SiteAdv.exe
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Global Startup: AOL 8.0 Icône AOL.lnk = C:\Program Files\AOL 8.0\aoltray.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: Picture Package Menu.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
O4 - Global Startup: Picture Package VCD Maker.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?bebe10dc350c4579bda3054c1f4623cc
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?bebe10dc350c4579bda3054c1f4623cc
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267....
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {341FF14B-00CB-49F5-A427-A164DF1D5E1F} (MALPlaybackCtrl Class) - http://musicstore.connect.com/XSL/mb_us//html/activexpl...
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.ca...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClie...
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
O17 - HKLM\System\CCS\Services\Tcpip\..\{4F09C454-3CCB-47F9-BAB1-6A506E2A2A2C}: NameServer = 205.188.146.145
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\FICHIE~1\McAfee\EmProxy\emproxy.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Imapi Helper - Alex Feinman - C:\Program Files\Alex Feinman\ISO Recorder\ImapiHelper.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SiteAdvisor Service - McAfee, Inc. - C:\Program Files\SiteAdvisor\6061\SAService.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
Re,
Télécharge Clean.zip (de Malekal),
Décompresse-le sur ton bureau (Clique-Droit/Extraire tout), tu dois obtenir un dossier Clean.
Ouvre le dossier clean, double-clique sur clean.cmd.
Choisis l'option 1 puis patiente. Poste ensuite le contenu du rapport.
Télécharge Clean.zip (de Malekal),
Décompresse-le sur ton bureau (Clique-Droit/Extraire tout), tu dois obtenir un dossier Clean.
Ouvre le dossier clean, double-clique sur clean.cmd.
Choisis l'option 1 puis patiente. Poste ensuite le contenu du rapport.
Voilà le rapport
Rapport clean par Malekal_morte - http://www.malekal.com
Option 1, executee le 08/04/2007 a 23:21:51,01
*** Recherche de fichiers sur C:
*** Recherche des fichiers dans C:\WINDOWS\
C:\WINDOWS\temp\mc???.tmp FOUND
C:\WINDOWS\UnGins.exe FOUND
*** Recherche des fichiers dans C:\WINDOWS\system32
C:\WINDOWS\impborl.dll FOUND
"C:\Documents and Settings\Cl‚ment\Application Data\ezpinst.exe" FOUND
"C:\Program Files\Accoona\" FOUND
"C:\Program Files\Montorgueil\" FOUND
"C:\Program Files\Montorgueil\" FOUND
"C:\Program Files\Save\" FOUND
"C:\Program Files\Viewpoint\" FOUND
*** Fin du rapport !
Rapport clean par Malekal_morte - http://www.malekal.com
Option 1, executee le 08/04/2007 a 23:21:51,01
*** Recherche de fichiers sur C:
*** Recherche des fichiers dans C:\WINDOWS\
C:\WINDOWS\temp\mc???.tmp FOUND
C:\WINDOWS\UnGins.exe FOUND
*** Recherche des fichiers dans C:\WINDOWS\system32
C:\WINDOWS\impborl.dll FOUND
"C:\Documents and Settings\Cl‚ment\Application Data\ezpinst.exe" FOUND
"C:\Program Files\Accoona\" FOUND
"C:\Program Files\Montorgueil\" FOUND
"C:\Program Files\Montorgueil\" FOUND
"C:\Program Files\Save\" FOUND
"C:\Program Files\Viewpoint\" FOUND
*** Fin du rapport !
Re,
Télécharge Blacklight (F-Secure), clique sur " I ACCEPT " en bas de la page :
Clique sur le premier " Download " afin de télécharger le programme
Sauvegarde le sur ton Bureau
Double-clique blbeta.exe et accepte la licence; clique Scan puis Next.
A la fin du scan, NE TOUCHE A RIEN !
Tu verras un rapport, sur ton Bureau, nommé fsbl.xxxxxxx.log (les xxxxxxx sont des chiffres).
Nous devons analyser ce rapport, ferme donc le BlackLight.
Poste le rapport sur le forum.
AIDE : Tuto sur BlackLight (Malekal)
Télécharge Blacklight (F-Secure), clique sur " I ACCEPT " en bas de la page :
Clique sur le premier " Download " afin de télécharger le programme
Sauvegarde le sur ton Bureau
Double-clique blbeta.exe et accepte la licence; clique Scan puis Next.
A la fin du scan, NE TOUCHE A RIEN !
Tu verras un rapport, sur ton Bureau, nommé fsbl.xxxxxxx.log (les xxxxxxx sont des chiffres).
