Enormes problemes de PC, Impossible de formater - Sécurité - Virus
TomsGuide.com : 700 000 inscrits répondent à toutes vos questions high-tech et informatique.
Pour obtenir de l'aide, inscrivez-vous gratuitement !
 




Mot :   Pseudo :  
 
Bas de page
Auteur
 Sujet : Enormes problemes de PC, Impossible de formater
 
Profil : IDNaute
Plus d'informations

Bonjour,

J'ai depuis un petit moment ( 3 mois environs) De gros problèmes avec mon PC.

Pour commencer à l'ouverture de windows un message d'erreur s'affiche :l'éternel " Eksplorasi.exe non trouvé"(oui oui c'est bien eKSplorasi et non pas explorasi)
Ensuite, mes dossiers contenant des vidéos de plus de environ 200 Mo buggent une fois ouvert et se réaffiche le message d'erreur : "Eksplorasi.exe".
De plus je ne peux pas regarder ces vidéos, Le lecteur windows média s'ouvre, mais la vidéo ne se lance pas.
Enfin depuis peu S'affiche ponctuellement quand je suis sur internet un autre message d'erreur : " Erreur dans l'execution du script de cette page " ou quelque chose du genre. Je fait évidemment ne pas continuer à effectuer de scripts.

Bien conscient que mon PC ne va pas bien du tout je demande de l'aide à qui pourra gentiment m'en fournir!

Je rapelle que je ne peux pas formater mon PC Etant donné que je n'ai pas le CD de windows!

Merci d'avance!! ;)

Liens sponsorisés


Inscrivez-vous ou connectez-vous pour masquer ceci.

<@_@>
Profil : Helper
Plus d'informations

Bonjour et [:bienvenue]

Télécharge puis installe Hijackthis (Trend Micro)
Poste ensuite un rapport dans ta prochaine réponse.
AIDE : Comment utiliser Hijackthis v2.0.2

Citation :

Je rapelle que je ne peux pas formater mon PC Etant donné que je n'ai pas le CD de windows!


tu peux toujours réparer avec un CD qu'on te prête. (pas la peine pour le moment)


---------------
Prévention et protection
/!\Marre de la pub: Firefox sécurisé/!\
Profil : IDNaute
Plus d'informations

