Tom's Guide > Forum > Sécurité - Virus > Probléme PUB!
Mot :    Pseudo :           
 

Bonjour,voila en ce moment çà commence à avoir des pubs a chaque fois que je suis sur le net il y en a tout le temps . Je voudrais savoir comment arreter d'en avoir...? Merci de m'aider .

Liens sponsorisés
Inscrivez-vous ou connectez-vous pour masquer ceci.

Bonjour,

Télécharge puis installe Hijackthis (Trend Micro)
Poste ensuite un rapport dans ta prochaine réponse.
AIDE : Comment utiliser Hijackthis v2.0.2

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:11:46, on 07/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Acer\Acer eConsole\MediaServerService.exe
C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Acer TV-FM\Kernel\TV\CLCapSvc.exe
C:\Program Files\Acer TV-FM\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
c:\fotowin\RTETPISv.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Acer TV-FM\Kernel\TV\CLSched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICDE.EXE
C:\Program Files\Neuf\Media Center\MediaCenter.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Acer\Empowering Technology\Acer.Empowering.Framework.Launcher.exe
C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
C:\Program Files\OpenOffice.org 2.4\program\soffice.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\OpenOffice.org 2.4\program\soffice.BIN
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Program Files\Neuf\Media Center\httpd\httpd.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\lphant\eLePhantClient.exe
C:\Program Files\Java\jre1.6.0_05\bin\jucheck.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = res://C:\WINDOWS\system32\xpsp3res.dll/dnserror.htm
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://global.acer.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://login.live.com/ppsecure/sha1auth.srf?lc=1036
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: &Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [Itch ford four knob] C:\Documents and Settings\All Users\Application Data\third lies itch ford\Anti corn.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [EPSON Stylus DX7400 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICDE.EXE /FU "C:\DOCUME~1\Al_iiS\LOCALS~1\Temp\E_S28C.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [book ante] C:\DOCUME~1\Al_iiS\APPLIC~1\ELSEPL~1\AXISNEW.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 2.4.lnk = C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe
O4 - Global Startup: Acer Empowering Technology.lnk = ?
O4 - Global Startup: Acer WLAN 11g USB Dongle.lnk = C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/bina [...] b31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/bina [...] b31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/pr [...] NPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-F [...] E_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/re [...] oscan8.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b31267.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/bina [...] b47946.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/bina [...] b31267.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game08.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/bina [...] b31267.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\Acer\Acer eConsole\MediaServerService.exe
O23 - Service: Memory Check Service (AcerMemUsageCheckService) - Acer Inc. - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Acer TV-FM\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Acer TV-FM\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\Acer TV-FM\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: RTE : Partage TAPI (RTETAPIService) - RTE Software - c:\fotowin\RTETPISv.exe

--
End of file - 12153 bytes

Répondre à hollye tyler

Re,

Télécharge Lop S&D.exe (Eric_71) sur ton Bureau.

  • Lance l'installation du programme en exécutant le fichier téléchargé.
  • Double-clique maintenant sur le raccourci de LopS&D.
  • Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
  • Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
  • Poste le rapport généré (C:\lopR.txt*)

* le nom de la partition peut changer

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark


--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Celeron(R) CPU 3.06GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Al_iiS ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
C:\ (Local Disk) - NTFS - Total:113 Go (Free:31 Go)
D:\ (Local Disk) - FAT32 - Total:114 Go (Free:110 Go)
E:\ (CD or DVD)
G:\ (CD or DVD)
H:\ (USB)
I:\ (USB)
J:\ (USB)
K:\ (USB)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 08/01/2009|18:37 )

--------------------\\ Listing des dossiers dans APPLIC~1


[12/09/2006|05:29] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[28/11/2007|21:18] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[03/11/2005|00:09] C:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec



[22/01/2007|11:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[22/01/2007|12:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe Systems
[30/12/2008|15:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apowersoft
[06/03/2007|16:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[25/03/2008|17:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[19/11/2006|09:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[18/11/2006|13:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eConsole
[20/09/2008|13:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EPSON
[19/10/2007|19:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eXPert PDF 5
[24/03/2008|19:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\F-Secure
[21/03/2008|21:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\fssg
[18/07/2008|15:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[31/08/2007|21:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[02/03/2007|09:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[23/12/2008|11:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[20/08/2007|13:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Mozilla
[15/07/2007|13:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NtiDvdCopy
[19/11/2006|19:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\pixelStorm
[06/08/2007|16:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PlayFirst
[29/08/2007|15:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[30/10/2007|13:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[03/01/2009|01:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\third lies itch ford
[20/09/2008|13:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL
[11/02/2008|11:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems
[16/12/2006|13:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[20/12/2006|19:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[23/12/2008|11:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WindowsLiveInstaller
[11/12/2008|15:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[06/08/2007|16:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom

[12/10/2008|16:37] C:\DOCUME~1\Al_iiS\APPLIC~1\Adobe
[19/10/2008|10:45] C:\DOCUME~1\Al_iiS\APPLIC~1\AdobeUM
[12/10/2008|13:27] C:\DOCUME~1\Al_iiS\APPLIC~1\Apple Computer
[03/01/2009|01:04] C:\DOCUME~1\Al_iiS\APPLIC~1\Else plus
[21/10/2008|16:41] C:\DOCUME~1\Al_iiS\APPLIC~1\EPSON
[05/11/2008|15:11] C:\DOCUME~1\Al_iiS\APPLIC~1\GetRightToGo
[12/10/2008|19:01] C:\DOCUME~1\Al_iiS\APPLIC~1\Google
[12/09/2006|05:29] C:\DOCUME~1\Al_iiS\APPLIC~1\Identities
[12/10/2008|11:51] C:\DOCUME~1\Al_iiS\APPLIC~1\Macromedia
[30/12/2008|18:26] C:\DOCUME~1\Al_iiS\APPLIC~1\Microsoft
[12/10/2008|11:54] C:\DOCUME~1\Al_iiS\APPLIC~1\Mozilla
[08/01/2009|18:20] C:\DOCUME~1\Al_iiS\APPLIC~1\OpenOffice.org2
[15/10/2008|14:31] C:\DOCUME~1\Al_iiS\APPLIC~1\Samsung
[15/10/2008|15:15] C:\DOCUME~1\Al_iiS\APPLIC~1\Sun
[03/11/2005|00:09] C:\DOCUME~1\Al_iiS\APPLIC~1\Symantec
[30/12/2008|15:33] C:\DOCUME~1\Al_iiS\APPLIC~1\vlc
[23/11/2008|17:22] C:\DOCUME~1\Al_iiS\APPLIC~1\WinRAR

[12/09/2006|05:29] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[28/11/2007|21:18] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[03/11/2005|00:09] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec

[19/11/2007|21:32] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[16/04/2007|10:03] C:\DOCUME~1\INVIT~1\APPLIC~1\Ahead
[26/05/2007|13:29] C:\DOCUME~1\INVIT~1\APPLIC~1\Apple Computer
[09/12/2006|17:10] C:\DOCUME~1\INVIT~1\APPLIC~1\Google
[09/09/2007|17:46] C:\DOCUME~1\INVIT~1\APPLIC~1\Grisoft
[12/09/2006|05:29] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[08/04/2007|07:15] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[16/04/2007|08:36] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[08/04/2007|07:47] C:\DOCUME~1\INVIT~1\APPLIC~1\Sun
[04/07/2007|21:52] C:\DOCUME~1\INVIT~1\APPLIC~1\VMNTOOLBAR

[26/09/2007|08:07] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

[11/01/2008|11:39] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Adobe
[14/01/2008|17:39] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\AdobeUM
[06/01/2008|17:46] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Apple Computer
[06/01/2008|18:20] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Google
[11/01/2008|11:50] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Help
[12/09/2006|05:29] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Identities
[31/12/2007|12:16] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Macromedia
[14/03/2008|15:52] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Microsoft
[31/12/2007|17:38] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\MSNInstaller
[14/01/2008|20:45] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Sun
[03/11/2005|00:09] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Symantec

[26/08/2008|11:10] C:\DOCUME~1\MISS-P~1\APPLIC~1\Adobe
[10/06/2007|16:18] C:\DOCUME~1\MISS-P~1\APPLIC~1\AdobeUM
[08/06/2007|11:39] C:\DOCUME~1\MISS-P~1\APPLIC~1\Ahead
[02/06/2007|11:07] C:\DOCUME~1\MISS-P~1\APPLIC~1\Apple Computer
[01/12/2007|13:26] C:\DOCUME~1\MISS-P~1\APPLIC~1\Azureus
[01/12/2007|11:52] C:\DOCUME~1\MISS-P~1\APPLIC~1\BitTorrent
[26/06/2008|20:06] C:\DOCUME~1\MISS-P~1\APPLIC~1\Canneverbe_Limited
[07/07/2007|19:38] C:\DOCUME~1\MISS-P~1\APPLIC~1\CyberLink
[03/01/2009|20:21] C:\DOCUME~1\MISS-P~1\APPLIC~1\Else plus
[19/12/2008|16:19] C:\DOCUME~1\MISS-P~1\APPLIC~1\EPSON
[18/10/2007|18:03] C:\DOCUME~1\MISS-P~1\APPLIC~1\eXPert PDF 5
[18/10/2007|18:03] C:\DOCUME~1\MISS-P~1\APPLIC~1\eXPert PDF Editor
[15/06/2008|14:55] C:\DOCUME~1\MISS-P~1\APPLIC~1\FotoWire
[21/03/2008|21:34] C:\DOCUME~1\MISS-P~1\APPLIC~1\F-Secure
[28/06/2008|08:39] C:\DOCUME~1\MISS-P~1\APPLIC~1\GetRightToGo
[20/08/2007|13:51] C:\DOCUME~1\MISS-P~1\APPLIC~1\Google
[22/05/2008|11:24] C:\DOCUME~1\MISS-P~1\APPLIC~1\gtk-2.0
[15/07/2007|13:42] C:\DOCUME~1\MISS-P~1\APPLIC~1\Help
[12/09/2006|05:29] C:\DOCUME~1\MISS-P~1\APPLIC~1\Identities
[20/09/2008|12:57] C:\DOCUME~1\MISS-P~1\APPLIC~1\InstallShield
[12/08/2007|21:01] C:\DOCUME~1\MISS-P~1\APPLIC~1\Jasc
[02/01/2008|21:15] C:\DOCUME~1\MISS-P~1\APPLIC~1\LimeWire
[19/08/2007|12:17] C:\DOCUME~1\MISS-P~1\APPLIC~1\Macromedia
[11/04/2008|20:22] C:\DOCUME~1\MISS-P~1\APPLIC~1\Media Player Classic
[24/12/2008|20:59] C:\DOCUME~1\MISS-P~1\APPLIC~1\Microsoft
[21/08/2008|21:14] C:\DOCUME~1\MISS-P~1\APPLIC~1\Mozilla
[03/01/2008|14:15] C:\DOCUME~1\MISS-P~1\APPLIC~1\MSNInstaller
[02/11/2007|13:01] C:\DOCUME~1\MISS-P~1\APPLIC~1\NeroVision
[08/01/2009|17:34] C:\DOCUME~1\MISS-P~1\APPLIC~1\OpenOffice.org2
[07/07/2008|09:00] C:\DOCUME~1\MISS-P~1\APPLIC~1\Opera
[06/08/2007|16:07] C:\DOCUME~1\MISS-P~1\APPLIC~1\PlayFirst
[10/03/2008|20:17] C:\DOCUME~1\MISS-P~1\APPLIC~1\Samsung
[19/09/2008|17:01] C:\DOCUME~1\MISS-P~1\APPLIC~1\SlySoft
[28/05/2007|18:38] C:\DOCUME~1\MISS-P~1\APPLIC~1\Sun
[03/11/2005|00:09] C:\DOCUME~1\MISS-P~1\APPLIC~1\Symantec
[20/08/2007|13:31] C:\DOCUME~1\MISS-P~1\APPLIC~1\Talkback
[04/06/2008|16:58] C:\DOCUME~1\MISS-P~1\APPLIC~1\TaoUSign
[04/07/2008|19:48] C:\DOCUME~1\MISS-P~1\APPLIC~1\teamspeak2
[23/07/2008|12:11] C:\DOCUME~1\MISS-P~1\APPLIC~1\Vso
[26/09/2007|07:53] C:\DOCUME~1\MISS-P~1\APPLIC~1\Windows Live Writer
[09/03/2008|14:00] C:\DOCUME~1\MISS-P~1\APPLIC~1\WinRAR

[26/09/2007|07:36] C:\DOCUME~1\NETWOR~1\APPLIC~1\Identities
[27/09/2007|05:24] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[08/01/2009 18:00][--ah-----] C:\WINDOWS\tasks\AD5CA4DA93535F8A.job
[30/01/2008 17:46][--a------] C:\WINDOWS\tasks\SCHEDLGU.TXT
[22/12/2008 08:57][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[08/01/2009 15:12][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 13:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini

( AD5CA4DA93535F8A.job )=( c:\docume~1\al_iis\applic~1\elsepl~1\Thunkdeafgreat.exe )

