Se connecter avec
S'enregistrer | Connectez-vous

You are not allowed to do this.

pc qui rame

Dernière réponse : dans Sécurité
Lassé par la pub ? Créez un compte

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 20:37:46, on 16/08/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Apps\ActivBoard\nhksrv.exe
C:\WINDOWS\System32\drivers\CDAC11BA.EXE
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\Program Files\Norton\navapsvc.exe
C:\Program Files\Norton\IWP\NPFMntor.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
C:\Apps\ActivBoard\MMKeybd.exe
C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
C:\WINDOWS\vVX1000.exe
C:\Apps\ActivBoard\TrayMon.exe
C:\Apps\ActivBoard\OSD.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Paltalk Messenger\paltalk.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Program Files\Messenger\msmsgs.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - (no file)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton\NavShExt.dll
O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [ACTIVBOARD] C:\Apps\ActivBoard\MMKeybd.exe
O4 - HKLM\..\Run: [VCSPlayer] "C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe"
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [VX1000] C:\WINDOWS\vVX1000.exe
O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [®Windows Update] svchosts.exe
O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\ccleaner.exe" /AUTO
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKLM\..\Policies\Explorer\Run: [®Windows Update] svchosts.exe
O4 - HKCU\..\Policies\Explorer\Run: [®Windows Update] svchosts.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: PalTalk.lnk = C:\Program Files\Paltalk Messenger\paltalk.exe
O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton\navapsvc.exe
O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Apps\ActivBoard\nhksrv.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton\IWP\NPFMntor.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
O24 - Desktop Component 0: My Current Home Page - http://pi.sysness.com/images/screenshots/minipenguscree...

--
End of file - 9680 bytes

re

effectivement, tu as un trojan sur ton pc...

Cette procédure doit être imprimée pour que tu puisses l’avoir sous les yeux quand tu seras en mode sans échec.

Télécharge SDFix(créé par AndyManchesta) et sauvegarde le sur ton Bureau.
***Si le lien ne fonctionne pas, essaie celui-ci : http://download.bleepingcomputer.com/andymanchesta/SDFi... ***

Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :
  • Redémarre ton ordinateur
  • Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
  • A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
  • Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
  • Choisis ton compte.
    Déroule la liste des instructions ci-dessous :
  • Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
  • Appuie sur Y pour commencer le processus de nettoyage.
  • Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
  • Appuie sur une touche pour redémarrer le PC.
  • Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
  • Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
  • Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
  • Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
  • Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum, avec un nouveau log Hijackthis !



    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 09:39:42, on 17/08/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16705)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Apps\ActivBoard\nhksrv.exe
    C:\WINDOWS\System32\drivers\CDAC11BA.EXE
    C:\Program Files\Microsoft LifeCam\MSCamS32.exe
    C:\Program Files\Norton\navapsvc.exe
    C:\Program Files\Norton\IWP\NPFMntor.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\WINDOWS\system32\slserv.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
    C:\Apps\ActivBoard\MMKeybd.exe
    C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
    C:\WINDOWS\vVX1000.exe
    C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Apps\ActivBoard\TrayMon.exe
    C:\Apps\ActivBoard\OSD.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\Program Files\Paltalk Messenger\paltalk.exe
    C:\WINDOWS\system32\msiexec.exe
    C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\WINDOWS\system32\dumprep.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\system32\dumprep.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    O2 - BHO: (no name) - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: (no name) - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - (no file)
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
    O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton\NavShExt.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton\NavShExt.dll
    O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
    O4 - HKLM\..\Run: [ACTIVBOARD] C:\Apps\ActivBoard\MMKeybd.exe
    O4 - HKLM\..\Run: [VCSPlayer] "C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe"
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [VX1000] C:\WINDOWS\vVX1000.exe
    O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
    O4 - HKCU\..\Run: [®Windows Update] svchosts.exe
    O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\ccleaner.exe" /AUTO
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: PalTalk.lnk = C:\Program Files\Paltalk Messenger\paltalk.exe
    O9 - Extra button: PalTalk - {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - C:\Program Files\Paltalk Messenger\Paltalk.exe
    O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\WINDOWS\System32\shdocvw.dll
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton\navapsvc.exe
    O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Apps\ActivBoard\nhksrv.exe
    O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton\IWP\NPFMntor.exe
    O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
    O24 - Desktop Component 0: My Current Home Page - http://pi.sysness.com/images/screenshots/minipenguscree...

    --
    End of file - 9758 bytes

    SDFix: Version 1.216
    Run by Administrateur on 17/08/2008 at 08:42

    Microsoft Windows XP [version 5.1.2600]
    Running From: C:\SDFix

    Checking Services :


    Restoring Default Security Values
    Restoring Default Hosts File

    Rebooting


    Checking Files :

    No Trojan Files Found






    Removing Temp Files

    ADS Check :



    Final Check :

    catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-08-17 09:07:25
    Windows 5.1.2600 Service Pack 2 NTFS

    scanning hidden processes ...

    scanning hidden services & system hive ...

    scanning hidden registry entries ...

    scanning hidden files ...

    C:\WINDOWS\system32\CatRoot\TMPF.tmp

    scan completed successfully
    hidden processes: 0
    hidden services: 0
    hidden files: 1


    Remaining Services :




    Authorized Application Key Export:

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
    "C:\\Program Files\\Yahoo!\\Messenger\\YPager.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YPager.exe:*:Enabled:Yahoo! Messenger"
    "C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe:*:Enabled:Yahoo! FT Server"
    "C:\\Program Files\\NetMeeting\\conf.exe"="C:\\Program Files\\NetMeeting\\conf.exe:*:Enabled:Windows© NetMeeting©"
    "C:\\APPS\\ActivSurf\\4448364\\Program\\backWeb-4448364.exe"="C:\\APPS\\ActivSurf\\4448364\\Program\\backWeb-4448364.exe:*:Enabled:backWeb-4448364"
    "C:\\Program Files\\Yahoo!\\Messenger\\Y!Multi-Gold.exe"="C:\\Program Files\\Yahoo!\\Messenger\\Y!Multi-Gold.exe:*:D isabled:Gold! Messenger"
    "C:\\Program Files\\Wanadoo Messager\\Wanadoo Messager.exe"="C:\\Program Files\\Wanadoo Messager\\Wanadoo Messager.exe:*:Enabled:Application Messager"
    "C:\\Program Files\\Real\\RealPlayer\\realplay.exe"="C:\\Program Files\\Real\\RealPlayer\\realplay.exe:*:D isabled:RealPlayer"
    "C:\\Program Files\\Yahoo!\\Messenger(2)\\YPager.exe"="C:\\Program Files\\Yahoo!\\Messenger(2)\\YPager.exe:*:Enabled:Yahoo! Messenger"
    "C:\\Program Files\\Yahoo!\\Messenger(2)\\YServer.exe"="C:\\Program Files\\Yahoo!\\Messenger(2)\\YServer.exe:*:Enabled:Yahoo! FT Server"
    "C:\\APPS\\Packard Bell Companion\\Packard Bell Companion.exe"="C:\\APPS\\Packard Bell Companion\\Packard Bell Companion.exe:*:Enabled:p ackard Bell Companion"
    "C:\\Program Files\\UltraVNC\\winvnc.exe"="C:\\Program Files\\UltraVNC\\winvnc.exe:*:Enabled:VNC server for Win32"
    "C:\\Program Files\\Paltalk Messenger\\paltalk.exe"="C:\\Program Files\\Paltalk Messenger\\paltalk.exe:*:Enabled:p altalk Messenger 8.3"
    "C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
    "C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
    "C:\\Program Files\\Google\\Google Talk\\googletalk.exe"="C:\\Program Files\\Google\\Google Talk\\googletalk.exe:*:Enabled:Google Talk"
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
    "C:\\Program Files\\Skype\\Phone\\Skype.exe"="C:\\Program Files\\Skype\\Phone\\Skype.exe:*:Enabled:Skype"
    "C:\\Program Files\\Microsoft LifeCam\\LifeExp.exe"="C:\\Program Files\\Microsoft LifeCam\\LifeExp.exe:*:Enabled:LifeExp.exe"
    "C:\\WINDOWS\\system32\\dpvsetup.exe"="C:\\WINDOWS\\system32\\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
    "C:\\WINDOWS\\system32\\rundll32.exe"="C:\\WINDOWS\\system32\\rundll32.exe:*:Enabled:Ex‚cuter une DLL en tant qu'application"
    "C:\\Program Files\\Microsoft LifeCam\\LifeCam.exe"="C:\\Program Files\\Microsoft LifeCam\\LifeCam.exe:*:Enabled:LifeCam.exe"
    "C:\\Documents and Settings\\NICOLE\\Local Settings\\Temporary Internet Files\\Content.IE5\\G957C4SN\\incredimail_install[1].exe"="C:\\Documents and Settings\\NICOLE\\Local Settings\\Temporary Internet Files\\Content.IE5\\G957C4SN\\incredimail_install[1].exe:*:Enabled:IncrediMail Installer"
    "C:\\Program Files\\IncrediMail\\bin\\ImApp.exe"="C:\\Program Files\\IncrediMail\\bin\\ImApp.exe:*:Enabled:IncrediMail"
    "C:\\Program Files\\IncrediMail\\bin\\IncMail.exe"="C:\\Program Files\\IncrediMail\\bin\\IncMail.exe:*:Enabled:IncrediMail"
    "C:\\Program Files\\IncrediMail\\bin\\ImpCnt.exe"="C:\\Program Files\\IncrediMail\\bin\\ImpCnt.exe:*:Enabled:IncrediMail"
    "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
    "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
    "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
    "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
    "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"

    Remaining Files :