Et vouala le rapport qui sent sans doute pas très bon :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:43:21, on 06/05/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe
C:\Program Files\SweetIM\Messenger\SweetIM.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe
C:\WINDOWS\system32\RACLE~1\wowexec.exe
C:\Documents and Settings\Compaq_Propriétaire\Mes documents\?ystem\??rvices.exe
C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Toaster.exe
C:\PROGRA~1\Wanadoo\Inactivity.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Program Files\Nero\Nero 7\Nero PhotoSnap\PhotoSnap.exe
C:\Program Files\Nero\Nero 7\Nero PhotoSnap\PhotoSnapViewer.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Electronic Arts\EADM\Core.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\eMule\emule.exe
C:\WINDOWS\system32\fxssvc.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\Explorer.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr? [...] pf=desktop
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mystart.incredimail.com/french
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr? [...] pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr? [...] pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://ie.redirect.hp.com/svs/rdr? [...] pf=desktop
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.sweetim.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Orange
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
R3 - URLSearchHook: Share Accelerator MM Toolbar - {4596013b-6c31-408b-a266-deae5c086dc2} - C:\Program Files\Share_Accelerator_MM\tbSha0.dll (file missing)
R3 - URLSearchHook: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
R3 - URLSearchHook: (no name) - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - (no file)
R3 - URLSearchHook: SweetIM ToolbarURLSearchHook Class - {EEE6C35D-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgHelper.dll
F2 - REG:system.ini: Shell=Explorer.exe "C:\WINDOWS\eksplorasi.exe"
O1 - Hosts: <html>
O1 - Hosts: <head>
O1 - Hosts: <title>Welcome to Yahoo! GeoCities - Your Home on the Web &reg;</title>
O1 - Hosts: </head>
O1 - Hosts: <body bgcolor=#ffffff>
O1 - Hosts: <!-- following code added by server. PLEASE REMOVE -->
O1 - Hosts: <!-- preceding code added by server. PLEASE REMOVE --><center>
O1 - Hosts: <table border=0 width=600 cellspacing=0 cellpadding=0><tr><td width="1%"><a href="http://geocities.yahoo.com/"><img
O1 - Hosts: src=http://us.i1.yimg.com/us.yimg.com/i/us/geo/ygeo.gif width=305 height=36 border=0 alt="Yahoo! GeoCities"></a></td><td><table border=0 cellspacing=0 cellpadding=0 width="100%"><tr><td align=right valign=bottom nowrap><font face=arial size=-1><a href="http://www.yahoo.com">Yahoo!</a>
O1 - Hosts: - <a href="http://help.yahoo.com/help/us/geo/">Help</a>
O1 - Hosts: </font>
O1 - Hosts: </td></tr></table><hr size=1></td></tr></table>
O1 - Hosts: <br>
O1 - Hosts: <table width=600 cellpadding=4 cellspacing=0 border=0>
O1 - Hosts: <tr bgcolor=003399><td><font face=arial size=+1 color=ffffff><b>Sorry, the site you requested is inactive.</b></font></td>
O1 - Hosts: </tr>
O1 - Hosts: </table>
O1 - Hosts: <br>
O1 - Hosts: <table width="600" border="0" cellspacing="0" cellpadding="0"><tr><td align=center valign=top>
O1 - Hosts: <table width="100%" cellpadding=1 cellspacing=0 border=0 bgcolor=dcdcdc><tr><td valign=top>
O1 - Hosts: <table width="100%" cellpadding=4 cellspacing=0 border=0 bgcolor=ffffee><tr><td valign=top>
O1 - Hosts: <font face=arial size=-1>
O1 - Hosts: This GeoCities site has been deactivated due to inactivity.
O1 - Hosts: <p>
O1 - Hosts: <strong>Are you the site owner?</strong> <br>
O1 - Hosts: <a href="http://geocities.yahoo.com/v/activate.html">Click here</a> to reactivate your site.
O1 - Hosts: <p>
O1 - Hosts: <strong>Are you a visitor?</strong> Try a search below.
O1 - Hosts: </font>
O1 - Hosts: <br><br>
O1 - Hosts: </td></tr></table></td></tr></table>
O1 - Hosts: </td></tr></table>
O1 - Hosts: <br>
O1 - Hosts: <table width="600" cellpadding=4 cellspacing=0 border=0 bgcolor=eeeeee><tr><td valign=top>
O1 - Hosts: <font face=arial size=-1><b>Search Yahoo! GeoCities</b></font></td></tr></table>
O1 - Hosts: <br><form action="http://geocities.yahoo.com/search" method=get>
O1 - Hosts: <input size=32 name=p value="">&nbsp;<input type=submit value="Search"><p>
O1 - Hosts: <p>
O1 - Hosts: <strong><font face=arial size=-1>Advanced GeoCities search options </font></strong>
O1 - Hosts: <p>
O1 - Hosts: <table border=0 cellpadding=2 cellspacing=0>
O1 - Hosts: <tr><td valign=top>
O1 - Hosts: <table border=0 cellpadding=1 cellspacing=0>
O1 - Hosts: <tr><td colspan=2><font face=arial size=-1><b>Option 1</b></font></td></tr>
O1 - Hosts: <tr><td witdth=1% valign=top>&nbsp;<input type=radio name=o value=i checked></td><td><font face=arial size=-1>Intelligent default</font></td></tr>
O1 - Hosts: <tr><td witdth=1% valign=top>&nbsp;<input type=radio name=o value=p></td><td><font face=arial size=-1>An exact phrase match</font></td></tr>
O1 - Hosts: <tr><td witdth=1% valign=top>&nbsp;<input type=radio name=o value=a></td><td><font face=arial size=-1>Matches on all words (AND)</font></td></tr>
O1 - Hosts: <tr><td witdth=1% valign=top>&nbsp;<input type=radio name=o value=o></td><td><font face=arial size=-1>Matches on any word (OR)</font></td></tr></table>
O1 - Hosts: </td><td>&nbsp;</td><td valign=top>
O1 - Hosts: <table border=0 cellpadding=1 cellspacing=0>
O1 - Hosts: <tr><td colspan=2><font face=arial size=-1><b>Option 2</b></font></td></tr>
O1 - Hosts: <tr><td witdth=1% valign=top>&nbsp;<input type=radio name=h value=c ></td><td><font face=arial size=-1>Yahoo! GeoCities Categories</font></td></tr>
O1 - Hosts: <tr><td witdth=1% valign=top>&nbsp;<input type=radio name=h value=s checked></td><td><font face=arial size=-1>Yahoo! GeoCities Web Sites</font></td></tr></table>
O1 - Hosts: </td></tr></table>
O1 - Hosts: </form>
O1 - Hosts: <p>
O1 - Hosts: <br>
O1 - Hosts: <table cellpadding=0 cellspacing=0 border=0 width=675><tr><td bgcolor=a0b8c8>
O1 - Hosts: <table cellpadding=1 cellspacing=1 border=0 width="100%">
O1 - Hosts: <tr valign=top bgcolor=ffffff><td align=center>
O1 - Hosts: <font face=arial size=-2><A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://address.yahoo.com/">Address Book</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://alerts.yahoo.com/">Alerts</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://auctions.yahoo.com/">Auctions</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://billpay.yahoo.com/">Bill Pay</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://bookmarks.yahoo.com/">Bookmarks</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://briefcase.yahoo.com/">Briefcase</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://broadcast.yahoo.com/">Broadcast</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://calendar.yahoo.com/">Calendar</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://chat.yahoo.com/">Chat</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://classifieds.yahoo.com/">Classifieds</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://clubs.yahoo.com/">Clubs</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://companion.yahoo.com/">Companion</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://experts.yahoo.com/">Experts</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://games.yahoo.com/">Games</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://greetings.yahoo.com/">Greetings</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://geocities.yahoo.com/">Home Pages</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://invites.yahoo.com/">Invites</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://mail.yahoo.com/">Mail</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://maps.yahoo.com/">Maps</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://members.yahoo.com/">Member Directory</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://messenger.yahoo.com/">Messenger</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://my.yahoo.com/">My Yahoo!