Fenetre intempestive ( qui font beaucoup de bruit ) - Sécurité - Virus
TomsGuide.com : 700 000 inscrits répondent à toutes vos questions high-tech et informatique.
Pour obtenir de l'aide, inscrivez-vous gratuitement !
 




Mot :   Pseudo :  
 
Bas de page
Auteur
 Sujet : Fenetre intempestive ( qui font beaucoup de bruit )
 
Profil : IDNaute
Plus d'informations

Bonjour au fofo, j'ai un problème avec des fenêtres intempestives, c'est insuportable, elles me laissent rien faire sa en devient désespérant... svp j'ai vraiment besoin d'aide de votre part... merci

Voila le rapport HJT :
Logfile of HijackThis v1.99.1
Scan saved at 12:51:29, on 04/09/2008
Platform: Unknown Windows (WinNT 6.00.1905 SP1)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Boonty\BoontyBox\BoontyBox.exe
C:\Windows\ehome\ehmsas.exe
C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\OrangeHSS\systray\systrayapp.exe
C:\Program Files\OrangeHSS\connectivity\connectivitymanager.exe
C:\Program Files\OrangeHSS\connectivity\CoreCom\CoreCom.exe
C:\Program Files\OrangeHSS\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\Program Files\Last.fm\LastFM.exe
C:\Program Files\Ares\Ares.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\iTunes\iTunes.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceHelper.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\distnoted.exe
C:\Program Files\Internet Explorer\IEUser.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Windows\system32\Macromed\Flash\FlashUtil9e.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\Users\Leïla\Scanner.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.fr/0SEFRFR/SAOS02
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://format.packardbell.com/cgi- [...] ey=IESTART
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\OrangeHSS\SearchURLHook\SearchPageURL.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Easy Gif Animator Toolbar Helper - {96372AB6-15EB-4316-B497-71C741BC548C} - C:\Program Files\Easy Gif Animator Extension\v3.3.0.0\EasyGifAnimator_Toolbar.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Barre d'outils MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar\01.01.2607.0\fr\msntb.dll
O3 - Toolbar: Easy Gif Animator Toolbar - {35065594-9169-4A34-B167-FC4865038E53} - C:\Program Files\Easy Gif Animator Extension\v3.3.0.0\EasyGifAnimator_Toolbar.dll
O3 - Toolbar: (no name) - {D0943516-5076-4020-A3B5-AEFAF26AB263} - (no file)
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [Up Pile] "C:\ProgramData\okay settings settings.16m4fh"
O4 - HKCU\..\Run: [hold data mags move] "C:\ProgramData\Corn iso city.8cmuq"
O4 - Startup: BoontyBox 01net.lnk = C:\Program Files\Boonty\BoontyBox\BoontyBox.exe
O4 - Startup: MaxTV.lnk = C:\Program Files\DMV\MaxTV\MaxTV.exe
O4 - Global Startup: OFFICE One Startup v7.lnk = ?
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe (file missing)
O9 - Extra 'Tools' menuitem: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: PacificPoker4 - {94EDF7B4-4272-4af3-8F8B-4E2F68E225B7} - C:\PROGRA~1\PACIFI~2\pacificpoker.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nlaapi.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\napinsp.dll
O11 - Options group: [INTERNATIONAL] International*
O13 - Gopher Prefix:
O16 - DPF: {029FDBA6-3547-11D7-AA4C-0050BF051A00} (Rawflow ICD Client) - http://s.tf1.fr/mmdia/static/rawfl [...] awflow.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mi [...] 6441554618
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll
O18 - Filter hijack: text/xml - {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~2\GOEC62~1.DLL
O20 - Winlogon Notify: igfxcui - C:\Windows\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: klogon - C:\Windows\system32\klogon.dll
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
O23 - Service: @%SystemRoot%\ehome\ehstart.dll,-101 (ehstart) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\COMMON~1\France Telecom\Shared Modules\FTRTSVC\1\FTRTSVC.exe
O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktopManager.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\qwave.dll,-1 (QWAVE) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: @%SystemRoot%\system32\seclogon.dll,-7001 (seclogon) - Unknown owner - %windir%\system32\svchost.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: Syntek AVStream USB2.0 WebCam Service (StkSSrv) - Syntek America Inc. - C:\Windows\System32\StkCSrv.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: @%ProgramFiles%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - %ProgramFiles%\Windows Media Player\wmpnetwk.exe (file missing)

Liens sponsorisés


Inscrivez-vous ou connectez-vous pour masquer ceci.

Profil : Helper
Plus d'informations

Bonjour,

Télécharge Lop S&D.exe (Eric_71) sur ton Bureau.

  • Lance l'installation du programme en exécutant le fichier téléchargé.
  • Double-clique maintenant sur le raccourci de LopS&D.
  • Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
  • Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
  • Poste le rapport généré (C:\lopR.txt*)


(Si le Bureau ne réapparait pas presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide)
* le nom de la partition peut changer


---------------
Prévention & Protection||Vous m'aimez ? Cliquez :o
Profil : IDNaute
Plus d'informations

Merci AngelDark pour ton aide..