    Files with Hidden Attributes :

    Thu 16 Oct 2003 193 A.SHR --- "C:\BOOT.BAK"
    Mon 15 Oct 2007 5,903,928 A..H. --- "C:\Program Files\Picasa2\setup.exe"
    Mon 28 Jan 2008 1,404,240 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe"
    Mon 28 Jan 2008 5,146,448 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe"
    Mon 28 Jan 2008 2,097,488 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe"
    Thu 27 Jan 2005 0 A.SH. --- "C:\WINDOWS\system32\system.dll"
    Sun 14 Nov 2004 2,189 A.SH. --- "C:\WINDOWS\system32\websys.dll"
    Sun 14 Nov 2004 550,250 A.SH. --- "C:\WINDOWS\system32\WinRAR_v3.41_Final_Crack.exe"
    Thu 7 Aug 2008 1,024 A..H. --- "C:\System Volume Information\_restore{9AEDEF4B-1977-4657-B854-EFDB21259CFF}\RP333\A0171364.sys"
    Fri 15 Dec 2006 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
    Sun 27 Aug 2006 8 A..H. --- "C:\Documents and Settings\All Users\Application Data\GTek\GTUpdate\AUpdate\Channels\ch1\lock.tmp"

    Finished!

    bonjour

    Désactive ton antivirus et tout autre type de protection.
    notamment le TeaTimer:
    Ouvre Spybot , clique sur l'onglet Mode et choisis Mode Avancé
    Ne tiens pas compte de l'avertissement
    En bas à gauche , clique sur Outils
    Toujours dans la colonne de gauche , clique sur Résident ( pas dans la fenêtre centrale )
    Et décoche l'option Resident "TeaTimer".......


    Télécharge ComboFix de sUBs :
    ComboFix.exe
    et sauvegarde le sur ton bureau et pas ailleurs!

    Double-clic sur ComboFix, Il va te poser une question, suis les invites puis attends que combofix ait terminé, il est possible que ton PC reboot, c’est normal, un rapport sera créé.Poste le rapport:C:\Combofix.txt
    clique dessus pour l'ouvrir, puis édition "sélectionner tout", édition "copier"

    viens sur le forum et édition "coller"

    ajoute un nouveau rapport Hijackthis.

    ComboFix 08-08-17.01 - NICOLE 2008-08-17 22:54:41.1 - NTFSx86
    Endroit: C:\Documents and Settings\NICOLE\Bureau\ComboFix.exe
    * Création d'un nouveau point de restauration
    .

    (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
    .

    C:\Documents and Settings\Invité\UserData
    C:\Documents and Settings\Invité\UserData\HAFUCR7I\showHideState[1].xml
    C:\Documents and Settings\Invité\UserData\I115YME7\iconState[1].xml
    C:\Documents and Settings\Invité\UserData\index.dat
    C:\Documents and Settings\NICOLE\UserData
    C:\Documents and Settings\NICOLE\UserData\index.dat
    C:\Documents and Settings\NICOLE\UserData\PPMJOPU3\oWindowsUpdate[1].xml
    C:\Documents and Settings\NICOLE\UserData\WDMZKPE7\Tdy58[1].xml
    C:\WINDOWS\system32\MabryObj.dll
    C:\windows\system32\system.dll
    C:\WINDOWS\system32\url(2)(2)(3).dll

    .
    ((((((((((((((((((((((((((((( Fichiers cr‚‚s 2008-07-17 to 2008-08-17 ))))))))))))))))))))))))))))))))))))
    .

    2008-08-17 13:16 . 2008-06-14 19:33 272,768 --------- C:\WINDOWS\system32\dllcache\bthport.sys
    2008-08-17 12:28 . 2008-08-17 12:28 <REP> d-------- C:\WINDOWS\system32\fr
    2008-08-17 12:28 . 2008-08-17 12:28 <REP> d-------- C:\WINDOWS\l2schemas
    2008-08-17 08:39 . 2008-08-17 08:40 <REP> d-------- C:\WINDOWS\ERUNT
    2008-08-17 08:36 . 2008-08-17 09:25 <REP> d-------- C:\SDFix
    2008-08-17 08:26 . 2008-08-17 08:26 <REP> d-------- C:\Documents and Settings\Administrateur\Contacts
    2008-08-17 08:19 . 2003-10-16 11:00 <REP> d-------- C:\Documents and Settings\Administrateur\WINDOWS
    2008-08-17 08:19 . 2002-09-30 12:55 <REP> d--h----- C:\Documents and Settings\Administrateur\ModŠles
    2008-08-17 08:19 . 2005-04-13 23:13 <REP> dr------- C:\Documents and Settings\Administrateur\Mes documents
    2008-08-17 08:19 . 2002-09-30 12:55 <REP> dr------- C:\Documents and Settings\Administrateur\Menu D‚marrer
    2008-08-17 08:19 . 2007-10-12 08:16 <REP> dr------- C:\Documents and Settings\Administrateur\Favoris
    2008-08-17 08:19 . 2005-01-01 13:53 <REP> dr------- C:\Documents and Settings\Administrateur\Bureau
    2008-08-17 08:19 . 2003-10-16 11:06 <REP> d-------- C:\Documents and Settings\Administrateur\Application Data\InterTrust
    2008-08-17 08:19 . 2008-08-17 08:26 <REP> d-------- C:\Documents and Settings\Administrateur
    2008-08-17 07:48 . 2008-04-14 04:33 712,704 --------- C:\WINDOWS\system32\windowscodecs.dll
    2008-08-17 07:48 . 2008-04-14 04:33 346,112 --------- C:\WINDOWS\system32\windowscodecsext.dll
    2008-08-17 07:48 . 2008-04-14 04:33 276,992 --------- C:\WINDOWS\system32\wmphoto.dll
    2008-08-17 07:48 . 2008-04-14 04:33 69,120 --------- C:\WINDOWS\system32\wlanapi.dll
    2008-08-17 07:47 . 2008-04-14 04:33 50,688 --------- C:\WINDOWS\system32\tspkg.dll
    2008-08-17 07:47 . 2008-04-14 04:34 32,768 --------- C:\WINDOWS\system32\setupn.exe
    2008-08-17 07:47 . 2008-04-13 20:40 10,240 --------- C:\WINDOWS\system32\drivers\sffp_mmc.sys
    2008-08-17 07:46 . 2008-04-14 04:33 412,160 --------- C:\WINDOWS\system32\photometadatahandler.dll
    2008-08-17 07:46 . 2008-04-14 04:33 293,376 --------- C:\WINDOWS\system32\qagentrt.dll
    2008-08-17 07:46 . 2008-04-14 04:33 151,040 --------- C:\WINDOWS\system32\qagent.dll
    2008-08-17 07:46 . 2008-04-14 04:33 144,896 --------- C:\WINDOWS\system32\onex.dll
    2008-08-17 07:46 . 2008-04-14 04:33 76,800 --------- C:\WINDOWS\system32\qutil.dll
    2008-08-17 07:46 . 2008-04-14 04:33 62,464 --------- C:\WINDOWS\system32\qcliprov.dll
    2008-08-17 07:46 . 2008-04-14 04:33 61,952 --------- C:\WINDOWS\system32\rasqec.dll
    2008-08-17 07:44 . 2008-04-14 04:33 61,440 --------- C:\WINDOWS\system32\kmsvc.dll
    2008-08-17 07:44 . 2008-04-14 04:33 37,376 --------- C:\WINDOWS\system32\l2gpstore.dll
    2008-08-17 07:44 . 2008-04-14 04:31 6,144 --------- C:\WINDOWS\system32\kbdpash.dll
    2008-08-17 07:44 . 2008-04-14 04:31 6,144 --------- C:\WINDOWS\system32\kbdnepr.dll
    2008-08-17 07:44 . 2008-04-14 04:31 6,144 --------- C:\WINDOWS\system32\kbdiultn.dll
    2008-08-17 07:44 . 2008-04-14 04:31 6,144 --------- C:\WINDOWS\system32\kbdbhc.dll
    2008-08-17 07:43 . 2008-04-13 18:36 144,384 --------- C:\WINDOWS\system32\drivers\hdaudbus.sys
    2008-08-17 07:43 . 2008-04-14 04:10 2,524 --------- C:\WINDOWS\system32\pid.inf
    2008-08-17 07:41 . 2008-04-14 04:33 233,472 --------- C:\WINDOWS\system32\azroles.dll
    2008-08-17 07:41 . 2008-04-14 04:33 12,800 --------- C:\WINDOWS\system32\credssp.dll
    2008-08-17 07:41 . 2008-04-14 04:33 7,168 --------- C:\WINDOWS\system32\bitsprx4.dll
    2008-08-16 20:36 . 2008-08-16 20:36 <REP> d-------- C:\Program Files\Trend Micro
    2008-08-16 08:48 . 2008-05-01 16:36 331,776 --------- C:\WINDOWS\system32\dllcache\msadce.dll
    2008-08-16 08:47 . 2008-04-11 21:05 691,712 --------- C:\WINDOWS\system32\dllcache\inetcomm.dll

    .
    (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
    .
    2008-08-17 11:50 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
    2008-08-15 18:29 --------- d-----w C:\Program Files\Fichiers communs\Symantec Shared
    2008-07-02 12:02 --------- d-----w C:\Program Files\Spybot - Search & Destroy
    2008-07-01 21:20 --------- d-----w C:\Documents and Settings\All Users\Application Data\Zylom
    2008-07-01 21:19 --------- d-----w C:\Documents and Settings\NICOLE\Application Data\Lavasoft
    2008-06-20 11:51 361,600 ----a-w C:\WINDOWS\system32\drivers\tcpip.sys
    2008-06-20 11:40 138,496 ----a-w C:\WINDOWS\system32\drivers\afd.sys
    2008-06-20 11:08 225,856 ----a-w C:\WINDOWS\system32\drivers\tcpip6.sys
    2006-11-19 18:05 389,120 ----a-w C:\Documents and Settings\NICOLE\HexDownLoadYT.exe
    2006-01-04 23:44 457 ----a-w C:\Program Files\Raccourci vers xerox.lnk
    2003-10-19 17:25 32 --sha-w C:\WINDOWS\{2578E081-A08D-4077-9B98-0CE9253BBE8B}.dat
    2003-10-19 17:24 32 --sha-w C:\WINDOWS\{DE99D7F9-E2CC-49C1-A5CA-B2394525BF83}.dat
    2005-01-27 00:00 968 --sha-w C:\WINDOWS\system32\ntuser.dat
    2004-11-14 17:49 2,189 --sha-w C:\WINDOWS\system32\websys.dll
    2004-11-14 17:49 550,250 --sha-w C:\WINDOWS\system32\WinRAR_v3.41_Final_Crack.exe
    2003-10-19 17:25 32 --sha-w C:\WINDOWS\system32\{19CF57F6-64FD-4F5A-81B5-012FC715FB95}.dat
    2003-10-19 17:24 32 --sha-w C:\WINDOWS\system32\{7D4F91E0-2FCB-47F6-AC37-B2FD62908048}.dat
    .

