Problème de pub ^^ - Sécurité - Virus
TomsGuide.com : 700 000 inscrits répondent à toutes vos questions high-tech et informatique.
Pour obtenir de l'aide, inscrivez-vous gratuitement !
 

Ajouter une réponse



 Mot :   Pseudo :  
 
 Page :   1  2
Page Précédente 
Auteur
 Sujet : Problème de pub ^^
 
Profil : IDNaute
Plus d'informations

Salut à tous :)

Alors parfois le PC me met

CiD : Banner loto et sa 1 fois sur 3 :o

En clair des pubs !

Normal ?

Merci d'avance :)

Sinon y'a une commande cmd pour désinstaller IE ?

Config : Vista édition familiale basique
AMD athlon 64x2 Dual Core Proccesor 4200+
Cadencé à 2.20 Ghz
32 bits
Mémoire vive de 767 Mo mais je crois que c'est 1 Giga :p


Message édité par soni93200 le 15-06-2008 à 00:49:06

---------------
[Ce n'est pas parce que c'est difficile que nous n'osons pas mais parce que nous n'osons pas que c'est difficile ][Sénèque]
Liens spon sorisés

Inscrivez-vous ou connectez-vous pour masquer ceci.

Profil : Helper
Plus d'informations

Bonjour,

Il ne faut pas désinstaller IE, important, pour les mises à jour Windows par exemple.

Télécharge Hijackthis (de Trend Micro) sur ton Bureau.

  • Double clique sur HJTInstall.exe pour lancer l'installation.
  • Clique sur Install.
  • Double clique sur le raccourci d'HijackThis qui vient d'être créé pour le lancer. (Clique droit -> lancer en tant qu'admin si sous Vista)
  • Accepte la licence en cliquant sur Yes.
  • Clique sur "Do a system scan and save a logfile".
  • Poste ici[ le rapport généré.


Note : Le rapport se trouve également ici : C:\Program Files\Trend Micro\Hijackthis\Hijackthis.log

Aide : Comment utiliser HijackThis.


---------------
Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité/Prévention
Profil : IDNaute
Plus d'informations

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:11:06, on 15/06/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16681)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Ares\Ares.exe
C:\Users\michel\Desktop\Clavier\Clavier.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Google\Google Updater\GoogleUpdater.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Acer\Empowering Technology\ACER.EMPOWERING.FRAMEWORK.SUPERVISOR.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.fr.acer.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.fr.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/y [...] .yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\NppBho.dll
O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UIBHO.dll
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [mfcd chic] "C:\ProgramData\RDR GPL GPL.j07hn"
O4 - HKCU\..\Run: [LESS CITY AMEN SETUP] "C:\ProgramData\Move mix enc.wc6kf"
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
O4 - HKCU\..\Run: [Clavier+] C:\Users\michel\Desktop\Clavier\Clavier.exe
O4 - HKCU\..\Run: [MSServer] rundll32.exe C:\Users\michel\AppData\Local\Temp\byXQIAtT.dll,#1
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [cmds] rundll32.exe C:\Users\michel\AppData\Local\Temp\mLeBSiIC.dll,c
O4 - HKCU\..\Run: [2826c118] rundll32.exe "C:\Users\michel\AppData\Local\Temp\tiyjvbef.dll",b
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [] (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [] (User 'Default user')
O4 - Startup: BOINC Manager.lnk = C:\Program Files\BOINC\boincmgr.exe
O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/ [...] wflash.cab
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: ePerformance Service (AcerMemUsageCheckService) - Unknown owner - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati External Event Utility - ATI Technologies Inc. - C:\Windows\system32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Acer\Empowering Technology\eMode\PCM\Kernel\TV\CLSched.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Validation de mot de passe Symantec IS (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: Olivetti Monitor Service (olMntrService) - Olivetti - C:\Program Files\Olivetti\ANY_WAY\olMntrService.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\Windows\system32\PSIService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\Cyberlink\Shared files\RichVideo.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe

--
End of file - 10161 bytes


---------------
[Ce n'est pas parce que c'est difficile que nous n'osons pas mais parce que nous n'osons pas que c'est difficile ][Sénèque]
Profil : Helper
Plus d'informations

Re,

Télécharge Lop S&D.exe (d’ Eric 71 & Angeldark) sur ton bureau.

  • Double-clique dessus pour lancer l'installation
  • Puis double-clique sur le raccourci Lop S&D présent sur ton bureau (Si tu es sous Vista, clique droit -> exécuter en tant qu'admin)
  • Séléctionne la langue souhaitée , puis choisis l'Option 1 (Recherche)
  • Patiente jusqu'à la fin du scan
  • Poste le rapport généré (C:\lopR.txt)


Si ton bureau ne réapparait pas, fais CTRL+ALT+SUPP pour ouvrir le gestionnaire de tâches.
Puis rends-toi à l'onglet "processus". Clique en haut à gauche sur fichiers et choisis "Nouvelle tâche (exécuter)"
Tapes explorer et valide. Cela te fera apparaitre ton bureau


---------------
Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité/Prévention
Profil : IDNaute
Plus d'informations


