Tom's Guide > Forum > Sécurité - Virus > Win32 injector on

Win32 injector on

Forum Sécurité - Virus : Win32 injector on

TomsGuide.com : 800 000 inscrits répondent à toutes vos questions high-tech et informatique. Pour obtenir de l'aide, inscrivez-vous gratuitement !
Mot :    Pseudo :           
 

bonjour
je viens de me choper un cheval de troie et mon anti virus n'arrive pas a le supprimer merci

av:nod32

Liens sponsorisés
Inscrivez-vous ou connectez-vous pour masquer ceci.

Bonjour,

Quel est l'emplacement ?

Télécharge Random's System Information Tool (RSIT) (de random/random) et sauvegarde-le sur le Bureau.

  • Double-clique sur RSIT.exe afin de lancer RSIT.
  • Clique Continue  à l'écran Disclaimer.
  • Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.
  • Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront. Poste le contenu de log.txt  (qui sera affiché)

ainsi que de info.txt  (qui sera réduit dans la Barre des Tâches)

  • NB : Les rapports sont sauvegardés dans le dossier C:\rsit  
  • Veille bien à me poster l'intégralité des rapports, vérifie qu'ils soient complets une fois que tu les as postés.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

Logfile of random's system information tool 1.06 (written by random/random)
Run by mizot at 2009-05-22 19:20:41
Microsoft Windows XP Professionnel Service Pack 3
System drive C: has 3 GB (3%) free of 100 GB
Total RAM: 3327 MB (78% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:20:49, on 22/05/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\DRIVERS\WtSrv.exe
C:\PROGRA~1\Bandoo\Bandoo.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
C:\WINDOWS\system32\Dsp24Set.exe
C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe
C:\WINDOWS\vsnp2std.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS\system32\WService.EXE
C:\PROGRA~1\SFR\LOGICI~1\LOGICI~2.EXE
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\WINDOWS\system\mysmas.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Brother\ControlCenter3\brccMCtl.exe
C:\Program Files\PeerGuardian2\pg2.exe
C:\Program Files\Brother\Brmfcmon\BrMfcmon.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Program Files\BitComet\BitComet.exe
C:\Documents and Settings\mizot\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\PROGRA~1\MICROS~3\rapimgr.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\GigaTribe\gigatribe.exe
C:\Program Files\MagicDisc\MagicDisc.exe
C:\Documents and Settings\mizot\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Fichiers communs\Adobe\Updater6\Adobe_Updater.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\mizot\Bureau\RSIT.exe
C:\Program Files\trend micro\mizot.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: IsoBuster Toolbar - {266fcdca-7bb3-4da7-b3bf-f845dea2ebd6} - C:\Program Files\IsoBuster\tbIso1.dll
R3 - URLSearchHook: Eazel-FR Toolbar - {a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} - C:\Program Files\Eazel-FR\tbEaz1.dll
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IsoBuster Toolbar - {266fcdca-7bb3-4da7-b3bf-f845dea2ebd6} - C:\Program Files\IsoBuster\tbIso1.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Eazel-FR Toolbar - {a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} - C:\Program Files\Eazel-FR\tbEaz1.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: IsoBuster Toolbar - {266fcdca-7bb3-4da7-b3bf-f845dea2ebd6} - C:\Program Files\IsoBuster\tbIso1.dll
O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
O3 - Toolbar: Eazel-FR Toolbar - {a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} - C:\Program Files\Eazel-FR\tbEaz1.dll
O4 - HKLM\..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
O4 - HKLM\..\Run: [DSP24] Dsp24Set.exe /n
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TrayServer] C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe
O4 - HKLM\..\Run: [snp2std] C:\WINDOWS\vsnp2std.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [WService] WService.EXE
O4 - HKLM\..\Run: [Logiciel de Synchronisation SFRTray] C:\PROGRA~1\SFR\LOGICI~1\LOGICI~2.EXE
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files\ScanSoft\PaperPort\Ereg\Ereg.exe" -r "C:\Documents and Settings\All Users\Application Data\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini
O4 - HKLM\..\Run: [BrMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN
O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Windows UDP Control Center] msnmsgrss.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKCU\..\Run: [Free Download Manager] "C:\Program Files\Free Download Manager\fdm.exe" -autorun
O4 - HKCU\..\Run: [BitComet] "C:\Program Files\BitComet\BitComet.exe" /tray
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\mizot\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: GigaTribe.lnk = C:\Program Files\GigaTribe\gigatribe.exe
O4 - Startup: MagicDisc.lnk = C:\Program Files\MagicDisc\MagicDisc.exe
O4 - Startup: Notification de cadeaux MSN.lnk = C:\Documents and Settings\mizot\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Tout télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Télécharger la sélection avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Télécharger la vidéo avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll/206 (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://fichiers.touslesdrivers.com [...] _1_0_4.cab
O20 - AppInit_DLLs: c:\progra~1\bandoo\bndhook.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Bandoo Coordinator - Discordia Limited - C:\PROGRA~1\Bandoo\Bandoo.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe
O23 - Service: Google Update Service (gupdate1c98ba886f710b8) (gupdate1c98ba886f710b8) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: WinTab Service (WinTabService) - Tablet Driver - C:\WINDOWS\system32\DRIVERS\WtSrv.exe

--
End of file - 12989 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Google Software Updater.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachine.job
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-842925246-823518204-1801674531-1003.job
C:\WINDOWS\tasks\User_Feed_Synchronization-{B4979090-6002-43CA-9626-A4FE053C6956}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{266fcdca-7bb3-4da7-b3bf-f845dea2ebd6}]
IsoBuster Toolbar - C:\Program Files\IsoBuster\tbIso1.dll [2009-05-20 2094616]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}]
BitComet Helper - C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll [2008-08-11 656696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5C255C8A-E604-49b4-9D64-90988571CECB}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Programme d'aide de l'Assistant de connexion Windows Live - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{a8f9752d-e2b8-4e7a-86b5-499f4330e2fe}]
Eazel-FR Toolbar - C:\Program Files\Eazel-FR\tbEaz1.dll [2009-03-26 1883672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2008-09-19 2436160]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [2009-03-26 668656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205}]
FDMIECookiesBHO Class - C:\Program Files\Free Download Manager\iefdm2.dll [2008-11-12 94208]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-03-09 35840]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E7E6F031-17CE-4C07-BC86-EABFE594F69C}]
JQSIEStartDetectorImpl Class - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2009-03-09 73728]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{266fcdca-7bb3-4da7-b3bf-f845dea2ebd6} - IsoBuster Toolbar - C:\Program Files\IsoBuster\tbIso1.dll [2009-05-20 2094616]
{32099AAC-C132-4136-9E9A-4E364A424E17} - DAEMON Tools Toolbar - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll [2008-12-10 929224]
{a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} - Eazel-FR Toolbar - C:\Program Files\Eazel-FR\tbEaz1.dll [2009-03-26 1883672]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"H2O"=C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe [2005-10-23 385024]
"DSP24"=Dsp24Set.exe /n []
"QuickTime Task"=C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [2008-09-11 282624]
"TrayServer"=C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe [2007-07-17 90112]
"snp2std"=C:\WINDOWS\vsnp2std.exe [2006-09-15 675840]
"StartCCC"=C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2008-08-01 61440]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"WService"=C:\WINDOWS\system32\WService.EXE [2005-11-23 40960]
"Logiciel de Synchronisation SFRTray"=C:\PROGRA~1\SFR\LOGICI~1\LOGICI~2.EXE [2007-10-08 32837]
"SSBkgdUpdate"=C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PaperPort PTD"=C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [2007-01-29 30248]
"IndexSearch"=C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [2007-01-29 46632]
"PPort11reminder"=C:\Program Files\ScanSoft\PaperPort\Ereg\Ereg.exe [2007-02-01 255528]
"BrMfcWnd"=C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe [2007-03-12 663552]
"ControlCenter3"=C:\Program Files\Brother\ControlCenter3\brctrcen.exe [2007-01-26 65536]
"nod32kui"=C:\Program Files\Eset\nod32kui.exe [2009-03-31 949376]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-03-09 148888]
"Windows UDP Control Center"=msnmsgrss.exe []
"TkBellExe"=C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe [2009-05-19 198160]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
"PeerGuardian"=C:\Program Files\PeerGuardian2\pg2.exe [2005-04-23 1175552]
"H/PC Connection Agent"=C:\Program Files\Microsoft ActiveSync\wcescomm.exe [2006-11-13 1289000]
"Free Download Manager"=C:\Program Files\Free Download Manager\fdm.exe [2008-11-12 2474031]
"BitComet"=C:\Program Files\BitComet\BitComet.exe [2008-12-03 2514744]
"Google Update"=C:\Documents and Settings\mizot\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-01-02 133104]
"MsnMsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-02-06 3885408]
"DAEMON Tools Lite"=C:\Program Files\DAEMON Tools Lite\daemon.exe [2008-12-29 687560]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-09-22 68856]

C:\Documents and Settings\mizot\Menu Démarrer\Programmes\Démarrage
Adobe Gamma.lnk - C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
GigaTribe.lnk - C:\Program Files\GigaTribe\gigatribe.exe
MagicDisc.lnk - C:\Program Files\MagicDisc\MagicDisc.exe
Notification de cadeaux MSN.lnk - C:\Documents and Settings\mizot\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="c:\progra~1\bandoo\bndhook.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2008-08-21 143360]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MYS Mutex Algorithm Service]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MYS Mutex Algorithm Service]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Program Files\BitComet\BitComet.exe"="C:\Program Files\BitComet\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client"
"C:\Program Files\Steinberg\Cubase SX 3\Cubasesx3.exe"="C:\Program Files\Steinberg\Cubase SX 3\Cubasesx3.exe:*:Enabled:Cubase SX"
"C:\WINDOWS\system32\mmc.exe"="C:\WINDOWS\system32\mmc.exe:*:Disabled:Microsoft Management Console"
"C:\Program Files\Java\jre1.6.0_07\bin\javaw.exe"="C:\Program Files\Java\jre1.6.0_07\bin\javaw.exe:*:Disabled:Java(TM) Platform SE binary"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\Program Files\uTorrent\uTorrent.exe"="C:\Program Files\uTorrent\uTorrent.exe:*:Enabled:µTorrent"
"C:\Program Files\Internet Explorer\iexplore.exe"="C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer"
"C:\WINDOWS\system32\dpvsetup.exe"="C:\WINDOWS\system32\dpvsetup.exe:*:Enabled:Microsoft DirectPlay Voice Test"
"K:\Utils\Detection\detectionui_r.exe"="K:\Utils\Detection\detectionui_r.exe:*:Enabled:detectionui_r"
"K:\System\SPLINTERCELL3.EXE"="K:\System\SPLINTERCELL3.EXE:*:Enabled:SPLINTERCELL3"
"C:\Program Files\ma-config.com\maconfservice.exe"="C:\Program Files\ma-config.com\maconfservice.exe:LocalSubNet:Enabled:maconfservice"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\E Games\Rahjongg Curse of Ra\Rahjongg.exe"="C:\Program Files\E Games\Rahjongg Curse of Ra\Rahjongg.exe:*:Disabled:Game"
"C:\Program Files\GigaTribe\gigatribe.exe"="C:\Program Files\GigaTribe\gigatribe.exe:*:Enabled:gigatribe"
"C:\Program Files\Sierra\SWAT 4\Content\System\Swat4DedicatedServer.exe"="C:\Program Files\Sierra\SWAT 4\Content\System\Swat4DedicatedServer.exe:*:Enabled:SWAT 4"
"C:\Program Files\Sierra\SWAT 4\Content\System\SWAT4.EXE"="C:\Program Files\Sierra\SWAT 4\Content\System\SWAT4.EXE:*:Enabled:SWAT 4"
"C:\Program Files\Wolfenstein - Enemy Territory\ET.exe"="C:\Program Files\Wolfenstein - Enemy Territory\ET.exe:*:Enabled:ET"
"C:\Program Files\Pando Networks\Media Booster\PMB.exe"="C:\Program Files\Pando Networks\Media Booster\PMB.exe:*:Enabled:Pando Media Booster"
"C:\Program Files\Ludi\Ludi.exe"="C:\Program Files\Ludi\Ludi.exe:*:Enabled:Ludi ludi.exe"
"C:\Program Files\Ludi\LCBelote\LCBelote.exe"="C:\Program Files\Ludi\LCBelote\LCBelote.exe:*:Enabled:Ludi LCBelote.exe"
"C:\Program Files\Ludi\LCChess\LCChess.exe"="C:\Program Files\Ludi\LCChess\LCChess.exe:*:Enabled:Ludi LCChess.exe"
"C:\Program Files\Ludi\LCCoinche\LCCoinche.exe"="C:\Program Files\Ludi\LCCoinche\LCCoinche.exe:*:Enabled:Ludi LCCoinche.exe"
"C:\Program Files\Ludi\LCSolitaire\LCSolitaire.exe"="C:\Program Files\Ludi\LCSolitaire\LCSolitaire.exe:*:Enabled:Ludi LCSolitaire.exe"
"C:\Program Files\Ludi\LCDiag.exe"="C:\Program Files\Ludi\LCDiag.exe:*:Enabled:Ludi LCDiag.exe"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Microsoft ActiveSync\rapimgr.exe"="C:\Program Files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager"
"C:\Program Files\Microsoft ActiveSync\wcescomm.exe"="C:\Program Files\Microsoft ActiveSync\wcescomm.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Connection Manager"
"C:\Program Files\Microsoft ActiveSync\WCESMgr.exe"="C:\Program Files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application"
"C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe"="C:\Program Files\Windows Live\Sync\WindowsLiveSync.exe:*:Enabled:Windows Live Sync"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{903c60bf-9525-11dd-be23-00e04c4ba679}]
shell\AutoRun\command - J:\LaunchU3.exe -a


======List of files/folders created in the last 1 months======

2009-05-22 19:20:41 ----D---- C:\rsit
2009-05-22 19:20:41 ----D---- C:\Program Files\trend micro
2009-05-19 14:54:17 ----D---- C:\Program Files\Fichiers communs\xing shared
2009-05-19 14:54:14 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2009-05-19 14:54:09 ----A---- C:\WINDOWS\system32\pndx5032.dll
2009-05-19 14:54:09 ----A---- C:\WINDOWS\system32\pndx5016.dll
2009-05-19 14:54:06 ----D---- C:\Program Files\Real
2009-05-19 14:54:06 ----D---- C:\Program Files\Fichiers communs\Real
2009-05-17 16:30:59 ----A---- C:\lats.exe
2009-05-15 12:42:06 ----A---- C:\WINDOWS\system32\pthreadGC2.dll
2009-05-15 12:21:25 ----D---- C:\Program Files\MediaCoder
2009-05-11 15:30:40 ----D---- C:\Documents and Settings\All Users\Application Data\Dragon's Eye Productions
2009-05-11 15:30:39 ----D---- C:\Program Files\Furcadia
2009-05-08 11:19:45 ----A---- C:\WINDOWS\3DBELOTE2.INI
2009-05-08 11:03:12 ----D---- C:\Program Files\3DBELOTE
2009-05-06 15:05:19 ----HD---- C:\WINDOWS\msdownld.tmp
2009-05-06 15:03:46 ----HDC---- C:\WINDOWS\ie8
2009-05-02 12:43:56 ----A---- C:\WINDOWS\Bbt97.INI
2009-05-02 11:59:05 ----A---- C:\WINDOWS\BELOTEXP.INI
2009-04-30 16:07:38 ----D---- C:\Program Files\Fichiers communs\Adobe Systems Shared
2009-04-25 19:19:15 ----D---- C:\CFLog
2009-04-25 19:08:51 ----D---- C:\Program Files\Subagames
2009-04-25 18:45:59 ----D---- C:\Documents and Settings\All Users\Application Data\PMB Files
2009-04-25 18:45:44 ----D---- C:\Program Files\Pando Networks
2009-04-25 17:48:40 ----A---- C:\WINDOWS\Sod.ini
2009-04-23 10:07:54 ----A---- C:\WINDOWS\system32\CmdLineExt.dll

======List of files/folders modified in the last 1 months======

2009-05-22 19:20:46 ----D---- C:\WINDOWS\Prefetch
2009-05-22 19:20:42 ----D---- C:\Program Files\PeerGuardian2
2009-05-22 19:20:41 ----D---- C:\Program Files
2009-05-22 19:19:44 ----D---- C:\Program Files\BitComet
2009-05-22 19:19:17 ----D---- C:\Documents and Settings\mizot\Application Data\Free Download Manager
2009-05-22 19:19:09 ----D---- C:\Program Files\Mozilla Firefox
2009-05-22 18:35:38 ----D---- C:\WINDOWS\Temp
2009-05-22 15:18:24 ----D---- C:\WINDOWS\system32\CatRoot2
2009-05-22 11:17:10 ----SD---- C:\WINDOWS\Tasks
2009-05-22 11:06:29 ----D---- C:\WINDOWS\system
2009-05-22 10:35:21 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-05-22 10:34:54 ----D---- C:\Documents and Settings\All Users\Application Data\Google Updater
2009-05-20 20:31:04 ----D---- C:\WINDOWS
2009-05-20 16:54:15 ----D---- C:\Documents and Settings\mizot\Application Data\OpenOffice.org2
2009-05-20 14:58:26 ----A---- C:\WINDOWS\system32\msvcsv60.dll
2009-05-20 14:37:42 ----RSD---- C:\WINDOWS\assembly
2009-05-20 14:37:42 ----D---- C:\WINDOWS\Microsoft.NET
2009-05-20 09:27:41 ----AC---- C:\WINDOWS\BBW_INFO.INI
2009-05-20 08:24:39 ----SHD---- C:\WINDOWS\Installer
2009-05-20 08:24:37 ----HD---- C:\WINDOWS\inf
2009-05-20 08:24:37 ----D---- C:\WINDOWS\system32\drivers
2009-05-20 08:24:35 ----DC---- C:\WINDOWS\system32\DRVSTORE
2009-05-20 08:24:34 ----D---- C:\Program Files\Windows Live
2009-05-20 08:23:59 ----D---- C:\WINDOWS\system32\DirectX
2009-05-20 08:23:31 ----D---- C:\WINDOWS\WinSxS
2009-05-20 08:23:17 ----D---- C:\Program Files\MSN Messenger
2009-05-20 08:23:03 ----D---- C:\WINDOWS\system32
2009-05-20 08:22:45 ----AD---- C:\Program Files\Fichiers communs\Microsoft Shared
2009-05-19 14:54:27 ----D---- C:\Documents and Settings\mizot\Application Data\Real
2009-05-19 14:54:17 ----D---- C:\Program Files\Fichiers communs
2009-05-19 14:54:08 ----A---- C:\WINDOWS\system32\pncrt.dll
2009-05-19 14:54:08 ----A---- C:\WINDOWS\system32\msvcr71.dll
2009-05-19 14:54:08 ----A---- C:\WINDOWS\system32\msvcp71.dll
2009-05-19 14:53:47 ----D---- C:\Program Files\Internet Explorer
2009-05-15 13:29:55 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2009-05-15 12:42:06 ----D---- C:\Program Files\AoA Audio Extractor
2009-05-13 11:39:51 ----D---- C:\WINDOWS\Network Diagnostic
2009-05-12 10:55:07 ----RSD---- C:\WINDOWS\Fonts
2009-05-11 17:38:38 ----D---- C:\WINDOWS\Debug
2009-05-08 18:57:07 ----D---- C:\Program Files\Google
2009-05-06 15:07:27 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-05-06 15:07:27 ----D---- C:\WINDOWS\system32\fr-fr
2009-05-06 15:07:27 ----D---- C:\WINDOWS\Media
2009-05-06 15:07:27 ----D---- C:\WINDOWS\Help
2009-05-05 14:00:11 ----D---- C:\Program Files\Yahoo!
2009-05-05 13:59:42 ----HD---- C:\Program Files\InstallShield Installation Information
2009-05-05 12:58:01 ----D---- C:\Documents and Settings\mizot\Application Data\Adobe
2009-05-02 11:44:27 ----A---- C:\WINDOWS\win.ini
2009-04-30 16:09:47 ----D---- C:\Program Files\Adobe
2009-04-30 16:08:09 ----D---- C:\Program Files\Fichiers communs\Adobe
2009-04-30 16:06:10 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2009-04-25 19:14:08 ----D---- C:\Program Files\Common Files
2009-04-25 10:57:48 ----A---- C:\debug.txt
2009-04-24 22:34:43 ----D---- C:\Documents and Settings\mizot\Application Data\uTorrent
2009-04-23 10:45:45 ----D---- C:\Downloads