Voila le rapport :
--------------------\\ Lop S&D 4.2.4-0 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM) Duo CPU T2350 @ 1.86GHz )
BIOS : Default System BIOS
USER : Leïla ( Administrator )
BOOT : Normal boot

"C:\Lop SD" ( MAJ : 04-09-2008|09:55 )
Option : [1] ( 04/09/2008|18:37 )

[ UAC => 1 ]

--------------------\\ Listing des dossiers dans Local

[31/08/2007|20:19] C:\Users\LELA~1\AppData\Local\{167B9073-5929-4AAD-AE87-68A9BEB3D796}
[06/10/2007|10:55] C:\Users\LELA~1\AppData\Local\{300ED5A9-6225-4D09-9CE6-35CFF0DFE09F}
[10/08/2007|22:51] C:\Users\LELA~1\AppData\Local\Adobe
[14/05/2007|18:30] C:\Users\LELA~1\AppData\Local\AOL
[01/11/2007|18:09] C:\Users\LELA~1\AppData\Local\Apple
[25/03/2008|14:33] C:\Users\LELA~1\AppData\Local\Apple Computer
[14/05/2007|18:19] C:\Users\LELA~1\AppData\Local\Application Data
[24/01/2008|20:56] C:\Users\LELA~1\AppData\Local\ApplicationHistory
[31/07/2008|19:56] C:\Users\LELA~1\AppData\Local\Ares
[07/06/2008|18:31] C:\Users\LELA~1\AppData\Local\BVRP Software
[24/07/2007|20:55] C:\Users\LELA~1\AppData\Local\CrossRider
[22/06/2008|16:14] C:\Users\LELA~1\AppData\Local\d3d9caps.dat
[02/09/2008|19:42] C:\Users\LELA~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[09/12/2007|01:34] C:\Users\LELA~1\AppData\Local\fusioncache.dat
[26/03/2008|21:52] C:\Users\LELA~1\AppData\Local\GDIPFONTCACHEV1.DAT
[14/05/2007|20:20] C:\Users\LELA~1\AppData\Local\Google
[14/05/2007|18:19] C:\Users\LELA~1\AppData\Local\Historique
[04/09/2008|13:24] C:\Users\LELA~1\AppData\Local\IconCache.db
[04/09/2008|18:37] C:\Users\LELA~1\AppData\Local\Last.fm
[20/07/2008|00:41] C:\Users\LELA~1\AppData\Local\Microsoft
[13/07/2008|14:28] C:\Users\LELA~1\AppData\Local\Microsoft Games
[06/06/2007|19:00] C:\Users\LELA~1\AppData\Local\Microsoft Help
[14/07/2007|14:15] C:\Users\LELA~1\AppData\Local\Mozilla
[04/09/2008|18:37] C:\Users\LELA~1\AppData\Local\oeguieg.dat
[12/08/2008|10:30] C:\Users\LELA~1\AppData\Local\oeguieg.exe
[28/08/2008|22:43] C:\Users\LELA~1\AppData\Local\oeguieg_nav.dat
[21/06/2008|15:59] C:\Users\LELA~1\AppData\Local\oeguieg_navps.dat
[07/01/2008|00:46] C:\Users\LELA~1\AppData\Local\Packard Bell
[26/02/2008|20:20] C:\Users\LELA~1\AppData\Local\Pando
[29/06/2007|21:47] C:\Users\LELA~1\AppData\Local\ratDVD
[04/09/2008|18:36] C:\Users\LELA~1\AppData\Local\Temp
[14/05/2007|18:19] C:\Users\LELA~1\AppData\Local\Temporary Internet Files
[21/05/2007|13:30] C:\Users\LELA~1\AppData\Local\VirtualStore
[29/06/2008|09:54] C:\Users\LELA~1\AppData\Local\V-Safe 100
[03/12/2007|23:12] C:\Users\LELA~1\AppData\Local\WinAVI

--------------------\\ Tâches planifiées dans C:\Windows\tasks

[29/08/2008 20:00][--a------] C:\Windows\tasks\Norton Internet Security - Analyse systŠme complŠte - Le‹la.job
[04/09/2008 18:30][--a------] C:\Windows\tasks\Extension de garantie.job
[04/09/2008 17:54][--ah-----] C:\Windows\tasks\SA.DAT
[04/09/2008 13:25][--a------] C:\Windows\tasks\SCHEDLGU.TXT

--------------------\\ Listing des dossiers dans C:\ProgramData

[12/03/2008|11:50] C:\ProgramData\Adobe
[20/05/2007|10:09] C:\ProgramData\AOL
[05/07/2007|23:35] C:\ProgramData\Apple
[01/11/2007|18:19] C:\ProgramData\Apple Computer
[02/11/2006|15:02] C:\ProgramData\Application Data
[04/09/2008|13:18] C:\ProgramData\Avira
[02/09/2008|18:20] C:\ProgramData\Bash Dvd Hold Data
[24/07/2007|20:37] C:\ProgramData\BOONTY
[14/05/2007|18:18] C:\ProgramData\Bureau
[07/06/2008|18:58] C:\ProgramData\BVRP Software
[11/03/2007|03:42] C:\ProgramData\Ciel
[02/09/2008|18:20] C:\ProgramData\Corn iso city.8cmuq
[02/11/2006|15:02] C:\ProgramData\Desktop
[02/11/2006|15:02] C:\ProgramData\Documents
[01/07/2007|20:14] C:\ProgramData\DVD Shrink
[04/09/2008|13:52] C:\ProgramData\eggshidebind
[14/05/2007|18:18] C:\ProgramData\Favoris
[02/11/2006|15:02] C:\ProgramData\Favorites
[11/03/2007|03:34] C:\ProgramData\Google
[30/08/2007|19:31] C:\ProgramData\Kaspersky Lab
[27/03/2008|14:47] C:\ProgramData\Last.fm
[14/05/2007|18:18] C:\ProgramData\Menu D‚marrer
[02/09/2008|18:32] C:\ProgramData\Messenger Plus!
[26/03/2008|21:22] C:\ProgramData\Microsoft
[14/08/2008|10:17] C:\ProgramData\Microsoft Help
[14/05/2007|18:18] C:\ProgramData\ModÅ les
[14/07/2007|14:15] C:\ProgramData\Mozilla
[11/03/2007|03:50] C:\ProgramData\OFFICE One v7
[02/09/2008|18:20] C:\ProgramData\okay settings settings.16m4fh
[02/09/2008|18:20] C:\ProgramData\okay settings settings.sf1v22
[22/01/2008|19:46] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|15:02] C:\ProgramData\Start Menu
[24/03/2008|11:32] C:\ProgramData\TEMP
[02/11/2006|15:02] C:\ProgramData\Templates
[11/03/2007|03:32] C:\ProgramData\Viewpoint
[06/07/2007|13:00] C:\ProgramData\WindowsLiveInstaller
[25/08/2007|15:51] C:\ProgramData\WinZip
[26/02/2008|22:45] C:\ProgramData\WLInstaller