-----------------------[ Lop S&D 4.2.1-4 XP/Vista ]---------------------

[ Windows 'Longhorn' (NT 6.0) Workstation Build 6000 ]
[ USER : michel ] [ "C:\Lop SD" ] [ Selection : 1 ]
[ 15/06/2008 | 15:19:58,06 ] [ PC : PC-DE-MICHEL ]
[ MAJ : 13-06-2008 | 02:10 ]
[ UAC => 0 ]

-------------[ Listing des dossiers dans Application Data ]------------

[17/04/2008|11:29] C:\Users\michel\AppData\Roaming\Adobe\AIR
[17/04/2008|11:29] C:\Users\michel\AppData\Roaming\Adobe\Adobe Media Player
[22/03/2008|14:40] C:\Users\michel\AppData\Roaming\Adobe\Acrobat
[19/03/2008|22:18] C:\Users\michel\AppData\Roaming\Adobe\Flash Player


[20/03/2008|09:18] C:\Users\michel\AppData\Roaming\ATI\ACE

[28/04/2008|12:39] C:\Users\michel\AppData\Roaming\Corel\Paint Shop Pro Photo
[28/04/2008|12:39] C:\Users\michel\AppData\Roaming\Corel\Messages

[22/03/2008|22:54] C:\Users\michel\AppData\Roaming\CyberLink\PowerCinema
[19/03/2008|23:31] C:\Users\michel\AppData\Roaming\CyberLink\MediaCache
[19/03/2008|23:31] C:\Users\michel\AppData\Roaming\CyberLink\PowerProducer
[19/03/2008|23:31] C:\Users\michel\AppData\Roaming\CyberLink\PowerDVD

[10/04/2008|22:40] C:\Users\michel\AppData\Roaming\DivX\DivX Codec

[10/05/2008|19:58] C:\Users\michel\AppData\Roaming\dvdcss\ZATOICHI-2008050213434500

[20/03/2008|01:16] C:\Users\michel\AppData\Roaming\eMule\config

[11/05/2008|12:27] C:\Users\michel\AppData\Roaming\EoRezo\eoDesktop
[11/05/2008|10:05] C:\Users\michel\AppData\Roaming\EoRezo\db

[19/03/2008|20:41] C:\Users\michel\AppData\Roaming\eSobi\eSobi2

[22/04/2008|16:15] C:\Users\michel\AppData\Roaming\Google\GoogleEarth

[19/03/2008|18:37] C:\Users\michel\AppData\Roaming\Identities\{AEFC1684-4516-4BA2-9431-836B3DA90C2B}

[28/04/2008|12:22] C:\Users\michel\AppData\Roaming\InstallShield\ISEngine12.0

[12/05/2008|10:22] C:\Users\michel\AppData\Roaming\ItsLabel\ItsTV

[22/04/2008|10:51] C:\Users\michel\AppData\Roaming\LimeWire\.AppSpecialShare
[22/04/2008|10:29] C:\Users\michel\AppData\Roaming\LimeWire\themes

[17/04/2008|11:29] C:\Users\michel\AppData\Roaming\Macromedia\Flash Player

[31/05/2008|21:34] C:\Users\michel\AppData\Roaming\Microsoft\Templates
[24/05/2008|10:47] C:\Users\michel\AppData\Roaming\Microsoft\Office
[24/05/2008|10:47] C:\Users\michel\AppData\Roaming\Microsoft\CLView
[23/05/2008|23:57] C:\Users\michel\AppData\Roaming\Microsoft\Excel
[15/05/2008|08:47] C:\Users\michel\AppData\Roaming\Microsoft\HTML Help
[14/05/2008|13:49] C:\Users\michel\AppData\Roaming\Microsoft\MSN Messenger
[28/04/2008|13:42] C:\Users\michel\AppData\Roaming\Microsoft\OIS
[22/04/2008|12:39] C:\Users\michel\AppData\Roaming\Microsoft\Windows Photo Gallery
[22/04/2008|09:51] C:\Users\michel\AppData\Roaming\Microsoft\MMC
[18/04/2008|20:25] C:\Users\michel\AppData\Roaming\Microsoft\Windows Live Call
[18/04/2008|20:25] C:\Users\michel\AppData\Roaming\Microsoft\IdentityCRL
[10/04/2008|22:09] C:\Users\michel\AppData\Roaming\Microsoft\Windows
[10/04/2008|22:07] C:\Users\michel\AppData\Roaming\Microsoft\OneNote
[05/04/2008|19:48] C:\Users\michel\AppData\Roaming\Microsoft\Crypto
[30/03/2008|22:38] C:\Users\michel\AppData\Roaming\Microsoft\UProof
[30/03/2008|22:37] C:\Users\michel\AppData\Roaming\Microsoft\Proof
[23/03/2008|12:12] C:\Users\michel\AppData\Roaming\Microsoft\Document Building Blocks
[23/03/2008|12:12] C:\Users\michel\AppData\Roaming\Microsoft\Word
[23/03/2008|12:12] C:\Users\michel\AppData\Roaming\Microsoft\AddIns
[23/03/2008|01:29] C:\Users\michel\AppData\Roaming\Microsoft\Installer
[20/03/2008|01:12] C:\Users\michel\AppData\Roaming\Microsoft\Speech
[19/03/2008|22:35] C:\Users\michel\AppData\Roaming\Microsoft\Internet Explorer
[19/03/2008|18:38] C:\Users\michel\AppData\Roaming\Microsoft\SystemCertificates
[19/03/2008|18:37] C:\Users\michel\AppData\Roaming\Microsoft\Protect
[19/03/2008|18:37] C:\Users\michel\AppData\Roaming\Microsoft\Credentials