    ((((((((((((((((((((((((((((((((( Point de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))))
    .
    .
    REGEDIT4
    *Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "ccleaner"="C:\Program Files\CCleaner\ccleaner.exe" [2007-05-10 13:01 598920]
    "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-14 04:33 15360]
    "Yahoo! Pager"="C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" [2007-08-27 16:19 4670704]
    "SpybotSD TeaTimer"="C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" [2008-01-28 11:43 2097488]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "EM_EXEC"="C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE" [2002-01-28 09:43 35328]
    "NvCplDaemon"="C:\WINDOWS\System32\NvCpl.dll" [2003-04-02 15:40 4616192]
    "ACTIVBOARD"="C:\Apps\ActivBoard\MMKeybd.exe" [2002-06-19 18:51 192512]
    "VCSPlayer"="C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe" [2002-06-07 12:34 299008]
    "ccApp"="C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" [2008-01-31 12:56 58728]
    "Symantec NetDriver Monitor"="C:\PROGRA~1\SYMNET~1\SNDMon.exe" [2007-04-06 17:54 100056]
    "VX1000"="C:\WINDOWS\vVX1000.exe" [2006-12-06 01:38 707360]
    "LifeCam"="C:\Program Files\Microsoft LifeCam\LifeExp.exe" [2007-01-13 03:48 275800]
    "TkBellExe"="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" [2008-05-11 12:19 185896]
    "SoundMan"="SOUNDMAN.EXE" [2002-09-11 18:57 46592 C:\WINDOWS\SOUNDMAN.EXE]
    "nwiz"="nwiz.exe" [2003-04-02 15:40 323584 C:\WINDOWS\system32\nwiz.exe]

    [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
    "CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2008-04-14 04:33 15360]
    "Picasa Media Detector"="C:\Program Files\Picasa2\PicasaMediaDetector.exe" [2007-09-28 03:17 443968]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
    "msacm.dvacm"= C:\PROGRA~1\FICHIE~1\ULEADS~1\Vio\Dvacm.acm
    "msacm.speex32"= speex32.acm

    [HKEY_LOCAL_MACHINE\software\microsoft\security center]
    "AntiVirusDisableNotify"=dword:00000001

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
    "DisableMonitoring"=dword:00000001

    [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
    "DisableMonitoring"=dword:00000001

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
    "%windir%\\system32\\sessmgr.exe"=
    "C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"=
    "C:\\Program Files\\NetMeeting\\conf.exe"=
    "C:\\Program Files\\Real\\RealPlayer\\realplay.exe"=
    "C:\\APPS\\Packard Bell Companion\\Packard Bell Companion.exe"=
    "C:\\Program Files\\Paltalk Messenger\\paltalk.exe"=
    "C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
    "C:\\Program Files\\Messenger\\msmsgs.exe"=
    "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
    "C:\\Program Files\\Microsoft LifeCam\\LifeExp.exe"=
    "C:\\WINDOWS\\system32\\dpvsetup.exe"=
    "C:\\Program Files\\Microsoft LifeCam\\LifeCam.exe"=
    "C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
    "C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
    "3587:TCP"= 3587:TCP:@xpsp2res.dll,-22010
    "3540:UDP"= 3540:UDP:@xpsp2res.dll,-22011
    "1900:UDP"= 1900:UDP:@xpsp2res.dll,-22007

    [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings]
    "AllowInboundEchoRequest"= 1 (0x1)

    R1 msikbd2k;Multimedia Keyboard Filter Driver;C:\WINDOWS\system32\DRIVERS\msikbd2k.sys [2001-12-20 09:02]
    R1 vcsmpdrv;vcsmpdrv;C:\WINDOWS\system32\DRIVERS\vcsmpdrv.sys [2002-06-07 12:38]
    R2 MSCamSvc;MSCamSvc;C:\Program Files\Microsoft LifeCam\MSCamS32.exe [2007-01-05 00:13]
    R2 nhksrv;Netropa NHK Server;C:\Apps\ActivBoard\nhksrv.exe [2001-08-06 06:41]
    R2 VCSSecS;Virtual CD v4 Security service (SDK - Version);C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe [2002-05-16 12:17]
    S3 camvid20;Philips ToUcam Camera; Video;C:\WINDOWS\system32\DRIVERS\camdrv21.sys []
    S3 p2pgasvc;Authentification de groupe réseau homologue;C:\WINDOWS\System32\svchost.exe [2008-04-14 04:34]
    S3 p2pimsvc;Gestionnaire d'identité réseau homologue;C:\WINDOWS\System32\svchost.exe [2008-04-14 04:34]
    S3 p2psvc;Réseau homologue;C:\WINDOWS\System32\svchost.exe [2008-04-14 04:34]
    S3 PNRPSvc;Protocole de résolution de noms d'homologues;C:\WINDOWS\System32\svchost.exe [2008-04-14 04:34]
    S3 V90drv;v90drv;C:\WINDOWS\system32\DRIVERS\v90drv.sys [2001-11-29 16:09]
    S3 VX1000;VX-1000;C:\WINDOWS\system32\DRIVERS\VX1000.sys [2006-12-06 01:39]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
    p2psvc REG_MULTI_SZ p2psvc p2pimsvc p2pgasvc PNRPSvc

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{7f3a629c-03ed-11dc-8362-0010dcfd3abe}]
    \Shell\AutoRun\command - D:\Geneo\Geneo.exe
    \Shell\start\command - D:\Geneo\Geneo.exe
    .
    Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es'
    .
    - - - - ORPHANS REMOVED - - - -

    HKCU-Run-®Windows Update - svchosts.exe


    .
    ------- Supplementary Scan -------
    .
    R0 -: HKCU-Main,SearchMigratedDefaultURL = hxxp://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7
    R0 -: HKCU-Main,Default_Search_URL = hxxp://www.google.com/ie
    R0 -: HKCU-Main,Start Page = hxxp://www.google.fr/
    R0 -: HKLM-Main,Start Page = hxxp://www.yahoo.com/
    R0 -: HKLM-Main,Search Bar = hxxp://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    R1 -: HKCU-Internet Settings,ProxyOverride = 127.0.0.1
    R1 -: HKCU-SearchURL,(Default) = hxxp://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    O8 -: &Every Toolbar Search

    O16 -: DirectAnimation Java Classes - C:\WINDOWS\Downloaded Program Files\DirectAnimation Java Classes.osd

    O16 -: Microsoft XML Parser for Java - C:\WINDOWS\Downloaded Program Files\Microsoft XML Parser for Java.osd


    **************************************************************************

    catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-08-17 23:02:11
    Windows 5.1.2600 Service Pack 3 NTFS

    Balayage processus cach‚s ...

    Balayage cach‚ autostart entries ...

    Balayage des fichiers cach‚s ...

    Scan termin‚ avec succŠs
    Les fichiers cach‚s: 0

    **************************************************************************
    .
    ------------------------ Other Running Processes ------------------------
    .
    C:\Program Files\Fichiers communs\Symantec Shared\CCSETMGR.EXE
    C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Program Files\Fichiers communs\Symantec Shared\CCEVTMGR.EXE
    C:\WINDOWS\system32\drivers\CDAC11BA.EXE
    C:\Program Files\Norton\NAVAPSVC.EXE
    C:\Program Files\Norton\IWP\NPFMNTOR.EXE
    C:\WINDOWS\system32\nvsvc32.exe
    C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    C:\WINDOWS\system32\slserv.exe
    C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\APPS\ActivBoard\Traymon.exe
    C:\APPS\ActivBoard\osd.exe
    C:\Program Files\Paltalk Messenger\paltalk.exe
    C:\Program Files\Yahoo!\Messenger\Ymsgr_tray.exe
    C:\WINDOWS\system32\msiexec.exe
    C:\Program Files\Messenger\msmsgs.exe
    .
    **************************************************************************
    .
    Temps d'accomplissement: 2008-08-17 23:21:15 - machine was rebooted
    ComboFix-quarantined-files.txt 2008-08-17 21:21:03

    Pre-Run: 110,588,047,360 octets libres
    Post-Run: 110,585,384,960 octets libres

    210 --- E O F --- 2008-08-17 11:28:50
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 23:26:09, on 17/08/2008
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16705)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\System32\drivers\CDAC11BA.EXE
    C:\Program Files\Microsoft LifeCam\MSCamS32.exe
    C:\Program Files\Norton\navapsvc.exe
    C:\Program Files\Norton\IWP\NPFMntor.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\WINDOWS\system32\slserv.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
    C:\Apps\ActivBoard\MMKeybd.exe
    C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
    C:\WINDOWS\vVX1000.exe
    C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Apps\ActivBoard\TrayMon.exe
    C:\Apps\ActivBoard\OSD.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\Program Files\Paltalk Messenger\paltalk.exe
    C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
    C:\WINDOWS\explorer.exe
    C:\Program Files\internet explorer\iexplore.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
    O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton\NavShExt.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton\NavShExt.dll
    O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
    O4 - HKLM\..\Run: [ACTIVBOARD] C:\Apps\ActivBoard\MMKeybd.exe
    O4 - HKLM\..\Run: [VCSPlayer] "C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe"
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [VX1000] C:\WINDOWS\vVX1000.exe
    O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
    O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\ccleaner.exe" /AUTO
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: PalTalk.lnk = C:\Program Files\Paltalk Messenger\paltalk.exe
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)
    O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton\navapsvc.exe
    O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Apps\ActivBoard\nhksrv.exe
    O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton\IWP\NPFMntor.exe
    O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
    O24 - Desktop Component 0: My Current Home Page - http://pi.sysness.com/images/screenshots/minipenguscree...