Nous devons analyser ce rapport, ferme donc le BlackLight.
Poste le rapport sur le forum.
AIDE : Tuto sur BlackLight (Malekal)
Voilà le rapport
04/08/07 23:28:29 [Info]: BlackLight Engine 1.0.61 initialized
04/08/07 23:28:29 [Info]: OS: 5.1 build 2600 (Service Pack 2)
04/08/07 23:28:29 [Note]: 7019 4
04/08/07 23:28:29 [Note]: 7005 0
04/08/07 23:28:31 [Note]: 7006 0
04/08/07 23:28:31 [Note]: 7011 2216
04/08/07 23:28:32 [Note]: 7026 0
04/08/07 23:28:32 [Note]: 7026 0
04/08/07 23:28:36 [Note]: FSRAW library version 1.7.1021
04/08/07 23:35:39 [Note]: 2000 1012
04/08/07 23:28:29 [Info]: BlackLight Engine 1.0.61 initialized
04/08/07 23:28:29 [Info]: OS: 5.1 build 2600 (Service Pack 2)
04/08/07 23:28:29 [Note]: 7019 4
04/08/07 23:28:29 [Note]: 7005 0
04/08/07 23:28:31 [Note]: 7006 0
04/08/07 23:28:31 [Note]: 7011 2216
04/08/07 23:28:32 [Note]: 7026 0
04/08/07 23:28:32 [Note]: 7026 0
04/08/07 23:28:36 [Note]: FSRAW library version 1.7.1021
04/08/07 23:35:39 [Note]: 2000 1012
Re,
Télécharge puis installe AVG Anti-Spyware (AVG AS)
Fais les mises à jour mais ne lance pas de scan pour le moment.
AIDE : Tuto sur AVG Anti-Spyware (Malekal)
Redémarre en mode sans échec
Relance AVG AS :
- Choisis l'onglet "Analyse"
- Puis l'onglet "Paramètres"
- Sous la question "Comment réagir ?", clique sur "Actions recommandées" et choisis "Quarantaine"
- Re-clique sur l'onglet "Analyse" puis réalise une "Analyse complète du système"
[#ff0000]Si un fichier est infecté en fin d'analyse, clique sur "Appliquer toutes les actions"[/#f]
Clique sur "Enregistrer le rapport" puis sur "Enregistrer le rapport sous"
Enregistre ce fichier texte sur ton bureau.
Ouvre le dossier clean, double-clique sur clean.cmd.
Choisis l'option 2 puis patiente.
Redémarre normalement
Poste le rapport AVG AS ainsi qu'un rapport Hijackthis.
Poste le rapport clean : C:\rapport_clean.txt
Télécharge puis installe AVG Anti-Spyware (AVG AS)
Fais les mises à jour mais ne lance pas de scan pour le moment.
AIDE : Tuto sur AVG Anti-Spyware (Malekal)
Redémarre en mode sans échec
Relance AVG AS :
- Choisis l'onglet "Analyse"
- Puis l'onglet "Paramètres"
- Sous la question "Comment réagir ?", clique sur "Actions recommandées" et choisis "Quarantaine"
- Re-clique sur l'onglet "Analyse" puis réalise une "Analyse complète du système"
[#ff0000]Si un fichier est infecté en fin d'analyse, clique sur "Appliquer toutes les actions"[/#f]
Clique sur "Enregistrer le rapport" puis sur "Enregistrer le rapport sous"
Enregistre ce fichier texte sur ton bureau.
Ouvre le dossier clean, double-clique sur clean.cmd.
Choisis l'option 2 puis patiente.
Redémarre normalement
Poste le rapport AVG AS ainsi qu'un rapport Hijackthis.