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 Asapi;Asapi; C:\WINDOWS\system32\drivers\Asapi.sys [2002-04-17 11264]
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2008-04-14 40576]
R1 nod32drv;nod32drv; C:\WINDOWS\system32\drivers\nod32drv.sys [2009-03-31 15424]
R1 WS2IFSL;Environnement de prise en charge de Fournisseur de services non-IFS Windows Sockets 2.0; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2008-04-14 12032]
R2 AMON;AMON; C:\WINDOWS\system32\drivers\amon.sys [2009-03-31 512096]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr_tdi.sys [2009-02-06 55152]
R2 RVIEG01;VSC Engine; \??\C:\Program Files\Roland\Virtual Sound Canvas DXi\RVIEg01.sys []
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2008-08-21 3299840]
R3 BrScnUsb;Brother USB Still Image driver; C:\WINDOWS\system32\DRIVERS\BrScnUsb.sys [2004-10-15 15295]
R3 CLEDX;Team H2O CLEDX service; C:\WINDOWS\system32\DRIVERS\cledx.sys [2005-05-09 33792]
R3 DSP24_VL;Service for DSP24 Value Driver (EWDM); C:\WINDOWS\system32\drivers\d24.sys [2004-10-21 28480]
R3 HdAudAddService;ATI Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\AtiHdAud.sys [2006-12-28 84992]
R3 HDAudBus;Pilote de bus Microsoft UAA pour High Definition Audio; C:\WINDOWS\system32\DRIVERS\HDAudBus.sys [2008-04-14 144384]
R3 hidusb;Pilote de classe HID Microsoft; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-14 10368]
R3 ICM2_01;%DSP24_AU.SvcDesc%; C:\WINDOWS\system32\drivers\D24Wdm.sys [2004-10-21 22944]
R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\WINDOWS\system32\DRIVERS\mcdbus.sys [2008-07-28 116736]
R3 mouhid;Pilote HID de souris; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2008-04-14 12288]
R3 pcouffin;VSO Software pcouffin; C:\WINDOWS\System32\Drivers\pcouffin.sys [2008-10-08 47360]
R3 pgfilter;pgfilter; \??\C:\Program Files\PeerGuardian2\pgfilter.sys []
R3 RTL8023xp;Realtek 10/100/1000 PCI NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtnicxp.sys [2008-07-17 109952]
R3 RTLE8023xp;Realtek 10/100/1000 PCI-E NIC Family NDIS XP Driver; C:\WINDOWS\system32\DRIVERS\Rtenicxp.sys [2008-09-25 115328]
R3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbprint;Classe d'imprimantes USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbstor;Pilote de stockage de masse USB; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-14 26368]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys []
S3 ap9cu047;ap9cu047; C:\WINDOWS\system32\drivers\ap9cu047.sys []
S3 catchme;catchme; \??\C:\DOCUME~1\mizot\LOCALS~1\Temp\catchme.sys []
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 driverhardwarev2;driverhardwarev2; \??\C:\Program Files\ma-config.com\Drivers\driverhardwarev2.sys []
S3 GMSIPCI;GMSIPCI; \??\I:\INSTALL\GMSIPCI.SYS []
S3 MSICPL;MSICPL; \??\I:\install4\MSICPL.sys []
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 NPF;Netgroup Packet Filter; C:\WINDOWS\system32\drivers\npf.sys [2008-09-18 42512]
S3 NTACCESS;NTACCESS; \??\I:\NTACCESS.sys []
S3 rtl8139;Pilote NT de carte Realtek PCI Fast Ethernet à base RTL8139(A/B/C); C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2008-04-13 20992]
S3 SetupNTGLM7X;SetupNTGLM7X; \??\I:\NTGLM7X.sys []
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 SNP2STD;USB2.0 PC Camera (SNP2STD); C:\WINDOWS\system32\DRIVERS\snp2sxp.sys [2007-04-09 12039552]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 Tablet2k;Serial Tablet Port Driver; C:\WINDOWS\System32\Drivers\Tablet2k.sys [2000-06-13 15370]
S3 TClass2k;Tablet Class Driver; C:\WINDOWS\system32\DRIVERS\TClass2k.sys [2003-03-05 23202]
S3 UCTblHid;HID Tablet Port Driver; C:\WINDOWS\system32\DRIVERS\UCTblHid.sys [2003-03-05 11090]
S3 usb_rndisx;Carte ISDN USB; C:\WINDOWS\system32\DRIVERS\usb8023x.sys [2008-04-13 12800]
S3 vhidmini;Root Enumerated Hid Device; C:\WINDOWS\system32\DRIVERS\walvhid.sys [2007-11-17 5504]
S3 wceusbsh;Windows CE USB Serial Host Driver; C:\WINDOWS\system32\DRIVERS\wceusbsh.sys [2006-11-06 28672]
S3 WpdUsb;WpdUsb; C:\WINDOWS\System32\Drivers\wpdusb.sys [2004-08-11 18944]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S4 IntelIde;IntelIde; C:\WINDOWS\system32\drivers\IntelIde.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2008-08-21 573440]
R2 Bandoo Coordinator;Bandoo Coordinator; C:\PROGRA~1\Bandoo\Bandoo.exe [2008-09-15 1281984]
R2 JavaQuickStarterService;Java Quick Starter; C:\Program Files\Java\jre6\bin\jqs.exe [2009-03-09 152984]
R2 NOD32krn;NOD32 Kernel Service; C:\Program Files\Eset\nod32krn.exe [2009-03-31 552064]
R2 PnkBstrA;PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [2009-04-08 66872]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-11 38912]
R2 WinTabService;WinTab Service; C:\WINDOWS\system32\DRIVERS\WtSrv.exe [2003-09-30 40960]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2008-08-20 593920]
S2 gupdate1c98ba886f710b8;Google Update Service (gupdate1c98ba886f710b8); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-02-10 133104]
S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-03-26 183280]
S3 Adobe LM Service;Adobe LM Service; C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe [2009-04-30 72704]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-04-13 33632]
S3 Boonty Games;Boonty Games; C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe [2008-12-08 69120]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-04-13 68952]
S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance; C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe [2005-11-17 1527900]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2006-10-20 36864]
S3 fsssvc;Windows Live Contrôle parental; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2009-02-06 533360]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2006-10-30 741376]
S3 maconfservice;Ma-Config Service; C:\Program Files\ma-config.com\maconfservice.exe [2008-12-19 195752]
S3 npggsvc;nProtect GameGuard Service; C:\WINDOWS\system32\GameMon.des [2009-04-14 2784285]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2006-10-30 122880]