</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://news.yahoo.com/">News</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://paydirect.yahoo.com/">PayDirect</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://people.yahoo.com/">People Search</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://personals.yahoo.com/">Personals</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://photos.yahoo.com/">Photos</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://shopping.yahoo.com/">Shopping</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://sports.yahoo.com/">Sports</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://finance.yahoo.com/">Stock Quotes</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://tv.yahoo.com/">TV</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://travel.yahoo.com/">Travel</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://weather.yahoo.com/">Weather</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://www.yahooligans.com/">Yahooligans</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://yp.yahoo.com/">Yellow Pages</A> &#183; <A
O1 - Hosts: href="http://rd.yahoo.com/footer/?http://docs.yahoo.com/docs/family/more.html">more...</A>
O1 - Hosts: </font></td></tr></table></td></tr></table>
O1 - Hosts: <p><center><hr noshade size=1 width="675"><table border=0 cellpadding=0 cellspacing=0><tr><td align=center valign=bottom width="100%"><font size="-2" face=arial>Copyright &copy; 2004 <a href="http://www.yahoo.com" target="_top">Yahoo! Inc.</a> All rights reserved.<br><b>NOTICE: We collect personal information on this site. To learn more about how we use your information, see our <a href="http://privacy.yahoo.com/privacy/us/" target="_top">Yahoo Privacy Policy</a></b></font></td></tr></table></center>
O1 - Hosts: </body>
O1 - Hosts: </html>
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: testCPV6 - {15421B84-3488-49A7-AD18-CBF84A3EFAF6} - C:\Program Files\CPV\CPV7.dll (file missing)
O2 - BHO: SWEETIE - {1A0AADCD-3A72-4b5f-900F-E3BB5A838E2A} - C:\PROGRA~1\MACROG~1\SWEETI~1\toolbar.dll (file missing)
O2 - BHO: Share Accelerator MM Toolbar - {4596013b-6c31-408b-a266-deae5c086dc2} - C:\Program Files\Share_Accelerator_MM\tbSha0.dll (file missing)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {6012CACE-517D-3CA1-001B-5F00BFBADDC6} - C:\WINDOWS\system32\rwxcjkp.dll (file missing)
O2 - BHO: (no name) - {624D989D-562A-3EA8-531B-5F00BFBADFC3} - C:\WINDOWS\system32\lkatja.dll (file missing)
O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
O2 - BHO: (no name) - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll (file missing)
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O2 - BHO: SWEETIE - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O2 - BHO: IEHlprObj Class - {F62A47A7-4CA3-9D00-95A3-6724d43a9E8C} - LineAudio.dll (file missing)
O3 - Toolbar: (no name) - {5CBE2611-C31B-401F-89BC-4CBB25E853D7} - (no file)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll (file missing)
O3 - Toolbar: Share Accelerator MM Toolbar - {4596013b-6c31-408b-a266-deae5c086dc2} - C:\Program Files\Share_Accelerator_MM\tbSha0.dll (file missing)
O3 - Toolbar: SweetIM For Internet Explorer - {BC4FFE41-DE9F-46fa-B455-AAD49B9F9938} - C:\Program Files\Macrogaming\SweetIMBarForIE\toolbar.dll (file missing)
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: (no name) - {6638A9DE-0745-4292-8A2E-AE530E7B9B3F} - (no file)
O3 - Toolbar: SweetIM Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Flash Media] C:\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\services.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSPM] "C:\Program Files\Fichiers communs\InstallShield\UpdateService\isuspm.exe" -scheduler
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SweetIM] C:\Program Files\SweetIM\Messenger\SweetIM.exe
O4 - HKLM\..\Run: [zzz_ImInstaller_IncrediMail] "C:\Documents and Settings\Compaq_Propriétaire\Local Settings\Temp\ImInstaller\IncrediMail\incredimail_install.exe" -startup -product IncrediMail
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LiquidArtPlayerTrayIcon] C:\PROGRA~1\LIQUID~1\ARTPLA~1\ARTPLA~1\ARTPLA~2.EXE
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Tok-Cirrhatus] "C:\Documents and Settings\Compaq_Propriétaire\Local Settings\Application Data\smss.exe"
O4 - HKCU\..\Run: [SfKg6w] C:\Documents and Settings\Compaq_Propriétaire\Application Data\Microsoft\Windows\rayiou.exe
O4 - HKCU\..\Run: [Tsra] "C:\WINDOWS\system32\RACLE~1\wowexec.exe" -vt ndrv
O4 - HKCU\..\Run: [Nmd] "C:\Documents and Settings\Compaq_Propriétaire\Mes documents\?asks\n?tdde.exe"
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033 -noicon
O4 - HKCU\..\Run: [Oqfryuf] "C:\Documents and Settings\Compaq_Propriétaire\Mes documents\?racle\m?dtc.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [NoDNS] C:\Program Files\\NoDNS\\NoDNS.exe
O4 - HKCU\..\Run: [yjeahcuhtu] c:\documents and settings\compaq_propriétaire\local settings\application data\yjeahcuhtu.exe yjeahcuhtu
O4 - HKCU\..\Run: [Bxsfqy] "C:\Documents and Settings\Compaq_Propriétaire\Mes documents\?ystem\??rvices.exe"
O4 - HKCU\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t
O4 - HKCU\..\Run: [IncrediMail] C:\Program Files\IncrediMail\bin\IncMail.exe /c
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - S-1-5-18 Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'SYSTEM')
O4 - .DEFAULT Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - .DEFAULT User Startup: Pin.lnk = C:\hp\bin\CLOAKER.EXE (User 'Default user')
O4 - Startup: BoontyBox 01net.lnk = C:\Program Files\Boonty\BoontyBox\BoontyBox.exe
O4 - Startup: Eurobarre.lnk = C:\Program Files\Eurobarre\eb.exe
O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: Unibet Poker - {C53BFCFC-7A54-4627-AEBA-2CD4871FCA97} - C:\Program Files\UnibetpokerMPP\MPPoker.exe (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe (file missing)
O9 - Extra 'Tools' menuitem: Messager Wanadoo - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\WANADO~1\Wanadoo Messager.exe (file missing)
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.orange.fr (file missing) (HKCU)
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/too [...] ontrol.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-F [...] E_UNO1.cab
O16 - DPF: {9122D757-5A4F-4768-82C5-B4171D8556A7} (PhotoPickConvert Class) - http://appdirectory.messenger.msn. [...] tPkMSN.cab
O16 - DPF: {AED98630-0251-4E83-917D-43A23D66D507} (Download Helper Class) - http://activex.microgaming.com/dlh [...] helper.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/bina [...] b56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) - https://signin3.valueactive.com/Reg [...] lashax.cab
O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/bina [...] b57176.cab
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Object) - https://casinoclassic.microgaming.c [...] ashAX2.cab
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Boonty Games - Unknown owner - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe (file missing)
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\CyberLink\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\PowerCinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: NMIndexingService - Unknown owner - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (file missing)
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe (file missing)
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Service Messenger Sharing Folders USN Journal Reader (usnjsvc) - Unknown owner - C:\Program Files\MSN Messenger\usnsvc.exe (file missing)