--------------------\\ Listing des dossiers dans C:\Program Files

[13/07/2008|10:44] C:\Program Files\Adobe
[08/02/2008|01:01] C:\Program Files\Alcohol Soft
[26/02/2008|19:44] C:\Program Files\Alwil Software
[11/03/2007|03:25] C:\Program Files\Analog Devices
[20/05/2007|10:09] C:\Program Files\AOL
[01/06/2007|16:57] C:\Program Files\AOL 9.0 VR
[02/09/2008|12:07] C:\Program Files\Apple Software Update
[15/05/2007|00:09] C:\Program Files\Ares
[11/03/2007|03:24] C:\Program Files\ATK Hotkey
[07/06/2008|18:34] C:\Program Files\Avanquest update
[04/09/2008|13:18] C:\Program Files\Avira
[04/12/2007|01:04] C:\Program Files\AviSynth 2.5
[05/09/2007|12:56] C:\Program Files\BitTorrent
[24/07/2007|19:55] C:\Program Files\Boonty
[25/08/2007|14:16] C:\Program Files\BoontyGames
[11/03/2007|03:41] C:\Program Files\Ciel
[02/09/2008|18:19] C:\Program Files\Circle Developement
[07/06/2008|18:08] C:\Program Files\Common Files
[24/09/2007|23:00] C:\Program Files\Convertor
[28/07/2008|23:12] C:\Program Files\DivX
[06/10/2007|16:07] C:\Program Files\EA GAMES
[19/09/2007|18:21] C:\Program Files\e-anim701
[02/03/2008|17:55] C:\Program Files\Easy GIF Animator
[02/03/2008|17:56] C:\Program Files\Easy Gif Animator Extension
[24/03/2008|01:14] C:\Program Files\EoRezo
[06/06/2007|21:51] C:\Program Files\epson
[25/06/2007|22:20] C:\Program Files\eRightSoft
[05/05/2008|11:29] C:\Program Files\Everstrike Software
[14/05/2007|18:18] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[15/05/2007|22:50] C:\Program Files\FLVPlayer
[05/05/2008|11:30] C:\Program Files\Folder Lock
[24/03/2008|11:08] C:\Program Files\free-downloads.net
[17/10/2007|18:49] C:\Program Files\Gabest
[25/08/2007|15:45] C:\Program Files\GIMP-2.0
[14/05/2007|21:52] C:\Program Files\Google
[11/03/2007|03:30] C:\Program Files\HDReg
[07/06/2008|18:16] C:\Program Files\InstallShield Installation Information
[11/03/2007|03:22] C:\Program Files\Intel
[30/08/2008|12:15] C:\Program Files\Internet Explorer
[14/05/2007|19:37] C:\Program Files\Inventel
[05/04/2008|00:26] C:\Program Files\iPod
[11/03/2007|03:47] C:\Program Files\ISSENDIS
[05/04/2008|00:26] C:\Program Files\iTunes
[09/12/2007|01:31] C:\Program Files\iTunes Art Importer
[21/12/2007|10:39] C:\Program Files\Java
[25/08/2007|14:44] C:\Program Files\Kaspersky Lab
[16/05/2007|23:01] C:\Program Files\K-Lite Codec Pack
[07/06/2008|12:00] C:\Program Files\Last.fm
[21/09/2007|00:57] C:\Program Files\Macromedia
[26/03/2008|20:35] C:\Program Files\MagicISO
[16/07/2007|18:46] C:\Program Files\Megaupload
[02/09/2008|18:19] C:\Program Files\Messenger Plus! Live
[02/11/2006|14:37] C:\Program Files\Microsoft Games
[26/03/2008|21:24] C:\Program Files\Microsoft Office
[07/10/2007|18:54] C:\Program Files\Microsoft Small Business
[21/09/2007|03:15] C:\Program Files\Microsoft SQL Server
[09/12/2007|20:44] C:\Program Files\Microsoft SQL Server Compact Edition
[26/03/2008|21:24] C:\Program Files\Microsoft Visual Studio
[26/03/2008|21:17] C:\Program Files\Microsoft Visual Studio 8
[26/03/2008|21:25] C:\Program Files\Microsoft Works
[07/10/2007|18:58] C:\Program Files\Microsoft.NET
[07/06/2008|18:57] C:\Program Files\Motorola Phone Tools
[30/08/2008|12:15] C:\Program Files\Movie Maker
[03/09/2008|19:38] C:\Program Files\Mozilla Firefox
[26/03/2008|21:25] C:\Program Files\MSBuild
[26/02/2008|22:38] C:\Program Files\MSN Toolbar
[14/05/2007|19:59] C:\Program Files\MSXML 4.0
[26/12/2007|01:22] C:\Program Files\Odebit Multim‚dia
[11/03/2007|03:51] C:\Program Files\OFFICE ONE 7.0
[11/03/2007|03:50] C:\Program Files\OFFICE One v7
[18/09/2007|16:08] C:\Program Files\OrangeHSS
[25/08/2007|15:38] C:\Program Files\PacificPoker
[14/04/2008|19:09] C:\Program Files\PacificPoker4
[11/03/2007|03:52] C:\Program Files\Packard Bell
[23/09/2007|22:36] C:\Program Files\PhotoFiltre
[05/04/2008|00:22] C:\Program Files\QuickTime
[11/03/2007|03:28] C:\Program Files\Realtek
[04/12/2007|01:04] C:\Program Files\Red Kawa
[02/11/2006|14:37] C:\Program Files\Reference Assemblies
[25/03/2008|13:20] C:\Program Files\Safari
[09/08/2007|19:00] C:\Program Files\Samsung
[24/07/2007|19:50] C:\Program Files\Scorched3D
[14/05/2007|19:38] C:\Program Files\Securitoo
[26/03/2008|14:05] C:\Program Files\Serif
[22/01/2008|20:35] C:\Program Files\Spybot - Search & Destroy
[24/03/2008|11:35] C:\Program Files\Spyware Doctor
[11/03/2007|03:27] C:\Program Files\Synaptics
[02/11/2006|15:01] C:\Program Files\Uninstall Information
[17/01/2008|13:01] C:\Program Files\URUSoft
[10/01/2008|15:11] C:\Program Files\uTorrent
[10/12/2007|13:10] C:\Program Files\VideoLAN
[11/03/2007|03:32] C:\Program Files\Viewpoint
[14/05/2007|20:31] C:\Program Files\Wanadoo
[30/08/2008|12:15] C:\Program Files\Windows Calendar
[30/08/2008|12:15] C:\Program Files\Windows Collaboration
[30/08/2008|12:15] C:\Program Files\Windows Defender
[30/08/2008|12:15] C:\Program Files\Windows Journal
[28/02/2008|10:15] C:\Program Files\Windows Live
[30/08/2008|12:15] C:\Program Files\Windows Mail
[30/08/2008|12:15] C:\Program Files\Windows Media Player
[14/05/2007|18:18] C:\Program Files\Windows NT
[30/08/2008|12:15] C:\Program Files\Windows Photo Gallery
[30/08/2008|12:15] C:\Program Files\Windows Sidebar
[19/01/2008|14:30] C:\Program Files\WinImage
[04/09/2007|20:18] C:\Program Files\WinRAR
[05/12/2007|12:49] C:\Program Files\WinSCP