Poste le rapport clean : C:\rapport_clean.txt
Fiouuuuu, ça a mit du temps^^, allez, je poste tout avant d'aller au lit^^
Rapport HiJackThis:
Logfile of HijackThis v1.99.1
Scan saved at 00:44:59, on 09/04/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Fichiers communs\AOL\1167556882\ee\AOLSoftware.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
C:\Program Files\SiteAdvisor\6061\SiteAdv.exe
c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
C:\Program Files\McAfee\MSK\MskAgent.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\NetWaiting\netWaiting.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\SiteAdvisor\6061\SAService.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\AOL 9.0\waol.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\McAfee\MPS\mpsevh.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\Program Files\Fichiers communs\Aol\aoltpspd.exe
C:\Documents and Settings\Clément\Bureau\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.fr/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearch.myway.com/jsp/dellsidebar.jsp?p=DR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Fichiers communs\AOL\1167556882\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Fichiers communs\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6061\SiteAdv.exe
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Global Startup: AOL 8.0 Icône AOL.lnk = C:\Program Files\AOL 8.0\aoltray.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: Picture Package Menu.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
O4 - Global Startup: Picture Package VCD Maker.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?bebe10dc350c4579bda3054c1f4623cc
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?bebe10dc350c4579bda3054c1f4623cc
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
O17 - HKLM\System\CCS\Services\Tcpip\..\{4F09C454-3CCB-47F9-BAB1-6A506E2A2A2C}: NameServer = 205.188.146.145
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\FICHIE~1\McAfee\EmProxy\emproxy.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Imapi Helper - Alex Feinman - C:\Program Files\Alex Feinman\ISO Recorder\ImapiHelper.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SiteAdvisor Service - McAfee, Inc. - C:\Program Files\SiteAdvisor\6061\SAService.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
Rapport AVG AS:
---------------------------------------------------------
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------
+ Créé à: 00:35:29 09/04/2007
+ Résultat de l'analyse:
C:\Program Files\INSTAFIN -> Adware.404Search : Nettoyé et sauvegardé (mise en quarantaine).
C:\Program Files\INSTAFIN\Cache -> Adware.404Search : Nettoyé et sauvegardé (mise en quarantaine).
C:\Program Files\INSTAFIN\Cache\instafintb0300.cfg -> Adware.404Search : Nettoyé et sauvegardé (mise en quarantaine).
C:\Program Files\INSTAFIN\Uninstall.exe -> Adware.404Search : Nettoyé et sauvegardé (mise en quarantaine).
HKU\S-1-5-21-107834937-3850092794-725345875-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{944864A5-3916-46E2-96A9-A2E84F3F1208} -> Adware.Accoona : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Gator -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Gator\dyn -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Gator\stat -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\Bundle -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\Bundle\chk -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\Bundle\dl -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\OemResDll -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\OemResDll\chk -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\OemResDll\dl -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\SilentSetup -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\SilentSetup\chk -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\SilentSetup\dl -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\TricklerInf -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\INSTAFIN -> Adware.InstaFinder : Nettoyé et sauvegardé (mise en quarantaine).
HKU\S-1-5-21-107834937-3850092794-725345875-1009\Software\INSTAFIN -> Adware.InstaFinder : Nettoyé et sauvegardé (mise en quarantaine).
C:\Program Files\Save -> Adware.SaveNow : Nettoyé et sauvegardé (mise en quarantaine).
C:\Program Files\Save\ffext.mod -> Adware.SaveNow : Nettoyé et sauvegardé (mise en quarantaine).
C:\Program Files\Save\save.htm -> Adware.SaveNow : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Classes\WUSN.1 -> Adware.SaveNow : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\WinAntiVirus Pro 2006 -> Adware.WinAntiVirus : Nettoyé et sauvegardé (mise en quarantaine).
:mozilla.42:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@247realmedia[1].txt -> TrackingCookie.247realmedia : Nettoyé.
:mozilla.10:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.14:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.159:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.160:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.161:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.162:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.163:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.164:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.165:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.166:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.167:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.168:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.185:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.188:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.200:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.250:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.302:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.84:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.85:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.86:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@aoleusearch.122.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@aolfr.122.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@fnac.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@promarkt.122.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.101:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.102:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.152:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.153:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.154:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.343:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@adbrite[1].txt -> TrackingCookie.Adbrite : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@www.adbrite[1].txt -> TrackingCookie.Adbrite : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@adbrite[2].txt -> TrackingCookie.Adbrite : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@admarketplace[2].txt -> TrackingCookie.Admarketplace : Nettoyé.
:mozilla.337:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adrevolver : Nettoyé.
:mozilla.340:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adrevolver : Nettoyé.
:mozilla.18:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.21:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.49:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.50:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@adtech[1].txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.193:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.195:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.196:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.197:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.24:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.25:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.26:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.27:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@advertising[1].txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.139:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyé.
:mozilla.295:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyé.
:mozilla.42:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@atdmt[1].txt -> TrackingCookie.Atdmt : Nettoyé.
:mozilla.62:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé.
:mozilla.99:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@bluestreak[2].txt -> TrackingCookie.Bluestreak : Nettoyé.
:mozilla.67:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé.
:mozilla.68:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé.
:mozilla.69:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@casinotropez[1].txt -> TrackingCookie.Casinotropez : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@www.casinotropez[2].txt -> TrackingCookie.Casinotropez : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@ads.guardian.co[1].txt -> TrackingCookie.Co : Nettoyé.