[12/06/2008|13:26] C:\Users\michel\AppData\Roaming\Mozilla\Firefox



[26/05/2008|01:28] C:\Users\michel\AppData\Roaming\vlc\cache


[22/04/2008|00:33] C:\Users\michel\AppData\Roaming\Warsow\basewsw


----------------[ Tâches planifiées dans C:\Windows\tasks ]---------------

[15/06/2008 15:16][--ah-----] C:\Windows\tasks\SA.DAT
[15/06/2008 15:14][--a------] C:\Windows\tasks\SCHEDLGU.TXT

------[ Listing des dossiers dans C:\ProgramData ]------

[06/05/2007|23:16] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[17/04/2008|11:29] C:\ProgramData\Adobe
[02/11/2006|14:59] C:\ProgramData\Application Data
[16/05/2008|10:43] C:\ProgramData\BM2b15f284.txt
[25/05/2008|15:44] C:\ProgramData\BM2b15f284.xml
[19/03/2008|18:33] C:\ProgramData\Bureau
[13/05/2008|13:07] C:\ProgramData\CheckPoint
[28/04/2008|12:37] C:\ProgramData\Corel
[22/03/2008|22:56] C:\ProgramData\CyberLink
[02/11/2006|14:59] C:\ProgramData\Desktop
[02/11/2006|14:59] C:\ProgramData\Documents
[23/04/2008|08:05] C:\ProgramData\eMule
[19/03/2008|20:40] C:\ProgramData\eSobi
[19/03/2008|18:33] C:\ProgramData\Favoris
[02/11/2006|14:59] C:\ProgramData\Favorites
[15/06/2008|13:01] C:\ProgramData\Google Updater
[17/05/2008|11:31] C:\ProgramData\Lavasoft
[19/03/2008|18:33] C:\ProgramData\Menu D‚marrer
[21/05/2008|18:23] C:\ProgramData\Messenger Plus!
[25/05/2008|12:40] C:\ProgramData\Microsoft
[14/05/2008|20:04] C:\ProgramData\Microsoft Help
[19/03/2008|18:33] C:\ProgramData\ModŠles
[19/03/2008|22:32] C:\ProgramData\Move mix enc.wc6kf
[25/05/2008|15:47] C:\ProgramData\pskt.ini
[19/03/2008|22:31] C:\ProgramData\RDR GPL GPL.e3r3b
[19/04/2008|19:05] C:\ProgramData\RDR GPL GPL.j07hn
[19/03/2008|22:31] C:\ProgramData\RDR GPL GPL.v55nn7
[17/05/2008|11:29] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|14:59] C:\ProgramData\Start Menu
[25/05/2008|22:25] C:\ProgramData\Symantec
[02/11/2006|14:59] C:\ProgramData\Templates
[26/05/2008|01:28] C:\ProgramData\Tool Eggs Less City
[24/05/2008|16:21] C:\ProgramData\TrackMania
[03/05/2008|01:18] C:\ProgramData\WLInstaller
[19/03/2008|20:54] C:\ProgramData\Yahoo! Companion