-----------------EOF-----------------

Répondre à mizot 59

info.txt logfile of random's system information tool 1.06 2009-05-22 19:20:49

======Uninstall list======

-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
-->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
3DBELOTE II-->"C:\Program Files\3DBELOTE\unins000.exe"
Adobe Bridge 1.0-->MsiExec.exe /I{B74D4E10-6884-0000-0000-000000000101}
Adobe Common File Installer-->MsiExec.exe /I{8EDBA74D-0686-4C99-BFDD-F894678E5101}
Adobe Flash Player 10 Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Help Center 1.0-->MsiExec.exe /I{E9787678-119F-4D52-B551-6739B2B22101}
Adobe Photoshop CS2-->msiexec /I {236BB7C4-4419-42FD-040C-1E257A25E34D}
Adobe Reader 9 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A90000000001}
Adobe Shockwave Player 11-->C:\WINDOWS\system32\adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
Adobe Stock Photos 1.0-->MsiExec.exe /I{786C5747-0C40-4930-9AFE-113BCE553101}
AmpegSVX-->C:\Program Files\InstallShield Installation Information\{CF1D7323-8A0A-49C7-83B0-088DB90721E2}\setup.exe -runfromtemp -l0x0009 uninstall -removeonly
AmpliTube2-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB6691DA-66D3-412E-9853-641CF7D0C35A}\Setup.exe" -l0x9 uninstall
Antares Autotune VST RTAS TDM v5.08-->"C:\Program Files\Antares Audio Technologies\unins000.exe"
Antares Filter VST DX v1.0-->C:\PROGRA~1\Antares\UNINST~1\UNWISE.EXE C:\PROGRA~1\Antares\UNINST~1\INSTALL.LOG
Antares Kantos v1.0-->C:\PROGRA~1\Antares\kantos\UNINST~1\UNWISE.EXE C:\PROGRA~1\Antares\kantos\UNINST~1\INSTALL.LOG
Antares Microphone Modeler DX v1.32-->C:\PROGRA~1\Antares\MicModDX\UNINST~1\UNWISE.EXE C:\PROGRA~1\Antares\MicModDX\UNINST~1\INSTALL.LOG
Antares Tube v1.0-->C:\PROGRA~1\Antares\TUBEUN~1\UNWISE.EXE C:\PROGRA~1\Antares\TUBEUN~1\INSTALL.LOG
AoA Audio Extractor 1.0-->"C:\Program Files\AoA Audio Extractor\unins000.exe"
Applied Accoustics UltraAnalog VA-1 v1.01-->C:\PROGRA~1\AAS\ULTRAA~1.0\UNWISE.EXE C:\PROGRA~1\AAS\ULTRAA~1.0\INSTALL.LOG
Arturia Arp2600 V v1.0-->C:\PROGRA~1\Arturia\ARP260~1\UNWISE.EXE C:\PROGRA~1\Arturia\ARP260~1\INSTALL.LOG
ASAPI Update-->C:\WINDOWS\system32\IWUNIN~1.EXE -uninstall C:\WINDOWS\ISUNINST.EXE -fC:\PROGRA~1\VOB\ASAPIU~1\ASAPI.isu
ASIO4ALL-->C:\Program Files\ASIO4ALL v2\uninstall.exe
Assistant de connexion Windows Live-->MsiExec.exe /I{DCE8CD14-FBF5-4464-B9A4-E18E473546C7}
ATI - Software Uninstall Utility-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI AVIVO Codecs-->MsiExec.exe /I{89DE67AD-08B8-4699-A55D-CA5C0AF82BF3}
ATI Catalyst Control Center-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{055EE59D-217B-43A7-ABFF-507B966405D8}\setup.exe" -l0x734d
ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
ATI Parental Control & Encoder-->MsiExec.exe /I{36CDA33B-909B-4719-97D1-C4B99309BDC7}
AviSynth 2.5-->"C:\Program Files\AviSynth 2.5\Uninstall.exe"
AVS Cover Editor 1.3.1.81 (AVSMedia)-->"C:\Program Files\AVSMedia\CoverEditor\unins000.exe"
AVS DVD Copy version 1.4-->"C:\Program Files\AVSMedia\DVDCopy\unins000.exe"
Band-in-a-Box 2008 Support de Langue Français-->"c:\bb\unins000.exe"
BitComet 1.07-->C:\Program Files\BitComet\uninst.exe
Brainworx BX Digital VST v1.09-->"C:\Program Files\Brainworx Music\Uninstall\unins000.exe"
Brother MFL-Pro Suite-->"C:\Program Files\InstallShield Installation Information\{A3FEC306-FBFF-4B0D-95B9-F9C67C65079E}\Setup.exe" -runfromtemp -l0x040c Brunin03.dll -removeonly
BusinessCardsMX 3.93-->"C:\Program Files\MOJOSOFT\BusinessCardsMX3\unins000.exe"
Catalyst Control Center - Branding-->MsiExec.exe /I{FA3A247D-437A-455E-A88F-7EB6E5F9E799}
CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
Choice Guard-->MsiExec.exe /I{8FFC5648-FAF8-43A3-BC8F-42BA1E275C4E}
Command & Conquer™ Red Alert™ 3 Demo-->MsiExec.exe /X{DBD1FF41-F438-4D0A-A3F1-999930B5BC52}
Connection Booster 4.0.0.0-->"C:\Program Files\Connection Booster\unins000.exe"
ConvertXtoDVD 3.2.3.81-->"C:\Program Files\VSO\ConvertX\3\unins000.exe"
CoreAAC Audio Decoder (remove only)-->"C:\WINDOWS\system32\CoreAAC-uninstall.exe"
Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
DAEMON Tools Toolbar-->C:\Program Files\DAEMON Tools Toolbar\uninst.exe
DeepBurner Pro v1.8.0.225-->"C:\Program Files\Astonsoft\DeepBurner Pro\Uninstall.exe" "C:\Program Files\Astonsoft\DeepBurner Pro\install.log"
DeepBurner Pro v1.9.0.228-->"C:\Program Files\Astonsoft\DeepBurner Pro\Uninstall.exe" "C:\Program Files\Astonsoft\DeepBurner Pro\install.log" -u
DEVIL MAY CRY 4-->MsiExec.exe /I{D4E5A687-797D-44B1-8F96-4FD7A24166A9}
DivX Codec-->C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
DivX Converter-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
DivX Player-->C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
DVD Shrink 3.2-->"C:\Program Files\DVD Shrink\unins000.exe"
dvdSanta 4.50-->"C:\Program Files\dvdSanta\unins000.exe"
East West Stormdrum Kompakt-->C:\PROGRA~1\EASTWE~1\STORMD~1\UNWISE.EXE C:\PROGRA~1\EASTWE~1\STORMD~1\INSTALL.LOG
Eazel-FR Toolbar-->C:\PROGRA~1\Eazel-FR\UNWISE.EXE /U C:\PROGRA~1\Eazel-FR\INSTALL.LOG
EPSON Logiciel imprimante-->C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.EXE /R
Extension de Windows Live Toolbar (Windows Live Toolbar)-->MsiExec.exe /X{0CA6047C-D28B-4295-834A-07C52BA20C2D}
EZdrummer-->MsiExec.exe /I{43E8D9E7-AFC9-4BA3-8106-B95E02B87AB7}
EZplayer pro-->MsiExec.exe /I{8967ABFB-CBCA-4EC0-8DE8-A01135267C16}
EZXCocktail-->MsiExec.exe /I{147567F0-8575-4BE0-B5B3-62706C67FA5A}
Firebird SQL Server - MAGIX Edition-->C:\Program Files\MAGIX\Common\Database\instslct.exe /p
FLUX Spring Pack Bundle v1.0.4.14-->"C:\Program Files\Flux\unins000.exe"
FXpansion DR-008 v1.21-->C:\PROGRA~1\FXPANS~1.21\UNWISE.EXE C:\PROGRA~1\FXPANS~1.21\INSTALL.LOG
Galerie de photos Windows Live-->MsiExec.exe /X{44E54A81-9D91-4AA1-9417-80AFF134F5FF}
GigaTribe 2.50-->"C:\Program Files\GigaTribe\unins000.exe"
Google Toolbar for Internet Explorer-->MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
Google Toolbar for Internet Explorer-->regsvr32 /u /s "c:\program files\google\googletoolbar1.dll"
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Google Earth-->MsiExec.exe /X{CC016F21-3970-11DE-B878-005056806466}
GPU Impulse Reverb VST Effect Plugin-->"C:\Program Files\Ingo Leif Software\GPU Impulse Reverb VST Effect Plugin\uninstall.exe"
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
IBoot-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{61ACEE8D-4E0D-49BE-962E-9CA26EC0F921}\Setup.exe" -l0x9
IFOEdit 0.971 Fr-->C:\Program Files\IfoEdit\UnInstall_IfoEdit.exe
iLok x32 driver-->MsiExec.exe /X{AE3F7CFB-BA96-4C68-8A22-FF188FB67403}
Image Line ToxicIII v1.4 VSTi-->C:\PROGRA~1\STEINB~1\VSTPLU~1\ToxicIII\UNWISE.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\ToxicIII\INSTALL.LOG
Installation Windows Live-->C:\Program Files\Windows Live\Installer\wlarp.exe
Installation Windows Live-->MsiExec.exe /I{7370DF47-B4F9-4279-BFC3-3F09919F720D}
IsoBuster 2.5-->"C:\Program Files\Smart Projects\IsoBuster\Uninst\unins000.exe"
IsoBuster Toolbar-->C:\PROGRA~1\ISOBUS~1\UNWISE.EXE /U C:\PROGRA~1\ISOBUS~1\INSTALL.LOG
iZotope Ozone 4-->"C:\Program Files\iZotope\Ozone 4\unins000.exe"
Java(TM) 6 Update 13-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216010FF}
Java(TM) 6 Update 4-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160040}
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
Junk Mail filter update-->MsiExec.exe /I{4DE3E3D9-AE81-45DE-9195-3015F7B1DBF3}
Konvertor-->c:\Program Files\Konvertor\uninst.exe
Lame ACM MP3 Codec-->C:\WINDOWS\system32\rundll32.exe setupapi,InstallHinfSection Remove_LameMP3 132 C:\WINDOWS\INF\LameACM.inf
Le Centre de Contrôle de Licences de Syncrosoft-->C:\PROGRA~1\SYNCRO~1\UNWISE.EXE C:\PROGRA~1\SYNCRO~1\INSTALL.LOG
LinPlug Albino VSTi RTAS v2.2.1-->C:\PROGRA~1\STEINB~1\VSTPLU~1\LinPlug\Albino2\UNWISE.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\LinPlug\Albino2\INSTALL.LOG
Logiciel de Synchronisation SFR-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{ADAA2ABE-84B6-46EB-8191-7F22044E3290}\setup.exe" -l0x40c -removeonly
Ma-Config.com-->MsiExec.exe /X{EC7FE2ED-F305-41B7-90B8-3DAE9E35307A}
Magic ISO Maker v5.5 (build 0273)-->C:\PROGRA~1\MagicISO\UNWISE.EXE C:\PROGRA~1\MagicISO\INSTALL.LOG
Magic Video Converter Trial Version (English) 8.0.2.18-->"C:\Program Files\Magic Video Converter\unins000.exe"
MagicDisc 2.7.105-->C:\PROGRA~1\MAGICD~1\UNWISE.EXE C:\PROGRA~1\MAGICD~1\INSTALL.LOG
MAGIX Video deluxe 2008 Trial 7.0.3.0 (F)-->C:\Program Files\MAGIX\Video_deluxe_2008_e-version\instslct.exe /p
Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
Manuel de l'appareil Windows Mobile®-->C:\Program Files\Windows Mobile Device Handbook\Windows Mobile Device Handbook\Bin\DHUninstall.exe
Master Flatpick Guitar Volume 1-->"c:\Program Files\flatpick_guitar_solos\unins000.exe"
Master Jazz Guitar Solos SuperPAK-->"C:\Program Files\Jazz_Guitar_Solos_Vol_1-4\unins000.exe"
M-Audio Drum and Bass Rig 1.0.0-->"C:\Program Files\Steinberg\Vstplugins\M-Audio\unins001.exe"
M-Audio Key Rig 1.0.0-->"C:\Program Files\Steinberg\Vstplugins\M-Audio\unins000.exe"
Menus intelligents (Windows Live Toolbar)-->MsiExec.exe /X{0CC70FEF-5068-4CD5-B4DE-86FFD98EC929}
Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe"
Microsoft .NET Framework 2.0-->C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft .NET Framework 2.0\install.exe
Microsoft .NET Framework 3.0-->C:\WINDOWS\Microsoft.NET\Framework\v3.0\Microsoft .NET Framework 3.0\setup.exe
Microsoft .NET Framework 3.0-->MsiExec.exe /X{15095BF3-A3D7-4DDF-B193-3A496881E003}
Microsoft ActiveSync-->MsiExec.exe /I{99052DB7-9592-4522-A558-5417BBAD48EE}
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Silverlight-->MsiExec.exe /X{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB938127-v2)-->"C:\WINDOWS\ie7updates\KB938127-v2-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows Internet Explorer 7 (KB953838)-->"C:\WINDOWS\ie7updates\KB953838-IE7\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923689)-->"C:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
Mise à jour de sécurité pour Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB953838)-->"C:\WINDOWS\$NtUninstallKB953838$\spuninst\spuninst.exe"
Mise à jour de sécurité pour Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB898461)-->"C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
MITs Wizard 3.0 for Device-->MsiExec.exe /X{0143CF89-5CF2-4F2D-80D5-BFAE64E1BA00}
MKV TO AVI CONVERTER version 3.21-->"C:\Program Files\mkvtoavi\unins000.exe"
Mozilla Firefox (3.0.10)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MpcStar 3.1-->C:\Program Files\MpcStar\uninst.exe
MSVCRT-->MsiExec.exe /I{22B775E7-6C42-4FC5-8E10-9A5E3257BD94}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 6.0 Parser (KB925673)-->MsiExec.exe /I{FE9126DB-5F84-495A-BB46-3C724F1C2D08}
MU Technologies MU Voice VST RTAS v1.1.1-->"C:\Program Files\MU Technologies\MU Voice\Uninstall\unins000.exe"
Native Instruments - Kore 2 Controller-->C:\Program Files\Native Instruments\Kore 2 Controller\uninst.exe Software\Native Instruments\Kore 2 Controller\Setup
Native Instruments - Rig Kontrol 3 Driver-->C:\Program Files\Native Instruments\Rig Kontrol 3 Driver\uninst.exe Software\Native Instruments\Rig Kontrol 3 Driver\Setup
Native Instruments Bandstand-->C:\PROGRA~1\NATIVE~1\BANDST~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\BANDST~1\INSTALL.LOG
Native Instruments Kontakt 3-->C:\PROGRA~1\NATIVE~1\KONTAK~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\KONTAK~1\INSTALL.LOG
Native Instruments Kore 2-->C:\PROGRA~1\NATIVE~1\KORE2~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\KORE2~1\INSTALL.LOG
Native Instruments Service Center-->C:\PROGRA~1\NATIVE~1\SERVIC~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\SERVIC~1\INSTALL.LOG
Native.Instruments Battery v3.0.1.005 VSTi DXi RTAS-->C:\PROGRA~1\NATIVE~1\BATTER~1\UNWISE.EXE C:\PROGRA~1\NATIVE~1\BATTER~1\INSTALL.LOG
Navilog1 3.6.9-->"C:\Program Files\Navilog1\unins000.exe"
neroxml-->MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
NOD32 Antivirus System-->C:\Program Files\Eset\Setup\setup.exe /UNINSTALL
NOD32 FiX v1.8-->"C:\Program Files\Eset\unins000.exe"
OpenAL-->"C:\Program Files\OpenAL\OpenAL.exe" /U
OpenOffice.org 2.4 Language Pack (Français)-->MsiExec.exe /I{D2BE6521-F81C-4EC6-8887-A8BBC0B0786B}
OpenOffice.org 2.4-->MsiExec.exe /I{2CD2C0DB-81C3-416B-9FA6-589B9235359B}
Outil de mise à jour Google-->"C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall
Overloud BREVERB VST RTAS v1.1-->"C:\Program Files\Overloud\Uninstall\unins000.exe"
Overloud TH1 1.0 VST-->"C:\Program Files\Steinberg\VstPlugins\Overloud\unins000.exe"
Pando Media Booster-->C:\Program Files\Pando Networks\Media Booster\uninst.exe
PaperPort Image Printer-->MsiExec.exe /X{332CC6BF-E6C7-48EE-BA3D-435E576AD67F}
PeerGuardian 2.0-->"C:\Program Files\PeerGuardian2\unins000.exe"
PG Music DirectX Plugins 1.3.4.1-->"C:\Program Files\PowerTracks DirectX Plugins\unins000.exe"
POI Loader-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9B076678-4FDB-4EFD-A962-E5DF53A08DC5}\Setup.exe" -l0x40c
RealPlayer-->C:\Program Files\Fichiers communs\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
REALTEK GbE & FE Ethernet PCI NIC Driver-->C:\Program Files\InstallShield Installation Information\{ACCA20B0-C4D1-4BF5-BF21-0A0EB5EF9730}\setup.exe -runfromtemp -l0x040c -removeonly
REALTEK GbE & FE Ethernet PCI-E NIC Driver-->C:\Program Files\InstallShield Installation Information\{C9BED750-1211-4480-B1A5-718A3BE15525}\setup.exe -runfromtemp -l0x040c -removeonly
Ri4m v5.0.1d-->C:\Program Files\Ripp-it_AM\Ri4m_Uninstal.exe
Rob Papen Predator V1.1.0-->"C:\Program Files\steinberg\vstplugins\unins000.exe"
SAMSUNG Mobile USB Modem 1.0 Software-->C:\Program Files\SAMSUNG\SAMSUNG Mobile USB Modem\1\SS_Uninstall.exe
ScanSoft PaperPort 11-->MsiExec.exe /I{B6C89654-A6A2-477C-873B-724EC1C56407}
Security Update pour Microsoft .NET Framework 2.0 (KB928365)-->C:\WINDOWS\system32\msiexec.exe /promptrestart /uninstall {8056AC9E-49C5-4375-9ADE-B2F862C9DF51} /package {7131646D-CD3C-40F4-97B9-CD9E4E6262EF}
Segoe UI-->MsiExec.exe /I{A1F66FC9-11EE-4F2F-98C9-16F8D1E69FB7}
Sibelius Scorch (ActiveX Only)-->MsiExec.exe /I{15CCBC5D-66A7-4131-8D36-E05F27B0E68F}
SoundFonts.it VB3 v1.1 VSTi-->C:\PROGRA~1\STEINB~1\VSTPLU~1\VB3_v11\UNWISE.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\VB3_v11\INSTALL.LOG
Spelling Dictionaries Support For Adobe Reader 9-->MsiExec.exe /I{AC76BA86-7AD7-5464-3428-900000000004}
Steinberg Cubase SX v3.1.1.944-->C:\PROGRA~1\STEINB~1\CUBASE~1\UNWISE.EXE C:\PROGRA~1\STEINB~1\CUBASE~1\INSTALL.LOG
Steinberg HALion v3.1.0.947-->C:\PROGRA~1\STEINB~1\VSTPLU~1\\HALION~1\DOCUME~1\UNWISE.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\\HALION~1\DOCUME~1\INSTALL.LOG
Steinberg Loudness Maximizer v1.20-->C:\PROGRA~1\STEINB~1\CUBASE~1\VSTPLU~1\Loudness\UNWISE.EXE C:\PROGRA~1\STEINB~1\CUBASE~1\VSTPLU~1\Loudness\INSTALL.LOG
Steinberg Virtual Guitarist-->C:\PROGRA~1\STEINB~1\VSTPLU~1\\VIRTUA~1\UNINST~1.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\\VIRTUA~1\INSTALL.LOG
Steinberg VoiceMachine v1.0-->C:\PROGRA~1\STEINB~1\VSTPLU~1\STEINB~1\UNWISE.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\STEINB~1\INSTALL.LOG
Steinberg WaveLab 5.01b-->C:\PROGRA~1\STEINB~1\WaveLab\UNWISE.EXE C:\PROGRA~1\STEINB~1\WaveLab\INSTALL.LOG
Studio Clean 1.6-->"C:\Program Files\Acon Digital Media\Studio Clean\unins000.exe"
Superior Drummer Installer-->MsiExec.exe /I{009AC76E-1A66-4682-82B7-417E77F3C648}
Surligneur (Windows Live Toolbar)-->MsiExec.exe /X{81B5F83F-2291-48B0-8375-36B63A9BF5B0}
SyncroSoft Emu (Remove only)-->C:\Program Files\SyncroSoft\Pos\H2O\Uninst.exe
The Godfather™ II-->19
The Grand-->C:\PROGRA~1\STEINB~1\VSTPLU~1\\THEGRA~1\UNINST~1.EXE C:\PROGRA~1\STEINB~1\VSTPLU~1\\THEGRA~1\INSTALL.LOG
Timeworks Mastering Compressor-->C:\PROGRA~1\TIMEWO~1\MASTER~1\UNWISE.EXE C:\PROGRA~1\TIMEWO~1\MASTER~1\INSTALL.LOG
TPKD Installer x32-->MsiExec.exe /X{6347E7B5-806F-4302-906A-05C62CCEA502}
Trust Webcam 15007-->C:\Program Files\InstallShield Installation Information\{75438C0E-9925-412E-AD85-D0E71C6CE2ED}\setup.exe -runfromtemp -l0x040c -removeonly -u
Ulead PhotoImpact XL Trial-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\PROFES~1\RunTime\0700\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A802A94B-1C59-446C-BE78-A4063EF47777}\setup.exe" -l0x40c
VCRedistSetup-->MsiExec.exe /I{3921A67A-5AB1-4E48-9444-C71814CF3027}
VirSyn TERA v3.0-->C:\Program Files\VirSyn Software Synthesizer\TERA3\TERA3 Uninstaller.exe
Virtual Magnifying Glass-->"C:\Program Files\Virtual Magnifying Glass\uninstall.exe"
Virtual Sound Canvas DXi-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{745877DC-8FFE-4E4C-ABBC-589B887A47D1}\setup.exe" UNINSTALL_XXX
Windows Communication Foundation-->MsiExec.exe /X{491DD792-AD81-429C-9EB4-86DD3D22E333}
Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
Windows Live Call-->MsiExec.exe /I{82C7B308-0BDD-49D8-8EA5-9CD3A3F9DF41}
Windows Live Communications Platform-->MsiExec.exe /I{3B4E636E-9D65-4D67-BA61-189800823F52}
Windows Live Contrôle parental-->MsiExec.exe /X{D6A2DDE3-9D7C-412C-932A-756580D29919}
Windows Live Favorites pour Windows Live Toolbar-->MsiExec.exe /X{786C4AD1-DCBA-49A6-B0EF-B317A344BD66}
Windows Live Mail-->MsiExec.exe /I{63DC2DA0-2A6C-4C38-9249-B75395458657}
Windows Live Messenger-->MsiExec.exe /X{059C042E-796A-4ACC-A81A-ECC2010BB78C}
Windows Live OneCare safety scanner-->RunDll32.exe "C:\Program Files\Windows Live Safety Center\wlscCore.dll",UninstallFunction WLSC_SCANNER_PRODUCT
Windows Live Sync-->MsiExec.exe /X{9C5EB781-0D37-44B8-9A58-77B3E4BF5F5E}
Windows Live Upload Tool-->MsiExec.exe /I{205C6BDD-7B73-42DE-8505-9A093F35A238}
Windows Live Writer-->MsiExec.exe /X{2231CE39-B963-4B9D-823A-F412ECA637B1}
Windows Media Format Runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows Workflow Foundation-->MsiExec.exe /I{7D1B85BD-AA07-48B8-808D-67A4067FC6BD}
WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
Xvid 1.1.3 final uninstall-->"C:\Program Files\Xvid\unins000.exe"

Hosts File Missing
======Security center information======

AV: ESET NOD32 antivirus system 2.70

======System event log======

Computer Name: MIZOT-F8ACACD9C
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Service de transfert intelligent en arrière-plan.

Record Number: 5
Source Name: Service Control Manager
Time Written: 20090414112753.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM

Computer Name: MIZOT-F8ACACD9C
Event Code: 7036
Message: Le service Compatibilité avec le Changement rapide d'utilisateur est entré dans l'état : en cours d'exécution.

Record Number: 4
Source Name: Service Control Manager
Time Written: 20090414112753.000000+120
Event Type: Informations
User:

Computer Name: MIZOT-F8ACACD9C
Event Code: 7035
Message: Un contrôle Démarrer a correctement été envoyé au service Compatibilité avec le Changement rapide d'utilisateur.

Record Number: 3
Source Name: Service Control Manager
Time Written: 20090414112753.000000+120
Event Type: Informations
User: AUTORITE NT\SYSTEM

Computer Name: MIZOT-F8ACACD9C
Event Code: 6005
Message: Le service d'Enregistrement d'événement a démarré.

Record Number: 2
Source Name: EventLog
Time Written: 20090414112736.000000+120
Event Type: Informations
User:

Computer Name: MIZOT-F8ACACD9C
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 3 Multiprocessor Free.

Record Number: 1
Source Name: EventLog
Time Written: 20090414112736.000000+120
Event Type: Informations
User:

=====Application event log=====

Computer Name: MIZOT-F8ACACD9C
Event Code: 20
Message:
Record Number: 6508
Source Name: Google Update
Time Written: 20090225090955.000000+060
Event Type: erreur
User: MIZOT-F8ACACD9C\mizot

Computer Name: MIZOT-F8ACACD9C
Event Code: 20
Message:
Record Number: 6507
Source Name: Google Update
Time Written: 20090225090736.000000+060
Event Type: erreur
User: AUTORITE NT\SYSTEM

Computer Name: MIZOT-F8ACACD9C
Event Code: 20
Message:
Record Number: 6506
Source Name: Google Update
Time Written: 20090225080955.000000+060
Event Type: erreur
User: MIZOT-F8ACACD9C\mizot

Computer Name: MIZOT-F8ACACD9C
Event Code: 20
Message:
Record Number: 6505
Source Name: Google Update
Time Written: 20090225080736.000000+060
Event Type: erreur
User: AUTORITE NT\SYSTEM

Computer Name: MIZOT-F8ACACD9C
Event Code: 20
Message:
Record Number: 6504
Source Name: Google Update
Time Written: 20090225070955.000000+060
Event Type: erreur
User: MIZOT-F8ACACD9C\mizot

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files\SFR\Logiciel de Synchronisation SFR;C:\Program Files\Smart Projects\IsoBuster;C:\Program Files\Fichiers communs\iZotope\Runtimes;C:\Program Files\Fichiers communs\Adobe\AGL
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=x86 Family 6 Model 15 Stepping 11, GenuineIntel
"PROCESSOR_REVISION"=0f0b
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP

-----------------EOF-----------------

Répondre à mizot 59

Euh tu peux répondre à ma question ?

Télécharge Toolbar-S&D (Team IDN) sur ton Bureau.

  • Lance l'installation du programme en exécutant le fichier téléchargé.
  • Double-clique maintenant sur le raccourci de Toolbar-S&D.
  • Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
  • Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
  • Poste le rapport généré. (C:\TB.txt)

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

dsl je ne sais plus je l'ai viré de la quarantaine

Répondre à mizot 59

voila le rapport


-----------\\ ToolBar S&D 1.2.5 XP/Vista

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU E6550 @ 2.33GHz )
BIOS : Default System BIOS
USER : mizot ( Administrator )
BOOT : Normal boot
Antivirus : ESET NOD32 antivirus system 2.70 2.70 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:97 Go (Free:2 Go)
D:\ (Local Disk) - NTFS - Total:368 Go (Free:175 Go)
E:\ (USB)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (CD or DVD)
J:\ (USB)
K:\ (CD or DVD) - CDFS - Total:2 Go (Free:0 Go)
M:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
O:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)

"C:\ToolBar SD" ( MAJ : 20-11-2008|20:25 )
Option : [1] ( 25/05/2009|16:49 )

-----------\\ Recherche de Fichiers / Dossiers ...