:mozilla.141:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Com : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@com[2].txt -> TrackingCookie.Com : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@com[1].txt -> TrackingCookie.Com : Nettoyé.
:mozilla.13:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
:mozilla.16:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
:mozilla.17:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
:mozilla.6:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
:mozilla.7:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
:mozilla.9:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@fl01.ct2.comclick[2].txt -> TrackingCookie.Comclick : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@dealtime[2].txt -> TrackingCookie.Dealtime : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@stat.dealtime[2].txt -> TrackingCookie.Dealtime : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@www.dealtime[1].txt -> TrackingCookie.Dealtime : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@stat.dealtime[2].txt -> TrackingCookie.Dealtime : Nettoyé.
:mozilla.31:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé.
:mozilla.63:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé.
:mozilla.64:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@doubleclick[1].txt -> TrackingCookie.Doubleclick : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@doubleclick[1].txt -> TrackingCookie.Doubleclick : Nettoyé.
:mozilla.186:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@estat[1].txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@estat[1].txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\Isabelle\Cookies\isabelle@estat[1].txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@estat[1].txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@www.etracker[1].txt -> TrackingCookie.Etracker : Nettoyé.
:mozilla.294:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Euroclick : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Nettoyé.
:mozilla.151:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
:mozilla.41:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@as-eu.falkag[2].txt -> TrackingCookie.Falkag : Nettoyé.
:mozilla.15:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.16:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.17:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.18:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.19:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.52:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.53:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.54:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.55:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.56:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@fastclick[2].txt -> TrackingCookie.Fastclick : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@fortunecity[2].txt -> TrackingCookie.Fortunecity : Nettoyé.
:mozilla.240:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.241:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.300:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.301:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@ehg-volania.hitbox[1].txt -> TrackingCookie.Hitbox : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@ehg-youtube.hitbox[1].txt -> TrackingCookie.Hitbox : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@hitbox[2].txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.39:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Information : Nettoyé.
:mozilla.40:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Information : Nettoyé.
:mozilla.41:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Information : Nettoyé.
:mozilla.42:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Information : Nettoyé.
:mozilla.43:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Information : Nettoyé.
:mozilla.147:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Ivwbox : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@ivwbox[2].txt -> TrackingCookie.Ivwbox : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@komtrack[2].txt -> TrackingCookie.Komtrack : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@komtrack[2].txt -> TrackingCookie.Komtrack : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@server.iad.liveperson[2].txt -> TrackingCookie.Liveperson : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@server.lon.liveperson[1].txt -> TrackingCookie.Liveperson : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@www.lop[2].txt -> TrackingCookie.Lop : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@www.lop[2].txt -> TrackingCookie.Lop : Nettoyé.
:mozilla.170:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé.
:mozilla.62:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@mediaplex[1].txt -> TrackingCookie.Mediaplex : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@valueclick.ne[1].txt -> TrackingCookie.Ne : Nettoyé.
:mozilla.112:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Overture : Nettoyé.
:mozilla.134:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Pointroll : Nettoyé.
:mozilla.135:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Pointroll : Nettoyé.
:mozilla.136:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Pointroll : Nettoyé.
:mozilla.137:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Pointroll : Nettoyé.
:mozilla.168:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Questionmarket : Nettoyé.
:mozilla.169:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Questionmarket : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Nettoyé.
:mozilla.46:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Revenue : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@revsci[2].txt -> TrackingCookie.Revsci : Nettoyé.
:mozilla.132:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.133:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.134:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.135:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.136:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.137:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.71:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.72:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.73:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.74:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.75:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.76:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@serving-sys[2].txt -> TrackingCookie.Serving-sys : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@cs.sexcounter[2].txt -> TrackingCookie.Sexcounter : Nettoyé.
:mozilla.59:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.60:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.61:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.94:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.95:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.96:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.317:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé.
:mozilla.318:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé.
:mozilla.319:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé.
:mozilla.286:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tacoda : Nettoyé.
:mozilla.287:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tacoda : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@anad.tacoda[2].txt -> TrackingCookie.Tacoda : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@tacoda[2].txt -> TrackingCookie.Tacoda : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@tacoda[1].txt -> TrackingCookie.Tacoda : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@login.tracking101[1].txt -> TrackingCookie.Tracking101 : Nettoyé.
:mozilla.57:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.71:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.72:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.73:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.74:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.334:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Trafficmp : Nettoyé.