--
End of file - 28306 bytes

<@_@>
Profil : Helper
Plus d'informations

re

effectivement, tu es multi-infecté...
On va traiter les infections une à une... ça demandera le passage de plusieurs outils.
choisis entre tes deux antivirus, un seul suffit.
désinstaller -antivirus
Conséquences de la multi-protection


1
~Télécharge le programme R-Hosts (de S!RI)
http://siri.urz.free.fr/Softs/RHosts.exe

~Lance R-Hosts.exe puis clique sur Restaurer.
Valide la modification en appuyant sur OK.


2

Télécharge Navilog1.exe (IL-MAFIOSO)
Enregistre-le sur ton Bureau.
Lance l'installation en double cliquant sur navilog.exe.
Une fois l'installation terminée, l'utilitaire s'exécutera automatiquement.
(Si ce n'est pas le cas, double clique sur le raccourci présent sur le Bureau)

Laisse-toi guider par l'utilitaire. Choisis l'option 1 puis valide.
! N'utilise pas l'option 2, 3 et 4 sans notre accord !
Patiente jusqu'à l'apparition de ce message :
"*** Analyse Termine le ..... ***"
Appuie sur une touche comme demandé. Le Bloc-notes va s'ouvrir. Poste-nous son contenu de cette manière :

-> Edition / Sélectionner tout
-> Edition / Copier
-> Clique-Droit / Coller dans ta réponse


NOTE : Le rapport se trouve également ici : C:\fixnavi.txt

3

Télécharge Lop S&D.exe sur ton bureau

  • Double-clique dessus pour lancer l'installation
  • Puis double-clique sur le raccourci Lop S&D présent sur ton bureau
  • Séléctionne la langue souhaitée , puis choisis l'Option 1 ( Recherche )
  • Patiente jusqu'à la fin du scan
  • Poste le rapport généré ( C:\lopR.txt )


( Si le Bureau ne réapparait pas presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide )


Message édité par Sham_Rock le 06-05-2008 à 17:05:18

---------------
Prévention et protection
/!\Marre de la pub: Firefox sécurisé/!\
Profil : IDNaute
Plus d'informations

Alors voici ce que j'obtiens. Je tien à te remercier de ton aide!!!!