--------------------\\ Listing des dossiers dans C:\Program Files

[10/02/2008|12:44] C:\Program Files\3721
[22/12/2008|18:49] C:\Program Files\ABBYY FineReader 6.0 Sprint
[10/02/2008|12:44] C:\Program Files\Accoona
[18/11/2006|11:56] C:\Program Files\Acer
[18/11/2006|11:57] C:\Program Files\Acer TV-FM
[12/09/2006|05:30] C:\Program Files\Acer WLAN 11g USB Dongle
[11/02/2008|18:30] C:\Program Files\Adobe
[02/11/2007|13:02] C:\Program Files\Ahead
[10/02/2008|12:44] C:\Program Files\akl
[23/01/2008|12:06] C:\Program Files\Alwil Software
[27/09/2008|22:06] C:\Program Files\Anyplace Control 4
[30/12/2008|15:53] C:\Program Files\Apowersoft
[31/03/2007|10:44] C:\Program Files\Apple Software Update
[19/11/2006|18:07] C:\Program Files\ArcSoft
[12/07/2008|10:37] C:\Program Files\Ares
[14/01/2007|10:12] C:\Program Files\Atari
[26/09/2008|12:54] C:\Program Files\Audacity
[25/03/2008|17:08] C:\Program Files\Avira
[01/12/2007|12:57] C:\Program Files\Azureus
[03/11/2007|10:06] C:\Program Files\BitComet
[26/06/2008|20:06] C:\Program Files\CDBurnerXP
[19/11/2006|18:06] C:\Program Files\Chicony
[07/09/2008|14:17] C:\Program Files\Circle Developement
[02/11/2005|23:51] C:\Program Files\ComPlus Applications
[18/11/2006|11:56] C:\Program Files\CyberLink
[23/01/2008|12:50] C:\Program Files\DAEMON Tools SearchBar
[31/10/2007|08:08] C:\Program Files\DAP
[19/11/2006|18:06] C:\Program Files\directx
[23/02/2008|22:59] C:\Program Files\DivX
[21/05/2008|14:39] C:\Program Files\Dofus
[29/08/2008|20:22] C:\Program Files\D-Tools
[27/02/2007|09:07] C:\Program Files\DVDFab Platinum
[30/12/2008|15:42] C:\Program Files\DVDVIDEOSOFT
[14/12/2008|10:08] C:\Program Files\EA GAMES
[25/09/2007|11:21] C:\Program Files\Electronic Arts
[03/01/2009|01:02] C:\Program Files\Else plus
[23/12/2006|10:01] C:\Program Files\eMule
[20/09/2008|13:01] C:\Program Files\epson
[30/12/2008|15:42] C:\Program Files\Fichiers communs
[25/12/2006|10:04] C:\Program Files\FileZilla
[18/07/2008|15:51] C:\Program Files\Google
[19/11/2006|17:56] C:\Program Files\Hewlett-Packard
[19/11/2006|17:53] C:\Program Files\HP
[14/10/2008|20:16] C:\Program Files\InstallShield Installation Information
[11/12/2008|21:55] C:\Program Files\Internet Explorer
[31/03/2007|10:49] C:\Program Files\iPod
[31/03/2007|10:52] C:\Program Files\iTunes
[17/08/2007|17:06] C:\Program Files\Jasc Software Inc
[03/04/2008|17:16] C:\Program Files\Java
[03/01/2008|14:14] C:\Program Files\LimeWire
[04/07/2008|16:21] C:\Program Files\Logitech
[20/12/2008|22:16] C:\Program Files\lphant
[10/02/2008|19:24] C:\Program Files\Macrogaming
[20/11/2006|20:20] C:\Program Files\Maxis
[21/08/2008|22:27] C:\Program Files\Messenger
[03/01/2009|01:02] C:\Program Files\Messenger Plus! Live
[16/05/2007|11:48] C:\Program Files\MessengerPlus! 3
[23/12/2008|11:46] C:\Program Files\Microsoft
[05/07/2007|22:28] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[12/09/2006|05:31] C:\Program Files\microsoft frontpage
[23/12/2008|11:51] C:\Program Files\Microsoft Sync Framework
[12/09/2006|05:31] C:\Program Files\Movie Maker
[08/01/2009|18:32] C:\Program Files\Mozilla Firefox
[03/01/2008|14:16] C:\Program Files\MSN
[12/09/2006|05:31] C:\Program Files\MSN Gaming Zone
[18/11/2006|18:16] C:\Program Files\MSXML 4.0
[16/08/2007|14:20] C:\Program Files\NetMeeting
[20/10/2007|08:41] C:\Program Files\Neuf
[09/12/2007|16:43] C:\Program Files\NewTech Infosystems
[04/03/2007|09:47] C:\Program Files\Norton AntiVirus
[12/09/2006|05:31] C:\Program Files\Oca History Tool
[12/09/2006|05:31] C:\Program Files\Online Services
[20/06/2008|20:25] C:\Program Files\OpenOffice.org 2.4
[13/06/2007|21:30] C:\Program Files\Outlook Express
[10/02/2008|12:44] C:\Program Files\p2pnetworks
[25/03/2008|17:01] C:\Program Files\Pack Securite
[19/02/2008|11:55] C:\Program Files\Panda Security
[11/02/2008|18:44] C:\Program Files\PhotoFiltre
[24/02/2008|15:35] C:\Program Files\Picasa2
[30/06/2007|10:56] C:\Program Files\QuickTime
[12/09/2006|05:31] C:\Program Files\Realtek AC97
[10/03/2008|19:42] C:\Program Files\Samsung
[12/09/2006|05:31] C:\Program Files\Services en ligne
[12/09/2006|05:31] C:\Program Files\sisagp
[18/11/2006|11:42] C:\Program Files\SiSLan
[19/09/2008|16:59] C:\Program Files\SlySoft
[27/01/2008|10:33] C:\Program Files\SmartCom
[03/03/2007|13:58] C:\Program Files\Softwin
[08/01/2009|17:03] C:\Program Files\Steam
[26/08/2007|17:49] C:\Program Files\StofWare
[14/02/2008|22:16] C:\Program Files\Trend Micro
[02/02/2008|12:03] C:\Program Files\Ulead Systems
[03/11/2005|00:01] C:\Program Files\Uninstall Information
[30/12/2008|15:32] C:\Program Files\VideoLAN
[20/01/2007|13:07] C:\Program Files\Visicom Media
[23/07/2008|12:11] C:\Program Files\VSO
[27/09/2007|05:53] C:\Program Files\Windows Desktop Search
[23/12/2008|11:53] C:\Program Files\Windows Live
[31/12/2007|18:23] C:\Program Files\Windows Live Favorites
[23/12/2008|11:46] C:\Program Files\Windows Live SkyDrive
[23/12/2008|11:52] C:\Program Files\Windows Live Toolbar
[16/05/2008|15:09] C:\Program Files\Windows Media Connect 2
[16/05/2008|15:09] C:\Program Files\Windows Media Player
[12/09/2006|05:31] C:\Program Files\Windows NT
[02/11/2005|23:52] C:\Program Files\WindowsUpdate
[09/03/2008|14:00] C:\Program Files\WinRAR
[21/04/2007|08:31] C:\Program Files\WinZip
[12/09/2006|05:31] C:\Program Files\xerox
[16/08/2007|14:09] C:\Program Files\YesMessenger