---------------[ Listing des dossiers dans C:\Program Files ]--------------

[19/12/2007|16:40] C:\Program Files\Acer Inc
[06/05/2007|23:16] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[31/05/2008|21:58] C:\Program Files\Adobe
[17/04/2008|11:29] C:\Program Files\Adobe Media Player
[19/04/2008|17:20] C:\Program Files\Alex Feinman
[24/05/2008|22:49] C:\Program Files\Alwil Software
[20/03/2008|14:19] C:\Program Files\Ares
[19/12/2007|16:35] C:\Program Files\ATI
[19/12/2007|16:37] C:\Program Files\ATI Technologies
[15/06/2008|15:19] C:\Program Files\BOINC
[31/05/2008|22:00] C:\Program Files\Common Files
[28/04/2008|12:32] C:\Program Files\Corel
[06/05/2007|23:25] C:\Program Files\Cyberlink
[20/03/2008|01:28] C:\Program Files\desktop.ini
[12/06/2008|21:02] C:\Program Files\DivX
[11/05/2008|14:35] C:\Program Files\EoRezo
[06/05/2007|23:26] C:\Program Files\eSobi
[19/03/2008|18:33] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[22/04/2008|14:50] C:\Program Files\Google
[12/05/2008|23:32] C:\Program Files\InstallShield Installation Information
[11/06/2008|20:17] C:\Program Files\Internet Explorer
[22/04/2008|10:14] C:\Program Files\Java
[17/05/2008|11:28] C:\Program Files\Lavasoft
[23/04/2008|08:55] C:\Program Files\Maxis
[21/05/2008|06:57] C:\Program Files\Messenger Plus! Live
[22/03/2008|01:18] C:\Program Files\Microsoft Games
[06/05/2007|23:16] C:\Program Files\Microsoft Office
[12/05/2008|21:24] C:\Program Files\Microsoft Works
[06/05/2007|23:14] C:\Program Files\Microsoft.NET
[09/06/2008|23:06] C:\Program Files\Minimizor
[23/04/2008|14:47] C:\Program Files\mnProjects
[02/11/2006|14:40] C:\Program Files\Movie Maker
[11/06/2008|21:43] C:\Program Files\Mozilla Firefox
[24/05/2008|22:34] C:\Program Files\Mozilla Firefox(1)
[02/11/2006|14:35] C:\Program Files\MSBuild
[02/11/2006|14:35] C:\Program Files\MSN
[20/03/2008|00:03] C:\Program Files\MSXML 4.0
[06/05/2007|23:12] C:\Program Files\NewTech Infosystems
[20/03/2008|01:24] C:\Program Files\Norton Internet Security
[13/05/2008|17:18] C:\Program Files\Norton Security Scan
[10/04/2008|21:44] C:\Program Files\Olivetti
[09/05/2008|15:01] C:\Program Files\PhotoFiltre Studio
[06/05/2007|23:00] C:\Program Files\Realtek
[02/11/2006|14:35] C:\Program Files\Reference Assemblies
[17/05/2008|11:38] C:\Program Files\Spybot - Search & Destroy
[19/03/2008|20:20] C:\Program Files\Symantec
[09/06/2008|21:47] C:\Program Files\Teamspeak2_RC2
[24/05/2008|15:25] C:\Program Files\TmNationsForever
[15/06/2008|13:10] C:\Program Files\Trend Micro
[02/11/2006|14:58] C:\Program Files\Uninstall Information
[12/04/2008|12:46] C:\Program Files\VideoLAN
[06/06/2008|21:00] C:\Program Files\VirtualDJ
[21/05/2008|06:37] C:\Program Files\VS Revo Group
[10/04/2008|17:22] C:\Program Files\VSO
[20/03/2008|01:22] C:\Program Files\Windows Calendar
[02/11/2006|14:40] C:\Program Files\Windows Collaboration
[20/03/2008|01:22] C:\Program Files\Windows Defender
[21/03/2008|09:02] C:\Program Files\Windows Live
[20/03/2008|01:22] C:\Program Files\Windows Mail
[20/03/2008|01:22] C:\Program Files\Windows Media Player
[19/03/2008|18:33] C:\Program Files\Windows NT
[02/11/2006|14:40] C:\Program Files\Windows Photo Gallery
[20/03/2008|01:22] C:\Program Files\Windows Sidebar
[13/04/2008|00:23] C:\Program Files\WinRAR
[11/06/2008|14:47] C:\Program Files\Wolfenstein - Enemy Territory
[19/03/2008|18:37] C:\Program Files\Yahoo!

------[ Listing des dossiers dans C:\Program Files\Common Files ]------

[31/05/2008|21:58] C:\Program Files\Common Files\Adobe
[17/04/2008|11:29] C:\Program Files\Common Files\Adobe AIR
[28/04/2008|12:34] C:\Program Files\Common Files\Corel
[06/05/2007|23:14] C:\Program Files\Common Files\DESIGNER
[06/05/2007|23:23] C:\Program Files\Common Files\InstallShield
[22/04/2008|10:12] C:\Program Files\Common Files\Java
[06/05/2007|23:11] C:\Program Files\Common Files\LightScribe
[20/03/2008|00:08] C:\Program Files\Common Files\microsoft shared
[06/05/2007|23:11] C:\Program Files\Common Files\muvee Technologies
[06/05/2007|23:12] C:\Program Files\Common Files\NewTech Infosystems
[09/04/2008|18:45] C:\Program Files\Common Files\PX Storage Engine
[02/11/2006|13:18] C:\Program Files\Common Files\Services
[02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines
[22/03/2008|22:48] C:\Program Files\Common Files\Steam
[25/05/2008|15:42] C:\Program Files\Common Files\Symantec Shared
[20/03/2008|01:22] C:\Program Files\Common Files\System
[31/05/2008|22:00] C:\Program Files\Common Files\Vbox
[19/03/2008|20:39] C:\Program Files\Common Files\WindowsLiveInstaller
[17/05/2008|11:27] C:\Program Files\Common Files\Wise Installation Wizard

---------------------------[ Process ]--------------------------

... 76

iexplore.exe ~ [168]

----------------------[ Recherche avec S_Lop ]---------------------

C:\ProgramData\Move mix enc.wc6kf
C:\ProgramData\RDR GPL GPL.e3r3b
C:\ProgramData\RDR GPL GPL.j07hn
C:\ProgramData\RDR GPL GPL.v55nn7
C:\ProgramData\RDR GPL GPL.e3r3b
C:\ProgramData\RDR GPL GPL.j07hn
C:\ProgramData\RDR GPL GPL.v55nn7

-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------

C:\ProgramData\Tool Eggs Less City
C:\ProgramData\Tool Eggs Less City\Program Fork.exe
C:\Windows\Prefetch\PROGRAM FORK.EXE-F6878BA7.pf
C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@www.adserver5[1].txt
C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@www.adserver5[2].txt
C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@adopt.euroclick[2].txt
C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@32vegas[1].txt
C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@banner.32vegas[2].txt
C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@2xmoinscher[2].txt
C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@www.2xmoinscher[2].txt

----------------------[ Verification du Registre ]----------------------

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

..... OK !