:mozilla.335:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Trafficmp : Nettoyé.
:mozilla.23:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tribalfusion : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Nettoyé.
:mozilla.67:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.68:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.69:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.80:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.81:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@weborama[2].txt -> TrackingCookie.Weborama : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@weborama[2].txt -> TrackingCookie.Weborama : Nettoyé.
C:\Documents and Settings\Isabelle\Cookies\isabelle@weborama[1].txt -> TrackingCookie.Weborama : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@weborama[1].txt -> TrackingCookie.Weborama : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@statse.webtrendslive[1].txt -> TrackingCookie.Webtrendslive : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Nettoyé.
:mozilla.123:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.124:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.125:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.126:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.64:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.65:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.66:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@zedo[1].txt -> TrackingCookie.Zedo : Nettoyé.
Fin du rapport
Rapport Clean:
Script execute en mode sans echec
Rapport clean par Malekal_morte - http://www.malekal.com
Option 2, executee le 09/04/2007 a 0:36:21,60
Microsoft Windows XP [version 5.1.2600]
*** Suppression de fichiers sur C:
*** Suppression des fichiers dans C:\WINDOWS\
tentative de suppression de C:\WINDOWS\temp\mc???.tmp
Impossible de supprimer C:\WINDOWS\temp\mc???.tmp
tentative de suppression de C:\WINDOWS\UnGins.exe
*** Suppression des fichiers dans C:\WINDOWS\system32
tentative de suppression de C:\WINDOWS\impborl.dll
tentative de suppression de "C:\Documents and Settings\Cl‚ment\Application Data\ezpinst.exe"
tentative de suppression de "C:\Program Files\Accoona\"
tentative de suppression de "C:\Program Files\Montorgueil\"
tentative de suppression de "C:\Program Files\Viewpoint\"
*** Suppression des clefs du registre effectuee..
*** Fin du rapport !
Rapport HiJackThis:
Logfile of HijackThis v1.99.1
Scan saved at 00:44:59, on 09/04/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Fichiers communs\AOL\1167556882\ee\AOLSoftware.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
C:\Program Files\SiteAdvisor\6061\SiteAdv.exe
c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
C:\Program Files\McAfee\MSK\MskAgent.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\NetWaiting\netWaiting.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\SiteAdvisor\6061\SAService.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\AOL 9.0\waol.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\McAfee\MPS\mpsevh.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\Program Files\Fichiers communs\Aol\aoltpspd.exe
C:\Documents and Settings\Clément\Bureau\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.fr/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://mysearch.myway.com/jsp/dellsidebar.jsp?p=DR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\program files\mcafee\virusscan\scriptcl.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\FICHIE~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [AdslTaskBar] rundll32.exe stmctrl.dll,TaskBar
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Fichiers communs\AOL\1167556882\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Fichiers communs\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6061\SiteAdv.exe
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Global Startup: AOL 8.0 Icône AOL.lnk = C:\Program Files\AOL 8.0\aoltray.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O4 - Global Startup: Picture Package Menu.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
O4 - Global Startup: Picture Package VCD Maker.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?bebe10dc350c4579bda3054c1f4623cc
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?bebe10dc350c4579bda3054c1f4623cc
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/fl...
O17 - HKLM\System\CCS\Services\Tcpip\..\{4F09C454-3CCB-47F9-BAB1-6A506E2A2A2C}: NameServer = 205.188.146.145
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: siteadvisor - {3A5DC592-7723-4EAA-9EE6-AF4222BCF879} - C:\Program Files\SiteAdvisor\6061\SiteAdv.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\FICHIE~1\McAfee\EmProxy\emproxy.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Imapi Helper - Alex Feinman - C:\Program Files\Alex Feinman\ISO Recorder\ImapiHelper.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Fichiers communs\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Update Manager (mcmispupdmgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcupdmgr.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\fichiers communs\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Protection Manager (mcpromgr) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcpromgr.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\FICHIE~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: SiteAdvisor Service - McAfee, Inc. - C:\Program Files\SiteAdvisor\6061\SAService.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
Rapport AVG AS:
---------------------------------------------------------
AVG Anti-Spyware - Rapport d'analyse
---------------------------------------------------------
+ Créé à: 00:35:29 09/04/2007
+ Résultat de l'analyse:
C:\Program Files\INSTAFIN -> Adware.404Search : Nettoyé et sauvegardé (mise en quarantaine).
C:\Program Files\INSTAFIN\Cache -> Adware.404Search : Nettoyé et sauvegardé (mise en quarantaine).