C:\Program Files\DAEMON Tools Toolbar
C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
C:\Program Files\DAEMON Tools Toolbar\FirefoxDTT
C:\Program Files\DAEMON Tools Toolbar\Resources
C:\Program Files\DAEMON Tools Toolbar\uninst.exe
C:\Program Files\DAEMON Tools Toolbar\_DTLite.xml
C:\Program Files\DAEMON Tools Toolbar\FirefoxDTT\chrome
C:\Program Files\DAEMON Tools Toolbar\FirefoxDTT\chrome.manifest
C:\Program Files\DAEMON Tools Toolbar\FirefoxDTT\components
C:\Program Files\DAEMON Tools Toolbar\FirefoxDTT\install.rdf
C:\Program Files\DAEMON Tools Toolbar\FirefoxDTT\chrome\dttoolbar.jar
C:\Program Files\DAEMON Tools Toolbar\FirefoxDTT\components\DTToolbarFF.dll
C:\Program Files\DAEMON Tools Toolbar\FirefoxDTT\components\DTToolbarFF.xpt
C:\Program Files\DAEMON Tools Toolbar\Resources\about.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\AboutWindow.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\AddRadioStation.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\as.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\as.png
C:\Program Files\DAEMON Tools Toolbar\Resources\astro.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\az.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\b1.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\b1.png
C:\Program Files\DAEMON Tools Toolbar\Resources\BurnImage.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\buy.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\cond000.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond001.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond003.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond004.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond005.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond006.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond007.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond008.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond009.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond010.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond011.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond019.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond020.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond021.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond022.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond023.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond024.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond025.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond026.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond037.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond038.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond039.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond040.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond041.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond046.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond048.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond050.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond051.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond052.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond053.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond054.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond055.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond056.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond057.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond058.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond059.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond060.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond061.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond062.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond063.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond064.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond065.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond066.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond067.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond068.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond069.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond075.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond076.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond077.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond078.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond079.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond080.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond084.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond085.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond086.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond087.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond088.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond089.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond090.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond091.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond092.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond093.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond094.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond095.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond108.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond109.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond110.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond111.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond112.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond113.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond120.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond121.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond122.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond126.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond127.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond128.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond129.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond130.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond131.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond132.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond133.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond134.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond135.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond136.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond137.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond138.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond140.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond141.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond142.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond143.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond148.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond149.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond152.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond154.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond155.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond156.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\cond157.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\Config.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\d.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\d2.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\daemon.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\ds.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\dsearch.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\dt.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\DTPro.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\Dwnl.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\emulation.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\features.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\GameCentrix.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\gd.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\genre.xml
C:\Program Files\DAEMON Tools Toolbar\Resources\globe.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\GrabImage.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\hb.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\hb.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\help.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\ip.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\lang.xml
C:\Program Files\DAEMON Tools Toolbar\Resources\lingvo.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\m.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\mail.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\mailc.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\mailc_disable.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\mailc_down.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\mailc_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\mailc_under.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\mail_disable.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\mail_down.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\mail_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\mail_under.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\MenuRadioConfig.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\MenuRadioStation.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\MenuRSCur.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\MenuTr.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\next.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\next_down.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\next_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\next_under.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\none.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\none_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\noW.gif
C:\Program Files\DAEMON Tools Toolbar\Resources\op.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\play.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\play.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\play_down.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\play_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\play_under.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\pragma.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\prev.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\prev_down.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\prev_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\prev_under.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\prod.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\Radio.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioBg.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioBg.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioBgMask.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioDisp.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioDisp_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioDown.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioDown.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioDown_down.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioDown_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioDown_under.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioE.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioG.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioL.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioLDotMask.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioLeft.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioLeftMask.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioLM.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioN.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioR.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioR.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioRM.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioRU.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioVolume.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioVolume_down.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioVolume_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioVolume_under.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\RadioW.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\refresh.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\refresh_down.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\refresh_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\refresh_under.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\Rss.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\Rss1.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\rssClose.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\rssL.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\rssOpen.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\size.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\size_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\skins.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\spt.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\stop.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\stop.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\stop_down.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\stop_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\stop_under.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\style.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\SupportRequest.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\time.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\TitleIcon.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\toolbar.xml
C:\Program Files\DAEMON Tools Toolbar\Resources\trans.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\Trash.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\Trash_disable.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\Trash_down.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\Trash_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\Trash_under.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\u.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\vol.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\vol.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\vol_back.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\vol_dott.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\vol_dott_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\vol_down.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\vol_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\vol_under.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\wb.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\wBtClose.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\wBtClose_down.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\wBtClose_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\wBtClose_under.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\wBtText.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\wBtText_down.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\wBtText_m.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\wBtText_under.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\Weather_m42.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\Weather_m43.bmp
C:\Program Files\DAEMON Tools Toolbar\Resources\wi.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi0.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi1.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi10.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi11.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi12.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi13.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi2.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi3.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi4.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi5.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi6.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi7.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi8.ico
C:\Program Files\DAEMON Tools Toolbar\Resources\wi9.ico

-----------\\ Extensions

(mizot) - {b9db16a4-6edc-47ec-a1f4-b86292ed211d} => dwhelper


-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://www.google.fr/"
"SearchMigratedDefaultURL"="http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"


--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\mizot\Local Settings\Application Data\Microsoft\Messenger\cordeon.mizot@hotmail.fr\Sharing Folders\rrony__@hotmail.fr\Swat 4 - cestina,crack ,keygen
C:\DOCUME~1\mizot\Local Settings\Application Data\Microsoft\Messenger\cordeon.mizot@hotmail.fr\Sharing Folders\rrony__@hotmail.fr\Swat 4 - cestina,crack ,keygen\SWAT 4 keygen by HAANDI.exe
C:\DOCUME~1\mizot\Local Settings\Application Data\Microsoft\Messenger\cordeon.mizot@hotmail.fr\Sharing Folders\rrony__@hotmail.fr\Swat 4 - cestina,crack ,keygen\Swat4.exe
C:\DOCUME~1\mizot\Local Settings\Application Data\Microsoft\Messenger\cordeon.mizot@hotmail.fr\Sharing Folders\rrony__@hotmail.fr\Swat 4 - cestina,crack ,keygen\SWAT4_cz.exe
C:\DOCUME~1\mizot\Mes documents\Mes r‚ceptions GigaTribe\mimeme\Manuel d'installation des crack by D.G.S.txt



1 - "C:\ToolBar SD\TB_1.txt" - 26/11/2008|18:21 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 27/11/2008|18:51 - Option : [2]
3 - "C:\ToolBar SD\TB_3.txt" - 25/05/2009|16:51 - Option : [1]

-----------\\ Fin du rapport a 16:51:15,62

Répondre à mizot 59

Re,

Relance Toolbar-S&D en double-cliquant sur le raccourci.

  • Choisis cette fois l'option 2 puis valide en appuyant sur Entrée.

! Ne ferme pas la fenêtre lors de la suppression !

  • Un rapport sera généré, poste son contenu ici, puis un nouveau rapport HijackThis.


Si ton bureau ne réapparait pas, fais CTRL+ALT+SUPP pour ouvrir le gestionnaire de tâches.
Puis rends-toi à l'onglet "processus". Clique en haut à gauche sur fichiers et choisis "Nouvelle tâche (exécuter)"
Tapes explorer et valide. Cela te fera apparaitre ton bureau

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

voila le rapport


-----------\\ ToolBar S&D 1.2.5 XP/Vista

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU E6550 @ 2.33GHz )
BIOS : Default System BIOS
USER : mizot ( Administrator )
BOOT : Normal boot
Antivirus : ESET NOD32 antivirus system 2.70 2.70 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:97 Go (Free:2 Go)
D:\ (Local Disk) - NTFS - Total:368 Go (Free:175 Go)
E:\ (USB)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (CD or DVD)
J:\ (USB)
K:\ (CD or DVD) - CDFS - Total:2 Go (Free:0 Go)
M:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
O:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)

"C:\ToolBar SD" ( MAJ : 20-11-2008|20:25 )
Option : [2] ( 25/05/2009|18:49 )

-----------\\ SUPPRESSION

Supprime! - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
Supprime! - C:\Program Files\DAEMON Tools Toolbar\FirefoxDTT
Supprime! - C:\Program Files\DAEMON Tools Toolbar\Resources
Supprime! - C:\Program Files\DAEMON Tools Toolbar\uninst.exe
Supprime! - C:\Program Files\DAEMON Tools Toolbar\_DTLite.xml
Supprime! - C:\Program Files\DAEMON Tools Toolbar

-----------\\ Recherche de Fichiers / Dossiers ...


-----------\\ Extensions

(mizot) - {b9db16a4-6edc-47ec-a1f4-b86292ed211d} => dwhelper


-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://www.google.fr/"
"SearchMigratedDefaultURL"="http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}"
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://www.msn.com/"


--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\mizot\Local Settings\Application Data\Microsoft\Messenger\cordeon.mizot@hotmail.fr\Sharing Folders\rrony__@hotmail.fr\Swat 4 - cestina,crack ,keygen
C:\DOCUME~1\mizot\Local Settings\Application Data\Microsoft\Messenger\cordeon.mizot@hotmail.fr\Sharing Folders\rrony__@hotmail.fr\Swat 4 - cestina,crack ,keygen\SWAT 4 keygen by HAANDI.exe
C:\DOCUME~1\mizot\Local Settings\Application Data\Microsoft\Messenger\cordeon.mizot@hotmail.fr\Sharing Folders\rrony__@hotmail.fr\Swat 4 - cestina,crack ,keygen\Swat4.exe
C:\DOCUME~1\mizot\Local Settings\Application Data\Microsoft\Messenger\cordeon.mizot@hotmail.fr\Sharing Folders\rrony__@hotmail.fr\Swat 4 - cestina,crack ,keygen\SWAT4_cz.exe
C:\DOCUME~1\mizot\Mes documents\Mes r‚ceptions GigaTribe\mimeme\Manuel d'installation des crack by D.G.S.txt



1 - "C:\ToolBar SD\TB_1.txt" - 26/11/2008|18:21 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 27/11/2008|18:51 - Option : [2]
3 - "C:\ToolBar SD\TB_3.txt" - 25/05/2009|16:51 - Option : [1]
4 - "C:\ToolBar SD\TB_4.txt" - 25/05/2009|18:51 - Option : [2]

-----------\\ Fin du rapport a 18:51:02,17

Répondre à mizot 59

et voici le rapport

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:53:57, on 25/05/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
C:\WINDOWS\system32\Dsp24Set.exe
C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe
C:\WINDOWS\vsnp2std.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\WINDOWS\system32\DRIVERS\WtSrv.exe
C:\PROGRA~1\Bandoo\Bandoo.exe
C:\WINDOWS\system32\WService.EXE
C:\PROGRA~1\SFR\LOGICI~1\LOGICI~2.EXE
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Brother\ControlCenter3\brccMCtl.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\PeerGuardian2\pg2.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\BitComet\BitComet.exe
C:\Program Files\Brother\Brmfcmon\BrMfcmon.exe
C:\Documents and Settings\mizot\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\PROGRA~1\MICROS~3\rapimgr.exe
C:\Program Files\GigaTribe\gigatribe.exe
C:\Program Files\MagicDisc\MagicDisc.exe
C:\Documents and Settings\mizot\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\WINDOWS\system32\cmd.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\hijackthis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: IsoBuster Toolbar - {266fcdca-7bb3-4da7-b3bf-f845dea2ebd6} - C:\Program Files\IsoBuster\tbIso1.dll
R3 - URLSearchHook: Eazel-FR Toolbar - {a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} - C:\Program Files\Eazel-FR\tbEaz1.dll
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IsoBuster Toolbar - {266fcdca-7bb3-4da7-b3bf-f845dea2ebd6} - C:\Program Files\IsoBuster\tbIso1.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Eazel-FR Toolbar - {a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} - C:\Program Files\Eazel-FR\tbEaz1.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: IsoBuster Toolbar - {266fcdca-7bb3-4da7-b3bf-f845dea2ebd6} - C:\Program Files\IsoBuster\tbIso1.dll
O3 - Toolbar: Eazel-FR Toolbar - {a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} - C:\Program Files\Eazel-FR\tbEaz1.dll
O4 - HKLM\..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
O4 - HKLM\..\Run: [DSP24] Dsp24Set.exe /n
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TrayServer] C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe
O4 - HKLM\..\Run: [snp2std] C:\WINDOWS\vsnp2std.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [WService] WService.EXE
O4 - HKLM\..\Run: [Logiciel de Synchronisation SFRTray] C:\PROGRA~1\SFR\LOGICI~1\LOGICI~2.EXE
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files\ScanSoft\PaperPort\Ereg\Ereg.exe" -r "C:\Documents and Settings\All Users\Application Data\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini
O4 - HKLM\..\Run: [BrMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN
O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Windows UDP Control Center] msnmsgrss.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKCU\..\Run: [Free Download Manager] "C:\Program Files\Free Download Manager\fdm.exe" -autorun
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\mizot\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: GigaTribe.lnk = C:\Program Files\GigaTribe\gigatribe.exe
O4 - Startup: MagicDisc.lnk = C:\Program Files\MagicDisc\MagicDisc.exe
O4 - Startup: Notification de cadeaux MSN.lnk = C:\Documents and Settings\mizot\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Tout télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Télécharger la sélection avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Télécharger la vidéo avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll/206 (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://fichiers.touslesdrivers.com [...] _1_0_4.cab
O20 - AppInit_DLLs: c:\progra~1\bandoo\bndhook.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Bandoo Coordinator - Discordia Limited - C:\PROGRA~1\Bandoo\Bandoo.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe
O23 - Service: Google Update Service (gupdate1c98ba886f710b8) (gupdate1c98ba886f710b8) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: WinTab Service (WinTabService) - Tablet Driver - C:\WINDOWS\system32\DRIVERS\WtSrv.exe

--
End of file - 12590 bytes

Répondre à mizot 59

Faudrait que tu vires toutes tes toolbars inutiles pour commencer.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

houla comment dois je proceder toujours peur de faire des conneries....

Répondre à mizot 59

Bah via Ajoute/Suppression de Programmes tout simplement :)

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

ok c'est fait ben ué tout bete .......il y en avait que 2

Répondre à mizot 59

Reposte un rapport Hijackthis.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

voila

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:43:43, on 28/05/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\DRIVERS\WtSrv.exe
C:\PROGRA~1\Bandoo\Bandoo.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
C:\WINDOWS\system32\Dsp24Set.exe
C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe
C:\WINDOWS\vsnp2std.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\PROGRA~1\SFR\LOGICI~1\LOGICI~2.EXE
C:\WINDOWS\system32\WService.EXE
C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe
C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\PeerGuardian2\pg2.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Brother\ControlCenter3\brccMCtl.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Documents and Settings\mizot\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\PROGRA~1\MICROS~3\rapimgr.exe
C:\documents and settings\mizot\local settings\application data\yiskgkq.exe
C:\Program Files\Brother\Brmfcmon\BrMfcmon.exe
C:\Program Files\GigaTribe\gigatribe.exe
C:\Program Files\MagicDisc\MagicDisc.exe
C:\Documents and Settings\mizot\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\ALCATech\BPM-Studio Profi\BPM.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\hijackthis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Eazel-FR Toolbar - {a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} - C:\Program Files\Eazel-FR\tbEaz1.dll
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Eazel-FR Toolbar - {a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} - C:\Program Files\Eazel-FR\tbEaz1.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Eazel-FR Toolbar - {a8f9752d-e2b8-4e7a-86b5-499f4330e2fe} - C:\Program Files\Eazel-FR\tbEaz1.dll
O4 - HKLM\..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
O4 - HKLM\..\Run: [DSP24] Dsp24Set.exe /n
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TrayServer] C:\Program Files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe
O4 - HKLM\..\Run: [snp2std] C:\WINDOWS\vsnp2std.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [WService] WService.EXE
O4 - HKLM\..\Run: [Logiciel de Synchronisation SFRTray] C:\PROGRA~1\SFR\LOGICI~1\LOGICI~2.EXE
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files\ScanSoft\PaperPort\Ereg\Ereg.exe" -r "C:\Documents and Settings\All Users\Application Data\ScanSoft\PaperPort\11\Config\Ereg\Ereg.ini
O4 - HKLM\..\Run: [BrMfcWnd] C:\Program Files\Brother\Brmfcmon\BrMfcWnd.exe /AUTORUN
O4 - HKLM\..\Run: [ControlCenter3] C:\Program Files\Brother\ControlCenter3\brctrcen.exe /autorun
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [Windows UDP Control Center] msnmsgrss.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKCU\..\Run: [Free Download Manager] "C:\Program Files\Free Download Manager\fdm.exe" -autorun
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\mizot\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [yiskgkq] "c:\documents and settings\mizot\local settings\application data\yiskgkq.exe" yiskgkq
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: GigaTribe.lnk = C:\Program Files\GigaTribe\gigatribe.exe
O4 - Startup: MagicDisc.lnk = C:\Program Files\MagicDisc\MagicDisc.exe
O4 - Startup: Notification de cadeaux MSN.lnk = C:\Documents and Settings\mizot\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: Tout télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Télécharger avec Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Télécharger la sélection avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Télécharger la vidéo avec Free Download Manager - file://C:\Program Files\Free Download Manager\dlfvideo.htm
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un Favori de l'appareil mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll/206 (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://fichiers.touslesdrivers.com [...] _1_0_4.cab
O20 - AppInit_DLLs: c:\progra~1\bandoo\bndhook.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Bandoo Coordinator - Discordia Limited - C:\PROGRA~1\Bandoo\Bandoo.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - C:\Program Files\MAGIX\Common\Database\bin\fbserver.exe
O23 - Service: Google Update Service (gupdate1c98ba886f710b8) (gupdate1c98ba886f710b8) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\Eset\nod32krn.exe
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\WINDOWS\system32\GameMon.des.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: WinTab Service (WinTabService) - Tablet Driver - C:\WINDOWS\system32\DRIVERS\WtSrv.exe

--
End of file - 12264 bytes

Répondre à mizot 59

T'as réussi à chopper une infection entre temps, faudrait faire attention...

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

ah! et que dois je faire...

Répondre à mizot 59

Re,

Télécharge Navilog (de Il-Mafioso)

  • Enregistre-le sur ton Bureau.
  • Installe-le en double cliquant sur navilog.exe.
  • Une fois l'installation terminée, l'utilitaire s'exécutera automatiquement.

(Si ce n'est pas le cas, double clique sur le raccourci présent sur le Bureau)

  • Laisse-toi guider par l'utilitaire. Choisis l'option 1 puis valide.

! N'utilise pas l'option 2, 3 et 4 sans notre accord !

  • Patiente jusqu'à l'apparition de ce message :

*** Analyse Termine le ..... ***

  • Appuie sur une touche comme demandé. Le Bloc-notes va s'ouvrir. Poste le rapport ici.
  • Poste le rapport généré.


Le rapport se trouve ici : C:\fixnavi.txt

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

re

Search Navipromo version 3.7.7 commencé le 29/05/2009 à 9:54:44,43

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1

Mise à jour le 12.05.2009 à 18h00 par IL-MAFIOSO

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU E6550 @ 2.33GHz )
BIOS : Default System BIOS
USER : mizot ( Administrator )
BOOT : Normal boot

Antivirus : ESET NOD32 antivirus system 2.70 2.70 (Activated)


A:\ (USB)
C:\ (Local Disk) - NTFS - Total:97 Go (Free:2 Go)
D:\ (Local Disk) - NTFS - Total:368 Go (Free:175 Go)
E:\ (USB)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (CD or DVD)
J:\ (USB)
K:\ (CD or DVD) - CDFS - Total:2 Go (Free:0 Go)
M:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
O:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)


Recherche executé en mode normal


*** Recherche dossiers dans "C:\WINDOWS" ***


*** Recherche dossiers dans "C:\Program Files" ***

...\WebMediaPlayer trouvé !