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[11/02/2008|18:32] C:\Program Files\Fichiers communs\Adobe
[22/01/2007|12:01] C:\Program Files\Fichiers communs\Adobe Systems Shared
[30/12/2008|15:42] C:\Program Files\Fichiers communs\DVDVIDEOSOFT
[15/06/2008|14:55] C:\Program Files\Fichiers communs\FotoWire
[10/12/2006|13:01] C:\Program Files\Fichiers communs\InstallShield
[10/12/2007|20:14] C:\Program Files\Fichiers communs\Java
[10/02/2007|20:01] C:\Program Files\Fichiers communs\Logitech
[23/12/2008|11:46] C:\Program Files\Fichiers communs\Microsoft Shared
[12/09/2006|05:30] C:\Program Files\Fichiers communs\MSSoap
[03/11/2005|00:07] C:\Program Files\Fichiers communs\muvee Technologies
[03/11/2005|00:07] C:\Program Files\Fichiers communs\NewTech Infosystems
[12/09/2006|05:30] C:\Program Files\Fichiers communs\ODBC
[12/09/2006|05:30] C:\Program Files\Fichiers communs\Services
[27/01/2008|10:29] C:\Program Files\Fichiers communs\SmartCom
[03/03/2007|14:00] C:\Program Files\Fichiers communs\Softwin
[12/09/2006|05:30] C:\Program Files\Fichiers communs\SpeechEngines
[29/08/2007|15:07] C:\Program Files\Fichiers communs\Symantec Shared
[13/06/2007|21:30] C:\Program Files\Fichiers communs\System
[23/12/2008|11:39] C:\Program Files\Fichiers communs\Windows Live
[31/12/2007|18:13] C:\Program Files\Fichiers communs\WindowsLiveInstaller

--------------------\\ Process

( 62 Processes )

iexplore.exe ~ [PID:2164]
iexplore.exe ~ [PID:836]

--------------------\\ Recherche avec S_Lop

C:\DOCUME~1\Al_iiS\LOCALS~1\Temp\bis120.exe

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\DOCUME~1\Al_iiS\APPLIC~1\ELSE PLUS
C:\DOCUME~1\Al_iiS\APPLIC~1\ELSE PLUS\AXISNEW.exe
C:\DOCUME~1\Al_iiS\APPLIC~1\ELSE PLUS\hnyihslb.exe
C:\DOCUME~1\Al_iiS\APPLIC~1\ELSE PLUS\JoyPokeForkBlue.exe
C:\DOCUME~1\Al_iiS\APPLIC~1\ELSE PLUS\Thunkdeafgreat.exe
C:\DOCUME~1\MISS-P~1\APPLIC~1\ELSE PLUS
C:\DOCUME~1\MISS-P~1\APPLIC~1\ELSE PLUS\AXISNEW.exe
C:\Program Files\ELSE PLUS
C:\DOCUME~1\ALLUSE~1\APPLIC~1\third lies itch ford
C:\DOCUME~1\ALLUSE~1\APPLIC~1\third lies itch ford\Anti corn.dat
C:\DOCUME~1\ALLUSE~1\APPLIC~1\third lies itch ford\Anti corn.exe
C:\DOCUME~1\Al_iiS\APPLIC~1\elsepl~1
C:\DOCUME~1\Al_iiS\APPLIC~1\elsepl~1\AXISNEW.exe
C:\DOCUME~1\Al_iiS\APPLIC~1\elsepl~1\hnyihslb.exe
C:\DOCUME~1\Al_iiS\APPLIC~1\elsepl~1\JoyPokeForkBlue.exe
C:\DOCUME~1\Al_iiS\APPLIC~1\elsepl~1\Thunkdeafgreat.exe
C:\DOCUME~1\MISS-P~1\APPLIC~1\elsepl~1
C:\DOCUME~1\MISS-P~1\APPLIC~1\elsepl~1\AXISNEW.exe
C:\Program Files\elsepl~1
C:\Program Files\Circle Developement
C:\Program Files\Circle Developement\Uninstall.exe
C:\DOCUME~1\Al_iiS\Cookies\al_iis@advertising[1].txt
C:\DOCUME~1\Al_iiS\Cookies\al_iis@adopt.euroclick[1].txt
C:\DOCUME~1\Al_iiS\Cookies\al_iis@pacificpoker[2].txt
C:\DOCUME~1\Al_iiS\Cookies\al_iis@partypoker[2].txt
C:\WINDOWS\Tasks\AD5CA4DA93535F8A.job

--------------------\\ Verification du Registre

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"book ante"="C:\\DOCUME~1\\Al_iiS\\APPLIC~1\\ELSEPL~1\\AXISNEW.exe"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Itch ford four knob"="C:\\Documents and Settings\\All Users\\Application Data\\third lies itch ford\\Anti corn.exe"

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-08 18:42:21
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 1046

--------------------\\ Recherche d'autres infections

--------------------\\ ROOTKIT !!

Rootkit Rustock ! .. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ztx86]

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\ALLUSE~1\Documents\Nouveau dossier\SIMS 2\The Sims 2 Manuel Pochette Keygen By Tua.rar
C:\DOCUME~1\ALLUSE~1\Documents\Nouveau dossier\SIMS 2\The Sims 2 Multilangue-Keygen By Tua.nfo
C:\DOCUME~1\ALLUSE~1\Documents\Nouveau dossier\SIMS 2\sims2 cd3\The Sims 2 Cd3 Multilangue-Keygen By Tua.cue


[F:1327][D:24]-> C:\DOCUME~1\Al_iiS\LOCALS~1\Temp
[F:284][D:0]-> C:\DOCUME~1\Al_iiS\Cookies
[F:557][D:4]-> C:\DOCUME~1\Al_iiS\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 08/01/2009|18:45 - Option : [1]

--------------------\\ Fin du rapport a 18:45:44

Répondre à hollye tyler

Re,

Relance Lop S&D en double-cliquant sur le raccourci. Tape sur "2" puis valide en appuyant sur "Entrée".
! Ne ferme pas la fenêtre lors de la suppression !
Un rapport sera généré, poste son contenu ici.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark


--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 2
X86-based PC ( Multiprocessor Free : Intel(R) Celeron(R) CPU 3.06GHz )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : Al_iiS ( Administrator )
BOOT : Normal boot
Antivirus : Avira AntiVir PersonalEdition 8.0.1.30 (Activated)
C:\ (Local Disk) - NTFS - Total:113 Go (Free:31 Go)
D:\ (Local Disk) - FAT32 - Total:114 Go (Free:110 Go)
E:\ (CD or DVD)
G:\ (CD or DVD)
H:\ (USB)
I:\ (USB)
J:\ (USB)
K:\ (USB)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 09/01/2009|19:29 )


\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION

Supprime! - C:\DOCUME~1\Al_iiS\APPLIC~1\ELSE PLUS\AXISNEW.exe
Supprime! - C:\DOCUME~1\Al_iiS\APPLIC~1\ELSE PLUS\hnyihslb.exe
Supprime! - C:\DOCUME~1\Al_iiS\APPLIC~1\ELSE PLUS\JoyPokeForkBlue.exe
Supprime! - C:\DOCUME~1\Al_iiS\APPLIC~1\ELSE PLUS\Thunkdeafgreat.exe
Supprime! - C:\DOCUME~1\MISS-P~1\APPLIC~1\ELSE PLUS\AXISNEW.exe
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\third lies itch ford\Anti corn.dat
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\third lies itch ford\Anti corn.exe
Supprime! - C:\Program Files\Circle Developement\Uninstall.exe
Supprime! - C:\DOCUME~1\Al_iiS\Cookies\al_iis@advertising[1].txt
Supprime! - C:\DOCUME~1\Al_iiS\Cookies\al_iis@adopt.euroclick[1].txt
Supprime! - C:\DOCUME~1\Al_iiS\Cookies\al_iis@partypoker[2].txt
Supprime! - C:\WINDOWS\Tasks\AD5CA4DA93535F8A.job
Supprime! - C:\DOCUME~1\Al_iiS\LOCALS~1\Temp\bis120.exe
Supprime! - C:\DOCUME~1\Al_iiS\APPLIC~1\ELSE PLUS
Supprime! - C:\DOCUME~1\MISS-P~1\APPLIC~1\ELSE PLUS
Supprime! - C:\Program Files\ELSE PLUS
Supprime! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\third lies itch ford
Supprime! - C:\Program Files\Circle Developement

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


--------------------\\ Listing des dossiers dans APPLIC~1


[12/09/2006|05:29] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[28/11/2007|21:18] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[03/11/2005|00:09] C:\DOCUME~1\ADMINI~1\APPLIC~1\Symantec



[22/01/2007|11:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[22/01/2007|12:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe Systems
[30/12/2008|15:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apowersoft
[06/03/2007|16:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[25/03/2008|17:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[19/11/2006|09:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[18/11/2006|13:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eConsole
[20/09/2008|13:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EPSON
[19/10/2007|19:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\eXPert PDF 5
[24/03/2008|19:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\F-Secure
[21/03/2008|21:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\fssg
[18/07/2008|15:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[31/08/2007|21:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Grisoft
[02/03/2007|09:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[23/12/2008|11:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[20/08/2007|13:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Mozilla
[15/07/2007|13:55] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NtiDvdCopy
[19/11/2006|19:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\pixelStorm
[06/08/2007|16:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PlayFirst
[29/08/2007|15:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[30/10/2007|13:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[20/09/2008|13:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL
[11/02/2008|11:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems
[16/12/2006|13:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[20/12/2006|19:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[23/12/2008|11:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WindowsLiveInstaller
[11/12/2008|15:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[06/08/2007|16:00] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom

[12/10/2008|16:37] C:\DOCUME~1\Al_iiS\APPLIC~1\Adobe
[19/10/2008|10:45] C:\DOCUME~1\Al_iiS\APPLIC~1\AdobeUM
[12/10/2008|13:27] C:\DOCUME~1\Al_iiS\APPLIC~1\Apple Computer
[21/10/2008|16:41] C:\DOCUME~1\Al_iiS\APPLIC~1\EPSON
[05/11/2008|15:11] C:\DOCUME~1\Al_iiS\APPLIC~1\GetRightToGo
[12/10/2008|19:01] C:\DOCUME~1\Al_iiS\APPLIC~1\Google
[12/09/2006|05:29] C:\DOCUME~1\Al_iiS\APPLIC~1\Identities
[12/10/2008|11:51] C:\DOCUME~1\Al_iiS\APPLIC~1\Macromedia
[30/12/2008|18:26] C:\DOCUME~1\Al_iiS\APPLIC~1\Microsoft
[12/10/2008|11:54] C:\DOCUME~1\Al_iiS\APPLIC~1\Mozilla
[09/01/2009|19:07] C:\DOCUME~1\Al_iiS\APPLIC~1\OpenOffice.org2
[15/10/2008|14:31] C:\DOCUME~1\Al_iiS\APPLIC~1\Samsung
[15/10/2008|15:15] C:\DOCUME~1\Al_iiS\APPLIC~1\Sun
[03/11/2005|00:09] C:\DOCUME~1\Al_iiS\APPLIC~1\Symantec
[30/12/2008|15:33] C:\DOCUME~1\Al_iiS\APPLIC~1\vlc
[23/11/2008|17:22] C:\DOCUME~1\Al_iiS\APPLIC~1\WinRAR

[12/09/2006|05:29] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[28/11/2007|21:18] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[03/11/2005|00:09] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec

[19/11/2007|21:32] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[16/04/2007|10:03] C:\DOCUME~1\INVIT~1\APPLIC~1\Ahead
[26/05/2007|13:29] C:\DOCUME~1\INVIT~1\APPLIC~1\Apple Computer
[09/12/2006|17:10] C:\DOCUME~1\INVIT~1\APPLIC~1\Google
[09/09/2007|17:46] C:\DOCUME~1\INVIT~1\APPLIC~1\Grisoft
[12/09/2006|05:29] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[08/04/2007|07:15] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[16/04/2007|08:36] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[08/04/2007|07:47] C:\DOCUME~1\INVIT~1\APPLIC~1\Sun
[04/07/2007|21:52] C:\DOCUME~1\INVIT~1\APPLIC~1\VMNTOOLBAR

[26/09/2007|08:07] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

[11/01/2008|11:39] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Adobe
[14/01/2008|17:39] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\AdobeUM
[06/01/2008|17:46] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Apple Computer
[06/01/2008|18:20] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Google
[11/01/2008|11:50] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Help
[12/09/2006|05:29] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Identities
[31/12/2007|12:16] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Macromedia
[14/03/2008|15:52] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Microsoft
[31/12/2007|17:38] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\MSNInstaller
[14/01/2008|20:45] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Sun
[03/11/2005|00:09] C:\DOCUME~1\MDB1B~1.MAS\APPLIC~1\Symantec