C:\Program Files\INSTAFIN\Cache\instafintb0300.cfg -> Adware.404Search : Nettoyé et sauvegardé (mise en quarantaine).
C:\Program Files\INSTAFIN\Uninstall.exe -> Adware.404Search : Nettoyé et sauvegardé (mise en quarantaine).
HKU\S-1-5-21-107834937-3850092794-725345875-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{944864A5-3916-46E2-96A9-A2E84F3F1208} -> Adware.Accoona : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Gator -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Gator\dyn -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Gator\stat -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\Bundle -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\Bundle\chk -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\Bundle\dl -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\OemResDll -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\OemResDll\chk -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\OemResDll\dl -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\SilentSetup -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\SilentSetup\chk -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\SilentSetup\dl -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Gator.com\Trickler\Files\TricklerInf -> Adware.Gator : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\INSTAFIN -> Adware.InstaFinder : Nettoyé et sauvegardé (mise en quarantaine).
HKU\S-1-5-21-107834937-3850092794-725345875-1009\Software\INSTAFIN -> Adware.InstaFinder : Nettoyé et sauvegardé (mise en quarantaine).
C:\Program Files\Save -> Adware.SaveNow : Nettoyé et sauvegardé (mise en quarantaine).
C:\Program Files\Save\ffext.mod -> Adware.SaveNow : Nettoyé et sauvegardé (mise en quarantaine).
C:\Program Files\Save\save.htm -> Adware.SaveNow : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\Classes\WUSN.1 -> Adware.SaveNow : Nettoyé et sauvegardé (mise en quarantaine).
HKLM\SOFTWARE\WinAntiVirus Pro 2006 -> Adware.WinAntiVirus : Nettoyé et sauvegardé (mise en quarantaine).
:mozilla.42:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@247realmedia[1].txt -> TrackingCookie.247realmedia : Nettoyé.
:mozilla.10:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.14:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.159:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.160:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.161:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.162:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.163:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.164:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.165:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.166:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.167:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.168:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.185:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.188:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.200:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.250:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.302:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.84:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.85:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.86:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@aoleusearch.122.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@aolfr.122.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@fnac.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@promarkt.122.2o7[1].txt -> TrackingCookie.2o7 : Nettoyé.
:mozilla.101:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.102:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.152:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.153:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.154:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
:mozilla.343:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@adbrite[1].txt -> TrackingCookie.Adbrite : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@www.adbrite[1].txt -> TrackingCookie.Adbrite : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@adbrite[2].txt -> TrackingCookie.Adbrite : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@admarketplace[2].txt -> TrackingCookie.Admarketplace : Nettoyé.
:mozilla.337:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adrevolver : Nettoyé.
:mozilla.340:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adrevolver : Nettoyé.
:mozilla.18:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.21:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.49:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.50:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@adtech[1].txt -> TrackingCookie.Adtech : Nettoyé.
:mozilla.193:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.195:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.196:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.197:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.24:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.25:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.26:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.27:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@advertising[1].txt -> TrackingCookie.Advertising : Nettoyé.
:mozilla.139:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyé.
:mozilla.295:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyé.
:mozilla.42:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@atdmt[1].txt -> TrackingCookie.Atdmt : Nettoyé.
:mozilla.62:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé.
:mozilla.99:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@bluestreak[2].txt -> TrackingCookie.Bluestreak : Nettoyé.
:mozilla.67:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé.
:mozilla.68:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé.
:mozilla.69:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@casinotropez[1].txt -> TrackingCookie.Casinotropez : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@www.casinotropez[2].txt -> TrackingCookie.Casinotropez : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@ads.guardian.co[1].txt -> TrackingCookie.Co : Nettoyé.
:mozilla.141:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Com : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@com[2].txt -> TrackingCookie.Com : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@com[1].txt -> TrackingCookie.Com : Nettoyé.
:mozilla.13:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
:mozilla.16:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
:mozilla.17:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
:mozilla.6:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
:mozilla.7:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
:mozilla.9:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@fl01.ct2.comclick[2].txt -> TrackingCookie.Comclick : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@dealtime[2].txt -> TrackingCookie.Dealtime : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@stat.dealtime[2].txt -> TrackingCookie.Dealtime : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@www.dealtime[1].txt -> TrackingCookie.Dealtime : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@stat.dealtime[2].txt -> TrackingCookie.Dealtime : Nettoyé.
:mozilla.31:C:\Documents and Settings\Dominique\Application Data\Mozilla\Firefox\Profiles\nlefornp.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé.
:mozilla.63:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé.