*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1\progra~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\All Users\menudm~1" ***


*** Recherche dossiers dans "c:\docume~1\alluse~1\applic~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\mizot\applic~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\mizot\locals~1\applic~1" ***


*** Recherche dossiers dans "C:\Documents and Settings\mizot\menudm~1\progra~1" ***


*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net

Fichier(s) caché(s) :

C:\Documents and Settings\mizot\Application Data\drivers\winupgro.exe
C:\Documents and Settings\mizot\Application Data\m\flec006.exe


*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans "C:\WINDOWS\system32" *

* Recherche dans "C:\Documents and Settings\mizot\locals~1\applic~1" *



*** Recherche fichiers ***



*** Recherche clés spécifiques dans le Registre ***
!! Les clés trouvées ne sont pas forcément infectées !!


[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"yiskgkq"="\"c:\\documents and settings\\mizot\\local settings\\application data\\yiskgkq.exe\" yiskgkq"


*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :


2)Recherche Heuristique :

* Dans "C:\WINDOWS\system32" :


* Dans "C:\Documents and Settings\mizot\locals~1\applic~1" :

yiskgkq.exe trouvé !
yiskgkq.dat trouvé !
yiskgkq_nav.dat trouvé !
yiskgkq_navps.dat trouvé !

3)Recherche Certificats :

Certificat Egroup absent !
Certificat Electronic-Group absent !
Certificat Montorgueil absent !
Certificat OOO-Favorit absent !
Certificat Sunny-Day-Design-Ltd absent !

4)Recherche autres dossiers et fichiers connus :



*** Analyse terminée le 29/05/2009 à 10:02:53,45 ***

Répondre à mizot 59

Re,

Relance Lop S&D.

  • Choisis cette fois ci l'Option 2 (Suppression)

! Ne ferme pas la fenêtre lors de la suppression !

  • Poste le rapport généré (C:\lopR.txt)

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

dsl demain je vais au dodo bye...

Répondre à mizot 59

re


--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU E6550 @ 2.33GHz )
BIOS : Default System BIOS
USER : mizot ( Administrator )
BOOT : Normal boot
Antivirus : ESET NOD32 antivirus system 2.70 2.70 (Activated)
A:\ (USB)
C:\ (Local Disk) - NTFS - Total:97 Go (Free:2 Go)
D:\ (Local Disk) - NTFS - Total:368 Go (Free:175 Go)
E:\ (USB)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (CD or DVD)
J:\ (USB)
K:\ (CD or DVD) - CDFS - Total:2 Go (Free:0 Go)
M:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
O:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 30/05/2009|11:00 )


\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


--------------------\\ Listing des dossiers dans APPLIC~1

[30/04/2009|16:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[19/01/2009|21:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[11/09/2008|19:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[20/09/2008|05:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ATI
[23/09/2008|13:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[25/09/2008|09:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Bandoo
[08/12/2008|18:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[13/11/2008|13:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Brother
[05/02/2009|10:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DAEMON Tools Lite
[11/05/2009|15:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Dragon's Eye Productions
[05/01/2009|10:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DVD Shrink
[26/05/2009|14:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[29/05/2009|20:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[13/11/2008|13:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[27/02/2009|19:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files
[21/01/2009|20:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ma-config.com
[13/09/2008|11:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MAGIX
[27/11/2008|20:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[25/01/2009|12:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[23/03/2009|10:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[20/09/2008|05:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[15/11/2008|19:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Overloud
[15/03/2009|20:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PACE Anti-Piracy
[27/04/2009|19:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PMB Files
[13/11/2008|13:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[26/05/2009|14:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sibelius Software
[24/10/2008|17:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SlySoft
[06/10/2008|17:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Tablet
[15/05/2009|13:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[03/02/2009|11:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
[20/01/2009|16:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ubisoft
[13/11/2008|16:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems
[08/10/2008|19:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\vsosdk
[09/10/2008|11:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Wave Arts
[11/09/2008|09:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller

[10/09/2008|20:50] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft

[10/09/2008|20:50] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

[05/05/2009|12:58] C:\DOCUME~1\mizot\APPLIC~1\Adobe
[19/01/2009|21:23] C:\DOCUME~1\mizot\APPLIC~1\Ahead
[10/10/2008|09:58] C:\DOCUME~1\mizot\APPLIC~1\Antares
[12/09/2008|08:46] C:\DOCUME~1\mizot\APPLIC~1\Applied Acoustics Systems
[11/09/2008|15:17] C:\DOCUME~1\mizot\APPLIC~1\ATI
[24/09/2008|17:18] C:\DOCUME~1\mizot\APPLIC~1\BitComet MP3
[13/11/2008|14:48] C:\DOCUME~1\mizot\APPLIC~1\Brother
[02/02/2009|17:24] C:\DOCUME~1\mizot\APPLIC~1\Clavia
[05/02/2009|11:31] C:\DOCUME~1\mizot\APPLIC~1\DAEMON Tools
[05/02/2009|10:57] C:\DOCUME~1\mizot\APPLIC~1\DAEMON Tools Lite
[24/02/2009|13:12] C:\DOCUME~1\mizot\APPLIC~1\DAEMON Tools Pro
[17/09/2008|11:38] C:\DOCUME~1\mizot\APPLIC~1\DeepBurner
[17/09/2008|11:40] C:\DOCUME~1\mizot\APPLIC~1\DeepBurner Pro
[02/12/2008|18:32] C:\DOCUME~1\mizot\APPLIC~1\DivX
[28/05/2009|19:52] C:\DOCUME~1\mizot\APPLIC~1\drivers
[08/11/2008|11:25] C:\DOCUME~1\mizot\APPLIC~1\foobar2000
[30/05/2009|10:59] C:\DOCUME~1\mizot\APPLIC~1\Free Download Manager
[17/02/2009|10:59] C:\DOCUME~1\mizot\APPLIC~1\GigaTribe
[10/02/2009|19:54] C:\DOCUME~1\mizot\APPLIC~1\Google
[24/12/2008|17:52] C:\DOCUME~1\mizot\APPLIC~1\gtk-2.0
[13/01/2009|13:48] C:\DOCUME~1\mizot\APPLIC~1\Help
[10/09/2008|20:56] C:\DOCUME~1\mizot\APPLIC~1\Identities
[11/09/2008|11:50] C:\DOCUME~1\mizot\APPLIC~1\InstallShield
[13/03/2009|14:00] C:\DOCUME~1\mizot\APPLIC~1\iZotope
[28/05/2009|19:53] C:\DOCUME~1\mizot\APPLIC~1\m
[11/09/2008|09:33] C:\DOCUME~1\mizot\APPLIC~1\Macromedia
[13/09/2008|11:57] C:\DOCUME~1\mizot\APPLIC~1\MAGIX
[27/11/2008|20:52] C:\DOCUME~1\mizot\APPLIC~1\Malwarebytes
[19/03/2009|18:54] C:\DOCUME~1\mizot\APPLIC~1\Microsoft
[23/10/2008|12:24] C:\DOCUME~1\mizot\APPLIC~1\mojosoft
[30/01/2009|12:30] C:\DOCUME~1\mizot\APPLIC~1\Mozilla
[23/01/2009|11:41] C:\DOCUME~1\mizot\APPLIC~1\MSNInstaller
[30/05/2009|10:43] C:\DOCUME~1\mizot\APPLIC~1\OpenOffice.org2
[15/03/2009|20:27] C:\DOCUME~1\mizot\APPLIC~1\PACE Anti-Piracy
[19/05/2009|14:54] C:\DOCUME~1\mizot\APPLIC~1\Real
[11/04/2009|14:56] C:\DOCUME~1\mizot\APPLIC~1\Red Alert 3 Demo
[16/01/2009|10:41] C:\DOCUME~1\mizot\APPLIC~1\Samsung
[13/11/2008|14:48] C:\DOCUME~1\mizot\APPLIC~1\ScanSoft
[08/12/2008|18:33] C:\DOCUME~1\mizot\APPLIC~1\SecuROM
[14/10/2008|10:38] C:\DOCUME~1\mizot\APPLIC~1\SFR
[26/05/2009|19:39] C:\DOCUME~1\mizot\APPLIC~1\Sibelius Software
[17/03/2009|20:36] C:\DOCUME~1\mizot\APPLIC~1\Steinberg
[17/09/2008|14:08] C:\DOCUME~1\mizot\APPLIC~1\Sun
[11/09/2008|19:38] C:\DOCUME~1\mizot\APPLIC~1\TigerPlayer
[22/10/2008|17:17] C:\DOCUME~1\mizot\APPLIC~1\U3
[13/11/2008|16:30] C:\DOCUME~1\mizot\APPLIC~1\Ulead Systems
[24/04/2009|22:34] C:\DOCUME~1\mizot\APPLIC~1\uTorrent
[31/12/2008|13:44] C:\DOCUME~1\mizot\APPLIC~1\Vso
[22/01/2009|18:39] C:\DOCUME~1\mizot\APPLIC~1\Windows Live Writer
[11/09/2008|09:17] C:\DOCUME~1\mizot\APPLIC~1\WinRAR
[30/12/2008|16:28] C:\DOCUME~1\mizot\APPLIC~1\Yahoo!

[10/09/2008|20:50] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[30/05/2009 11:00][--ah-----] C:\WINDOWS\tasks\User_Feed_Synchronization-{B4979090-6002-43CA-9626-A4FE053C6956}.job
[30/05/2009 10:29][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachine.job
[30/05/2009 10:29][--a------] C:\WINDOWS\tasks\Google Software Updater.job
[29/05/2009 21:52][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-842925246-823518204-1801674531-1003.job
[30/05/2009 10:29][--ah-----] C:\WINDOWS\tasks\SA.DAT
[14/04/2008 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini

--------------------\\ Listing des dossiers dans C:\Program Files

[08/05/2009|11:04] C:\Program Files\3DBELOTE
[12/09/2008|08:35] C:\Program Files\AAS
[11/09/2008|14:36] C:\Program Files\Acon Digital Media
[30/04/2009|16:09] C:\Program Files\Adobe
[27/05/2009|17:57] C:\Program Files\ALCATech
[19/01/2009|17:34] C:\Program Files\Antares
[10/10/2008|09:52] C:\Program Files\Antares Audio Technologies
[15/05/2009|12:42] C:\Program Files\AoA Audio Extractor
[20/11/2008|12:05] C:\Program Files\Arturia
[28/02/2009|18:21] C:\Program Files\ASIO4ALL v2
[19/01/2009|21:04] C:\Program Files\Astonsoft
[18/09/2008|15:13] C:\Program Files\ATI Technologies
[07/01/2009|17:36] C:\Program Files\AviSynth 2.5
[23/09/2008|13:40] C:\Program Files\AVSMedia
[24/09/2008|17:26] C:\Program Files\Bandoo
[07/01/2009|18:16] C:\Program Files\BDGest Evolution
[29/05/2009|22:28] C:\Program Files\BitComet
[07/10/2008|09:52] C:\Program Files\Brainworx Music
[13/11/2008|13:25] C:\Program Files\Brother
[30/12/2008|16:28] C:\Program Files\CCleaner
[25/04/2009|19:14] C:\Program Files\Common Files
[10/09/2008|20:47] C:\Program Files\ComPlus Applications
[24/09/2008|12:35] C:\Program Files\Conduit
[11/11/2008|18:48] C:\Program Files\Connection Booster
[23/05/2009|10:02] C:\Program Files\ConvertHelper
[06/02/2009|09:54] C:\Program Files\DAEMON Tools Lite
[27/10/2008|19:15] C:\Program Files\DigiDesign
[02/12/2008|18:16] C:\Program Files\DivX
[16/09/2008|20:41] C:\Program Files\DVD Shrink
[04/12/2008|14:02] C:\Program Files\DVDlabPro2
[31/12/2008|13:43] C:\Program Files\dvdSanta
[15/03/2009|21:02] C:\Program Files\East West
[26/03/2009|11:42] C:\Program Files\Eazel-FR
[27/05/2009|11:59] C:\Program Files\eMule
[27/05/2009|17:50] C:\Program Files\Encore 4.5.3
[02/03/2009|12:51] C:\Program Files\EPSON
[18/04/2009|11:00] C:\Program Files\ESET
[27/05/2009|17:50] C:\Program Files\Example Files
[19/05/2009|14:54] C:\Program Files\Fichiers communs
[13/09/2008|11:05] C:\Program Files\flatpick_guitar_solos
[15/11/2008|17:51] C:\Program Files\Flux
[28/05/2009|14:45] C:\Program Files\FLV Player
[08/11/2008|17:41] C:\Program Files\foobar2000
[21/11/2008|20:51] C:\Program Files\Free Download Manager
[10/04/2009|09:29] C:\Program Files\Free FLV Converter
[11/05/2009|15:34] C:\Program Files\Furcadia
[11/09/2008|11:56] C:\Program Files\FXpansion DR-008 v1.21
[19/02/2009|18:24] C:\Program Files\GigaTribe
[26/05/2009|14:28] C:\Program Files\Google
[06/10/2008|17:36] C:\Program Files\G-PEN SERIES
[18/02/2009|15:12] C:\Program Files\IBoot
[31/12/2008|14:04] C:\Program Files\IfoEdit
[27/10/2008|19:15] C:\Program Files\IK Multimedia
[22/11/2008|08:21] C:\Program Files\Ingo Leif Software
[05/05/2009|13:59] C:\Program Files\InstallShield Installation Information
[25/11/2008|20:15] C:\Program Files\Intel
[15/11/2008|19:23] C:\Program Files\InterLok
[19/05/2009|14:53] C:\Program Files\Internet Explorer
[26/03/2009|11:50] C:\Program Files\iZotope
[07/04/2009|09:38] C:\Program Files\Java
[13/09/2008|11:06] C:\Program Files\Jazz_Guitar_Solos_Vol_1-4
[27/03/2009|20:01] C:\Program Files\Kalypso
[23/10/2008|11:10] C:\Program Files\Konvertor
[26/05/2009|17:12] C:\Program Files\LilyPond
[21/01/2009|20:58] C:\Program Files\ma-config.com
[01/10/2008|14:56] C:\Program Files\Magic Video Converter
[20/01/2009|16:24] C:\Program Files\MagicDisc
[20/01/2009|16:07] C:\Program Files\MagicISO
[13/09/2008|11:57] C:\Program Files\MAGIX
[27/11/2008|20:52] C:\Program Files\Malwarebytes' Anti-Malware
[15/05/2009|12:42] C:\Program Files\MediaCoder
[11/09/2008|09:26] C:\Program Files\Messenger
[21/04/2009|11:36] C:\Program Files\Messenger Plus! Live
[22/01/2009|18:33] C:\Program Files\Microsoft
[14/10/2008|11:47] C:\Program Files\Microsoft ActiveSync
[10/09/2008|20:50] C:\Program Files\microsoft frontpage
[25/10/2008|13:37] C:\Program Files\Microsoft Silverlight
[11/09/2008|09:37] C:\Program Files\Microsoft SQL Server Compact Edition
[18/02/2009|15:00] C:\Program Files\Mio Technology
[07/01/2009|17:25] C:\Program Files\mkvtoavi
[23/10/2008|12:24] C:\Program Files\MOJOSOFT
[10/09/2008|20:48] C:\Program Files\Movie Maker
[30/05/2009|10:45] C:\Program Files\Mozilla Firefox
[17/03/2009|10:50] C:\Program Files\MpcStar
[20/01/2009|16:03] C:\Program Files\MSBuild
[23/01/2009|11:41] C:\Program Files\MSN
[10/09/2008|20:47] C:\Program Files\MSN Gaming Zone
[20/05/2009|08:23] C:\Program Files\MSN Messenger
[14/09/2008|03:00] C:\Program Files\MSXML 4.0
[11/09/2008|11:49] C:\Program Files\MU Technologies
[11/10/2007|11:37] C:\Program Files\Native Instruments
[29/05/2009|10:03] C:\Program Files\Navilog1
[10/09/2008|20:48] C:\Program Files\NetMeeting
[20/09/2008|05:41] C:\Program Files\NOS
[13/11/2008|13:23] C:\Program Files\Nuance
[24/11/2008|09:39] C:\Program Files\OpenAL
[18/09/2008|15:42] C:\Program Files\OpenOffice.org 2.4
[15/11/2008|19:26] C:\Program Files\Outlook Express
[15/11/2008|19:25] C:\Program Files\Overloud
[25/04/2009|18:45] C:\Program Files\Pando Networks
[28/05/2009|19:51] C:\Program Files\PeerGuardian2
[26/05/2009|19:02] C:\Program Files\Pizzicato 3.4
[07/01/2009|20:11] C:\Program Files\Planetwide Games
[13/09/2008|11:04] C:\Program Files\PowerTracks DirectX Plugins
[19/05/2009|14:54] C:\Program Files\Real
[25/11/2008|20:22] C:\Program Files\Realtek
[20/01/2009|16:01] C:\Program Files\Reference Assemblies
[28/05/2009|19:51] C:\Program Files\Replay Converter 3
[07/01/2009|17:40] C:\Program Files\Ripp-it_AM
[13/09/2008|11:05] C:\Program Files\Roland
[16/01/2009|10:58] C:\Program Files\Samsung
[13/11/2008|13:22] C:\Program Files\ScanSoft
[10/09/2008|20:49] C:\Program Files\Services en ligne
[14/10/2008|10:37] C:\Program Files\SFR
[26/05/2009|18:14] C:\Program Files\Sibelius Software
[04/01/2009|16:43] C:\Program Files\SlySoft
[30/01/2009|19:23] C:\Program Files\Smart Projects
[11/09/2008|19:23] C:\Program Files\Steinberg
[05/05/2009|19:00] C:\Program Files\Subagames
[17/12/2008|18:17] C:\Program Files\Syncrosoft
[11/09/2008|11:55] C:\Program Files\Timeworks
[04/02/2009|15:44] C:\Program Files\Toontrack
[28/05/2009|15:44] C:\Program Files\trend micro
[30/01/2009|19:47] C:\Program Files\Trymedia
[13/11/2008|16:29] C:\Program Files\Ulead Systems
[10/09/2008|20:56] C:\Program Files\Uninstall Information
[18/11/2008|11:15] C:\Program Files\uTorrent
[11/10/2008|19:17] C:\Program Files\VirSyn Software Synthesizer
[10/01/2009|14:34] C:\Program Files\Virtual Magnifying Glass
[11/09/2008|19:26] C:\Program Files\VOB
[08/10/2008|19:27] C:\Program Files\VSO
[19/01/2009|17:40] C:\Program Files\Wave Arts
[26/05/2009|14:50] C:\Program Files\WebMediaPlayer
[20/05/2009|08:24] C:\Program Files\Windows Live
[11/09/2008|09:40] C:\Program Files\Windows Live Favorites
[19/01/2009|14:23] C:\Program Files\Windows Live Safety Center
[22/01/2009|18:33] C:\Program Files\Windows Live SkyDrive
[23/01/2009|10:43] C:\Program Files\Windows Live Toolbar
[27/05/2009|12:16] C:\Program Files\Windows Media Player
[14/10/2008|11:47] C:\Program Files\Windows Mobile Device Handbook
[10/09/2008|20:47] C:\Program Files\Windows NT
[15/03/2009|20:27] C:\Program Files\WindowsUpdate
[29/11/2008|18:30] C:\Program Files\WinRAR
[10/09/2008|20:50] C:\Program Files\xerox
[02/12/2008|19:04] C:\Program Files\Xvid
[05/05/2009|14:00] C:\Program Files\Yahoo!