Rapport de navilog :

Search Navipromo version 3.5.6 commencé le 06/05/2008 à 23:28:17,25

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1
Session actuelle : "Compaq_Propriétaire"

Mise à jour le 02.05.2008 à 22h00 par IL-MAFIOSO


Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 7.0.5730.11
Système de fichiers : NTFS

Executé en mode normal

*** Recherche Programmes installés ***


*** Recherche dossiers dans "C:\WINDOWS" ***


*** Recherche dossiers dans "C:\Program Files" ***


*** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***


*** Recherche dossiers dans "c:\docume~1\alluse~1\menudÉ~1\progra~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\Compaq_Propriétaire\applic~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\applic~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\COMPAQ~2\applic~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\Compaq_Propriétaire\locals~1\applic~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\COMPAQ~2\locals~1\applic~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\Compaq_Propriétaire\menudm~1\progra~1" ***


*** Recherche dossiers dans "C:\DOCUME~1\ADMINI~1\menudm~1\progra~1" ***

*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net

Aucun Fichier trouvé


*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans "C:\WINDOWS\system32" *

Fichiers trouvés :

fixlmm.exe trouvé !
fwltuahrma.exe trouvé !
ndxmulc.exe trouvé !
ntlxpb.exe trouvé !

Fichiers suspects :

fixlmm.exe trouvé !
fwltuahrma.exe trouvé !
ndxmulc.exe trouvé !
ntlxpb.exe trouvé !

* Recherche dans "C:\Documents and Settings\Compaq_Propriétaire\locals~1\applic~1" *

Fichiers trouvés :

gvuixdzcn.exe trouvé !

* Recherche dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" *

* Recherche dans "C:\DOCUME~1\COMPAQ~2\locals~1\applic~1" *



*** Recherche fichiers ***


C:\WINDOWS\pack.epk trouvé !

*** Recherche clés spécifiques dans le Registre ***

HKEY_CURRENT_USER\Software\Lanconfig trouvé !
HKEY_CURRENT_USER\Software\mc trouvé !

*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :


2)Recherche Heuristique :

* Dans "C:\WINDOWS\system32" :

dtjfwjofi.dat trouvé !
dtjfwjofi_nav.dat trouvé !
dtjfwjofi_navps.dat trouvé !

* Dans "C:\Documents and Settings\Compaq_Propriétaire\locals~1\applic~1" :


* Dans "C:\DOCUME~1\ADMINI~1\locals~1\applic~1" :


* Dans "C:\DOCUME~1\COMPAQ~2\locals~1\applic~1" :


3)Recherche Certificats :

Certificat Egroup trouvé !
Certificat Electronic-Group trouvé !
Certificat OOO-Favorit trouvé !
Certificat Sunny-Day-Design-Ltd absent !

4)Recherche fichiers connus :



*** Analyse terminée le 06/05/2008 à 23:43:28,64 ***




- Rapport de lop SD :

-----------------------[ Lop S&D 4.2.0-7 XP/Vista ]---------------------

[ Windows XP (NT 5.1) Build 2600, Service Pack 2 ]
[ USER : Compaq_Propri‚taire ] [ "C:\Lop SD" ] [ Selection : 1 ]
[ 06/05/2008 | 23:44:25,78 ] [ PC : BEHEMOTH ]
[ MAJ : 06-05-2008 | 21:45 ]

-------------[ Listing des dossiers dans Application Data ]------------

[23/11/2004|17:13] C:\DOCUME~1\ADMINI~1\APPLIC~1\desktop.ini
[27/10/2005|00:34] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[29/01/2008|16:14] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia
[27/03/2008|23:55] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[24/03/2008|14:31] C:\DOCUME~1\ADMINI~1\APPLIC~1\Mozilla
[03/01/2006|04:28] C:\DOCUME~1\ADMINI~1\APPLIC~1\Real

[06/05/2008|03:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[13/08/2007|19:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[23/09/2007|22:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[23/09/2007|22:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[23/09/2007|22:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\avg7(2)
[03/01/2006|04:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[23/11/2004|17:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini
[31/03/2008|20:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EPSON
[06/01/2008|22:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[06/05/2008|03:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[23/09/2007|22:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft(2)
[03/01/2006|04:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Hewlett-Packard
[01/05/2008|19:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IM
[01/05/2008|19:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IncrediMail
[03/01/2006|04:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[01/04/2008|19:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[28/01/2008|10:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MGS
[06/05/2008|14:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[09/04/2008|08:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[28/09/2007|09:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles
[08/09/2007|16:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PACE Anti-Piracy
[30/08/2006|20:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[03/01/2006|04:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[03/01/2006|04:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic
[23/03/2008|18:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[15/04/2008|23:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SweetIM
[06/05/2008|23:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[30/04/2008|14:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[31/03/2008|20:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL
[17/06/2007|19:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[13/04/2008|14:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller

[23/09/2007|22:21] C:\DOCUME~1\COMPAQ~2\APPLIC~1\PACE Anti-Piracy

[28/04/2008|18:58] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Adobe
[23/09/2007|17:17] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AdobeUM
[08/11/2007|20:38] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Ahead
[18/09/2007|16:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Apple Computer
[23/09/2007|17:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AVG7
[01/10/2006|19:42] C:\DOCUME~1\COMPAQ~1\APPLIC~1\CopyToDvd
[30/08/2006|20:35] C:\DOCUME~1\COMPAQ~1\APPLIC~1\CyberLink
[15/01/2007|15:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DelAll.bat
[23/11/2004|17:13] C:\DOCUME~1\COMPAQ~1\APPLIC~1\desktop.ini
[25/05/2007|19:38] C:\DOCUME~1\COMPAQ~1\APPLIC~1\DriveCleaner Free
[18/09/2007|13:26] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Electronic Arts
[23/03/2008|15:37] C:\DOCUME~1\COMPAQ~1\APPLIC~1\EoRezo
[31/03/2008|20:55] C:\DOCUME~1\COMPAQ~1\APPLIC~1\EPSON
[21/11/2006|15:42] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ezpinst.exe
[21/11/2006|15:42] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ezplay.cat
[21/11/2006|15:42] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ezplay.sys
[18/11/2006|12:50] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Google
[30/08/2006|21:03] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Help
[31/08/2006|17:55] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HP
[28/09/2006|19:21] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HPQ
[24/02/2008|20:51] C:\DOCUME~1\COMPAQ~1\APPLIC~1\inst.exe
[31/03/2008|19:40] C:\DOCUME~1\COMPAQ~1\APPLIC~1\InstallShield
[15/09/2006|09:09] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ispnews
[21/03/2008|20:35] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ItsLabel
[15/01/2007|16:53] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Launch Internet Explorer Browser.lnk
[08/01/2007|17:51] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Macromedia
[28/10/2007|17:55] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Media Player Classic
[12/06/2007|12:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Microgaming
[04/04/2008|07:28] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Microsoft
[01/03/2007|13:09] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Mozilla
[06/01/2008|22:01] C:\DOCUME~1\COMPAQ~1\APPLIC~1\My Games
[01/03/2007|13:14] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Opera
[24/04/2008|04:17] C:\DOCUME~1\COMPAQ~1\APPLIC~1\PACE Anti-Piracy
[24/02/2008|20:51] C:\DOCUME~1\COMPAQ~1\APPLIC~1\pcouffin.cat
[24/02/2008|20:51] C:\DOCUME~1\COMPAQ~1\APPLIC~1\pcouffin.inf
[24/02/2008|20:51] C:\DOCUME~1\COMPAQ~1\APPLIC~1\pcouffin.log
[24/02/2008|20:51] C:\DOCUME~1\COMPAQ~1\APPLIC~1\pcouffin.sys
[13/04/2008|04:23] C:\DOCUME~1\COMPAQ~1\APPLIC~1\PnkBstrK.sys
[21/11/2006|15:42] C:\DOCUME~1\COMPAQ~1\APPLIC~1\PSARLBEJ.inf
[21/11/2006|15:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\PSARLBEJ.ini
[21/11/2006|15:42] C:\DOCUME~1\COMPAQ~1\APPLIC~1\PSARLBEJ.log
[20/09/2006|09:28] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Real
[13/04/2008|04:26] C:\DOCUME~1\COMPAQ~1\APPLIC~1\SecuROM
[16/09/2007|22:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Skype
[09/10/2006|15:56] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Sun
[06/01/2008|22:07] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Symantec
[01/03/2007|13:10] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Talkback
[09/04/2008|17:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\teamspeak2
[01/04/2008|17:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Template
[22/03/2008|19:28] C:\DOCUME~1\COMPAQ~1\APPLIC~1\THQ
[09/03/2008|14:40] C:\DOCUME~1\COMPAQ~1\APPLIC~1\U3
[20/03/2008|19:33] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Vso
[23/09/2007|22:04] C:\DOCUME~1\COMPAQ~1\APPLIC~1\WinRAR
[05/05/2008|21:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\wklnhst.dat

[23/11/2004|17:13] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini
[27/10/2005|00:34] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[29/01/2008|16:14] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[03/01/2006|04:55] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[03/01/2006|04:28] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Real