    --
    End of file - 8727 bytes
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 23:26:09, on 17/08/2008
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16705)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\System32\drivers\CDAC11BA.EXE
    C:\Program Files\Microsoft LifeCam\MSCamS32.exe
    C:\Program Files\Norton\navapsvc.exe
    C:\Program Files\Norton\IWP\NPFMntor.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\WINDOWS\system32\slserv.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
    C:\Apps\ActivBoard\MMKeybd.exe
    C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
    C:\WINDOWS\vVX1000.exe
    C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Apps\ActivBoard\TrayMon.exe
    C:\Apps\ActivBoard\OSD.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\Program Files\Paltalk Messenger\paltalk.exe
    C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
    C:\WINDOWS\explorer.exe
    C:\Program Files\internet explorer\iexplore.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    R3 - URLSearchHook: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
    O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton\NavShExt.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton\NavShExt.dll
    O3 - Toolbar: (no name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
    O4 - HKLM\..\Run: [ACTIVBOARD] C:\Apps\ActivBoard\MMKeybd.exe
    O4 - HKLM\..\Run: [VCSPlayer] "C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe"
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [VX1000] C:\WINDOWS\vVX1000.exe
    O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
    O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\ccleaner.exe" /AUTO
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: PalTalk.lnk = C:\Program Files\Paltalk Messenger\paltalk.exe
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: (no name) - Cmdmapping - (no file) (HKCU)
    O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton\navapsvc.exe
    O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Apps\ActivBoard\nhksrv.exe
    O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton\IWP\NPFMntor.exe
    O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
    O24 - Desktop Component 0: My Current Home Page - http://pi.sysness.com/images/screenshots/minipenguscree...

    --
    End of file - 8727 bytes

    bonsoir

    C:\WINDOWS\system32\WinRAR_v3.41_Final_Crack.exe <<<------supprime ça :D 

    quelques fichiers à analyser:

    Rends toi sur ce lien : Virus Total
  • Clique sur Parcourir
  • Rends toi jusque sur ce fichier si tu le trouves :

    C:\WINDOWS\system32\{19CF57F6-64FD-4F5A-81B5-012FC715FB95}.dat

  • Clique sur Envoyer le fichier et laisse travailler tant que "Situation actuelle : en cours d'analyse" est affiché.
  • Il est possible que le fichier soit mis en file d'attente en raison d'un grand nombre de demandes d'analyses. En ce cas, il te faudra patienter sans actualiser la page.
  • Lorsque l'analyse est terminée ("Situation actuelle: terminé"), clique sur Formaté
  • Une nouvelle fenêtre de ton navigateur va apparaître
  • Clique alors sur cette image :
  • Fais un clic droit sur la page, et choisis Sélectionner tout, puis copier
  • Enfin colle le résultat dans ta prochaine réponse.
    Note : Peu importe le résultat, il est important de me communiquer le résultat de toute l'analyse.
    Il est possible que tes outils de sécurité réagissent à l'envoi du fichier, en ce cas il te faudra ignorer les alertes.

    même chose avec:

    C:\WINDOWS\system32\{7D4F91E0-2FCB-47F6-AC37-B2FD62908048}.dat
    C:\WINDOWS\{DE99D7F9-E2CC-49C1-A5CA-B2394525BF83}.dat
    C:\WINDOWS\{2578E081-A08D-4077-9B98-0CE9253BBE8B}.dat

    <table border="1"><tr><td colspan="4">Fichier _19CF57F6-64FD-4F5A-81B5-012FC715 reçu le 2008.08.18 19:36:35 (CET)</td></tr><tr><td>Antivirus</td><td>Version</td><td>Dernière mise à jour</td><td>Résultat</td</tr><tr><td>AhnLab-V3</td><td>2008.8.19.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>AntiVir</td><td>7.8.1.19</td><td>2008.08.18</td><td>-</td</tr><tr><td>Authentium</td><td>5.1.0.4</td><td>2008.08.18</td><td>-</td</tr><tr><td>Avast</td><td>4.8.1195.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>AVG</td><td>8.0.0.161</td><td>2008.08.18</td><td>-</td</tr><tr><td>BitDefender</td><td>7.2</td><td>2008.08.18</td><td>-</td</tr><tr><td>CAT-QuickHeal</td><td>9.50</td><td>2008.08.18</td><td>-</td</tr><tr><td>ClamAV</td><td>0.93.1</td><td>2008.08.18</td><td>-</td</tr><tr><td>DrWeb</td><td>4.44.0.09170</td><td>2008.08.18</td><td>-</td</tr><tr><td>eSafe</td><td>7.0.17.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>eTrust-Vet</td><td>31.6.6035</td><td>2008.08.15</td><td>-</td</tr><tr><td>Ewido</td><td>4.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>F-Prot</td><td>4.4.4.56</td><td>2008.08.18</td><td>-</td</tr><tr><td>F-Secure</td><td>7.60.13501.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Fortinet</td><td>3.14.0.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>GData</td><td>2.0.7306.1023</td><td>2008.08.18</td><td>-</td</tr><tr><td>Ikarus</td><td>T3.1.1.34.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>K7AntiVirus</td><td>7.10.420</td><td>2008.08.18</td><td>-</td</tr><tr><td>Kaspersky</td><td>7.0.0.125</td><td>2008.08.18</td><td>-</td</tr><tr><td>McAfee</td><td>5363</td><td>2008.08.18</td><td>-</td</tr><tr><td>Microsoft</td><td>1.3807</td><td>2008.08.18</td><td>-</td</tr><tr><td>NOD32v2</td><td>3365</td><td>2008.08.18</td><td>-</td</tr><tr><td>Norman</td><td>5.80.02</td><td>2008.08.18</td><td>-</td</tr><tr><td>Panda</td><td>9.0.0.4</td><td>2008.08.17</td><td>-</td</tr><tr><td>PCTools</td><td>4.4.2.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Prevx1</td><td>V2</td><td>2008.08.18</td><td>-</td</tr><tr><td>Rising</td><td>20.58.02.00</td><td>2008.08.18</td><td>-</td</tr><tr><td>Sophos</td><td>4.32.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Sunbelt</td><td>3.1.1546.1</td><td>2008.08.15</td><td>-</td</tr><tr><td>Symantec</td><td>10</td><td>2008.08.18</td><td>-</td</tr><tr><td>TheHacker</td><td>6.3.0.5.053</td><td>2008.08.18</td><td>-</td</tr><tr><td>TrendMicro</td><td>8.700.0.1004</td><td>2008.08.18</td><td>-</td</tr><tr><td>VBA32</td><td>3.12.8.3</td><td>2008.08.18</td><td>-</td</tr><tr><td>ViRobot</td><td>2008.8.18.1339</td><td>2008.08.18</td><td>-</td</tr><tr><td>VirusBuster</td><td>4.5.11.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Webwasher-Gateway</td><td>6.6.2</td><td>2008.08.18</td><td>-</td</tr><tr><td colspan="4"> </td></tr><tr><td colspan="4">Information additionnelle</td></tr><tr><td colspan="4">File size: 32 bytes</td></tr><tr><td colspan="4">MD5...: a6a3aa83f7dc41768388a2da5d79a2fe</td></tr><tr><td colspan="4">SHA1..: ab905ff810eacbe70bedd6482d6dc281842df178</td></tr><tr><td colspan="4">SHA256: 03e7cb70603fd4b1dd6398d332e017bbb85eb6297fd9501c8bbe72423dfe255e</td></tr><tr><td colspan="4">SHA512: 64c2fbea3aac823692afb8c0880c3f3e128b0920a6e9484d6edc356aef49ecec<BR>f779d7368ec34a777e2ddab08a6f267938c5c3f4ef3ff68ac80ddc7687f89c00</td></tr><tr><td colspan="4">PEiD..: -</td></tr><tr><td colspan="4">PEInfo: -</td></tr></table>