--------------------[ Verification du fichier Hosts ]---------------------

Fichier Hosts PROPRE


----------------[ Recherche de fichiers avec Catchme ]-----------------

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-06-15 15:21:09
Windows 6.0.6000 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------[ Recherche d'autres infections ]---------------------

=> C:\Users\michel\AppData\Roaming\uTorrent\install_virtualdj_v5+Crack.zip.torrent
=> C:\Users\michel\AppData\Roaming\uTorrent\Virtual.DJ.software(crack).torrent
=> C:\Users\michel\Documents\Downloads\virtual dj\crack
=> C:\Users\michel\Documents\Downloads\virtual dj\crack\virtualdj.exe
=> C:\Users\michel\Documents\Mes fichiers re‡us\michelallende4168305947\Historique\crackddf_933540969025.xml
=> C:\Users\michel\Documents\Mes Historiques de Conversation\mai 2008\crackddf_93@hotmail.fr.html


[F:2173][D:37]-> C:\Users\michel\AppData\Local\Temp
[F:491][D:1]-> C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies
[F:139][D:6]-> C:\Users\michel\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:19][D:8]-> C:\$Recycle.Bin

[ UAC => 1 ]

--------------------[ Fin du rapport a 15:24:02,92 ]----------------------


---------------
[Ce n'est pas parce que c'est difficile que nous n'osons pas mais parce que nous n'osons pas que c'est difficile ][Sénèque]
Profil : Helper
Plus d'informations

Sélectionne entièrement l'encadré ci-dessous , puis clique droit Copier

C:\Users\michel\AppData\Roaming\EoRezo
C:\Program Files\EoRezo



Relance Lop S&D

  • Choisis cette fois ci l'Option 4 (LopScript)
  • Une page blanche va s'ouvrir , clique droit dessus et choisis Coller
  • Ferme la page , il te sera demandé de l'enregistrer , clique sur [Enregistrer]
  • Ne ferme pas la fenêtre lors de la suppression !
  • Poste le rapport généré (C:\lopR.txt)


---------------
Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité/Prévention
Profil : IDNaute
Plus d'informations


-----------------------[ Lop S&D 4.2.1-4 XP/Vista ]---------------------

[ Windows 'Longhorn' (NT 6.0) Workstation Build 6000 ]
[ USER : michel ] [ "C:\Lop SD" ] [ Selection : 4 ]
[ 15/06/2008 | 20:55:01,07 ] [ PC : PC-DE-MICHEL ]
[ MAJ : 13-06-2008 | 02:10 ]
[ UAC => 0 ]

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ LopScript //////////////////////////////////

C:\Users\michel\AppData\Roaming\EoRezo
C:\Program Files\EoRezo

Supprimé! - C:\Users\michel\AppData\Roaming\EoRezo
Supprimé! - C:\Program Files\EoRezo

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION /////////////////////////////

Supprimé! - C:\ProgramData\Tool Eggs Less City\Program Fork.exe
Supprimé! - C:\Windows\Prefetch\PROGRAM FORK.EXE-F6878BA7.pf
Supprimé! - C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@www.adserver5[2].txt
Supprimé! - C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@adopt.euroclick[2].txt
Supprimé! - C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@32vegas[1].txt
Supprimé! - C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@banner.32vegas[2].txt
Supprimé! - C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@2xmoinscher[2].txt
Supprimé! - C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@www.2xmoinscher[2].txt
Supprimé! - C:\ProgramData\Move mix enc.wc6kf
Supprimé! - C:\ProgramData\RDR GPL GPL.e3r3b
Supprimé! - C:\ProgramData\RDR GPL GPL.j07hn
Supprimé! - C:\ProgramData\RDR GPL GPL.v55nn7
Supprimé! - C:\ProgramData\Tool Eggs Less City
Restauré! - Fichier Hosts

//////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


-------------[ Listing des dossiers dans Application Data ]------------

[17/04/2008|11:29] C:\Users\michel\AppData\Roaming\Adobe\AIR
[17/04/2008|11:29] C:\Users\michel\AppData\Roaming\Adobe\Adobe Media Player
[22/03/2008|14:40] C:\Users\michel\AppData\Roaming\Adobe\Acrobat
[19/03/2008|22:18] C:\Users\michel\AppData\Roaming\Adobe\Flash Player


[20/03/2008|09:18] C:\Users\michel\AppData\Roaming\ATI\ACE

[28/04/2008|12:39] C:\Users\michel\AppData\Roaming\Corel\Paint Shop Pro Photo
[28/04/2008|12:39] C:\Users\michel\AppData\Roaming\Corel\Messages

[22/03/2008|22:54] C:\Users\michel\AppData\Roaming\CyberLink\PowerCinema
[19/03/2008|23:31] C:\Users\michel\AppData\Roaming\CyberLink\MediaCache
[19/03/2008|23:31] C:\Users\michel\AppData\Roaming\CyberLink\PowerProducer
[19/03/2008|23:31] C:\Users\michel\AppData\Roaming\CyberLink\PowerDVD