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[30/04/2009|16:08] C:\Program Files\Fichiers communs\Adobe
[30/04/2009|16:07] C:\Program Files\Fichiers communs\Adobe Systems Shared
[22/11/2008|12:40] C:\Program Files\Fichiers communs\Ahead
[11/09/2008|15:13] C:\Program Files\Fichiers communs\ATI Technologies
[23/09/2008|13:39] C:\Program Files\Fichiers communs\AVSMedia
[08/12/2008|18:37] C:\Program Files\Fichiers communs\BOONTY Shared
[11/09/2008|10:48] C:\Program Files\Fichiers communs\Digidesign
[13/11/2008|13:23] C:\Program Files\Fichiers communs\InstallShield
[26/02/2009|21:10] C:\Program Files\Fichiers communs\iZotope
[17/09/2008|14:08] C:\Program Files\Fichiers communs\Java
[18/12/2008|18:27] C:\Program Files\Fichiers communs\MAGIX Shared
[20/05/2009|08:22] C:\Program Files\Fichiers communs\Microsoft Shared
[10/09/2008|20:48] C:\Program Files\Fichiers communs\MSSoap
[11/10/2007|11:37] C:\Program Files\Fichiers communs\Native Instruments
[19/01/2009|21:28] C:\Program Files\Fichiers communs\Nero
[10/09/2007|22:40] C:\Program Files\Fichiers communs\ODBC
[15/11/2008|19:26] C:\Program Files\Fichiers communs\PACE Anti-Piracy
[19/05/2009|14:54] C:\Program Files\Fichiers communs\Real
[13/11/2008|13:23] C:\Program Files\Fichiers communs\ScanSoft Shared
[10/09/2008|20:48] C:\Program Files\Fichiers communs\Services
[16/09/2008|12:46] C:\Program Files\Fichiers communs\snp2std
[10/09/2007|22:40] C:\Program Files\Fichiers communs\SpeechEngines
[15/03/2009|20:27] C:\Program Files\Fichiers communs\System
[13/11/2008|16:29] C:\Program Files\Fichiers communs\Ulead Systems
[22/01/2009|18:28] C:\Program Files\Fichiers communs\Windows Live
[11/09/2008|09:36] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[19/05/2009|14:54] C:\Program Files\Fichiers communs\xing shared

--------------------\\ Process

( 47 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-05-30 11:01:33
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
? [2312]
? [2672]
scanning hidden files ...
scan completed successfully
hidden processes: 2
hidden files: 487

--------------------\\ Recherche d'autres infections

C:\Program Files\WebMediaPlayer

C:\DOCUME~1\mizot\LOCALS~1\APPLIC~1\yiskgkq.dat
C:\DOCUME~1\mizot\LOCALS~1\APPLIC~1\yiskgkq.exe
C:\DOCUME~1\mizot\LOCALS~1\APPLIC~1\yiskgkq_nav.dat
C:\DOCUME~1\mizot\LOCALS~1\APPLIC~1\yiskgkq_navps.dat
==> EGDACCESS <==

--------------------\\ ROOTKIT !!

Rootkit Bagle ! .. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_SROSA]
Rootkit Bagle ! .. [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\Root\LEGACY_SROSA]
Rootkit Bagle ! .. [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SROSA]

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\mizot\Local Settings\Application Data\Microsoft\Messenger\cordeon.mizot@hotmail.fr\Sharing Folders\rrony__@hotmail.fr\Swat 4 - cestina,crack ,keygen
C:\DOCUME~1\mizot\Local Settings\Application Data\Microsoft\Messenger\cordeon.mizot@hotmail.fr\Sharing Folders\rrony__@hotmail.fr\Swat 4 - cestina,crack ,keygen\SWAT 4 keygen by HAANDI.exe
C:\DOCUME~1\mizot\Local Settings\Application Data\Microsoft\Messenger\cordeon.mizot@hotmail.fr\Sharing Folders\rrony__@hotmail.fr\Swat 4 - cestina,crack ,keygen\Swat4.exe
C:\DOCUME~1\mizot\Local Settings\Application Data\Microsoft\Messenger\cordeon.mizot@hotmail.fr\Sharing Folders\rrony__@hotmail.fr\Swat 4 - cestina,crack ,keygen\SWAT4_cz.exe
C:\DOCUME~1\mizot\Mes documents\Mes r‚ceptions GigaTribe\mimeme\Manuel d'installation des crack by D.G.S.txt


[F:10691][D:131]-> C:\DOCUME~1\mizot\LOCALS~1\Temp
[F:129][D:1]-> C:\DOCUME~1\mizot\Cookies
[F:3722][D:7]-> C:\DOCUME~1\mizot\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 30/05/2009|11:03 - Option : [2]

--------------------\\ Fin du rapport a 11:03:45

Répondre à mizot 59

Me suis trompé de procédure désolé.

  • Double clique sur le raccourci de Navilog.
  • Choisis l'option 2 puis valide. (Entrée)
  • Laisse toi guider.
  • Ton ordinateur va redémarrer, sinon fais le manuellement.
  • Ton bureau va disparaître.
  • Après un certain temps, le Bloc-notes va s'ouvrir.
  • Sauvegarde le rapport.
  • Referme le Bloc-notes. Ton bureau va maintenant réapparaître.


Si ton bureau ne réapparait pas, fais CTRL+ALT+SUPP pour ouvrir le gestionnaire de tâches.
Puis rends-toi à l'onglet "processus". Clique en haut à gauche sur fichiers et choisis "Nouvelle tâche (exécuter)"
Tapes explorer et valide. Cela te fera apparaitre ton bureau


Démarrer -> panneau de configuration -> options internet
Clique sur l'onglet "Contenu" puis onglet "Certificats" et si tu trouves ceci, en particulier dans "éditeurs approuvés" :

VIP

Si tu le trouve, fais ceci :
* Sélectionne ce certificat et clique sur exporter. Enregistre --e sur ton bureau.
* Supprime-le dans l'onglet "certificats" des options de ton naviguateur.

Ensuite pour le certificat présent sur ton bureau :
* Va sur le site Web :
http://www.bleepingcomputer.com/su [...] channel=35
* Copie/colle ceci dans la case 'Link to Topic' :
le nom du certificat (Montorgueil ,......)
* Copie/colle ceci dans la case 'Browse to the File' :
Le certificat correspondant que tu avais exportés vers ton bureau

Si c'est fait, supprime enfin le certificat présent sur ton bureau.

Les programmes suivants installent cette infection :

* Go-astro
* GoRecord
* HotTVPlayer
* Live Player
* MailSkinner
* Messenger Skinner
* Instant Access
* InternetGameBox
* sudoplanet
* Webmediaplayer : sauf celui provenant du site suivant > http://www.azertysite.new.fr/
* Sur le site www.games-desktop.com (Ne pas aller dessus!)

  • Poste le rapport sauvegardé auparavant (C:\cleannavi.txt).


&

Télécharge ComboFix (de sUBs) sur ton Bureau.

  • Désactive temporairement toute protection résidente ! (Antivirus, antispywares..)
  • Double clique sur ComboFix.exe.
  • Accepte la licence en cliquant sur Oui.
  • Le programme va te demander si tu souhaites installer la Console de Récupération. C'est une précaution, au cas où l'ordinateur tomberait en panne. Je te conseille donc de l'installer, ça ne coûte rien, et ça pourrait potentiellement servir !
  • Lorsque l'opération sera terminée, un rapport apparaîtra. Poste ce rapport dans ta prochaine réponse.


Le rapport se trouve ici : %SystemDrive%\ComboFix.txt (%systemdrive% étant la partition où est installée Windows; C:\ en général)

Aide : Comment utiliser ComboFix.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

tu t'es trompe ok ca arrive mais le probleme c'est que maintenant je n'arrive pluz a ouvrir un logiciel ex.cubase sx 3 et etant musicos je m'en sert assez souvent peux tu remedier a ca merci...

Répondre à mizot 59

Euh ça vient de ton infection Bagle peut être, pas de Lop-S&D.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

ok que dois je faire maintenant je n'ai plus de sortie audio ??

Répondre à mizot 59

Suffit de réinstaller les drivers normalement.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

j'ai essayer de reinstaller cubase et il ne trouve plus le stick .....

et pour bagle ?

Répondre à mizot 59

je ne peux plus ouvrir:

c cleaner
nod 32 disparu
cubase
sortie audio
et je n'ai pas encore tous regarder
je crois que ce que tu m'a fais faire m'a tous supprimé
j'aimerai que tu m'aide car la c'est la panique a bord merci

Répondre à mizot 59

Bah si tu faisais le scan Combofix pour commencer.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

dsl je n'arrive pas a l'ouvrir il me dit application win 32 non valide

Répondre à mizot 59

Télécharge le avec Internet Explorer, et avant de l'enregistrer, nomme le Combo-Fix.exe.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