:mozilla.64:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@doubleclick[1].txt -> TrackingCookie.Doubleclick : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@doubleclick[1].txt -> TrackingCookie.Doubleclick : Nettoyé.
:mozilla.186:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@estat[1].txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@estat[1].txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\Isabelle\Cookies\isabelle@estat[1].txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@estat[1].txt -> TrackingCookie.Estat : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@www.etracker[1].txt -> TrackingCookie.Etracker : Nettoyé.
:mozilla.294:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Euroclick : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Nettoyé.
:mozilla.151:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
:mozilla.41:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@as-eu.falkag[2].txt -> TrackingCookie.Falkag : Nettoyé.
:mozilla.15:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.16:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.17:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.18:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.19:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.52:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.53:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.54:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.55:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
:mozilla.56:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@fastclick[2].txt -> TrackingCookie.Fastclick : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@fortunecity[2].txt -> TrackingCookie.Fortunecity : Nettoyé.
:mozilla.240:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.241:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.300:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.301:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Hitbox : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@ehg-volania.hitbox[1].txt -> TrackingCookie.Hitbox : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@ehg-youtube.hitbox[1].txt -> TrackingCookie.Hitbox : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@hitbox[2].txt -> TrackingCookie.Hitbox : Nettoyé.
:mozilla.39:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Information : Nettoyé.
:mozilla.40:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Information : Nettoyé.
:mozilla.41:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Information : Nettoyé.
:mozilla.42:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Information : Nettoyé.
:mozilla.43:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Information : Nettoyé.
:mozilla.147:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Ivwbox : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@ivwbox[2].txt -> TrackingCookie.Ivwbox : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@komtrack[2].txt -> TrackingCookie.Komtrack : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@komtrack[2].txt -> TrackingCookie.Komtrack : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@server.iad.liveperson[2].txt -> TrackingCookie.Liveperson : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@server.lon.liveperson[1].txt -> TrackingCookie.Liveperson : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@www.lop[2].txt -> TrackingCookie.Lop : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@www.lop[2].txt -> TrackingCookie.Lop : Nettoyé.
:mozilla.170:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé.
:mozilla.62:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@mediaplex[1].txt -> TrackingCookie.Mediaplex : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@valueclick.ne[1].txt -> TrackingCookie.Ne : Nettoyé.
:mozilla.112:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Overture : Nettoyé.
:mozilla.134:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Pointroll : Nettoyé.
:mozilla.135:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Pointroll : Nettoyé.
:mozilla.136:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Pointroll : Nettoyé.
:mozilla.137:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Pointroll : Nettoyé.
:mozilla.168:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Questionmarket : Nettoyé.
:mozilla.169:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Questionmarket : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Nettoyé.
:mozilla.46:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Revenue : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@revsci[2].txt -> TrackingCookie.Revsci : Nettoyé.
:mozilla.132:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.133:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.134:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.135:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.136:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.137:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.71:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.72:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.73:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.74:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.75:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
:mozilla.76:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@serving-sys[2].txt -> TrackingCookie.Serving-sys : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@cs.sexcounter[2].txt -> TrackingCookie.Sexcounter : Nettoyé.
:mozilla.59:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.60:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.61:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.94:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.95:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.96:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : Nettoyé.
:mozilla.317:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé.
:mozilla.318:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé.
:mozilla.319:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé.
:mozilla.286:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tacoda : Nettoyé.
:mozilla.287:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tacoda : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@anad.tacoda[2].txt -> TrackingCookie.Tacoda : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@tacoda[2].txt -> TrackingCookie.Tacoda : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@tacoda[1].txt -> TrackingCookie.Tacoda : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@login.tracking101[1].txt -> TrackingCookie.Tracking101 : Nettoyé.
:mozilla.57:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.71:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.72:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.73:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.74:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Nettoyé.
:mozilla.334:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Trafficmp : Nettoyé.
:mozilla.335:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Trafficmp : Nettoyé.
:mozilla.23:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Tribalfusion : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Nettoyé.
:mozilla.67:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.68:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.69:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.80:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
:mozilla.81:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@weborama[2].txt -> TrackingCookie.Weborama : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@weborama[2].txt -> TrackingCookie.Weborama : Nettoyé.
C:\Documents and Settings\Isabelle\Cookies\isabelle@weborama[1].txt -> TrackingCookie.Weborama : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@weborama[1].txt -> TrackingCookie.Weborama : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@statse.webtrendslive[1].txt -> TrackingCookie.Webtrendslive : Nettoyé.