--------------------\\ Listing des dossiers dans C:\Program Files\Common Files

[12/03/2008|11:51] C:\Program Files\Common Files\Adobe
[01/06/2007|16:53] C:\Program Files\Common Files\aol
[11/03/2007|03:33] C:\Program Files\Common Files\aolshare
[05/07/2007|23:35] C:\Program Files\Common Files\Apple
[24/07/2007|20:37] C:\Program Files\Common Files\BOONTY Shared
[11/03/2007|03:41] C:\Program Files\Common Files\Ciel
[26/03/2008|21:24] C:\Program Files\Common Files\DESIGNER
[05/05/2008|11:20] C:\Program Files\Common Files\Everstrike Software
[15/05/2007|16:33] C:\Program Files\Common Files\France Telecom
[14/08/2007|15:52] C:\Program Files\Common Files\GTK
[21/09/2007|01:57] C:\Program Files\Common Files\InstallShield
[27/05/2007|23:05] C:\Program Files\Common Files\Java
[11/08/2008|12:25] C:\Program Files\Common Files\microsoft shared
[07/06/2008|18:08] C:\Program Files\Common Files\Motorola Shared
[11/03/2007|03:41] C:\Program Files\Common Files\MSSoap
[11/03/2007|03:33] C:\Program Files\Common Files\Nullsoft
[28/07/2008|23:12] C:\Program Files\Common Files\PX Storage Engine
[02/11/2006|13:18] C:\Program Files\Common Files\Services
[02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines
[30/08/2007|20:00] C:\Program Files\Common Files\Symantec Shared
[30/08/2008|12:15] C:\Program Files\Common Files\System
[09/12/2007|19:31] C:\Program Files\Common Files\WindowsLiveInstaller

--------------------\\ Process

( 71 Processes )

iexplore.exe ~ [PID:2156]
IEXPLORE.EXE ~ [PID:4888]
IEXPLORE.EXE ~ [PID:4356]

--------------------\\ Recherche avec S_Lop

C:\ProgramData\Corn iso city.8cmuq
C:\ProgramData\okay settings settings.16m4fh
C:\ProgramData\okay settings settings.sf1v22

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\ProgramData\Bash Dvd Hold Data
C:\ProgramData\Bash Dvd Hold Data\pure web.exe
C:\Program Files\Circle Developement
C:\Program Files\Circle Developement\Uninstall.exe
C:\Users\LELA~1\AppData\Roaming\MICROS~1\Windows\Cookies\leila@advertstream[1].txt
C:\Users\LELA~1\AppData\Roaming\MICROS~1\Windows\Cookies\leila@advertising[2].txt
C:\Users\LELA~1\AppData\Roaming\MICROS~1\Windows\Cookies\leila@adopt.euroclick[1].txt
C:\Users\LELA~1\AppData\Roaming\MICROS~1\Windows\Cookies\leila@pacificpoker[1].txt