re

marche toujours pas

Répondre à mizot 59

ca y'est j'ai reussi

ComboFix 09-06-01.03 - mizot 03/06/2009 18:14.1 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.3327.2959 [GMT 2:00]
Lancé depuis: d:\downloads\Combo-Fix.exe
AV: ESET NOD32 antivirus system 2.70 *On-access scanning enabled* (Updated) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
.
ADS - WINDOWS: deleted 24 bytes in 1 streams.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\mizot\Application Data\drivers\downld
c:\documents and settings\mizot\Application Data\drivers\downld\102203.exe
c:\documents and settings\mizot\Application Data\drivers\downld\103203.exe
c:\documents and settings\mizot\Application Data\drivers\downld\103781.exe
c:\documents and settings\mizot\Application Data\drivers\downld\104046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\104437.exe
c:\documents and settings\mizot\Application Data\drivers\downld\104593.exe
c:\documents and settings\mizot\Application Data\drivers\downld\104656.exe
c:\documents and settings\mizot\Application Data\drivers\downld\104875.exe
c:\documents and settings\mizot\Application Data\drivers\downld\105906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\106421.exe
c:\documents and settings\mizot\Application Data\drivers\downld\106484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\106953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\107343.exe
c:\documents and settings\mizot\Application Data\drivers\downld\108046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\109656.exe
c:\documents and settings\mizot\Application Data\drivers\downld\109718.exe
c:\documents and settings\mizot\Application Data\drivers\downld\110453.exe
c:\documents and settings\mizot\Application Data\drivers\downld\110515.exe
c:\documents and settings\mizot\Application Data\drivers\downld\112156.exe
c:\documents and settings\mizot\Application Data\drivers\downld\113546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\114203.exe
c:\documents and settings\mizot\Application Data\drivers\downld\114796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\115984.exe
c:\documents and settings\mizot\Application Data\drivers\downld\116046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\120828.exe
c:\documents and settings\mizot\Application Data\drivers\downld\124203.exe
c:\documents and settings\mizot\Application Data\drivers\downld\124265.exe
c:\documents and settings\mizot\Application Data\drivers\downld\128703.exe
c:\documents and settings\mizot\Application Data\drivers\downld\132125.exe
c:\documents and settings\mizot\Application Data\drivers\downld\132187.exe
c:\documents and settings\mizot\Application Data\drivers\downld\147718.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14811250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14838515.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14840656.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14870421.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14871671.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14872015.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14879593.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14880359.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14880859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14906265.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14906421.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14906484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14939953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14940171.exe
c:\documents and settings\mizot\Application Data\drivers\downld\14940250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15061468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15062656.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15063312.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15067015.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15071468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15071484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15080296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15081468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15081953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15083593.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15084375.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15084890.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15087671.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15087687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15088218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15094796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15095921.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15096281.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15099265.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15099281.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15102640.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15103421.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15103843.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15103859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15105546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15106078.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15113375.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15113500.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15113562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15215593.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15215609.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15217296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15218234.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15218765.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15222218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15222234.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15224359.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15224375.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15228109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15228859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15229265.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15240625.exe
c:\documents and settings\mizot\Application Data\drivers\downld\152531.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15281765.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15282359.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15282546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15292718.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15292734.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15299000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15299875.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15300546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15301390.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15301406.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15310796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\153109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15311437.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15311687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15338828.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15338843.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15345875.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15350281.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15350890.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15351109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15351781.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15351796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15412109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15412484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15412671.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15425093.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15425109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15430906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15430953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15430968.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15431265.exe
c:\documents and settings\mizot\Application Data\drivers\downld\15431281.exe
c:\documents and settings\mizot\Application Data\drivers\downld\160750.exe
c:\documents and settings\mizot\Application Data\drivers\downld\162562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\163062.exe
c:\documents and settings\mizot\Application Data\drivers\downld\170625.exe
c:\documents and settings\mizot\Application Data\drivers\downld\173015.exe
c:\documents and settings\mizot\Application Data\drivers\downld\173093.exe
c:\documents and settings\mizot\Application Data\drivers\downld\176812.exe
c:\documents and settings\mizot\Application Data\drivers\downld\181156.exe
c:\documents and settings\mizot\Application Data\drivers\downld\182046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\182656.exe
c:\documents and settings\mizot\Application Data\drivers\downld\184984.exe
c:\documents and settings\mizot\Application Data\drivers\downld\186062.exe
c:\documents and settings\mizot\Application Data\drivers\downld\188125.exe
c:\documents and settings\mizot\Application Data\drivers\downld\188328.exe
c:\documents and settings\mizot\Application Data\drivers\downld\188937.exe
c:\documents and settings\mizot\Application Data\drivers\downld\189156.exe
c:\documents and settings\mizot\Application Data\drivers\downld\189640.exe
c:\documents and settings\mizot\Application Data\drivers\downld\191781.exe
c:\documents and settings\mizot\Application Data\drivers\downld\192343.exe
c:\documents and settings\mizot\Application Data\drivers\downld\192562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\193500.exe
c:\documents and settings\mizot\Application Data\drivers\downld\194031.exe
c:\documents and settings\mizot\Application Data\drivers\downld\194359.exe
c:\documents and settings\mizot\Application Data\drivers\downld\194656.exe
c:\documents and settings\mizot\Application Data\drivers\downld\194906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\195687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\196140.exe
c:\documents and settings\mizot\Application Data\drivers\downld\196281.exe
c:\documents and settings\mizot\Application Data\drivers\downld\196828.exe
c:\documents and settings\mizot\Application Data\drivers\downld\196843.exe
c:\documents and settings\mizot\Application Data\drivers\downld\198859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\199421.exe
c:\documents and settings\mizot\Application Data\drivers\downld\200046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\200859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\201015.exe
c:\documents and settings\mizot\Application Data\drivers\downld\201390.exe
c:\documents and settings\mizot\Application Data\drivers\downld\202015.exe
c:\documents and settings\mizot\Application Data\drivers\downld\202421.exe
c:\documents and settings\mizot\Application Data\drivers\downld\203078.exe
c:\documents and settings\mizot\Application Data\drivers\downld\203640.exe
c:\documents and settings\mizot\Application Data\drivers\downld\203687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\204078.exe
c:\documents and settings\mizot\Application Data\drivers\downld\204468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\204484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\204515.exe
c:\documents and settings\mizot\Application Data\drivers\downld\204906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\206562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\206656.exe
c:\documents and settings\mizot\Application Data\drivers\downld\207093.exe
c:\documents and settings\mizot\Application Data\drivers\downld\207453.exe
c:\documents and settings\mizot\Application Data\drivers\downld\207468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\207843.exe
c:\documents and settings\mizot\Application Data\drivers\downld\208187.exe
c:\documents and settings\mizot\Application Data\drivers\downld\208218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\210468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\211296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\212390.exe
c:\documents and settings\mizot\Application Data\drivers\downld\214000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\214687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\215890.exe
c:\documents and settings\mizot\Application Data\drivers\downld\217703.exe
c:\documents and settings\mizot\Application Data\drivers\downld\218046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\218218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\218906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\219484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\221859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\222296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\223437.exe
c:\documents and settings\mizot\Application Data\drivers\downld\224046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\224546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\225687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\226500.exe
c:\documents and settings\mizot\Application Data\drivers\downld\226765.exe
c:\documents and settings\mizot\Application Data\drivers\downld\227328.exe
c:\documents and settings\mizot\Application Data\drivers\downld\227406.exe
c:\documents and settings\mizot\Application Data\drivers\downld\228265.exe
c:\documents and settings\mizot\Application Data\drivers\downld\228796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\229296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\230109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\230125.exe
c:\documents and settings\mizot\Application Data\drivers\downld\230843.exe
c:\documents and settings\mizot\Application Data\drivers\downld\231281.exe
c:\documents and settings\mizot\Application Data\drivers\downld\232375.exe
c:\documents and settings\mizot\Application Data\drivers\downld\234296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\234609.exe
c:\documents and settings\mizot\Application Data\drivers\downld\234812.exe
c:\documents and settings\mizot\Application Data\drivers\downld\235406.exe
c:\documents and settings\mizot\Application Data\drivers\downld\235421.exe
c:\documents and settings\mizot\Application Data\drivers\downld\235843.exe
c:\documents and settings\mizot\Application Data\drivers\downld\236265.exe
c:\documents and settings\mizot\Application Data\drivers\downld\236703.exe
c:\documents and settings\mizot\Application Data\drivers\downld\236890.exe
c:\documents and settings\mizot\Application Data\drivers\downld\236906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\237125.exe
c:\documents and settings\mizot\Application Data\drivers\downld\237468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\237531.exe
c:\documents and settings\mizot\Application Data\drivers\downld\238093.exe
c:\documents and settings\mizot\Application Data\drivers\downld\238484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\240359.exe
c:\documents and settings\mizot\Application Data\drivers\downld\241625.exe
c:\documents and settings\mizot\Application Data\drivers\downld\242015.exe
c:\documents and settings\mizot\Application Data\drivers\downld\255937.exe
c:\documents and settings\mizot\Application Data\drivers\downld\256734.exe
c:\documents and settings\mizot\Application Data\drivers\downld\257140.exe
c:\documents and settings\mizot\Application Data\drivers\downld\259484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\260062.exe
c:\documents and settings\mizot\Application Data\drivers\downld\261875.exe
c:\documents and settings\mizot\Application Data\drivers\downld\262093.exe
c:\documents and settings\mizot\Application Data\drivers\downld\262546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\262593.exe
c:\documents and settings\mizot\Application Data\drivers\downld\262640.exe
c:\documents and settings\mizot\Application Data\drivers\downld\262671.exe
c:\documents and settings\mizot\Application Data\drivers\downld\263062.exe
c:\documents and settings\mizot\Application Data\drivers\downld\265359.exe
c:\documents and settings\mizot\Application Data\drivers\downld\265937.exe
c:\documents and settings\mizot\Application Data\drivers\downld\265953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\266156.exe
c:\documents and settings\mizot\Application Data\drivers\downld\267140.exe
c:\documents and settings\mizot\Application Data\drivers\downld\267531.exe
c:\documents and settings\mizot\Application Data\drivers\downld\267859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\267968.exe
c:\documents and settings\mizot\Application Data\drivers\downld\268515.exe
c:\documents and settings\mizot\Application Data\drivers\downld\268734.exe
c:\documents and settings\mizot\Application Data\drivers\downld\270984.exe
c:\documents and settings\mizot\Application Data\drivers\downld\271656.exe
c:\documents and settings\mizot\Application Data\drivers\downld\272625.exe
c:\documents and settings\mizot\Application Data\drivers\downld\273031.exe
c:\documents and settings\mizot\Application Data\drivers\downld\273265.exe
c:\documents and settings\mizot\Application Data\drivers\downld\273828.exe
c:\documents and settings\mizot\Application Data\drivers\downld\275906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\276484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\281718.exe
c:\documents and settings\mizot\Application Data\drivers\downld\282671.exe
c:\documents and settings\mizot\Application Data\drivers\downld\283140.exe
c:\documents and settings\mizot\Application Data\drivers\downld\283750.exe
c:\documents and settings\mizot\Application Data\drivers\downld\284171.exe
c:\documents and settings\mizot\Application Data\drivers\downld\284296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\295406.exe
c:\documents and settings\mizot\Application Data\drivers\downld\297031.exe
c:\documents and settings\mizot\Application Data\drivers\downld\29831484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\29831500.exe
c:\documents and settings\mizot\Application Data\drivers\downld\29839718.exe
c:\documents and settings\mizot\Application Data\drivers\downld\29840828.exe
c:\documents and settings\mizot\Application Data\drivers\downld\29841171.exe
c:\documents and settings\mizot\Application Data\drivers\downld\29848765.exe
c:\documents and settings\mizot\Application Data\drivers\downld\29849671.exe
c:\documents and settings\mizot\Application Data\drivers\downld\29850250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\29857218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\29857359.exe
c:\documents and settings\mizot\Application Data\drivers\downld\29857421.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30160218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30160968.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30161562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30166140.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30168187.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30172218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30172984.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30173437.exe
c:\documents and settings\mizot\Application Data\drivers\downld\302984.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30336921.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30337953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30338296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30345890.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30346593.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30347093.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30354187.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30354296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30354375.exe
c:\documents and settings\mizot\Application Data\drivers\downld\303765.exe
c:\documents and settings\mizot\Application Data\drivers\downld\303937.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30445062.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30446000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30446531.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30449859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30452125.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30455593.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30456390.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30456781.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30546796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30612718.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30613250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30613437.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30622031.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30622046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30626671.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30626734.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30626750.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30627000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30627015.exe
c:\documents and settings\mizot\Application Data\drivers\downld\307468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\307687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\307796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30824843.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30824859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30891515.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30891890.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30892062.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30901984.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30902000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30910250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30910296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30910328.exe
c:\documents and settings\mizot\Application Data\drivers\downld\30910625.exe
c:\documents and settings\mizot\Application Data\drivers\downld\313890.exe
c:\documents and settings\mizot\Application Data\drivers\downld\314281.exe
c:\documents and settings\mizot\Application Data\drivers\downld\315031.exe
c:\documents and settings\mizot\Application Data\drivers\downld\316031.exe
c:\documents and settings\mizot\Application Data\drivers\downld\316140.exe
c:\documents and settings\mizot\Application Data\drivers\downld\317921.exe
c:\documents and settings\mizot\Application Data\drivers\downld\318031.exe
c:\documents and settings\mizot\Application Data\drivers\downld\318046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\318281.exe
c:\documents and settings\mizot\Application Data\drivers\downld\318828.exe
c:\documents and settings\mizot\Application Data\drivers\downld\320562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\320687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\325375.exe
c:\documents and settings\mizot\Application Data\drivers\downld\325468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\325484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\328906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\329687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\329890.exe
c:\documents and settings\mizot\Application Data\drivers\downld\330843.exe
c:\documents and settings\mizot\Application Data\drivers\downld\331953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\332546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\335125.exe
c:\documents and settings\mizot\Application Data\drivers\downld\336250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\338281.exe
c:\documents and settings\mizot\Application Data\drivers\downld\339093.exe
c:\documents and settings\mizot\Application Data\drivers\downld\340078.exe
c:\documents and settings\mizot\Application Data\drivers\downld\340531.exe
c:\documents and settings\mizot\Application Data\drivers\downld\343937.exe
c:\documents and settings\mizot\Application Data\drivers\downld\344953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\345343.exe
c:\documents and settings\mizot\Application Data\drivers\downld\350109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\350203.exe
c:\documents and settings\mizot\Application Data\drivers\downld\350218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\350437.exe
c:\documents and settings\mizot\Application Data\drivers\downld\350453.exe
c:\documents and settings\mizot\Application Data\drivers\downld\350515.exe
c:\documents and settings\mizot\Application Data\drivers\downld\350625.exe
c:\documents and settings\mizot\Application Data\drivers\downld\351265.exe
c:\documents and settings\mizot\Application Data\drivers\downld\351765.exe
c:\documents and settings\mizot\Application Data\drivers\downld\351937.exe
c:\documents and settings\mizot\Application Data\drivers\downld\365421.exe
c:\documents and settings\mizot\Application Data\drivers\downld\366000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\371500.exe
c:\documents and settings\mizot\Application Data\drivers\downld\371671.exe
c:\documents and settings\mizot\Application Data\drivers\downld\371687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\371921.exe
c:\documents and settings\mizot\Application Data\drivers\downld\372750.exe
c:\documents and settings\mizot\Application Data\drivers\downld\373921.exe
c:\documents and settings\mizot\Application Data\drivers\downld\374906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\375093.exe
c:\documents and settings\mizot\Application Data\drivers\downld\382375.exe
c:\documents and settings\mizot\Application Data\drivers\downld\383796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\384046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\386609.exe
c:\documents and settings\mizot\Application Data\drivers\downld\388921.exe
c:\documents and settings\mizot\Application Data\drivers\downld\388953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\389093.exe
c:\documents and settings\mizot\Application Data\drivers\downld\389515.exe
c:\documents and settings\mizot\Application Data\drivers\downld\389531.exe
c:\documents and settings\mizot\Application Data\drivers\downld\391546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\392609.exe
c:\documents and settings\mizot\Application Data\drivers\downld\392812.exe
c:\documents and settings\mizot\Application Data\drivers\downld\393062.exe
c:\documents and settings\mizot\Application Data\drivers\downld\393250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\393328.exe
c:\documents and settings\mizot\Application Data\drivers\downld\393578.exe
c:\documents and settings\mizot\Application Data\drivers\downld\394218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\394453.exe
c:\documents and settings\mizot\Application Data\drivers\downld\394781.exe
c:\documents and settings\mizot\Application Data\drivers\downld\395781.exe
c:\documents and settings\mizot\Application Data\drivers\downld\398140.exe
c:\documents and settings\mizot\Application Data\drivers\downld\398218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\398234.exe
c:\documents and settings\mizot\Application Data\drivers\downld\398500.exe
c:\documents and settings\mizot\Application Data\drivers\downld\399078.exe
c:\documents and settings\mizot\Application Data\drivers\downld\402859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\403500.exe
c:\documents and settings\mizot\Application Data\drivers\downld\406859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\407500.exe
c:\documents and settings\mizot\Application Data\drivers\downld\409531.exe
c:\documents and settings\mizot\Application Data\drivers\downld\409765.exe
c:\documents and settings\mizot\Application Data\drivers\downld\409796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\410046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\410906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\416343.exe
c:\documents and settings\mizot\Application Data\drivers\downld\417078.exe
c:\documents and settings\mizot\Application Data\drivers\downld\417250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\435515.exe
c:\documents and settings\mizot\Application Data\drivers\downld\435734.exe
c:\documents and settings\mizot\Application Data\drivers\downld\438828.exe
c:\documents and settings\mizot\Application Data\drivers\downld\438890.exe
c:\documents and settings\mizot\Application Data\drivers\downld\438953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\438984.exe
c:\documents and settings\mizot\Application Data\drivers\downld\439218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\440031.exe
c:\documents and settings\mizot\Application Data\drivers\downld\444000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\444375.exe
c:\documents and settings\mizot\Application Data\drivers\downld\444390.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45054812.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45056015.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45056343.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45063875.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45065500.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45065968.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45075109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45077468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45077546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45168859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45171234.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45171812.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45174328.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45175437.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45177640.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45178437.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45183031.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45184000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45184390.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45273812.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45273953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45310906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45311000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45321437.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45322234.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45322562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45330156.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45330843.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45331375.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45338343.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45340781.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45341593.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45341687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45341812.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45341984.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45352203.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45356062.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45361890.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45362125.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45362140.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45362437.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45363250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45433484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45434203.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45434781.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45436984.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45437515.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45439578.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45440218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45440234.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45445093.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45446078.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45446500.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45600234.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45600296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45600312.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45666234.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45667015.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45667218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45677109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45677484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45684000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45684125.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45684156.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45684390.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45684953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\45684968.exe
c:\documents and settings\mizot\Application Data\drivers\downld\461609.exe
c:\documents and settings\mizot\Application Data\drivers\downld\461734.exe
c:\documents and settings\mizot\Application Data\drivers\downld\461765.exe
c:\documents and settings\mizot\Application Data\drivers\downld\462000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\462546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\462562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5070609.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5070671.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5070687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5137000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5137968.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5138156.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5148390.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5148937.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5155578.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5155718.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5155734.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5155984.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5156906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\5156921.exe
c:\documents and settings\mizot\Application Data\drivers\downld\52687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\53109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\531203.exe
c:\documents and settings\mizot\Application Data\drivers\downld\532250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\532781.exe
c:\documents and settings\mizot\Application Data\drivers\downld\534953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\535484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\537546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\538140.exe
c:\documents and settings\mizot\Application Data\drivers\downld\538156.exe
c:\documents and settings\mizot\Application Data\drivers\downld\542109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\543156.exe
c:\documents and settings\mizot\Application Data\drivers\downld\543578.exe
c:\documents and settings\mizot\Application Data\drivers\downld\56187.exe
c:\documents and settings\mizot\Application Data\drivers\downld\56546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\57531.exe
c:\documents and settings\mizot\Application Data\drivers\downld\58531.exe
c:\documents and settings\mizot\Application Data\drivers\downld\59889578.exe
c:\documents and settings\mizot\Application Data\drivers\downld\59890500.exe
c:\documents and settings\mizot\Application Data\drivers\downld\59890812.exe
c:\documents and settings\mizot\Application Data\drivers\downld\59898343.exe
c:\documents and settings\mizot\Application Data\drivers\downld\59899078.exe
c:\documents and settings\mizot\Application Data\drivers\downld\59899562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\59906046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\59906171.exe
c:\documents and settings\mizot\Application Data\drivers\downld\59906265.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60030484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60031484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60032203.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60034781.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60037031.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60037046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\600390.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60040140.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60042578.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60043343.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60043718.exe
c:\documents and settings\mizot\Application Data\drivers\downld\600468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60107281.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60108921.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60109859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60109875.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60175921.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60176312.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60176500.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60185000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60185015.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60190281.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60190343.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60190375.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60190593.exe
c:\documents and settings\mizot\Application Data\drivers\downld\60190609.exe
c:\documents and settings\mizot\Application Data\drivers\downld\64250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\64609.exe
c:\documents and settings\mizot\Application Data\drivers\downld\65203.exe
c:\documents and settings\mizot\Application Data\drivers\downld\65250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\65796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\65921.exe
c:\documents and settings\mizot\Application Data\drivers\downld\66015.exe
c:\documents and settings\mizot\Application Data\drivers\downld\66046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\66156.exe
c:\documents and settings\mizot\Application Data\drivers\downld\66515.exe
c:\documents and settings\mizot\Application Data\drivers\downld\66609.exe
c:\documents and settings\mizot\Application Data\drivers\downld\666281.exe
c:\documents and settings\mizot\Application Data\drivers\downld\667296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\667484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\66984.exe
c:\documents and settings\mizot\Application Data\drivers\downld\67015.exe
c:\documents and settings\mizot\Application Data\drivers\downld\67578.exe
c:\documents and settings\mizot\Application Data\drivers\downld\677890.exe
c:\documents and settings\mizot\Application Data\drivers\downld\67796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\678453.exe
c:\documents and settings\mizot\Application Data\drivers\downld\67937.exe
c:\documents and settings\mizot\Application Data\drivers\downld\686750.exe
c:\documents and settings\mizot\Application Data\drivers\downld\686906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\686921.exe
c:\documents and settings\mizot\Application Data\drivers\downld\687156.exe
c:\documents and settings\mizot\Application Data\drivers\downld\688000.exe
c:\documents and settings\mizot\Application Data\drivers\downld\69171.exe
c:\documents and settings\mizot\Application Data\drivers\downld\702171.exe
c:\documents and settings\mizot\Application Data\drivers\downld\702671.exe
c:\documents and settings\mizot\Application Data\drivers\downld\70484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\70718.exe
c:\documents and settings\mizot\Application Data\drivers\downld\70843.exe
c:\documents and settings\mizot\Application Data\drivers\downld\71093.exe
c:\documents and settings\mizot\Application Data\drivers\downld\73265.exe
c:\documents and settings\mizot\Application Data\drivers\downld\73546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\73921.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74312.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74515.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74605578.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74606687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74607062.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74614640.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74615343.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74615875.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74622578.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74622703.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74622781.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74627312.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74717250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74717921.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74718437.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74720546.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74720562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74722562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74722578.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74725906.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74726671.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74727078.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74780578.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74781296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74782859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74782875.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74849562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74849937.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74850109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74859.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74861468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74861484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74887078.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74887125.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74887156.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74887390.exe
c:\documents and settings\mizot\Application Data\drivers\downld\74887406.exe
c:\documents and settings\mizot\Application Data\drivers\downld\75500.exe
c:\documents and settings\mizot\Application Data\drivers\downld\75796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\75890.exe
c:\documents and settings\mizot\Application Data\drivers\downld\76250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\76390.exe
c:\documents and settings\mizot\Application Data\drivers\downld\76453.exe
c:\documents and settings\mizot\Application Data\drivers\downld\76953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\771968.exe
c:\documents and settings\mizot\Application Data\drivers\downld\77328.exe
c:\documents and settings\mizot\Application Data\drivers\downld\774250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\774671.exe
c:\documents and settings\mizot\Application Data\drivers\downld\77875.exe
c:\documents and settings\mizot\Application Data\drivers\downld\78468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\78781.exe
c:\documents and settings\mizot\Application Data\drivers\downld\797109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\797828.exe
c:\documents and settings\mizot\Application Data\drivers\downld\80250.exe
c:\documents and settings\mizot\Application Data\drivers\downld\80843.exe
c:\documents and settings\mizot\Application Data\drivers\downld\809375.exe
c:\documents and settings\mizot\Application Data\drivers\downld\811312.exe
c:\documents and settings\mizot\Application Data\drivers\downld\811562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\812234.exe
c:\documents and settings\mizot\Application Data\drivers\downld\813796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\82218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\82484.exe
c:\documents and settings\mizot\Application Data\drivers\downld\83437.exe
c:\documents and settings\mizot\Application Data\drivers\downld\83734.exe
c:\documents and settings\mizot\Application Data\drivers\downld\83875.exe
c:\documents and settings\mizot\Application Data\drivers\downld\83968.exe
c:\documents and settings\mizot\Application Data\drivers\downld\84109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\84468.exe
c:\documents and settings\mizot\Application Data\drivers\downld\84750.exe
c:\documents and settings\mizot\Application Data\drivers\downld\85562.exe
c:\documents and settings\mizot\Application Data\drivers\downld\85687.exe
c:\documents and settings\mizot\Application Data\drivers\downld\86062.exe
c:\documents and settings\mizot\Application Data\drivers\downld\87890.exe
c:\documents and settings\mizot\Application Data\drivers\downld\87953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\88031.exe
c:\documents and settings\mizot\Application Data\drivers\downld\90234.exe
c:\documents and settings\mizot\Application Data\drivers\downld\90296.exe
c:\documents and settings\mizot\Application Data\drivers\downld\90718.exe
c:\documents and settings\mizot\Application Data\drivers\downld\91062.exe
c:\documents and settings\mizot\Application Data\drivers\downld\91796.exe
c:\documents and settings\mizot\Application Data\drivers\downld\93375.exe
c:\documents and settings\mizot\Application Data\drivers\downld\93515.exe
c:\documents and settings\mizot\Application Data\drivers\downld\93531.exe
c:\documents and settings\mizot\Application Data\drivers\downld\93593.exe
c:\documents and settings\mizot\Application Data\drivers\downld\93703.exe
c:\documents and settings\mizot\Application Data\drivers\downld\94062.exe
c:\documents and settings\mizot\Application Data\drivers\downld\95765.exe
c:\documents and settings\mizot\Application Data\drivers\downld\95781.exe
c:\documents and settings\mizot\Application Data\drivers\downld\95843.exe
c:\documents and settings\mizot\Application Data\drivers\downld\96046.exe
c:\documents and settings\mizot\Application Data\drivers\downld\96109.exe
c:\documents and settings\mizot\Application Data\drivers\downld\96218.exe
c:\documents and settings\mizot\Application Data\drivers\downld\96953.exe
c:\documents and settings\mizot\Application Data\drivers\downld\97296.exe
c:\documents and settings\mizot\Application Data\drivers\wfsintwq.sys
c:\documents and settings\mizot\Application Data\drivers\winupgro.exe
c:\documents and settings\mizot\Application Data\inst.exe
c:\documents and settings\mizot\Application Data\m
c:\documents and settings\mizot\Application Data\m\data.oct
c:\documents and settings\mizot\Application Data\m\flec006.exe
c:\documents and settings\mizot\Application Data\m\list.oct
c:\documents and settings\mizot\Application Data\m\srvlist.oct
c:\documents and settings\mizot\AUTORUN.INF
c:\documents and settings\mizot\Local Settings\Application Data\sokwoai.dat
c:\documents and settings\mizot\Local Settings\Application Data\sokwoai.exe
c:\documents and settings\mizot\Local Settings\Application Data\sokwoai_nav.dat
c:\documents and settings\mizot\Local Settings\Application Data\sokwoai_navps.dat
C:\InfoSat.txt
C:\lats.exe
C:\Muestras
c:\muestras\100625.EXE.Muestra EliBagle v12.61
c:\muestras\101156.EXE.Muestra EliBagle v12.61
c:\muestras\113312.EXE.Muestra EliBagle v12.61
c:\muestras\114562.EXE.Muestra EliBagle v12.61
c:\muestras\120265.EXE.Muestra EliBagle v12.61
c:\muestras\14856093.EXE.Muestra EliBagle v12.61
c:\muestras\14912171.EXE.Muestra EliBagle v12.61
c:\muestras\14944828.EXE.Muestra EliBagle v12.61
c:\muestras\203015.EXE.Muestra EliBagle v12.61
c:\muestras\241031.EXE.Muestra EliBagle v12.61
c:\muestras\30326015.EXE.Muestra EliBagle v12.61
c:\muestras\30333750.EXE.Muestra EliBagle v12.61
c:\muestras\30357687.EXE.Muestra EliBagle v12.61
c:\muestras\45043609.EXE.Muestra EliBagle v12.61
c:\muestras\45081078.EXE.Muestra EliBagle v12.61
c:\muestras\57437.EXE.Muestra EliBagle v12.61
c:\muestras\58609.EXE.Muestra EliBagle v12.61
c:\muestras\58750.EXE.Muestra EliBagle v12.61
c:\muestras\58812.EXE.Muestra EliBagle v12.61
c:\muestras\59879453.EXE.Muestra EliBagle v12.61
c:\muestras\59933078.EXE.Muestra EliBagle v12.61
c:\muestras\67984.EXE.Muestra EliBagle v12.61
c:\muestras\71187.EXE.Muestra EliBagle v12.61
c:\muestras\74597609.EXE.Muestra EliBagle v12.61
c:\muestras\85890.EXE.Muestra EliBagle v12.61
c:\muestras\99218.EXE.Muestra EliBagle v12.61
c:\muestras\FLEC006.EXE.Muestra EliBagle v12.61
c:\program files\webmediaplayer
c:\windows\system32\ban_list.txt
c:\windows\system32\drivers\npf.sys
c:\windows\system32\mdelk.exe
c:\windows\system32\msvcsv60.dll
c:\windows\system32\Packet.dll
c:\windows\system32\wintems.exe
c:\windows\system32\wpcap.dll
c:\windows\system32\wservice.exe