[10/04/2008|22:40] C:\Users\michel\AppData\Roaming\DivX\DivX Codec

[10/05/2008|19:58] C:\Users\michel\AppData\Roaming\dvdcss\ZATOICHI-2008050213434500

[20/03/2008|01:16] C:\Users\michel\AppData\Roaming\eMule\config

[19/03/2008|20:41] C:\Users\michel\AppData\Roaming\eSobi\eSobi2

[22/04/2008|16:15] C:\Users\michel\AppData\Roaming\Google\GoogleEarth

[19/03/2008|18:37] C:\Users\michel\AppData\Roaming\Identities\{AEFC1684-4516-4BA2-9431-836B3DA90C2B}

[28/04/2008|12:22] C:\Users\michel\AppData\Roaming\InstallShield\ISEngine12.0

[12/05/2008|10:22] C:\Users\michel\AppData\Roaming\ItsLabel\ItsTV

[22/04/2008|10:51] C:\Users\michel\AppData\Roaming\LimeWire\.AppSpecialShare
[22/04/2008|10:29] C:\Users\michel\AppData\Roaming\LimeWire\themes

[17/04/2008|11:29] C:\Users\michel\AppData\Roaming\Macromedia\Flash Player

[31/05/2008|21:34] C:\Users\michel\AppData\Roaming\Microsoft\Templates
[24/05/2008|10:47] C:\Users\michel\AppData\Roaming\Microsoft\Office
[24/05/2008|10:47] C:\Users\michel\AppData\Roaming\Microsoft\CLView
[23/05/2008|23:57] C:\Users\michel\AppData\Roaming\Microsoft\Excel
[15/05/2008|08:47] C:\Users\michel\AppData\Roaming\Microsoft\HTML Help
[14/05/2008|13:49] C:\Users\michel\AppData\Roaming\Microsoft\MSN Messenger
[28/04/2008|13:42] C:\Users\michel\AppData\Roaming\Microsoft\OIS
[22/04/2008|12:39] C:\Users\michel\AppData\Roaming\Microsoft\Windows Photo Gallery
[22/04/2008|09:51] C:\Users\michel\AppData\Roaming\Microsoft\MMC
[18/04/2008|20:25] C:\Users\michel\AppData\Roaming\Microsoft\Windows Live Call
[18/04/2008|20:25] C:\Users\michel\AppData\Roaming\Microsoft\IdentityCRL
[10/04/2008|22:09] C:\Users\michel\AppData\Roaming\Microsoft\Windows
[10/04/2008|22:07] C:\Users\michel\AppData\Roaming\Microsoft\OneNote
[05/04/2008|19:48] C:\Users\michel\AppData\Roaming\Microsoft\Crypto
[30/03/2008|22:38] C:\Users\michel\AppData\Roaming\Microsoft\UProof
[30/03/2008|22:37] C:\Users\michel\AppData\Roaming\Microsoft\Proof
[23/03/2008|12:12] C:\Users\michel\AppData\Roaming\Microsoft\Document Building Blocks
[23/03/2008|12:12] C:\Users\michel\AppData\Roaming\Microsoft\Word
[23/03/2008|12:12] C:\Users\michel\AppData\Roaming\Microsoft\AddIns
[23/03/2008|01:29] C:\Users\michel\AppData\Roaming\Microsoft\Installer
[20/03/2008|01:12] C:\Users\michel\AppData\Roaming\Microsoft\Speech
[19/03/2008|22:35] C:\Users\michel\AppData\Roaming\Microsoft\Internet Explorer
[19/03/2008|18:38] C:\Users\michel\AppData\Roaming\Microsoft\SystemCertificates
[19/03/2008|18:37] C:\Users\michel\AppData\Roaming\Microsoft\Protect
[19/03/2008|18:37] C:\Users\michel\AppData\Roaming\Microsoft\Credentials

[12/06/2008|13:26] C:\Users\michel\AppData\Roaming\Mozilla\Firefox



[26/05/2008|01:28] C:\Users\michel\AppData\Roaming\vlc\cache


[22/04/2008|00:33] C:\Users\michel\AppData\Roaming\Warsow\basewsw


----------------[ Tâches planifiées dans C:\Windows\tasks ]---------------

[15/06/2008 20:52][--ah-----] C:\Windows\tasks\SA.DAT
[15/06/2008 20:51][--a------] C:\Windows\tasks\SCHEDLGU.TXT