--------------------\\ Verification du Registre

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"hold data mags move"="\"C:\\ProgramData\\Corn iso city.8cmuq\""
"Up Pile"="\"C:\\ProgramData\\okay settings settings.16m4fh\""

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-04 18:38:03
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
C:\Users\LELA~1\AppData\Local\Microsoft\Windows\GameExplorer\{DFEF49D9-FC95-4301-99B9-2FB91C6ABA06}\PlayTasks\1\Les Simsâ„¢ 2 : Boit@Look.lnk 1242 bytes hidden from API
scan completed successfully
hidden processes: 0
hidden files: 19

--------------------\\ Recherche d'autres infections

C:\Users\LELA~1\AppData\Local\Temp\Pack.epk

C:\Users\LELA~1\AppData\Local\oeguieg.dat
C:\Users\LELA~1\AppData\Local\oeguieg.exe
C:\Users\LELA~1\AppData\Local\oeguieg_nav.dat
C:\Users\LELA~1\AppData\Local\oeguieg_navps.dat
==> EGDACCESS <==



[F:4086][D:325]-> C:\Users\LELA~1\AppData\Local\Temp
[F:676][D:1]-> C:\Users\LELA~1\AppData\Roaming\MICROS~1\Windows\Cookies
[F:2561][D:19]-> C:\Users\LELA~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:5][D:4]-> C:\$Recycle.Bin

1 - "C:\Lop SD\LopR_1.txt" - 04/09/2008|18:42 - Option : [1]

--------------------\\ Fin du rapport a 18:42:35
[ UAC => 1 ]

Profil : Helper
Plus d'informations

Re,

Relance Toolbar-S&D en double-cliquant sur le raccourci. Tape sur "2" puis valide en appuyant sur "Entrée".
! Ne ferme pas la fenêtre lors de la suppression !
Un rapport sera généré, poste son contenu ici.


---------------
Prévention & Protection||Vous m'aimez ? Cliquez :o
Profil : IDNaute
Plus d'informations

re,

voilà :

--------------------\\ Lop S&D 4.2.4-0 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM) Duo CPU T2350 @ 1.86GHz )
BIOS : Default System BIOS
USER : Leïla ( Administrator )
BOOT : Normal boot

"C:\Lop SD" ( MAJ : 04-09-2008|09:55 )
Option : [2] ( 04/09/2008|19:12 )

[ UAC => 1 ]


\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION

Supprime! - C:\ProgramData\Bash Dvd Hold Data\pure web.exe
Supprime! - C:\Program Files\Circle Developement\Uninstall.exe
Supprime! - C:\ProgramData\Corn iso city.8cmuq
Supprime! - C:\ProgramData\okay settings settings.16m4fh
Supprime! - C:\ProgramData\okay settings settings.sf1v22
Supprime! - C:\ProgramData\Bash Dvd Hold Data
Supprime! - C:\Program Files\Circle Developement
-
[ Fichier Hosts ] .. Restaure!

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\

Supprime! - C:\Program Files\Viewpoint
Supprime! - C:\PROGRA~2\Viewpoint

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


--------------------\\ Listing des dossiers dans Local

[31/08/2007|20:19] C:\Users\LELA~1\AppData\Local\{167B9073-5929-4AAD-AE87-68A9BEB3D796}
[06/10/2007|10:55] C:\Users\LELA~1\AppData\Local\{300ED5A9-6225-4D09-9CE6-35CFF0DFE09F}
[10/08/2007|22:51] C:\Users\LELA~1\AppData\Local\Adobe
[14/05/2007|18:30] C:\Users\LELA~1\AppData\Local\AOL
[01/11/2007|18:09] C:\Users\LELA~1\AppData\Local\Apple
[25/03/2008|14:33] C:\Users\LELA~1\AppData\Local\Apple Computer
[14/05/2007|18:19] C:\Users\LELA~1\AppData\Local\Application Data
[24/01/2008|20:56] C:\Users\LELA~1\AppData\Local\ApplicationHistory
[31/07/2008|19:56] C:\Users\LELA~1\AppData\Local\Ares
[07/06/2008|18:31] C:\Users\LELA~1\AppData\Local\BVRP Software
[24/07/2007|20:55] C:\Users\LELA~1\AppData\Local\CrossRider
[22/06/2008|16:14] C:\Users\LELA~1\AppData\Local\d3d9caps.dat
[02/09/2008|19:42] C:\Users\LELA~1\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[09/12/2007|01:34] C:\Users\LELA~1\AppData\Local\fusioncache.dat
[26/03/2008|21:52] C:\Users\LELA~1\AppData\Local\GDIPFONTCACHEV1.DAT
[14/05/2007|20:20] C:\Users\LELA~1\AppData\Local\Google
[14/05/2007|18:19] C:\Users\LELA~1\AppData\Local\Historique
[04/09/2008|13:24] C:\Users\LELA~1\AppData\Local\IconCache.db
[04/09/2008|18:37] C:\Users\LELA~1\AppData\Local\Last.fm
[20/07/2008|00:41] C:\Users\LELA~1\AppData\Local\Microsoft
[13/07/2008|14:28] C:\Users\LELA~1\AppData\Local\Microsoft Games
[06/06/2007|19:00] C:\Users\LELA~1\AppData\Local\Microsoft Help
[14/07/2007|14:15] C:\Users\LELA~1\AppData\Local\Mozilla
[04/09/2008|19:11] C:\Users\LELA~1\AppData\Local\oeguieg.dat
[12/08/2008|10:30] C:\Users\LELA~1\AppData\Local\oeguieg.exe
[28/08/2008|22:43] C:\Users\LELA~1\AppData\Local\oeguieg_nav.dat
[21/06/2008|15:59] C:\Users\LELA~1\AppData\Local\oeguieg_navps.dat
[07/01/2008|00:46] C:\Users\LELA~1\AppData\Local\Packard Bell
[26/02/2008|20:20] C:\Users\LELA~1\AppData\Local\Pando
[29/06/2007|21:47] C:\Users\LELA~1\AppData\Local\ratDVD
[04/09/2008|19:12] C:\Users\LELA~1\AppData\Local\Temp
[14/05/2007|18:19] C:\Users\LELA~1\AppData\Local\Temporary Internet Files
[21/05/2007|13:30] C:\Users\LELA~1\AppData\Local\VirtualStore
[29/06/2008|09:54] C:\Users\LELA~1\AppData\Local\V-Safe 100
[03/12/2007|23:12] C:\Users\LELA~1\AppData\Local\WinAVI