C:\Documents and Settings\Dominique\Cookies\dominique@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Nettoyé.
C:\Documents and Settings\Josselin\Cookies\josselin@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Nettoyé.
:mozilla.123:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.124:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.125:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.126:C:\Documents and Settings\Clément\Application Data\Mozilla\Firefox\Profiles\ld74k0ng.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.64:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.65:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
:mozilla.66:C:\Documents and Settings\Josselin\Application Data\Mozilla\Firefox\Profiles\vib3w2pa.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Nettoyé.
C:\Documents and Settings\Clément\Cookies\clément@zedo[1].txt -> TrackingCookie.Zedo : Nettoyé.
Fin du rapport
Rapport Clean:
Script execute en mode sans echec
Rapport clean par Malekal_morte - http://www.malekal.com
Option 2, executee le 09/04/2007 a 0:36:21,60
Microsoft Windows XP [version 5.1.2600]
*** Suppression de fichiers sur C:
*** Suppression des fichiers dans C:\WINDOWS\
tentative de suppression de C:\WINDOWS\temp\mc???.tmp
Impossible de supprimer C:\WINDOWS\temp\mc???.tmp
tentative de suppression de C:\WINDOWS\UnGins.exe
*** Suppression des fichiers dans C:\WINDOWS\system32
tentative de suppression de C:\WINDOWS\impborl.dll
tentative de suppression de "C:\Documents and Settings\Cl‚ment\Application Data\ezpinst.exe"
tentative de suppression de "C:\Program Files\Accoona\"
tentative de suppression de "C:\Program Files\Montorgueil\"
tentative de suppression de "C:\Program Files\Viewpoint\"
*** Suppression des clefs du registre effectuee..
*** Fin du rapport !
Il a fait un bon ménage !
Tu as toujours des problèmes ?
Fais un scan en ligne Kaspersky avec Internet Explorer :
Clique sur ![]()
Clique maintenant sur J'accepte.
Valide l'installation d'un ou de plusieurs ActiveX si c'est nécessaire.
Patiente pendant l'installation des Mises à jour.
Choisis par la suite l'analyse du Poste de travail
Sauvegarde puis colle le rapport généré en fin d'analyse.
AIDE : Tuto sur le scan en ligne
NOTE : Si tu reçois le message "La licence de Kaspersky On-line Scanner est périmée", va dans Ajout/Suppression de programmes puis désinstalle On-Line Scanner, reconnecte toi sur le site de Kaspersky pour retenter le scan en ligne.
Tu as toujours des problèmes ?

AIDE : Tuto sur le scan en ligne
NOTE : Si tu reçois le message "La licence de Kaspersky On-line Scanner est périmée", va dans Ajout/Suppression de programmes puis désinstalle On-Line Scanner, reconnecte toi sur le site de Kaspersky pour retenter le scan en ligne.
Salut, oui, j'ai l'impression qu'il y a plus de CiD!
Bon le rapport est gros et ça buguait pour copier alors j'ai pense que ça serait mieux si tu pouvais le télécharger: http://www.megaupload.com/?d=CNFJXFBL
Sinon je voulais savoir si je devais cliquer sur Send pour analyser les 10 objets infectés.
Bon le rapport est gros et ça buguait pour copier alors j'ai pense que ça serait mieux si tu pouvais le télécharger: http://www.megaupload.com/?d=CNFJXFBL
Sinon je voulais savoir si je devais cliquer sur Send pour analyser les 10 objets infectés.
Ferme la fenêtre Kaspersky.
- Assure toi d'avoir accès aux dossiers/fichiers cachés
-> Démarrer
-> Panneau de configuration
-> Options des Dossiers, onglet Affichage :
. Clique sur Afficher les dossiers cachés
. Décoche Masquer les extensions des fichiers dont le type est connu
. Décoche Masquer les fichiers protégés du système d'exploitation
Supprime ces dossiers :
C:\Documents and Settings\All Users\Application Data\List Junk Iso That
C:\_OTMoveIt
Vide ta corbeille.
- Assure toi d'avoir accès aux dossiers/fichiers cachés
-> Démarrer
-> Panneau de configuration
-> Options des Dossiers, onglet Affichage :
. Clique sur Afficher les dossiers cachés
. Décoche Masquer les extensions des fichiers dont le type est connu
. Décoche Masquer les fichiers protégés du système d'exploitation
Supprime ces dossiers :
C:\Documents and Settings\All Users\Application Data\List Junk Iso That
C:\_OTMoveIt
Vide ta corbeille.
Lassé par la pub ? Créez un compte