------[ Listing des dossiers dans C:\ProgramData ]------

[06/05/2007|23:16] C:\ProgramData\{174892B1-CBE7-44F5-86FF-AB555EFD73A3}
[17/04/2008|11:29] C:\ProgramData\Adobe
[02/11/2006|14:59] C:\ProgramData\Application Data
[16/05/2008|10:43] C:\ProgramData\BM2b15f284.txt
[25/05/2008|15:44] C:\ProgramData\BM2b15f284.xml
[19/03/2008|18:33] C:\ProgramData\Bureau
[13/05/2008|13:07] C:\ProgramData\CheckPoint
[28/04/2008|12:37] C:\ProgramData\Corel
[22/03/2008|22:56] C:\ProgramData\CyberLink
[02/11/2006|14:59] C:\ProgramData\Desktop
[02/11/2006|14:59] C:\ProgramData\Documents
[23/04/2008|08:05] C:\ProgramData\eMule
[19/03/2008|20:40] C:\ProgramData\eSobi
[19/03/2008|18:33] C:\ProgramData\Favoris
[02/11/2006|14:59] C:\ProgramData\Favorites
[15/06/2008|13:01] C:\ProgramData\Google Updater
[17/05/2008|11:31] C:\ProgramData\Lavasoft
[19/03/2008|18:33] C:\ProgramData\Menu D‚marrer
[21/05/2008|18:23] C:\ProgramData\Messenger Plus!
[25/05/2008|12:40] C:\ProgramData\Microsoft
[14/05/2008|20:04] C:\ProgramData\Microsoft Help
[19/03/2008|18:33] C:\ProgramData\ModŠles
[25/05/2008|15:47] C:\ProgramData\pskt.ini
[17/05/2008|11:29] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|14:59] C:\ProgramData\Start Menu
[15/06/2008|18:16] C:\ProgramData\Symantec
[02/11/2006|14:59] C:\ProgramData\Templates
[24/05/2008|16:21] C:\ProgramData\TrackMania
[03/05/2008|01:18] C:\ProgramData\WLInstaller
[19/03/2008|20:54] C:\ProgramData\Yahoo! Companion

---------------[ Listing des dossiers dans C:\Program Files ]--------------

[19/12/2007|16:40] C:\Program Files\Acer Inc
[06/05/2007|23:16] C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
[31/05/2008|21:58] C:\Program Files\Adobe
[17/04/2008|11:29] C:\Program Files\Adobe Media Player
[19/04/2008|17:20] C:\Program Files\Alex Feinman
[24/05/2008|22:49] C:\Program Files\Alwil Software
[20/03/2008|14:19] C:\Program Files\Ares
[19/12/2007|16:35] C:\Program Files\ATI
[19/12/2007|16:37] C:\Program Files\ATI Technologies
[15/06/2008|20:55] C:\Program Files\BOINC
[31/05/2008|22:00] C:\Program Files\Common Files
[28/04/2008|12:32] C:\Program Files\Corel
[06/05/2007|23:25] C:\Program Files\Cyberlink
[20/03/2008|01:28] C:\Program Files\desktop.ini
[12/06/2008|21:02] C:\Program Files\DivX
[06/05/2007|23:26] C:\Program Files\eSobi
[19/03/2008|18:33] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[22/04/2008|14:50] C:\Program Files\Google
[12/05/2008|23:32] C:\Program Files\InstallShield Installation Information
[11/06/2008|20:17] C:\Program Files\Internet Explorer
[22/04/2008|10:14] C:\Program Files\Java
[17/05/2008|11:28] C:\Program Files\Lavasoft
[23/04/2008|08:55] C:\Program Files\Maxis
[21/05/2008|06:57] C:\Program Files\Messenger Plus! Live
[22/03/2008|01:18] C:\Program Files\Microsoft Games
[06/05/2007|23:16] C:\Program Files\Microsoft Office
[12/05/2008|21:24] C:\Program Files\Microsoft Works
[06/05/2007|23:14] C:\Program Files\Microsoft.NET
[09/06/2008|23:06] C:\Program Files\Minimizor
[23/04/2008|14:47] C:\Program Files\mnProjects
[02/11/2006|14:40] C:\Program Files\Movie Maker
[11/06/2008|21:43] C:\Program Files\Mozilla Firefox
[24/05/2008|22:34] C:\Program Files\Mozilla Firefox(1)
[02/11/2006|14:35] C:\Program Files\MSBuild
[02/11/2006|14:35] C:\Program Files\MSN
[20/03/2008|00:03] C:\Program Files\MSXML 4.0
[06/05/2007|23:12] C:\Program Files\NewTech Infosystems
[20/03/2008|01:24] C:\Program Files\Norton Internet Security
[13/05/2008|17:18] C:\Program Files\Norton Security Scan
[10/04/2008|21:44] C:\Program Files\Olivetti
[09/05/2008|15:01] C:\Program Files\PhotoFiltre Studio
[06/05/2007|23:00] C:\Program Files\Realtek
[02/11/2006|14:35] C:\Program Files\Reference Assemblies
[17/05/2008|11:38] C:\Program Files\Spybot - Search & Destroy
[19/03/2008|20:20] C:\Program Files\Symantec
[09/06/2008|21:47] C:\Program Files\Teamspeak2_RC2
[24/05/2008|15:25] C:\Program Files\TmNationsForever
[15/06/2008|13:10] C:\Program Files\Trend Micro
[02/11/2006|14:58] C:\Program Files\Uninstall Information
[12/04/2008|12:46] C:\Program Files\VideoLAN
[06/06/2008|21:00] C:\Program Files\VirtualDJ
[21/05/2008|06:37] C:\Program Files\VS Revo Group
[10/04/2008|17:22] C:\Program Files\VSO
[20/03/2008|01:22] C:\Program Files\Windows Calendar
[02/11/2006|14:40] C:\Program Files\Windows Collaboration
[20/03/2008|01:22] C:\Program Files\Windows Defender
[21/03/2008|09:02] C:\Program Files\Windows Live
[20/03/2008|01:22] C:\Program Files\Windows Mail
[20/03/2008|01:22] C:\Program Files\Windows Media Player
[19/03/2008|18:33] C:\Program Files\Windows NT
[02/11/2006|14:40] C:\Program Files\Windows Photo Gallery
[20/03/2008|01:22] C:\Program Files\Windows Sidebar
[13/04/2008|00:23] C:\Program Files\WinRAR
[11/06/2008|14:47] C:\Program Files\Wolfenstein - Enemy Territory
[19/03/2008|18:37] C:\Program Files\Yahoo!