--------------------\\ Tâches planifiées dans C:\Windows\tasks

[29/08/2008 20:00][--a------] C:\Windows\tasks\Norton Internet Security - Analyse systŠme complŠte - Le‹la.job
[04/09/2008 19:00][--a------] C:\Windows\tasks\Extension de garantie.job
[04/09/2008 17:54][--ah-----] C:\Windows\tasks\SA.DAT
[04/09/2008 13:25][--a------] C:\Windows\tasks\SCHEDLGU.TXT

--------------------\\ Listing des dossiers dans C:\ProgramData

[12/03/2008|11:50] C:\ProgramData\Adobe
[20/05/2007|10:09] C:\ProgramData\AOL
[05/07/2007|23:35] C:\ProgramData\Apple
[01/11/2007|18:19] C:\ProgramData\Apple Computer
[02/11/2006|15:02] C:\ProgramData\Application Data
[04/09/2008|13:18] C:\ProgramData\Avira
[24/07/2007|20:37] C:\ProgramData\BOONTY
[14/05/2007|18:18] C:\ProgramData\Bureau
[07/06/2008|18:58] C:\ProgramData\BVRP Software
[11/03/2007|03:42] C:\ProgramData\Ciel
[02/11/2006|15:02] C:\ProgramData\Desktop
[02/11/2006|15:02] C:\ProgramData\Documents
[01/07/2007|20:14] C:\ProgramData\DVD Shrink
[04/09/2008|13:52] C:\ProgramData\eggshidebind
[14/05/2007|18:18] C:\ProgramData\Favoris
[02/11/2006|15:02] C:\ProgramData\Favorites
[11/03/2007|03:34] C:\ProgramData\Google
[30/08/2007|19:31] C:\ProgramData\Kaspersky Lab
[27/03/2008|14:47] C:\ProgramData\Last.fm
[14/05/2007|18:18] C:\ProgramData\Menu D‚marrer
[02/09/2008|18:32] C:\ProgramData\Messenger Plus!
[26/03/2008|21:22] C:\ProgramData\Microsoft
[14/08/2008|10:17] C:\ProgramData\Microsoft Help
[14/05/2007|18:18] C:\ProgramData\ModÅ les
[14/07/2007|14:15] C:\ProgramData\Mozilla
[11/03/2007|03:50] C:\ProgramData\OFFICE One v7
[22/01/2008|19:46] C:\ProgramData\Spybot - Search & Destroy
[02/11/2006|15:02] C:\ProgramData\Start Menu
[24/03/2008|11:32] C:\ProgramData\TEMP
[02/11/2006|15:02] C:\ProgramData\Templates
[06/07/2007|13:00] C:\ProgramData\WindowsLiveInstaller
[25/08/2007|15:51] C:\ProgramData\WinZip
[26/02/2008|22:45] C:\ProgramData\WLInstaller