    <

    table border="1"><tr><td colspan="4">Fichier _7D4F91E0-2FCB-47F6-AC37-B2FD6290 reçu le 2008.08.18 19:39:14 (CET)</td></tr><tr><td>Antivirus</td><td>Version</td><td>Dernière mise à jour</td><td>Résultat</td</tr><tr><td>AhnLab-V3</td><td>2008.8.19.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>AntiVir</td><td>7.8.1.19</td><td>2008.08.18</td><td>-</td</tr><tr><td>Authentium</td><td>5.1.0.4</td><td>2008.08.18</td><td>-</td</tr><tr><td>Avast</td><td>4.8.1195.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>AVG</td><td>8.0.0.161</td><td>2008.08.18</td><td>-</td</tr><tr><td>BitDefender</td><td>7.2</td><td>2008.08.18</td><td>-</td</tr><tr><td>CAT-QuickHeal</td><td>9.50</td><td>2008.08.18</td><td>-</td</tr><tr><td>ClamAV</td><td>0.93.1</td><td>2008.08.18</td><td>-</td</tr><tr><td>DrWeb</td><td>4.44.0.09170</td><td>2008.08.18</td><td>-</td</tr><tr><td>eSafe</td><td>7.0.17.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>eTrust-Vet</td><td>31.6.6035</td><td>2008.08.15</td><td>-</td</tr><tr><td>Ewido</td><td>4.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>F-Prot</td><td>4.4.4.56</td><td>2008.08.18</td><td>-</td</tr><tr><td>F-Secure</td><td>7.60.13501.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Fortinet</td><td>3.14.0.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>GData</td><td>2.0.7306.1023</td><td>2008.08.18</td><td>-</td</tr><tr><td>Ikarus</td><td>T3.1.1.34.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>K7AntiVirus</td><td>7.10.420</td><td>2008.08.18</td><td>-</td</tr><tr><td>Kaspersky</td><td>7.0.0.125</td><td>2008.08.18</td><td>-</td</tr><tr><td>McAfee</td><td>5363</td><td>2008.08.18</td><td>-</td</tr><tr><td>Microsoft</td><td>1.3807</td><td>2008.08.18</td><td>-</td</tr><tr><td>NOD32v2</td><td>3365</td><td>2008.08.18</td><td>-</td</tr><tr><td>Norman</td><td>5.80.02</td><td>2008.08.18</td><td>-</td</tr><tr><td>Panda</td><td>9.0.0.4</td><td>2008.08.17</td><td>-</td</tr><tr><td>PCTools</td><td>4.4.2.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Prevx1</td><td>V2</td><td>2008.08.18</td><td>-</td</tr><tr><td>Rising</td><td>20.58.02.00</td><td>2008.08.18</td><td>-</td</tr><tr><td>Sophos</td><td>4.32.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Sunbelt</td><td>3.1.1546.1</td><td>2008.08.15</td><td>-</td</tr><tr><td>Symantec</td><td>10</td><td>2008.08.18</td><td>-</td</tr><tr><td>TheHacker</td><td>6.3.0.5.053</td><td>2008.08.18</td><td>-</td</tr><tr><td>TrendMicro</td><td>8.700.0.1004</td><td>2008.08.18</td><td>-</td</tr><tr><td>VBA32</td><td>3.12.8.3</td><td>2008.08.18</td><td>-</td</tr><tr><td>ViRobot</td><td>2008.8.18.1339</td><td>2008.08.18</td><td>-</td</tr><tr><td>VirusBuster</td><td>4.5.11.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Webwasher-Gateway</td><td>6.6.2</td><td>2008.08.18</td><td>-</td</tr><tr><td colspan="4"> </td></tr><tr><td colspan="4">Information additionnelle</td></tr><tr><td colspan="4">File size: 32 bytes</td></tr><tr><td colspan="4">MD5...: 2d3f70d0287988f4d6129fdc7f242e4d</td></tr><tr><td colspan="4">SHA1..: 432f696fbe754274f3e990679ee3df0094f7d99b</td></tr><tr><td colspan="4">SHA256: c07e15344d652f3f916bfc19bab2f0f1ac637be9420042a49e4295098bf9e10d</td></tr><tr><td colspan="4">SHA512: b4029a4eed744e5500a81e8c628616ce7d9fa8ec5ed1bc101f3579b0e89e4846<BR>7a33b3b102e8c10e44b407d31fabaf92d6af680033922ba790fdf45f2198ede1</td></tr><tr><td colspan="4">PEiD..: -</td></tr><tr><td colspan="4">PEInfo: -</td></tr></table>




    <table border="1"><tr><td colspan="4">Fichier _DE99D7F9-E2CC-49C1-A5CA-B2394525 reçu le 2008.08.18 19:42:46 (CET)</td></tr><tr><td>Antivirus</td><td>Version</td><td>Dernière mise à jour</td><td>Résultat</td</tr><tr><td>AhnLab-V3</td><td>2008.8.19.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>AntiVir</td><td>7.8.1.19</td><td>2008.08.18</td><td>-</td</tr><tr><td>Authentium</td><td>5.1.0.4</td><td>2008.08.18</td><td>-</td</tr><tr><td>Avast</td><td>4.8.1195.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>AVG</td><td>8.0.0.161</td><td>2008.08.18</td><td>-</td</tr><tr><td>BitDefender</td><td>7.2</td><td>2008.08.18</td><td>-</td</tr><tr><td>CAT-QuickHeal</td><td>9.50</td><td>2008.08.18</td><td>-</td</tr><tr><td>ClamAV</td><td>0.93.1</td><td>2008.08.18</td><td>-</td</tr><tr><td>DrWeb</td><td>4.44.0.09170</td><td>2008.08.18</td><td>-</td</tr><tr><td>eSafe</td><td>7.0.17.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>eTrust-Vet</td><td>31.6.6035</td><td>2008.08.15</td><td>-</td</tr><tr><td>Ewido</td><td>4.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>F-Prot</td><td>4.4.4.56</td><td>2008.08.18</td><td>-</td</tr><tr><td>F-Secure</td><td>7.60.13501.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Fortinet</td><td>3.14.0.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>GData</td><td>2.0.7306.1023</td><td>2008.08.18</td><td>-</td</tr><tr><td>Ikarus</td><td>T3.1.1.34.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>K7AntiVirus</td><td>7.10.420</td><td>2008.08.18</td><td>-</td</tr><tr><td>Kaspersky</td><td>7.0.0.125</td><td>2008.08.18</td><td>-</td</tr><tr><td>McAfee</td><td>5363</td><td>2008.08.18</td><td>-</td</tr><tr><td>Microsoft</td><td>1.3807</td><td>2008.08.18</td><td>-</td</tr><tr><td>NOD32v2</td><td>3365</td><td>2008.08.18</td><td>-</td</tr><tr><td>Norman</td><td>5.80.02</td><td>2008.08.18</td><td>-</td</tr><tr><td>Panda</td><td>9.0.0.4</td><td>2008.08.17</td><td>-</td</tr><tr><td>PCTools</td><td>4.4.2.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Prevx1</td><td>V2</td><td>2008.08.18</td><td>-</td</tr><tr><td>Rising</td><td>20.58.02.00</td><td>2008.08.18</td><td>-</td</tr><tr><td>Sophos</td><td>4.32.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Sunbelt</td><td>3.1.1546.1</td><td>2008.08.15</td><td>-</td</tr><tr><td>Symantec</td><td>10</td><td>2008.08.18</td><td>-</td</tr><tr><td>TheHacker</td><td>6.3.0.5.053</td><td>2008.08.18</td><td>-</td</tr><tr><td>TrendMicro</td><td>8.700.0.1004</td><td>2008.08.18</td><td>-</td</tr><tr><td>VBA32</td><td>3.12.8.3</td><td>2008.08.18</td><td>-</td</tr><tr><td>ViRobot</td><td>2008.8.18.1339</td><td>2008.08.18</td><td>-</td</tr><tr><td>VirusBuster</td><td>4.5.11.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Webwasher-Gateway</td><td>6.6.2</td><td>2008.08.18</td><td>-</td</tr><tr><td colspan="4"> </td></tr><tr><td colspan="4">Information additionnelle</td></tr><tr><td colspan="4">File size: 32 bytes</td></tr><tr><td colspan="4">MD5...: 51237fd99725e715eaaf275226e72e45</td></tr><tr><td colspan="4">SHA1..: 8674bc0777ee7a7b46d949a3bd0b2e58bccd78da</td></tr><tr><td colspan="4">SHA256: f32a4ad3a4cfdfaca3bed41573e269c28055a7197a017f6ca27276aa0543af7f</td></tr><tr><td colspan="4">SHA512: 7b4bc4b4414d1c0cd3a9723b98635a5a6743682173b3ab947fdbdf870c519594<BR>0c25887eec6735499bd69d3014b7de4cd990a98913225f610d4ab1df744ae21e</td></tr><tr><td colspan="4">PEiD..: -</td></tr><tr><td colspan="4">PEInfo: -</td></tr></table>