[26/08/2008|11:10] C:\DOCUME~1\MISS-P~1\APPLIC~1\Adobe
[10/06/2007|16:18] C:\DOCUME~1\MISS-P~1\APPLIC~1\AdobeUM
[08/06/2007|11:39] C:\DOCUME~1\MISS-P~1\APPLIC~1\Ahead
[02/06/2007|11:07] C:\DOCUME~1\MISS-P~1\APPLIC~1\Apple Computer
[01/12/2007|13:26] C:\DOCUME~1\MISS-P~1\APPLIC~1\Azureus
[01/12/2007|11:52] C:\DOCUME~1\MISS-P~1\APPLIC~1\BitTorrent
[26/06/2008|20:06] C:\DOCUME~1\MISS-P~1\APPLIC~1\Canneverbe_Limited
[07/07/2007|19:38] C:\DOCUME~1\MISS-P~1\APPLIC~1\CyberLink
[19/12/2008|16:19] C:\DOCUME~1\MISS-P~1\APPLIC~1\EPSON
[18/10/2007|18:03] C:\DOCUME~1\MISS-P~1\APPLIC~1\eXPert PDF 5
[18/10/2007|18:03] C:\DOCUME~1\MISS-P~1\APPLIC~1\eXPert PDF Editor
[15/06/2008|14:55] C:\DOCUME~1\MISS-P~1\APPLIC~1\FotoWire
[21/03/2008|21:34] C:\DOCUME~1\MISS-P~1\APPLIC~1\F-Secure
[28/06/2008|08:39] C:\DOCUME~1\MISS-P~1\APPLIC~1\GetRightToGo
[20/08/2007|13:51] C:\DOCUME~1\MISS-P~1\APPLIC~1\Google
[22/05/2008|11:24] C:\DOCUME~1\MISS-P~1\APPLIC~1\gtk-2.0
[15/07/2007|13:42] C:\DOCUME~1\MISS-P~1\APPLIC~1\Help
[12/09/2006|05:29] C:\DOCUME~1\MISS-P~1\APPLIC~1\Identities
[20/09/2008|12:57] C:\DOCUME~1\MISS-P~1\APPLIC~1\InstallShield
[12/08/2007|21:01] C:\DOCUME~1\MISS-P~1\APPLIC~1\Jasc
[02/01/2008|21:15] C:\DOCUME~1\MISS-P~1\APPLIC~1\LimeWire
[19/08/2007|12:17] C:\DOCUME~1\MISS-P~1\APPLIC~1\Macromedia
[11/04/2008|20:22] C:\DOCUME~1\MISS-P~1\APPLIC~1\Media Player Classic
[24/12/2008|20:59] C:\DOCUME~1\MISS-P~1\APPLIC~1\Microsoft
[21/08/2008|21:14] C:\DOCUME~1\MISS-P~1\APPLIC~1\Mozilla
[03/01/2008|14:15] C:\DOCUME~1\MISS-P~1\APPLIC~1\MSNInstaller
[02/11/2007|13:01] C:\DOCUME~1\MISS-P~1\APPLIC~1\NeroVision
[09/01/2009|15:50] C:\DOCUME~1\MISS-P~1\APPLIC~1\OpenOffice.org2
[07/07/2008|09:00] C:\DOCUME~1\MISS-P~1\APPLIC~1\Opera
[06/08/2007|16:07] C:\DOCUME~1\MISS-P~1\APPLIC~1\PlayFirst
[10/03/2008|20:17] C:\DOCUME~1\MISS-P~1\APPLIC~1\Samsung
[19/09/2008|17:01] C:\DOCUME~1\MISS-P~1\APPLIC~1\SlySoft
[28/05/2007|18:38] C:\DOCUME~1\MISS-P~1\APPLIC~1\Sun
[03/11/2005|00:09] C:\DOCUME~1\MISS-P~1\APPLIC~1\Symantec
[20/08/2007|13:31] C:\DOCUME~1\MISS-P~1\APPLIC~1\Talkback
[04/06/2008|16:58] C:\DOCUME~1\MISS-P~1\APPLIC~1\TaoUSign
[04/07/2008|19:48] C:\DOCUME~1\MISS-P~1\APPLIC~1\teamspeak2
[23/07/2008|12:11] C:\DOCUME~1\MISS-P~1\APPLIC~1\Vso
[26/09/2007|07:53] C:\DOCUME~1\MISS-P~1\APPLIC~1\Windows Live Writer
[09/03/2008|14:00] C:\DOCUME~1\MISS-P~1\APPLIC~1\WinRAR

[26/09/2007|07:36] C:\DOCUME~1\NETWOR~1\APPLIC~1\Identities
[27/09/2007|05:24] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[30/01/2008 17:46][--a------] C:\WINDOWS\tasks\SCHEDLGU.TXT
[22/12/2008 08:57][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[09/01/2009 15:48][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 13:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini

--------------------\\ Listing des dossiers dans C:\Program Files

[10/02/2008|12:44] C:\Program Files\3721
[22/12/2008|18:49] C:\Program Files\ABBYY FineReader 6.0 Sprint
[10/02/2008|12:44] C:\Program Files\Accoona
[18/11/2006|11:56] C:\Program Files\Acer
[18/11/2006|11:57] C:\Program Files\Acer TV-FM
[12/09/2006|05:30] C:\Program Files\Acer WLAN 11g USB Dongle
[11/02/2008|18:30] C:\Program Files\Adobe
[02/11/2007|13:02] C:\Program Files\Ahead
[10/02/2008|12:44] C:\Program Files\akl
[23/01/2008|12:06] C:\Program Files\Alwil Software
[27/09/2008|22:06] C:\Program Files\Anyplace Control 4
[30/12/2008|15:53] C:\Program Files\Apowersoft
[31/03/2007|10:44] C:\Program Files\Apple Software Update
[19/11/2006|18:07] C:\Program Files\ArcSoft
[12/07/2008|10:37] C:\Program Files\Ares
[14/01/2007|10:12] C:\Program Files\Atari
[26/09/2008|12:54] C:\Program Files\Audacity
[25/03/2008|17:08] C:\Program Files\Avira
[01/12/2007|12:57] C:\Program Files\Azureus
[03/11/2007|10:06] C:\Program Files\BitComet
[26/06/2008|20:06] C:\Program Files\CDBurnerXP
[19/11/2006|18:06] C:\Program Files\Chicony
[02/11/2005|23:51] C:\Program Files\ComPlus Applications
[18/11/2006|11:56] C:\Program Files\CyberLink
[23/01/2008|12:50] C:\Program Files\DAEMON Tools SearchBar
[31/10/2007|08:08] C:\Program Files\DAP
[19/11/2006|18:06] C:\Program Files\directx
[23/02/2008|22:59] C:\Program Files\DivX
[21/05/2008|14:39] C:\Program Files\Dofus
[29/08/2008|20:22] C:\Program Files\D-Tools
[27/02/2007|09:07] C:\Program Files\DVDFab Platinum
[30/12/2008|15:42] C:\Program Files\DVDVIDEOSOFT
[14/12/2008|10:08] C:\Program Files\EA GAMES
[25/09/2007|11:21] C:\Program Files\Electronic Arts
[23/12/2006|10:01] C:\Program Files\eMule
[20/09/2008|13:01] C:\Program Files\epson
[30/12/2008|15:42] C:\Program Files\Fichiers communs
[25/12/2006|10:04] C:\Program Files\FileZilla
[18/07/2008|15:51] C:\Program Files\Google
[19/11/2006|17:56] C:\Program Files\Hewlett-Packard
[19/11/2006|17:53] C:\Program Files\HP
[14/10/2008|20:16] C:\Program Files\InstallShield Installation Information
[11/12/2008|21:55] C:\Program Files\Internet Explorer
[31/03/2007|10:49] C:\Program Files\iPod
[31/03/2007|10:52] C:\Program Files\iTunes
[17/08/2007|17:06] C:\Program Files\Jasc Software Inc
[03/04/2008|17:16] C:\Program Files\Java
[03/01/2008|14:14] C:\Program Files\LimeWire
[04/07/2008|16:21] C:\Program Files\Logitech
[20/12/2008|22:16] C:\Program Files\lphant
[10/02/2008|19:24] C:\Program Files\Macrogaming
[20/11/2006|20:20] C:\Program Files\Maxis
[21/08/2008|22:27] C:\Program Files\Messenger
[03/01/2009|01:02] C:\Program Files\Messenger Plus! Live
[16/05/2007|11:48] C:\Program Files\MessengerPlus! 3
[23/12/2008|11:46] C:\Program Files\Microsoft
[05/07/2007|22:28] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[12/09/2006|05:31] C:\Program Files\microsoft frontpage
[23/12/2008|11:51] C:\Program Files\Microsoft Sync Framework
[12/09/2006|05:31] C:\Program Files\Movie Maker
[09/01/2009|19:20] C:\Program Files\Mozilla Firefox
[09/01/2009|13:27] C:\Program Files\MP3 Player Utilities
[03/01/2008|14:16] C:\Program Files\MSN
[12/09/2006|05:31] C:\Program Files\MSN Gaming Zone
[18/11/2006|18:16] C:\Program Files\MSXML 4.0
[16/08/2007|14:20] C:\Program Files\NetMeeting
[20/10/2007|08:41] C:\Program Files\Neuf
[09/12/2007|16:43] C:\Program Files\NewTech Infosystems
[04/03/2007|09:47] C:\Program Files\Norton AntiVirus
[12/09/2006|05:31] C:\Program Files\Oca History Tool
[12/09/2006|05:31] C:\Program Files\Online Services
[20/06/2008|20:25] C:\Program Files\OpenOffice.org 2.4
[13/06/2007|21:30] C:\Program Files\Outlook Express
[10/02/2008|12:44] C:\Program Files\p2pnetworks
[25/03/2008|17:01] C:\Program Files\Pack Securite
[19/02/2008|11:55] C:\Program Files\Panda Security
[11/02/2008|18:44] C:\Program Files\PhotoFiltre
[24/02/2008|15:35] C:\Program Files\Picasa2
[30/06/2007|10:56] C:\Program Files\QuickTime
[12/09/2006|05:31] C:\Program Files\Realtek AC97
[10/03/2008|19:42] C:\Program Files\Samsung
[12/09/2006|05:31] C:\Program Files\Services en ligne
[12/09/2006|05:31] C:\Program Files\sisagp
[18/11/2006|11:42] C:\Program Files\SiSLan
[19/09/2008|16:59] C:\Program Files\SlySoft
[27/01/2008|10:33] C:\Program Files\SmartCom
[03/03/2007|13:58] C:\Program Files\Softwin
[09/01/2009|18:27] C:\Program Files\Steam
[26/08/2007|17:49] C:\Program Files\StofWare
[14/02/2008|22:16] C:\Program Files\Trend Micro
[02/02/2008|12:03] C:\Program Files\Ulead Systems
[03/11/2005|00:01] C:\Program Files\Uninstall Information
[30/12/2008|15:32] C:\Program Files\VideoLAN
[20/01/2007|13:07] C:\Program Files\Visicom Media
[23/07/2008|12:11] C:\Program Files\VSO
[27/09/2007|05:53] C:\Program Files\Windows Desktop Search
[23/12/2008|11:53] C:\Program Files\Windows Live
[31/12/2007|18:23] C:\Program Files\Windows Live Favorites
[23/12/2008|11:46] C:\Program Files\Windows Live SkyDrive
[23/12/2008|11:52] C:\Program Files\Windows Live Toolbar
[16/05/2008|15:09] C:\Program Files\Windows Media Connect 2
[16/05/2008|15:09] C:\Program Files\Windows Media Player
[12/09/2006|05:31] C:\Program Files\Windows NT
[02/11/2005|23:52] C:\Program Files\WindowsUpdate
[09/03/2008|14:00] C:\Program Files\WinRAR
[21/04/2007|08:31] C:\Program Files\WinZip
[12/09/2006|05:31] C:\Program Files\xerox
[16/08/2007|14:09] C:\Program Files\YesMessenger

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[11/02/2008|18:32] C:\Program Files\Fichiers communs\Adobe
[22/01/2007|12:01] C:\Program Files\Fichiers communs\Adobe Systems Shared
[30/12/2008|15:42] C:\Program Files\Fichiers communs\DVDVIDEOSOFT
[15/06/2008|14:55] C:\Program Files\Fichiers communs\FotoWire
[10/12/2006|13:01] C:\Program Files\Fichiers communs\InstallShield
[10/12/2007|20:14] C:\Program Files\Fichiers communs\Java
[10/02/2007|20:01] C:\Program Files\Fichiers communs\Logitech
[23/12/2008|11:46] C:\Program Files\Fichiers communs\Microsoft Shared
[12/09/2006|05:30] C:\Program Files\Fichiers communs\MSSoap
[03/11/2005|00:07] C:\Program Files\Fichiers communs\muvee Technologies
[03/11/2005|00:07] C:\Program Files\Fichiers communs\NewTech Infosystems
[12/09/2006|05:30] C:\Program Files\Fichiers communs\ODBC
[12/09/2006|05:30] C:\Program Files\Fichiers communs\Services
[27/01/2008|10:29] C:\Program Files\Fichiers communs\SmartCom
[03/03/2007|14:00] C:\Program Files\Fichiers communs\Softwin
[12/09/2006|05:30] C:\Program Files\Fichiers communs\SpeechEngines
[29/08/2007|15:07] C:\Program Files\Fichiers communs\Symantec Shared
[13/06/2007|21:30] C:\Program Files\Fichiers communs\System
[23/12/2008|11:39] C:\Program Files\Fichiers communs\Windows Live
[31/12/2007|18:13] C:\Program Files\Fichiers communs\WindowsLiveInstaller

--------------------\\ Process

( 75 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\DOCUME~1\Al_iiS\Cookies\al_iis@pacificpoker[1].txt

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-09 19:41:07
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 1046

--------------------\\ Recherche d'autres infections

--------------------\\ ROOTKIT !!