[31/03/2008|21:16] C:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[13/12/2006|18:33] C:\DOCUME~1\LOCALS~1\APPLIC~1\Google
[16/09/2007|10:19] C:\DOCUME~1\LOCALS~1\APPLIC~1\Macromedia
[24/11/2007|16:46] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[16/09/2007|10:17] C:\DOCUME~1\LOCALS~1\APPLIC~1\Mozilla
[07/01/2008|03:25] C:\DOCUME~1\LOCALS~1\APPLIC~1\Symantec
[16/09/2007|10:18] C:\DOCUME~1\LOCALS~1\APPLIC~1\Talkback

[23/09/2007|22:03] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------

[05/05/2008 09:54][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[06/05/2008 23:18][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 13:00][-rah-c---] C:\WINDOWS\tasks\desktop.ini

---------------[ Listing des dossiers dans C:\Program Files ]--------------

[06/05/2008|03:49] C:\Program Files\Adobe
[05/10/2007|20:21] C:\Program Files\Alcohol Soft
[24/03/2008|17:08] C:\Program Files\Alwil Software
[23/09/2007|22:23] C:\Program Files\Apple Software Update
[06/04/2008|18:23] C:\Program Files\Bethesda Softworks
[03/01/2006|04:31] C:\Program Files\CyberLink
[22/10/2007|16:19] C:\Program Files\DAEMON Tools
[31/08/2006|20:58] C:\Program Files\directx
[12/10/2007|20:39] C:\Program Files\DivX
[24/04/2008|03:39] C:\Program Files\Electronic Arts
[06/05/2008|22:58] C:\Program Files\eMule
[10/04/2008|13:16] C:\Program Files\epson
[06/05/2008|23:13] C:\Program Files\Fichiers communs
[23/04/2008|23:06] C:\Program Files\Free Easy Burner
[06/01/2008|22:03] C:\Program Files\Google
[10/04/2008|15:31] C:\Program Files\Hercules
[17/06/2007|19:37] C:\Program Files\Hewlett-Packard
[03/01/2006|04:30] C:\Program Files\HP
[23/03/2008|15:39] C:\Program Files\Image-Line
[01/05/2008|19:19] C:\Program Files\IncrediMail
[10/04/2008|15:31] C:\Program Files\InstallShield Installation Information
[11/04/2008|04:05] C:\Program Files\Internet Explorer
[24/10/2007|19:00] C:\Program Files\Java
[12/04/2008|02:04] C:\Program Files\Lavalys
[06/02/2007|20:03] C:\Program Files\Logitech
[06/05/2008|17:00] C:\Program Files\Messenger Plus! Live
[10/04/2008|13:14] C:\Program Files\MessengerDiscovery
[27/10/2005|00:36] C:\Program Files\microsoft frontpage
[03/10/2007|19:23] C:\Program Files\Microsoft Office
[16/01/2008|12:32] C:\Program Files\Microsoft SQL Server Compact Edition
[03/10/2007|19:23] C:\Program Files\Microsoft Works
[27/10/2005|00:36] C:\Program Files\Movie Maker
[06/05/2008|23:21] C:\Program Files\Mozilla Firefox
[24/03/2008|14:56] C:\Program Files\msn gaming zone
[13/04/2008|14:27] C:\Program Files\MSN Messenger
[06/05/2008|23:43] C:\Program Files\Navilog1
[15/10/2007|06:22] C:\Program Files\Nero
[24/03/2008|14:56] C:\Program Files\netmeeting
[28/04/2008|18:20] C:\Program Files\Norton Security Scan
[27/10/2005|00:36] C:\Program Files\Online Services
[24/03/2008|17:13] C:\Program Files\Outerinfo
[19/06/2007|03:01] C:\Program Files\Outlook Express
[23/09/2007|17:12] C:\Program Files\PhotoFiltre Studio
[23/09/2007|22:23] C:\Program Files\QuickTime
[03/01/2006|04:28] C:\Program Files\Real
[12/11/2006|18:32] C:\Program Files\Real Clone DVD
[20/06/2007|12:39] C:\Program Files\SAGEM
[03/03/2007|15:40] C:\Program Files\SHARP 3G GSM USB Driver
[03/04/2008|19:43] C:\Program Files\Sierra On-Line
[03/01/2006|04:29] C:\Program Files\Sonic
[23/03/2008|16:08] C:\Program Files\Spybot - Search & Destroy
[15/04/2008|23:32] C:\Program Files\SweetIM
[06/01/2008|22:23] C:\Program Files\Symantec
[06/01/2008|22:23] C:\Program Files\SymNetDrv
[23/09/2007|22:21] C:\Program Files\Teamspeak2_RC2
[19/03/2008|01:11] C:\Program Files\Temporary
[24/04/2008|04:04] C:\Program Files\TrackMania Nations ESWC
[06/05/2008|12:42] C:\Program Files\Trend Micro
[22/03/2008|18:29] C:\Program Files\Ubisoft
[06/05/2008|23:20] C:\Program Files\Wanadoo
[13/04/2008|14:28] C:\Program Files\Windows Live
[31/08/2006|20:56] C:\Program Files\Windows Media Components
[09/04/2008|16:34] C:\Program Files\Windows Media Connect 2
[23/04/2008|22:07] C:\Program Files\Windows Media Player
[27/10/2005|00:36] C:\Program Files\Windows NT
[06/05/2008|14:57] C:\Program Files\WindowsUpdate
[23/09/2007|22:04] C:\Program Files\WinRAR
[03/04/2008|21:33] C:\Program Files\World of Warcraft
[24/03/2008|14:56] C:\Program Files\xerox