    <table border="1"><tr><td colspan="4">Fichier _2578E081-A08D-4077-9B98-0CE9253B reçu le 2008.08.18 19:45:03 (CET)</td></tr><tr><td>Antivirus</td><td>Version</td><td>Dernière mise à jour</td><td>Résultat</td</tr><tr><td>AhnLab-V3</td><td>2008.8.19.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>AntiVir</td><td>7.8.1.19</td><td>2008.08.18</td><td>-</td</tr><tr><td>Authentium</td><td>5.1.0.4</td><td>2008.08.18</td><td>-</td</tr><tr><td>Avast</td><td>4.8.1195.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>AVG</td><td>8.0.0.161</td><td>2008.08.18</td><td>-</td</tr><tr><td>BitDefender</td><td>7.2</td><td>2008.08.18</td><td>-</td</tr><tr><td>CAT-QuickHeal</td><td>9.50</td><td>2008.08.18</td><td>-</td</tr><tr><td>ClamAV</td><td>0.93.1</td><td>2008.08.18</td><td>-</td</tr><tr><td>DrWeb</td><td>4.44.0.09170</td><td>2008.08.18</td><td>-</td</tr><tr><td>eSafe</td><td>7.0.17.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>eTrust-Vet</td><td>31.6.6035</td><td>2008.08.15</td><td>-</td</tr><tr><td>Ewido</td><td>4.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>F-Prot</td><td>4.4.4.56</td><td>2008.08.18</td><td>-</td</tr><tr><td>F-Secure</td><td>7.60.13501.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Fortinet</td><td>3.14.0.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>GData</td><td>2.0.7306.1023</td><td>2008.08.18</td><td>-</td</tr><tr><td>Ikarus</td><td>T3.1.1.34.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>K7AntiVirus</td><td>7.10.420</td><td>2008.08.18</td><td>-</td</tr><tr><td>Kaspersky</td><td>7.0.0.125</td><td>2008.08.18</td><td>-</td</tr><tr><td>McAfee</td><td>5363</td><td>2008.08.18</td><td>-</td</tr><tr><td>Microsoft</td><td>1.3807</td><td>2008.08.18</td><td>-</td</tr><tr><td>NOD32v2</td><td>3365</td><td>2008.08.18</td><td>-</td</tr><tr><td>Norman</td><td>5.80.02</td><td>2008.08.18</td><td>-</td</tr><tr><td>Panda</td><td>9.0.0.4</td><td>2008.08.17</td><td>-</td</tr><tr><td>PCTools</td><td>4.4.2.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Prevx1</td><td>V2</td><td>2008.08.18</td><td>-</td</tr><tr><td>Rising</td><td>20.58.02.00</td><td>2008.08.18</td><td>-</td</tr><tr><td>Sophos</td><td>4.32.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Sunbelt</td><td>3.1.1546.1</td><td>2008.08.15</td><td>-</td</tr><tr><td>Symantec</td><td>10</td><td>2008.08.18</td><td>-</td</tr><tr><td>TheHacker</td><td>6.3.0.5.053</td><td>2008.08.18</td><td>-</td</tr><tr><td>TrendMicro</td><td>8.700.0.1004</td><td>2008.08.18</td><td>-</td</tr><tr><td>VBA32</td><td>3.12.8.3</td><td>2008.08.18</td><td>-</td</tr><tr><td>ViRobot</td><td>2008.8.18.1339</td><td>2008.08.18</td><td>-</td</tr><tr><td>VirusBuster</td><td>4.5.11.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Webwasher-Gateway</td><td>6.6.2</td><td>2008.08.18</td><td>-</td</tr><tr><td colspan="4"> </td></tr><tr><td colspan="4">Information additionnelle</td></tr><tr><td colspan="4">File size: 32 bytes</td></tr><tr><td colspan="4">MD5...: d13fe30ab9a37d2df4bb7978f483fc56</td></tr><tr><td colspan="4">SHA1..: 652b2a0cf092edc1acb8a9f198ce93cde55eeb3e</td></tr><tr><td colspan="4">SHA256: 80ffaacfdaffac1b82c4f490d7b55065735948054ea7a9f096cf2b038002d48d</td></tr><tr><td colspan="4">SHA512: d77b357e3af93450aa77b838dc2efc3c7dba10dc7513d276c7d03c85380ee190<BR>7740eb2b68bdd86299ace7cd8218630feade103b4b450d447aea46c59d42116c</td></tr><tr><td colspan="4">PEiD..: -</td></tr><tr><td colspan="4">PEInfo: -</td></tr></table>

    Fichier _19CF57F6-64FD-4F5A-81B5-012FC715 reçu le 2008.08.18 20:42:31 (CET)Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.17 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: a6a3aa83f7dc41768388a2da5d79a2fe
    SHA1..: ab905ff810eacbe70bedd6482d6dc281842df178
    SHA256: 03e7cb70603fd4b1dd6398d332e017bbb85eb6297fd9501c8bbe72423dfe255e
    SHA512: 64c2fbea3aac823692afb8c0880c3f3e128b0920a6e9484d6edc356aef49ecec<BR>f779d7368ec34a777e2ddab08a6f267938c5c3f4ef3ff68ac80ddc7687f89c00
    PEiD..: -
    PEInfo: -
    <table border="1"><tr><td colspan="4">Fichier _19CF57F6-64FD-4F5A-81B5-012FC715 reçu le 2008.08.18 20:42:31 (CET)</td></tr><tr><td>Antivirus</td><td>Version</td><td>Dernière mise à jour</td><td>Résultat</td</tr><tr><td>AhnLab-V3</td><td>2008.8.19.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>AntiVir</td><td>7.8.1.19</td><td>2008.08.18</td><td>-</td</tr><tr><td>Authentium</td><td>5.1.0.4</td><td>2008.08.18</td><td>-</td</tr><tr><td>Avast</td><td>4.8.1195.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>AVG</td><td>8.0.0.161</td><td>2008.08.18</td><td>-</td</tr><tr><td>BitDefender</td><td>7.2</td><td>2008.08.18</td><td>-</td</tr><tr><td>CAT-QuickHeal</td><td>9.50</td><td>2008.08.18</td><td>-</td</tr><tr><td>ClamAV</td><td>0.93.1</td><td>2008.08.18</td><td>-</td</tr><tr><td>DrWeb</td><td>4.44.0.09170</td><td>2008.08.18</td><td>-</td</tr><tr><td>eSafe</td><td>7.0.17.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>eTrust-Vet</td><td>31.6.6035</td><td>2008.08.15</td><td>-</td</tr><tr><td>Ewido</td><td>4.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>F-Prot</td><td>4.4.4.56</td><td>2008.08.18</td><td>-</td</tr><tr><td>F-Secure</td><td>7.60.13501.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Fortinet</td><td>3.14.0.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>GData</td><td>2.0.7306.1023</td><td>2008.08.18</td><td>-</td</tr><tr><td>Ikarus</td><td>T3.1.1.34.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>K7AntiVirus</td><td>7.10.420</td><td>2008.08.18</td><td>-</td</tr><tr><td>Kaspersky</td><td>7.0.0.125</td><td>2008.08.18</td><td>-</td</tr><tr><td>McAfee</td><td>5363</td><td>2008.08.18</td><td>-</td</tr><tr><td>Microsoft</td><td>1.3807</td><td>2008.08.18</td><td>-</td</tr><tr><td>NOD32v2</td><td>3365</td><td>2008.08.18</td><td>-</td</tr><tr><td>Norman</td><td>5.80.02</td><td>2008.08.18</td><td>-</td</tr><tr><td>Panda</td><td>9.0.0.4</td><td>2008.08.17</td><td>-</td</tr><tr><td>PCTools</td><td>4.4.2.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Prevx1</td><td>V2</td><td>2008.08.18</td><td>-</td</tr><tr><td>Rising</td><td>20.58.02.00</td><td>2008.08.18</td><td>-</td</tr><tr><td>Sophos</td><td>4.32.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Sunbelt</td><td>3.1.1546.1</td><td>2008.08.15</td><td>-</td</tr><tr><td>Symantec</td><td>10</td><td>2008.08.18</td><td>-</td</tr><tr><td>TheHacker</td><td>6.3.0.5.053</td><td>2008.08.18</td><td>-</td</tr><tr><td>TrendMicro</td><td>8.700.0.1004</td><td>2008.08.18</td><td>-</td</tr><tr><td>VBA32</td><td>3.12.8.3</td><td>2008.08.18</td><td>-</td</tr><tr><td>ViRobot</td><td>2008.8.18.1339</td><td>2008.08.18</td><td>-</td</tr><tr><td>VirusBuster</td><td>4.5.11.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Webwasher-Gateway</td><td>6.6.2</td><td>2008.08.18</td><td>-</td</tr><tr><td colspan="4"> </td></tr><tr><td colspan="4">Information additionnelle</td></tr><tr><td colspan="4">File size: 32 bytes</td></tr><tr><td colspan="4">MD5...: a6a3aa83f7dc41768388a2da5d79a2fe</td></tr><tr><td colspan="4">SHA1..: ab905ff810eacbe70bedd6482d6dc281842df178</td></tr><tr><td colspan="4">SHA256: 03e7cb70603fd4b1dd6398d332e017bbb85eb6297fd9501c8bbe72423dfe255e</td></tr><tr><td colspan="4">SHA512: 64c2fbea3aac823692afb8c0880c3f3e128b0920a6e9484d6edc356aef49ecec<BR>f779d7368ec34a777e2ddab08a6f267938c5c3f4ef3ff68ac80ddc7687f89c00</td></tr><tr><td colspan="4">PEiD..: -</td></tr><tr><td colspan="4">PEInfo: -</td></tr></table>
    Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.17 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: a6a3aa83f7dc41768388a2da5d79a2fe
    SHA1..: ab905ff810eacbe70bedd6482d6dc281842df178
    SHA256: 03e7cb70603fd4b1dd6398d332e017bbb85eb6297fd9501c8bbe72423dfe255e
    SHA512: 64c2fbea3aac823692afb8c0880c3f3e128b0920a6e9484d6edc356aef49ecec<BR>f779d7368ec34a777e2ddab08a6f267938c5c3f4ef3ff68ac80ddc7687f89c00
    PEiD..: -
    PEInfo: -





    Fichier _7D4F91E0-2FCB-47F6-AC37-B2FD6290 reçu le 2008.08.18 20:45:27 (CET)Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.18 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: 2d3f70d0287988f4d6129fdc7f242e4d
    SHA1..: 432f696fbe754274f3e990679ee3df0094f7d99b
    SHA256: c07e15344d652f3f916bfc19bab2f0f1ac637be9420042a49e4295098bf9e10d
    SHA512: b4029a4eed744e5500a81e8c628616ce7d9fa8ec5ed1bc101f3579b0e89e4846<BR>7a33b3b102e8c10e44b407d31fabaf92d6af680033922ba790fdf45f2198ede1
    PEiD..: -
    PEInfo: -

    Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.18 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: 2d3f70d0287988f4d6129fdc7f242e4d
    SHA1..: 432f696fbe754274f3e990679ee3df0094f7d99b
    SHA256: c07e15344d652f3f916bfc19bab2f0f1ac637be9420042a49e4295098bf9e10d
    SHA512: b4029a4eed744e5500a81e8c628616ce7d9fa8ec5ed1bc101f3579b0e89e4846<BR>7a33b3b102e8c10e44b407d31fabaf92d6af680033922ba790fdf45f2198ede1
    PEiD..: -
    PEInfo: -





    Fichier _DE99D7F9-E2CC-49C1-A5CA-B2394525 reçu le 2008.08.18 20:47:38 (CET)Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.18 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: 51237fd99725e715eaaf275226e72e45
    SHA1..: 8674bc0777ee7a7b46d949a3bd0b2e58bccd78da
    SHA256: f32a4ad3a4cfdfaca3bed41573e269c28055a7197a017f6ca27276aa0543af7f
    SHA512: 7b4bc4b4414d1c0cd3a9723b98635a5a6743682173b3ab947fdbdf870c519594<BR>0c25887eec6735499bd69d3014b7de4cd990a98913225f610d4ab1df744ae21e
    PEiD..: -
    PEInfo: -




    Fichier _2578E081-A08D-4077-9B98-0CE9253B reçu le 2008.08.18 20:49:58 (CET)Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.18 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: d13fe30ab9a37d2df4bb7978f483fc56
    SHA1..: 652b2a0cf092edc1acb8a9f198ce93cde55eeb3e
    SHA256: 80ffaacfdaffac1b82c4f490d7b55065735948054ea7a9f096cf2b038002d48d
    SHA512: d77b357e3af93450aa77b838dc2efc3c7dba10dc7513d276c7d03c85380ee190<BR>7740eb2b68bdd86299ace7cd8218630feade103b4b450d447aea46c59d42116c
    PEiD..: -
    PEInfo: -

    Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.18 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: d13fe30ab9a37d2df4bb7978f483fc56
    SHA1..: 652b2a0cf092edc1acb8a9f198ce93cde55eeb3e
    SHA256: 80ffaacfdaffac1b82c4f490d7b55065735948054ea7a9f096cf2b038002d48d
    SHA512: d77b357e3af93450aa77b838dc2efc3c7dba10dc7513d276c7d03c85380ee190<BR>7740eb2b68bdd86299ace7cd8218630feade103b4b450d447aea46c59d42116c
    PEiD..: -
    PEInfo: -






    bien :) 
    Télécharge MalwareByte's Anti-Malware sur ton Bureau.
    Installe-le en double-cliquant sur le fichier Download_mbam-setup.exe.

    Une fois l'installation et la mise à jour effectuées, redémarre en mode sans échec.
    AIDE : Redémarrer en mode sans échec

  • Exécute maintenant MalwareByte's Anti-Malware. Si cela n'est pas déjà fait, sélectionne "Exécuter un examen complet".
  • Afin de lancer la recherche, clic sur"Rechercher".
  • Une fois le scan terminé, une fenêtre s'ouvre, clic sur OK. Deux possibilités s'offrent à toi :
    -- si le programme n'a rien trouvé, appuie sur OK. Un rapport va apparaître, ferme-le.
    -- si des infections sont présentes, clic sur "Afficher les résultats" puis sur "Supprimer la sélection". Enregistre le rapport sur ton Bureau afin de le poster dans ta prochaine réponse.
    [#ff0000]REMARQUE : Si MalwareByte's Anti-Malware a besoin de redémarrer pour terminer la suppression, accepte en cliquant sur Ok.[/#f]

    AIDE : Tuto en images sur MBAM

    Fichier _19CF57F6-64FD-4F5A-81B5-012FC715 reçu le 2008.08.18 20:42:31 (CET)Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.17 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: a6a3aa83f7dc41768388a2da5d79a2fe
    SHA1..: ab905ff810eacbe70bedd6482d6dc281842df178
    SHA256: 03e7cb70603fd4b1dd6398d332e017bbb85eb6297fd9501c8bbe72423dfe255e
    SHA512: 64c2fbea3aac823692afb8c0880c3f3e128b0920a6e9484d6edc356aef49ecec<BR>f779d7368ec34a777e2ddab08a6f267938c5c3f4ef3ff68ac80ddc7687f89c00
    PEiD..: -
    PEInfo: -
    <table border="1"><tr><td colspan="4">Fichier _19CF57F6-64FD-4F5A-81B5-012FC715 reçu le 2008.08.18 20:42:31 (CET)</td></tr><tr><td>Antivirus</td><td>Version</td><td>Dernière mise à jour</td><td>Résultat</td</tr><tr><td>AhnLab-V3</td><td>2008.8.19.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>AntiVir</td><td>7.8.1.19</td><td>2008.08.18</td><td>-</td</tr><tr><td>Authentium</td><td>5.1.0.4</td><td>2008.08.18</td><td>-</td</tr><tr><td>Avast</td><td>4.8.1195.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>AVG</td><td>8.0.0.161</td><td>2008.08.18</td><td>-</td</tr><tr><td>BitDefender</td><td>7.2</td><td>2008.08.18</td><td>-</td</tr><tr><td>CAT-QuickHeal</td><td>9.50</td><td>2008.08.18</td><td>-</td</tr><tr><td>ClamAV</td><td>0.93.1</td><td>2008.08.18</td><td>-</td</tr><tr><td>DrWeb</td><td>4.44.0.09170</td><td>2008.08.18</td><td>-</td</tr><tr><td>eSafe</td><td>7.0.17.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>eTrust-Vet</td><td>31.6.6035</td><td>2008.08.15</td><td>-</td</tr><tr><td>Ewido</td><td>4.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>F-Prot</td><td>4.4.4.56</td><td>2008.08.18</td><td>-</td</tr><tr><td>F-Secure</td><td>7.60.13501.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Fortinet</td><td>3.14.0.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>GData</td><td>2.0.7306.1023</td><td>2008.08.18</td><td>-</td</tr><tr><td>Ikarus</td><td>T3.1.1.34.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>K7AntiVirus</td><td>7.10.420</td><td>2008.08.18</td><td>-</td</tr><tr><td>Kaspersky</td><td>7.0.0.125</td><td>2008.08.18</td><td>-</td</tr><tr><td>McAfee</td><td>5363</td><td>2008.08.18</td><td>-</td</tr><tr><td>Microsoft</td><td>1.3807</td><td>2008.08.18</td><td>-</td</tr><tr><td>NOD32v2</td><td>3365</td><td>2008.08.18</td><td>-</td</tr><tr><td>Norman</td><td>5.80.02</td><td>2008.08.18</td><td>-</td</tr><tr><td>Panda</td><td>9.0.0.4</td><td>2008.08.17</td><td>-</td</tr><tr><td>PCTools</td><td>4.4.2.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Prevx1</td><td>V2</td><td>2008.08.18</td><td>-</td</tr><tr><td>Rising</td><td>20.58.02.00</td><td>2008.08.18</td><td>-</td</tr><tr><td>Sophos</td><td>4.32.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Sunbelt</td><td>3.1.1546.1</td><td>2008.08.15</td><td>-</td</tr><tr><td>Symantec</td><td>10</td><td>2008.08.18</td><td>-</td</tr><tr><td>TheHacker</td><td>6.3.0.5.053</td><td>2008.08.18</td><td>-</td</tr><tr><td>TrendMicro</td><td>8.700.0.1004</td><td>2008.08.18</td><td>-</td</tr><tr><td>VBA32</td><td>3.12.8.3</td><td>2008.08.18</td><td>-</td</tr><tr><td>ViRobot</td><td>2008.8.18.1339</td><td>2008.08.18</td><td>-</td</tr><tr><td>VirusBuster</td><td>4.5.11.0</td><td>2008.08.18</td><td>-</td</tr><tr><td>Webwasher-Gateway</td><td>6.6.2</td><td>2008.08.18</td><td>-</td</tr><tr><td colspan="4"> </td></tr><tr><td colspan="4">Information additionnelle</td></tr><tr><td colspan="4">File size: 32 bytes</td></tr><tr><td colspan="4">MD5...: a6a3aa83f7dc41768388a2da5d79a2fe</td></tr><tr><td colspan="4">SHA1..: ab905ff810eacbe70bedd6482d6dc281842df178</td></tr><tr><td colspan="4">SHA256: 03e7cb70603fd4b1dd6398d332e017bbb85eb6297fd9501c8bbe72423dfe255e</td></tr><tr><td colspan="4">SHA512: 64c2fbea3aac823692afb8c0880c3f3e128b0920a6e9484d6edc356aef49ecec<BR>f779d7368ec34a777e2ddab08a6f267938c5c3f4ef3ff68ac80ddc7687f89c00</td></tr><tr><td colspan="4">PEiD..: -</td></tr><tr><td colspan="4">PEInfo: -</td></tr></table>
    Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.17 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: a6a3aa83f7dc41768388a2da5d79a2fe
    SHA1..: ab905ff810eacbe70bedd6482d6dc281842df178
    SHA256: 03e7cb70603fd4b1dd6398d332e017bbb85eb6297fd9501c8bbe72423dfe255e
    SHA512: 64c2fbea3aac823692afb8c0880c3f3e128b0920a6e9484d6edc356aef49ecec<BR>f779d7368ec34a777e2ddab08a6f267938c5c3f4ef3ff68ac80ddc7687f89c00
    PEiD..: -
    PEInfo: -