--------------------\\ Listing des dossiers dans C:\Program Files

[13/07/2008|10:44] C:\Program Files\Adobe
[08/02/2008|01:01] C:\Program Files\Alcohol Soft
[26/02/2008|19:44] C:\Program Files\Alwil Software
[11/03/2007|03:25] C:\Program Files\Analog Devices
[20/05/2007|10:09] C:\Program Files\AOL
[01/06/2007|16:57] C:\Program Files\AOL 9.0 VR
[02/09/2008|12:07] C:\Program Files\Apple Software Update
[15/05/2007|00:09] C:\Program Files\Ares
[11/03/2007|03:24] C:\Program Files\ATK Hotkey
[07/06/2008|18:34] C:\Program Files\Avanquest update
[04/09/2008|13:18] C:\Program Files\Avira
[04/12/2007|01:04] C:\Program Files\AviSynth 2.5
[05/09/2007|12:56] C:\Program Files\BitTorrent
[24/07/2007|19:55] C:\Program Files\Boonty
[25/08/2007|14:16] C:\Program Files\BoontyGames
[11/03/2007|03:41] C:\Program Files\Ciel
[07/06/2008|18:08] C:\Program Files\Common Files
[24/09/2007|23:00] C:\Program Files\Convertor
[28/07/2008|23:12] C:\Program Files\DivX
[06/10/2007|16:07] C:\Program Files\EA GAMES
[19/09/2007|18:21] C:\Program Files\e-anim701
[02/03/2008|17:55] C:\Program Files\Easy GIF Animator
[02/03/2008|17:56] C:\Program Files\Easy Gif Animator Extension
[24/03/2008|01:14] C:\Program Files\EoRezo
[06/06/2007|21:51] C:\Program Files\epson
[25/06/2007|22:20] C:\Program Files\eRightSoft
[05/05/2008|11:29] C:\Program Files\Everstrike Software
[14/05/2007|18:18] C:\Program Files\Fichiers communs [C:\Program Files\Common Files]
[15/05/2007|22:50] C:\Program Files\FLVPlayer
[05/05/2008|11:30] C:\Program Files\Folder Lock
[24/03/2008|11:08] C:\Program Files\free-downloads.net
[17/10/2007|18:49] C:\Program Files\Gabest
[25/08/2007|15:45] C:\Program Files\GIMP-2.0
[14/05/2007|21:52] C:\Program Files\Google
[11/03/2007|03:30] C:\Program Files\HDReg
[07/06/2008|18:16] C:\Program Files\InstallShield Installation Information
[11/03/2007|03:22] C:\Program Files\Intel
[30/08/2008|12:15] C:\Program Files\Internet Explorer
[14/05/2007|19:37] C:\Program Files\Inventel
[05/04/2008|00:26] C:\Program Files\iPod
[11/03/2007|03:47] C:\Program Files\ISSENDIS
[05/04/2008|00:26] C:\Program Files\iTunes
[09/12/2007|01:31] C:\Program Files\iTunes Art Importer
[21/12/2007|10:39] C:\Program Files\Java
[25/08/2007|14:44] C:\Program Files\Kaspersky Lab
[16/05/2007|23:01] C:\Program Files\K-Lite Codec Pack
[07/06/2008|12:00] C:\Program Files\Last.fm
[21/09/2007|00:57] C:\Program Files\Macromedia
[26/03/2008|20:35] C:\Program Files\MagicISO
[16/07/2007|18:46] C:\Program Files\Megaupload
[02/09/2008|18:19] C:\Program Files\Messenger Plus! Live
[02/11/2006|14:37] C:\Program Files\Microsoft Games
[26/03/2008|21:24] C:\Program Files\Microsoft Office
[07/10/2007|18:54] C:\Program Files\Microsoft Small Business
[21/09/2007|03:15] C:\Program Files\Microsoft SQL Server
[09/12/2007|20:44] C:\Program Files\Microsoft SQL Server Compact Edition
[26/03/2008|21:24] C:\Program Files\Microsoft Visual Studio
[26/03/2008|21:17] C:\Program Files\Microsoft Visual Studio 8
[26/03/2008|21:25] C:\Program Files\Microsoft Works
[07/10/2007|18:58] C:\Program Files\Microsoft.NET
[07/06/2008|18:57] C:\Program Files\Motorola Phone Tools
[30/08/2008|12:15] C:\Program Files\Movie Maker
[03/09/2008|19:38] C:\Program Files\Mozilla Firefox
[26/03/2008|21:25] C:\Program Files\MSBuild
[26/02/2008|22:38] C:\Program Files\MSN Toolbar
[14/05/2007|19:59] C:\Program Files\MSXML 4.0
[26/12/2007|01:22] C:\Program Files\Odebit Multim‚dia
[11/03/2007|03:51] C:\Program Files\OFFICE ONE 7.0
[11/03/2007|03:50] C:\Program Files\OFFICE One v7
[18/09/2007|16:08] C:\Program Files\OrangeHSS
[25/08/2007|15:38] C:\Program Files\PacificPoker
[14/04/2008|19:09] C:\Program Files\PacificPoker4
[11/03/2007|03:52] C:\Program Files\Packard Bell
[23/09/2007|22:36] C:\Program Files\PhotoFiltre
[05/04/2008|00:22] C:\Program Files\QuickTime
[11/03/2007|03:28] C:\Program Files\Realtek
[04/12/2007|01:04] C:\Program Files\Red Kawa
[02/11/2006|14:37] C:\Program Files\Reference Assemblies
[25/03/2008|13:20] C:\Program Files\Safari
[09/08/2007|19:00] C:\Program Files\Samsung
[24/07/2007|19:50] C:\Program Files\Scorched3D
[14/05/2007|19:38] C:\Program Files\Securitoo
[26/03/2008|14:05] C:\Program Files\Serif
[22/01/2008|20:35] C:\Program Files\Spybot - Search & Destroy
[24/03/2008|11:35] C:\Program Files\Spyware Doctor
[11/03/2007|03:27] C:\Program Files\Synaptics
[02/11/2006|15:01] C:\Program Files\Uninstall Information
[17/01/2008|13:01] C:\Program Files\URUSoft
[10/01/2008|15:11] C:\Program Files\uTorrent
[10/12/2007|13:10] C:\Program Files\VideoLAN
[14/05/2007|20:31] C:\Program Files\Wanadoo
[30/08/2008|12:15] C:\Program Files\Windows Calendar
[30/08/2008|12:15] C:\Program Files\Windows Collaboration
[30/08/2008|12:15] C:\Program Files\Windows Defender
[30/08/2008|12:15] C:\Program Files\Windows Journal
[28/02/2008|10:15] C:\Program Files\Windows Live
[30/08/2008|12:15] C:\Program Files\Windows Mail
[30/08/2008|12:15] C:\Program Files\Windows Media Player
[14/05/2007|18:18] C:\Program Files\Windows NT
[30/08/2008|12:15] C:\Program Files\Windows Photo Gallery
[30/08/2008|12:15] C:\Program Files\Windows Sidebar
[19/01/2008|14:30] C:\Program Files\WinImage
[04/09/2007|20:18] C:\Program Files\WinRAR
[05/12/2007|12:49] C:\Program Files\WinSCP