------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------

[06/05/2008|03:49] C:\Program Files\Fichiers communs\Adobe
[15/10/2007|06:22] C:\Program Files\Fichiers communs\Ahead
[12/11/2006|16:15] C:\Program Files\Fichiers communs\AVSMedia
[17/06/2007|20:17] C:\Program Files\Fichiers communs\Blizzard Entertainment
[04/04/2008|03:10] C:\Program Files\Fichiers communs\DESIGNER
[04/12/2007|20:02] C:\Program Files\Fichiers communs\DirectX
[01/03/2007|18:53] C:\Program Files\Fichiers communs\HP
[18/06/2007|18:38] C:\Program Files\Fichiers communs\InstallShield
[03/01/2006|04:11] C:\Program Files\Fichiers communs\Java
[22/01/2007|13:31] C:\Program Files\Fichiers communs\Knowledge Adventure
[31/08/2006|20:57] C:\Program Files\Fichiers communs\Logitech
[07/03/2007|15:21] C:\Program Files\Fichiers communs\Macrovision Shared
[06/05/2008|14:57] C:\Program Files\Fichiers communs\Microsoft Shared
[27/10/2005|00:35] C:\Program Files\Fichiers communs\MSSoap
[04/02/2007|20:40] C:\Program Files\Fichiers communs\Oberon Media
[27/10/2005|00:35] C:\Program Files\Fichiers communs\ODBC
[20/04/2008|01:59] C:\Program Files\Fichiers communs\PACE Anti-Piracy
[03/01/2006|04:28] C:\Program Files\Fichiers communs\Real
[27/10/2005|00:35] C:\Program Files\Fichiers communs\Services
[01/03/2007|18:54] C:\Program Files\Fichiers communs\Sonic Shared
[27/10/2005|00:35] C:\Program Files\Fichiers communs\SpeechEngines
[03/01/2006|04:29] C:\Program Files\Fichiers communs\SureThing Shared
[06/05/2008|23:18] C:\Program Files\Fichiers communs\Symantec Shared
[23/09/2007|22:21] C:\Program Files\Fichiers communs\System
[16/01/2008|12:25] C:\Program Files\Fichiers communs\WindowsLiveInstaller

---------------------------[ Process ]--------------------------

... 49

... OK !

----------------------[ Recherche avec S_Lop ]---------------------

Aucun fichier / dossier Lop trouvé !

-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------

Aucun fichier / dossier Lop trouvé !

----------------------[ Verification du Registre ]----------------------

..... OK !

--------------------[ Verification du fichier Hosts ]---------------------

Fichier Hosts PROPRE


----------------[ Recherche de fichiers avec Catchme ]-----------------

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-05-06 23:45:22
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------[ Recherche d'autres infections ]---------------------

C:\DOCUME~1\COMPAQ~1\LOCALS~1\Temp\pack.epk
C:\WINDOWS\pack.epk
C:\WINDOWS\system32\dtjfwjofi_navps.dat
C:\WINDOWS\system32\dtjfwjofi_nav.dat
C:\WINDOWS\system32\dtjfwjofi.dat
! EGDACCESS !

=> C:\Documents and Settings\Compaq_Propri‚taire\Bureau\Jeux\Worms World Party\WWP\crack.rar
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrack.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackalphatest.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackalphatestlightmap.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackalphatestlightmappointlighttitaninterior.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackalphatestlightmapshadow.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackalphatestlightmaptitaninterior.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackalphatestpointlight.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackalphatestpointlighttitaninterior.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackalphatestshadow.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackalphatesttitaninterior.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmap.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmapalphatest.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmapalphatestlightmap.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmapalphatestlightmappointlighttitaninterior.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmapalphatestlightmapshadow.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmapalphatestlightmaptitaninterior.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmapalphatestpointlight.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmapalphatestpointlighttitaninterior.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmapalphatestshadow.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmapalphatesttitaninterior.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmaplightmap.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmaplightmappointlight.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmaplightmappointlighttitaninterior.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmaplightmapshadow.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmaplightmaptitaninterior.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmappointlight.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes documents\Battlefield 2142\mods\bf2142\cache\{D7B71E3E-429D-11CF-B96B-402300C2CB35}_79_1\rashaderstmbasedetailcrackenvmappointlighttitaninterior.cfx
=> C:\Documents and Settings\Compaq_Propri‚taire\Mes docum