Rootkit Rustock ! .. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\ztx86]

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\ALLUSE~1\Documents\Nouveau dossier\SIMS 2\The Sims 2 Manuel Pochette Keygen By Tua.rar
C:\DOCUME~1\ALLUSE~1\Documents\Nouveau dossier\SIMS 2\The Sims 2 Multilangue-Keygen By Tua.nfo
C:\DOCUME~1\ALLUSE~1\Documents\Nouveau dossier\SIMS 2\sims2 cd3\The Sims 2 Cd3 Multilangue-Keygen By Tua.cue


[F:1356][D:23]-> C:\DOCUME~1\Al_iiS\LOCALS~1\Temp
[F:281][D:0]-> C:\DOCUME~1\Al_iiS\Cookies
[F:706][D:4]-> C:\DOCUME~1\Al_iiS\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 08/01/2009|18:45 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 09/01/2009|19:53 - Option : [2]

--------------------\\ Fin du rapport a 19:53:53

Répondre à hollye tyler

Reposte un rapport Hijackthis.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:43:22, on 10/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
C:\Program Files\Acer\Acer eConsole\MediaServerService.exe
C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\Acer TV-FM\Kernel\TV\CLCapSvc.exe
C:\Program Files\Acer TV-FM\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\CDBurnerXP\NMSAccessU.exe
c:\fotowin\RTETPISv.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Acer TV-FM\Kernel\TV\CLSched.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\D-Tools\daemon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICDE.EXE
C:\Program Files\Neuf\Media Center\MediaCenter.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Acer\Empowering Technology\Acer.Empowering.Framework.Launcher.exe
C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
C:\Program Files\OpenOffice.org 2.4\program\soffice.exe
C:\Program Files\OpenOffice.org 2.4\program\soffice.BIN
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\lphant\eLePhantClient.exe
C:\Program Files\Java\jre1.6.0_05\bin\jucheck.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = res://C:\WINDOWS\system32\xpsp3res.dll/dnserror.htm
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://global.acer.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://login.live.com/ppsecure/sha1auth.srf?lc=1036
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: &Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [EPSON Stylus DX7400 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICDE.EXE /FU "C:\DOCUME~1\Al_iiS\LOCALS~1\Temp\E_S28C.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-21-1737371711-369032000-629289193-1009\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'miss-pink')
O4 - HKUS\S-1-5-21-1737371711-369032000-629289193-1009\..\Run: [Neuf Media Center] "C:\Program Files\Neuf\Media Center\MediaCenter.exe" (User 'miss-pink')
O4 - HKUS\S-1-5-21-1737371711-369032000-629289193-1009\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h (User 'miss-pink')
O4 - HKUS\S-1-5-21-1737371711-369032000-629289193-1009\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot (User 'miss-pink')
O4 - HKUS\S-1-5-21-1737371711-369032000-629289193-1009\..\Run: [EPSON Stylus DX7400 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATICDE.EXE /FU "C:\WINDOWS\TEMP\E_S51.tmp" /EF "HKCU" (User 'miss-pink')
O4 - HKUS\S-1-5-21-1737371711-369032000-629289193-1009\..\Run: [Steam] "C:\Program Files\Steam\Steam.exe" -silent (User 'miss-pink')
O4 - HKUS\S-1-5-21-1737371711-369032000-629289193-1009\..\Run: [book ante] C:\DOCUME~1\MISS-P~1\APPLIC~1\ELSEPL~1\AXISNEW.exe (User 'miss-pink')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - S-1-5-21-1737371711-369032000-629289193-1009 Startup: OpenOffice.org 2.4.lnk = C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe (User 'miss-pink')
O4 - S-1-5-21-1737371711-369032000-629289193-1009 User Startup: OpenOffice.org 2.4.lnk = C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe (User 'miss-pink')
O4 - Startup: OpenOffice.org 2.4.lnk = C:\Program Files\OpenOffice.org 2.4\program\quickstart.exe
O4 - Global Startup: Acer Empowering Technology.lnk = ?
O4 - Global Startup: Acer WLAN 11g USB Dongle.lnk = C:\Program Files\Acer WLAN 11g USB Dongle\ZDWlan.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/bina [...] b31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/bina [...] b31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w3/pr [...] NPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-F [...] E_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/re [...] oscan8.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b31267.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/bina [...] b47946.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/bina [...] b31267.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game08.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/bina [...] b31267.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\Acer\Acer eConsole\MediaServerService.exe
O23 - Service: Memory Check Service (AcerMemUsageCheckService) - Acer Inc. - C:\Acer\Empowering Technology\ePerformance\MemCheck.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe
O23 - Service: Ares Chatroom server (AresChatServer) - Ares Development Group - C:\Program Files\Ares\chatServer.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Acer TV-FM\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Acer TV-FM\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\Acer TV-FM\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: RTE : Partage TAPI (RTETAPIService) - RTE Software - c:\fotowin\RTETPISv.exe

--
End of file - 13174 bytes

Répondre à hollye tyler

Re,

Supprime tes cracks :
C:\DOCUME~1\ALLUSE~1\Documents\Nouveau dossier\SIMS 2\The Sims 2 Manuel Pochette Keygen By Tua.rar
C:\DOCUME~1\ALLUSE~1\Documents\Nouveau dossier\SIMS 2\The Sims 2 Multilangue-Keygen By Tua.nfo
C:\DOCUME~1\ALLUSE~1\Documents\Nouveau dossier\SIMS 2\sims2 cd3\The Sims 2 Cd3 Multilangue-Keygen By Tua.cue

Tu as encore des pubs ?

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

Non je n'ai pu de pubs . :)
Par contre je n'arrive pas à suprimer les cracks , je n'arrive pas à trouver " DOCUME~1... sa se trouve où ?

Répondre à hollye tyler

DOCUME~1.=Documents and Settings :)

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

Voila j'ai supprimé :D & je n'ai pu de pubs merci beaucoup =)

Répondre à hollye tyler

Bonne continuation.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark
Tom's Guide > Forum > Sécurité - Virus > Probléme PUB!
Aller à :

Il y a 2004 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.

Attention

Vous allez répondre sur un sujet resté inactif pendant plus de 6 mois.
Assurez-vous d'apporter des éléments nouveaux à la discussion avant de poursuivre.

Répondre Annuler
Liens