--------------------\\ Listing des dossiers dans C:\Program Files\Common Files

[12/03/2008|11:51] C:\Program Files\Common Files\Adobe
[01/06/2007|16:53] C:\Program Files\Common Files\aol
[11/03/2007|03:33] C:\Program Files\Common Files\aolshare
[05/07/2007|23:35] C:\Program Files\Common Files\Apple
[24/07/2007|20:37] C:\Program Files\Common Files\BOONTY Shared
[11/03/2007|03:41] C:\Program Files\Common Files\Ciel
[26/03/2008|21:24] C:\Program Files\Common Files\DESIGNER
[05/05/2008|11:20] C:\Program Files\Common Files\Everstrike Software
[15/05/2007|16:33] C:\Program Files\Common Files\France Telecom
[14/08/2007|15:52] C:\Program Files\Common Files\GTK
[21/09/2007|01:57] C:\Program Files\Common Files\InstallShield
[27/05/2007|23:05] C:\Program Files\Common Files\Java
[11/08/2008|12:25] C:\Program Files\Common Files\microsoft shared
[07/06/2008|18:08] C:\Program Files\Common Files\Motorola Shared
[11/03/2007|03:41] C:\Program Files\Common Files\MSSoap
[11/03/2007|03:33] C:\Program Files\Common Files\Nullsoft
[28/07/2008|23:12] C:\Program Files\Common Files\PX Storage Engine
[02/11/2006|13:18] C:\Program Files\Common Files\Services
[02/11/2006|13:18] C:\Program Files\Common Files\SpeechEngines
[30/08/2007|20:00] C:\Program Files\Common Files\Symantec Shared
[30/08/2008|12:15] C:\Program Files\Common Files\System
[09/12/2007|19:31] C:\Program Files\Common Files\WindowsLiveInstaller

--------------------\\ Process

( 66 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\Users\LELA~1\AppData\Roaming\MICROS~1\Windows\Cookies\leila@advertstream[1].txt
C:\Users\LELA~1\AppData\Roaming\MICROS~1\Windows\Cookies\leila@advertising[2].txt
C:\Users\LELA~1\AppData\Roaming\MICROS~1\Windows\Cookies\leila@adopt.euroclick[1].txt
C:\Users\LELA~1\AppData\Roaming\MICROS~1\Windows\Cookies\leila@pacificpoker[1].txt

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-09-04 19:12:41
Windows 6.0.6001 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden files ...
C:\Users\LELA~1\AppData\Local\Microsoft\Windows\GameExplorer\{DFEF49D9-FC95-4301-99B9-2FB91C6ABA06}\PlayTasks\1\Les Simsâ„¢ 2 : Boit@Look.lnk 1242 bytes hidden from API
scan completed successfully
hidden processes: 0
hidden files: 19

--------------------\\ Recherche d'autres infections

C:\Users\LELA~1\AppData\Local\Temp\Pack.epk

C:\Users\LELA~1\AppData\Local\oeguieg.dat
C:\Users\LELA~1\AppData\Local\oeguieg.exe
C:\Users\LELA~1\AppData\Local\oeguieg_nav.dat
C:\Users\LELA~1\AppData\Local\oeguieg_navps.dat
==> EGDACCESS <==



[F:4087][D:325]-> C:\Users\LELA~1\AppData\Local\Temp
[F:681][D:1]-> C:\Users\LELA~1\AppData\Roaming\MICROS~1\Windows\Cookies
[F:2598][D:19]-> C:\Users\LELA~1\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5
[F:5][D:4]-> C:\$Recycle.Bin

1 - "C:\Lop SD\LopR_1.txt" - 04/09/2008|18:42 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 04/09/2008|19:16 - Option : [2]

--------------------\\ Fin du rapport a 19:16:38
[ UAC => 1 ]

Profil : Helper
Plus d'informations

Désactive le contrôle des comptes utilisateurs (UAC). Tu réactiveras ce contrôle en fin de procédure.
AIDE : Désactiver l'UAC dans Vista

Télécharge Navilog1.exe (IL-MAFIOSO)
Enregistre-le sur ton Bureau.
Lance l'installation en double cliquant sur navilog.exe.
Une fois l'installation terminée, fais un clic droit sur le raccourci navilog1 puis choisis "Exécuter en tant qu'administrateur".

Laisse-toi guider par l'utilitaire. Choisis l'option 1 puis valide.
! N'utilise pas l'option 2, 3 ou 4 sans notre accord !
Patiente jusqu'à l'apparition de ce message (en italique) :
*** Analyse Termine le ..... ***
Appuie sur une touche comme demandé.
Le Bloc-notes va s'ouvrir. Poste-nous son contenu de cette manière :

  • Edition / Sélectionner tout
  • Edition / Copier
  • Clique-Droit / Coller dans ta réponse


NOTE : Le rapport se trouve également ici : C:\fixnavi.txt


---------------
Prévention & Protection||Vous m'aimez ? Cliquez :o
Profil : IDNaute
Plus d'informations