------[ Listing des dossiers dans C:\Program Files\Common Files ]------

[31/05/2008|21:58] C:\Program Files\Common Files\Adobe
[17/04/2008|11:29] C:\Program Files\Common Files\Adobe AIR
[28/04/2008|12:34] C:\Program Files\Common Files\Corel
[06/05/2007|23:14] C:\Program Files\Common Files\DESIGNER
[06/05/2007|23:23] C:\Program Files\Common Files\InstallShield
[22/04/2008|10:12] C:\Program Files\Common Files\Java
[06/05/2007|23:11] C:\Program Files\Common Files\LightScribe
[20/03/2008|00:08] C:\Program Files\Common Files\microsoft shared
[06/05/2007|23:11] C:\Program Files\Common Files\muvee Technologies
[06/05/2007|23:12] C:\Program Files\Common Files\NewTech Infosystems
[09/04/2008|18:45] C:\Program Files\Common Files\PX Storage Engine
[02/11/2006|13:18] C:\Program Files\Common Files\Services
[02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines
[22/03/2008|22:48] C:\Program Files\Common Files\Steam
[25/05/2008|15:42] C:\Program Files\Common Files\Symantec Shared
[20/03/2008|01:22] C:\Program Files\Common Files\System
[31/05/2008|22:00] C:\Program Files\Common Files\Vbox
[19/03/2008|20:39] C:\Program Files\Common Files\WindowsLiveInstaller
[17/05/2008|11:27] C:\Program Files\Common Files\Wise Installation Wizard

---------------------------[ Process ]--------------------------

... 70

... OK !

----------------------[ Recherche avec S_Lop ]---------------------

Aucun fichier / dossier Lop trouvé !

-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------

C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@adin.bigpoint[2].txt
C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@bigpoint[1].txt
C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@fr1.seafight.bigpoint[1].txt
C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies\michel@fr1.seafight.bigpoint[1].txt

----------------------[ Verification du Registre ]----------------------

..... OK !

--------------------[ Verification du fichier Hosts ]---------------------

Fichier Hosts PROPRE


----------------[ Recherche de fichiers avec Catchme ]-----------------

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-06-15 20:56:27
Windows 6.0.6000 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0

--------------------[ Recherche d'autres infections ]---------------------

=> C:\Users\michel\AppData\Roaming\uTorrent\install_virtualdj_v5+Crack.zip.torrent
=> C:\Users\michel\AppData\Roaming\uTorrent\Virtual.DJ.software(crack).torrent
=> C:\Users\michel\Documents\Downloads\virtual dj\crack
=> C:\Users\michel\Documents\Downloads\virtual dj\crack\virtualdj.exe
=> C:\Users\michel\Documents\Mes fichiers re‡us\michelallende4168305947\Historique\crackddf_933540969025.xml
=> C:\Users\michel\Documents\Mes Historiques de Conversation\mai 2008\crackddf_93@hotmail.fr.html


[F:2184][D:36]-> C:\Users\michel\AppData\Local\Temp
[F:490][D:1]-> C:\Users\michel\AppData\Roaming\MICROS~1\Windows\Cookies
[F:140][D:6]-> C:\Users\michel\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:23][D:8]-> C:\$Recycle.Bin

[ UAC => 1 ]

--------------------[ Fin du rapport a 20:57:25,34 ]----------------------


---------------
[Ce n'est pas parce que c'est difficile que nous n'osons pas mais parce que nous n'osons pas que c'est difficile ][Sénèque]
Profil : Helper
Plus d'informations

Re,

Fais l'option 2 pour voir et poste le log final.

TU devrais supprimer ceci :

=> C:\Users\michel\AppData\Roaming\uTorrent\install_virtualdj_v5+Crack.zip.torrent
=> C:\Users\michel\AppData\Roaming\uTorrent\Virtual.DJ.software(crack).torrent
=> C:\Users\michel\Documents\Downloads\virtual dj\crack
=> C:\Users\michel\Documents\Downloads\virtual dj\crack\virtualdj.exe


---------------
Prière de signaler si vous vous faites déjà aider sur un autre forum ou dans un autre topic.

Sécurité/Prévention
Profil : IDNaute
Plus d'informations

Quand j'essaye quoi que ce soit Windows me met qu'il y a un problème avec les paramètres utilisateurs et Lop S&D fait redémarrer le PC


Message édité par soni93200 le 16-06-2008 à 11:55:54

---------------
[Ce n'est pas parce que c'est difficile que nous n'osons pas mais parce que nous n'osons pas que c'est difficile ][Sénèque]
Profil : IDNaute