    Fichier _7D4F91E0-2FCB-47F6-AC37-B2FD6290 reçu le 2008.08.18 20:45:27 (CET)Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.18 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: 2d3f70d0287988f4d6129fdc7f242e4d
    SHA1..: 432f696fbe754274f3e990679ee3df0094f7d99b
    SHA256: c07e15344d652f3f916bfc19bab2f0f1ac637be9420042a49e4295098bf9e10d
    SHA512: b4029a4eed744e5500a81e8c628616ce7d9fa8ec5ed1bc101f3579b0e89e4846<BR>7a33b3b102e8c10e44b407d31fabaf92d6af680033922ba790fdf45f2198ede1
    PEiD..: -
    PEInfo: -

    Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.18 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: 2d3f70d0287988f4d6129fdc7f242e4d
    SHA1..: 432f696fbe754274f3e990679ee3df0094f7d99b
    SHA256: c07e15344d652f3f916bfc19bab2f0f1ac637be9420042a49e4295098bf9e10d
    SHA512: b4029a4eed744e5500a81e8c628616ce7d9fa8ec5ed1bc101f3579b0e89e4846<BR>7a33b3b102e8c10e44b407d31fabaf92d6af680033922ba790fdf45f2198ede1
    PEiD..: -
    PEInfo: -





    Fichier _DE99D7F9-E2CC-49C1-A5CA-B2394525 reçu le 2008.08.18 20:47:38 (CET)Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.18 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: 51237fd99725e715eaaf275226e72e45
    SHA1..: 8674bc0777ee7a7b46d949a3bd0b2e58bccd78da
    SHA256: f32a4ad3a4cfdfaca3bed41573e269c28055a7197a017f6ca27276aa0543af7f
    SHA512: 7b4bc4b4414d1c0cd3a9723b98635a5a6743682173b3ab947fdbdf870c519594<BR>0c25887eec6735499bd69d3014b7de4cd990a98913225f610d4ab1df744ae21e
    PEiD..: -
    PEInfo: -




    Fichier _2578E081-A08D-4077-9B98-0CE9253B reçu le 2008.08.18 20:49:58 (CET)Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.18 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: d13fe30ab9a37d2df4bb7978f483fc56
    SHA1..: 652b2a0cf092edc1acb8a9f198ce93cde55eeb3e
    SHA256: 80ffaacfdaffac1b82c4f490d7b55065735948054ea7a9f096cf2b038002d48d
    SHA512: d77b357e3af93450aa77b838dc2efc3c7dba10dc7513d276c7d03c85380ee190<BR>7740eb2b68bdd86299ace7cd8218630feade103b4b450d447aea46c59d42116c
    PEiD..: -
    PEInfo: -

    Antivirus Version Dernière mise à jour Résultat
    AhnLab-V3 2008.8.19.0 2008.08.18 -
    AntiVir 7.8.1.19 2008.08.18 -
    Authentium 5.1.0.4 2008.08.18 -
    Avast 4.8.1195.0 2008.08.18 -
    AVG 8.0.0.161 2008.08.18 -
    BitDefender 7.2 2008.08.18 -
    CAT-QuickHeal 9.50 2008.08.18 -
    ClamAV 0.93.1 2008.08.18 -
    DrWeb 4.44.0.09170 2008.08.18 -
    eSafe 7.0.17.0 2008.08.18 -
    eTrust-Vet 31.6.6035 2008.08.15 -
    Ewido 4.0 2008.08.18 -
    F-Prot 4.4.4.56 2008.08.18 -
    F-Secure 7.60.13501.0 2008.08.18 -
    Fortinet 3.14.0.0 2008.08.18 -
    GData 2.0.7306.1023 2008.08.18 -
    Ikarus T3.1.1.34.0 2008.08.18 -
    K7AntiVirus 7.10.420 2008.08.18 -
    Kaspersky 7.0.0.125 2008.08.18 -
    McAfee 5363 2008.08.18 -
    Microsoft 1.3807 2008.08.18 -
    NOD32v2 3365 2008.08.18 -
    Norman 5.80.02 2008.08.18 -
    Panda 9.0.0.4 2008.08.18 -
    PCTools 4.4.2.0 2008.08.18 -
    Prevx1 V2 2008.08.18 -
    Rising 20.58.02.00 2008.08.18 -
    Sophos 4.32.0 2008.08.18 -
    Sunbelt 3.1.1546.1 2008.08.15 -
    Symantec 10 2008.08.18 -
    TheHacker 6.3.0.5.053 2008.08.18 -
    TrendMicro 8.700.0.1004 2008.08.18 -
    VBA32 3.12.8.3 2008.08.18 -
    ViRobot 2008.8.18.1339 2008.08.18 -
    VirusBuster 4.5.11.0 2008.08.18 -
    Webwasher-Gateway 6.6.2 2008.08.18 -

    Information additionnelle
    File size: 32 bytes
    MD5...: d13fe30ab9a37d2df4bb7978f483fc56
    SHA1..: 652b2a0cf092edc1acb8a9f198ce93cde55eeb3e
    SHA256: 80ffaacfdaffac1b82c4f490d7b55065735948054ea7a9f096cf2b038002d48d
    SHA512: d77b357e3af93450aa77b838dc2efc3c7dba10dc7513d276c7d03c85380ee190<BR>7740eb2b68bdd86299ace7cd8218630feade103b4b450d447aea46c59d42116c
    PEiD..: -
    PEInfo: -






    bonsoir

    1

    ~Télécharge CCleaner:

    http://www.filehippo.com/download_ccleaner/

    ~Lors de l'installation décoche: "Ajouter la Barre d'Outils Yahoo! Ccleaner"
    Clique sur le bouton nettoyeur, tu fais " lancer le nettoyage "
    Clique sur le bouton erreurs, tu fais "chercher les erreurs ", puis "réparer les erreurs".
    Tuto de CCleaner: (merci à Malekal) .
    http://www.malekal.com/tutorial_CCleaner.html

    2

    reposte un log hijackthis


    3

    ~Fais une analyse antivirus en ligne sur le site de Kaspersky
    http://www.kaspersky.com/kos/eng/partner/default/kavweb...

    * Clique sur Accept
    * Une barre jaune va te demander si tu acceptes d'installer le Kavwebscan_Unicode.cab, installe l'Active X.
    * clique une nouvelle fois sur "Accept"
    * Les bases de mises à jour vont s'installer, patiente un moment
    * Clique sur Next.
    * Clique sur My Computer, le scan se met en route; attends la fin du scan sans fermer la fenêtre sinon il s'arrêtera.

    Bonsoir Sham,
    voilà le rapport,j'ai fait aussi ccleaner en suivant tes instructions ,mais le hic c'est kaspersky il y a un mesage rouge et je ne peux faire acept même en décochant auto protect de norton,que dois je faire , merci

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 19:19:29, on 19/08/2008
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16705)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Apps\ActivBoard\nhksrv.exe
    C:\Program Files\Microsoft LifeCam\MSCamS32.exe
    C:\Program Files\Norton\navapsvc.exe
    C:\Program Files\Norton\IWP\NPFMntor.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\WINDOWS\system32\slserv.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
    C:\Apps\ActivBoard\MMKeybd.exe
    C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe
    C:\Apps\ActivBoard\TrayMon.exe
    C:\Apps\ActivBoard\OSD.exe
    C:\WINDOWS\vVX1000.exe
    C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Windows Live\Messenger\usnsvc.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
    O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton\NavShExt.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton\NavShExt.dll
    O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\MOUSEW~1\SYSTEM\EM_EXEC.EXE
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
    O4 - HKLM\..\Run: [ACTIVBOARD] C:\Apps\ActivBoard\MMKeybd.exe
    O4 - HKLM\..\Run: [VCSPlayer] "C:\Program Files\Virtual CD v4 SDK\system\vcsplay.exe"
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [VX1000] C:\WINDOWS\vVX1000.exe
    O4 - HKLM\..\Run: [LifeCam] "C:\Program Files\Microsoft LifeCam\LifeExp.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Global Startup: PalTalk.lnk = C:\Program Files\Paltalk Messenger\paltalk.exe
    O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton\navapsvc.exe
    O23 - Service: Netropa NHK Server (nhksrv) - Unknown owner - C:\Apps\ActivBoard\nhksrv.exe
    O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton\IWP\NPFMntor.exe
    O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\FICHIE~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: Virtual CD v4 Security service (SDK - Version) (VCSSecS) - H+H Software GmbH - C:\Program Files\Virtual CD v4 SDK\system\vcssecs.exe
    O24 - Desktop Component 0: My Current Home Page - http://pi.sysness.com/images/screenshots/minipenguscree...

    --
    End of file - 9199 bytes

    BonjourSham,
    Après bien des difficultés ça y est j'y suis arrivé,donc tout va bien au niveau kaspersky qui n'a rien trouvé.Est il possible que le démarrage lent soit lié à spybot et paltak,qui se retrouve dans ma barre de tache et qui s'installent donc ?et aussi ça me marque que windows installe norton, il est marquué norton does not support the failure uniinstall et réinstall?j'attends ta réponse .Je suis absente quelques jours ,je te recontacte à mon retour.en attendant ,je te remercie beaucoup et merci au forum d'exister

    bonsoir

    Citation :
    et aussi ça me marque que windows installe norton, il est marquué norton does not support the failure uniinstall et réinstall?

    je ne comprends pas. Tu devrais désinstaller et réinstaller proprement norton:désinstaller -antivirus

    pour la lenteur au démarrage, reposte un log hijackthis, je te ferai fixer ce qui n'est pas nécessaire au démarrage.
    Lassé par la pub ? Créez un compte
    Tom's guide dans le monde