.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Service_SROSA
-------\Legacy_SROSA
-------\Legacy_BOONTY_GAMES
-------\Legacy_SK9OU0S
-------\Service_Boonty Games
-------\Service_NPF
-------\Service_sK9Ou0s


((((((((((((((((((((((((((((( Fichiers créés du 2009-05-03 au 2009-06-03 ))))))))))))))))))))))))))))))))))))
.

2009-06-03 14:32 . 2009-06-03 14:32 -------- d-----w- c:\documents and settings\All Users\Application Data\Bandoo
2009-06-03 12:26 . 2009-06-03 12:26 -------- d-----w- c:\program files\Alwil Software
2009-05-30 09:40 . 2007-03-04 11:55 1936528 ----a-w- c:\windows\system32\ltmm15.dll
2009-05-30 09:40 . 2007-03-04 11:55 135168 ----a-w- c:\windows\system32\DSKernel2.dll
2009-05-30 09:40 . 2009-05-30 09:39 737280 ----a-w- c:\windows\iun6002.exe
2009-05-30 09:39 . 2009-05-30 15:05 -------- d-----w- c:\program files\Replay Converter
2009-05-30 09:20 . 2009-05-30 09:20 -------- d-----w- c:\documents and settings\mizot\Application Data\FLV Extract
2009-05-30 08:59 . 2009-05-30 09:03 -------- d-----w- C:\Lop SD
2009-05-28 17:47 . 2009-06-03 16:17 -------- d-----w- c:\documents and settings\mizot\Application Data\drivers
2009-05-28 13:10 . 2009-05-28 13:12 9810664 ----a-w- c:\program files\FLV PlayerRCATSetup.exe
2009-05-28 13:08 . 2009-05-28 17:51 -------- d-----w- c:\program files\Replay Converter 3
2009-05-28 13:08 . 2009-05-28 13:08 -------- d-----w- c:\windows\Replay Converter 3
2009-05-28 12:45 . 2009-05-28 12:50 21433720 ----a-w- c:\program files\FLV PlayerRCSetup.exe
2009-05-28 12:45 . 2009-05-30 14:02 -------- d-----w- c:\program files\FLV Player
2009-05-28 12:45 . 2009-05-28 12:45 -------- d-----w- c:\windows\Applian FLV Player
2009-05-27 15:57 . 2009-05-27 15:57 -------- d-----w- c:\program files\ALCATech
2009-05-27 15:50 . 1999-12-17 08:13 86016 ----a-w- c:\windows\unvise32.exe
2009-05-27 15:50 . 2009-05-27 15:50 -------- d-----w- c:\program files\Encore 4.5.3
2009-05-27 15:50 . 2009-05-27 15:50 -------- d-----w- c:\program files\Example Files
2009-05-27 10:06 . 1998-10-07 11:08 327168 ----a-w- c:\windows\IsUn040c.exe
2009-05-27 09:58 . 2009-05-27 09:59 -------- d-----w- c:\program files\eMule
2009-05-27 06:07 . 2009-05-28 06:34 68616 ----a-w- c:\windows\system32\GDIPFONTCACHEV1.DAT
2009-05-26 17:02 . 2008-01-17 02:00 67208 ----a-w- c:\windows\UnDeploy.exe
2009-05-26 16:14 . 2009-05-26 16:14 -------- d-----w- c:\program files\Sibelius Software
2009-05-26 15:07 . 2009-05-26 15:07 -------- d-----w- c:\documents and settings\mizot\.lilypond-fonts.cache-2
2009-05-26 15:06 . 2009-05-26 15:12 -------- d-----w- c:\program files\LilyPond
2009-05-26 13:39 . 2009-05-26 13:39 -------- d-----w- c:\documents and settings\mizot\Local Settings\Application Data\MusE
2009-05-26 12:51 . 2009-05-26 12:51 -------- d-----w- c:\documents and settings\All Users\Application Data\Sibelius Software
2009-05-26 12:47 . 2009-05-26 17:39 -------- d-----w- c:\documents and settings\mizot\Application Data\Sibelius Software
2009-05-23 08:02 . 2009-05-23 08:02 -------- d-----w- c:\program files\ConvertHelper
2009-05-22 17:20 . 2009-05-28 13:44 -------- d-----w- c:\program files\trend micro
2009-05-22 17:20 . 2009-05-22 17:20 -------- d-----w- C:\rsit
2009-05-20 06:24 . 2009-02-06 16:08 55152 ----a-w- c:\windows\system32\drivers\fssfltr_tdi.sys
2009-05-19 12:54 . 2009-05-19 12:54 -------- d-----w- c:\program files\Fichiers communs\xing shared
2009-05-19 12:54 . 2009-05-19 12:54 -------- d-----w- c:\program files\Fichiers communs\Real
2009-05-19 12:54 . 2009-05-19 12:54 -------- d-----w- c:\program files\Real
2009-05-15 10:42 . 2007-05-13 10:24 86683 ----a-w- c:\windows\system32\pthreadGC2.dll
2009-05-15 10:21 . 2009-05-15 10:42 -------- d-----w- c:\program files\MediaCoder
2009-05-11 13:30 . 2009-05-11 13:34 -------- d-----w- c:\documents and settings\All Users\Application Data\Dragon's Eye Productions
2009-05-11 13:30 . 2009-05-11 13:34 -------- d-----w- c:\program files\Furcadia
2009-05-11 13:30 . 2009-05-11 13:30 -------- d-----w- c:\documents and settings\mizot\Local Settings\Application Data\Dragon's Eye Productions
2009-05-08 09:03 . 2009-05-08 09:04 -------- d-----w- c:\program files\3DBELOTE
2009-05-06 13:10 . 2009-05-06 13:10 -------- d-sh--w- c:\documents and settings\mizot\IECompatCache
2009-05-06 13:09 . 2009-05-06 13:09 -------- d-sh--w- c:\documents and settings\mizot\PrivacIE
2009-05-06 13:07 . 2009-05-06 13:07 -------- d-sh--w- c:\documents and settings\LocalService\IETldCache
2009-05-06 13:07 . 2009-05-06 13:07 -------- d-sh--w- c:\documents and settings\mizot\IETldCache
2009-05-06 13:05 . 2009-05-06 13:05 -------- d--h--w- c:\windows\msdownld.tmp
2009-05-06 13:03 . 2009-05-06 13:04 -------- dc-h--w- c:\windows\ie8

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-03 16:13 . 2009-03-31 12:52 -------- d-----w- c:\program files\ESET
2009-06-03 16:12 . 2008-11-21 18:51 -------- d-----w- c:\documents and settings\mizot\Application Data\Free Download Manager
2009-06-03 16:08 . 2008-09-11 13:00 -------- d-----w- c:\program files\BitComet
2009-06-03 14:13 . 2008-10-14 09:47 -------- d-----w- c:\program files\Microsoft ActiveSync
2009-06-03 13:02 . 2008-09-17 17:44 -------- d-----w- c:\program files\Windows Live Safety Center
2009-06-03 12:00 . 2009-02-25 11:16 -------- d-----w- c:\program files\ASIO4ALL v2
2009-06-03 09:42 . 2009-02-10 17:52 -------- d-----w- c:\documents and settings\All Users\Application Data\Google Updater
2009-06-02 15:44 . 2008-09-17 12:11 -------- d-----w- c:\documents and settings\mizot\Application Data\OpenOffice.org2
2009-06-02 15:42 . 2008-09-17 12:11 1 ----a-w- c:\documents and settings\mizot\Application Data\OpenOffice.org2\user\uno_packages\cache\stamp.sys
2009-06-02 08:45 . 2009-02-24 18:53 -------- d-----w- c:\program files\Eazel-FR
2009-05-29 08:03 . 2008-11-26 17:10 -------- d-----w- c:\program files\Navilog1
2009-05-28 17:51 . 2008-09-11 15:34 -------- d-----w- c:\program files\PeerGuardian2
2009-05-27 20:51 . 2008-04-14 12:00 79028 ----a-w- c:\windows\system32\perfc00C.dat
2009-05-27 20:51 . 2008-04-14 12:00 494650 ----a-w- c:\windows\system32\perfh00C.dat
2009-05-27 15:50 . 2009-05-27 15:50 10472 ----a-w- c:\program files\uninstal.log
2009-05-26 17:39 . 2008-09-10 18:56 66688 ----a-w- c:\documents and settings\mizot\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-05-26 15:40 . 2008-09-11 09:51 32 ----a-w- c:\windows\msocreg32.dat
2009-05-26 12:51 . 2009-05-26 12:51 604 ---ha-w- c:\program files\STLL Notifier
2009-05-26 12:28 . 2008-09-19 17:40 -------- d-----w- c:\program files\Google
2009-05-20 06:24 . 2008-09-11 07:34 -------- d-----w- c:\program files\Windows Live
2009-05-20 06:23 . 2009-01-23 10:12 -------- d-----w- c:\program files\MSN Messenger
2009-05-19 12:54 . 2008-09-11 09:50 499712 ----a-w- c:\windows\system32\msvcp71.dll
2009-05-19 12:54 . 2006-07-11 17:35 348160 ----a-w- c:\windows\system32\msvcr71.dll
2009-05-15 11:29 . 2008-09-18 08:36 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2009-05-15 10:42 . 2009-04-10 07:40 -------- d-----w- c:\program files\AoA Audio Extractor
2009-05-05 17:00 . 2009-04-25 17:08 -------- d-----w- c:\program files\Subagames
2009-05-05 16:54 . 2009-01-22 16:48 86576 ----a-w- c:\documents and settings\mizot\Application Data\Microsoft\Services Windows Live\Raccourci Galerie de Photos Windows Live.exe
2009-05-05 16:54 . 2009-01-22 16:48 132672 ----a-w- c:\documents and settings\mizot\Application Data\Microsoft\Services Windows Live\Raccourci Windows Live Messenger.exe
2009-05-05 16:54 . 2009-01-22 16:48 392728 ----a-w- c:\documents and settings\mizot\Application Data\Microsoft\Services Windows Live\Services Windows Live.dll
2009-05-05 12:00 . 2008-12-30 14:28 -------- d-----w- c:\program files\Yahoo!
2009-05-05 11:59 . 2008-09-11 09:50 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-04-30 14:08 . 2008-09-19 17:41 -------- d-----w- c:\program files\Fichiers communs\Adobe
2009-04-30 14:07 . 2009-04-30 14:07 -------- d-----w- c:\program files\Fichiers communs\Adobe Systems Shared
2009-04-27 17:10 . 2009-04-25 16:45 -------- d-----w- c:\documents and settings\All Users\Application Data\PMB Files
2009-04-25 17:14 . 2008-10-02 16:59 -------- d-----w- c:\program files\Common Files
2009-04-25 16:45 . 2009-04-25 16:45 -------- d-----w- c:\program files\Pando Networks
2009-04-24 20:34 . 2008-11-08 09:27 -------- d-----w- c:\documents and settings\mizot\Application Data\uTorrent
2009-04-23 08:07 . 2009-04-23 08:07 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2009-04-21 09:36 . 2009-01-24 12:58 -------- d-----w- c:\program files\Messenger Plus! Live
2009-04-11 12:56 . 2009-04-11 12:56 -------- d-----w- c:\documents and settings\mizot\Application Data\Red Alert 3 Demo
2009-04-10 07:29 . 2009-04-10 07:19 -------- d-----w- c:\program files\Free FLV Converter
2009-04-09 06:47 . 2009-04-08 13:58 138512 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2009-04-09 06:47 . 2009-04-08 13:58 201440 ----a-w- c:\windows\system32\PnkBstrB.exe
2009-04-08 13:58 . 2009-04-08 13:58 66872 ----a-w- c:\windows\sy

Répondre à mizot 59

C'est pas mieux déjà ?

Télécharge Elibagla au bas de cette page.
Il est préférable pour certains antivirus de les désactiver avant d’entâmer cette procédure !

  • Clique sur le Descargar Elibagla afin de télécharger le fichier, enregistre-le sur ton Bureau.
  • Lance le en double cliquant dessus.
  • Vérifie que dans le menu déroulant Unidad, il y ait bien la racine de la racine de la partition où est installé Windows, généralement -> C:\
  • L'option Eliminar Ficheros Automaticamente doit également être cochée.
  • Clique sur Explorar pour lancer l'analyse.
  • Poste le rapport généré en fin fin d'analyse.


Note : Le rapport se trouve ici : C:\infosat.txt

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

re


(4-6-2009 13:16:1)
EliBagle v12.61 (c)2009 S.G.H. / Satinfo S.L. (Actualizado el 29 de Mayo del 2009)
----------------------------------------------
Lista de Acciones (por Acción Directa):
Eliminada Carpeta "%AppData%\Drivers"

(4-6-2009 13:17:4)
EliBagle v12.61 (c)2009 S.G.H. / Satinfo S.L. (Actualizado el 29 de Mayo del 2009)
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando "C:\"
C:\Qoobox\Quarantine\C\Documents and Settings\mizot\Application Data\drivers\WINUPGRO.EXE.VIR --> Eliminado Bagle.dldr

Nº Total de Directorios: 10867
Nº Total de Ficheros: 146054
Nº de Ficheros Analizados: 11686
Nº de Ficheros Infectados: 1
Nº de Ficheros Limpiados: 1

Répondre à mizot 59

Refais un scan Combofix.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

ComboFix 09-06-04.04 - mizot 04/06/2009 23:00.2 - NTFSx86
Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.3327.2710 [GMT 2:00]
Lancé depuis: c:\documents and settings\mizot\Bureau\ComboFix.exe
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\InfoSat.txt

.
((((((((((((((((((((((((((((( Fichiers créés du 2009-05-04 au 2009-06-04 ))))))))))))))))))))))))))))))))))))
.

2009-06-04 20:56 . 2009-06-04 20:56 -------- d-----w- C:\Combo-Fix
2009-06-03 16:57 . 2009-06-03 16:57 -------- d-----w- c:\windows\LastGood
2009-06-03 16:30 . 2009-02-05 20:06 23152 ----a-w- c:\windows\system32\drivers\aswRdr.sys
2009-06-03 16:30 . 2009-02-05 20:06 51376 ----a-w- c:\windows\system32\drivers\aswTdi.sys
2009-06-03 16:30 . 2009-02-05 20:05 26944 ----a-w- c:\windows\system32\drivers\aavmker4.sys
2009-06-03 16:30 . 2009-02-05 20:08 93296 ----a-w- c:\windows\system32\drivers\aswmon.sys
2009-06-03 16:30 . 2009-02-05 20:08 94032 ----a-w- c:\windows\system32\drivers\aswmon2.sys
2009-06-03 16:30 . 2009-02-05 20:07 114768 ----a-w- c:\windows\system32\drivers\aswSP.sys
2009-06-03 16:30 . 2009-02-05 20:07 20560 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
2009-06-03 16:30 . 2009-02-05 20:04 97480 ----a-w- c:\windows\system32\AvastSS.scr
2009-06-03 16:30 . 2009-02-05 20:11 1256296 ----a-w- c:\windows\system32\aswBoot.exe
2009-06-03 14:32 . 2009-06-03 14:32 -------- d-----w- c:\documents and settings\All Users\Application Data\Bandoo
2009-06-03 12:26 . 2009-06-03 12:26 -------- d-----w- c:\program files\Alwil Software
2009-05-30 09:40 . 2007-03-04 11:55 1936528 ----a-w- c:\windows\system32\ltmm15.dll
2009-05-30 09:40 . 2007-03-04 11:55 135168 ----a-w- c:\windows\system32\DSKernel2.dll
2009-05-30 09:40 . 2009-05-30 09:39 737280 ----a-w- c:\windows\iun6002.exe
2009-05-30 09:39 . 2009-05-30 15:05 -------- d-----w- c:\program files\Replay Converter
2009-05-30 09:20 . 2009-05-30 09:20 -------- d-----w- c:\documents and settings\mizot\Application Data\FLV Extract
2009-05-30 08:59 . 2009-05-30 09:03 -------- d-----w- C:\Lop SD
2009-05-28 13:10 . 2009-05-28 13:12 9810664 ----a-w- c:\program files\FLV PlayerRCATSetup.exe
2009-05-28 13:08 . 2009-05-28 17:51 -------- d-----w- c:\program files\Replay Converter 3
2009-05-28 13:08 . 2009-05-28 13:08 -------- d-----w- c:\windows\Replay Converter 3
2009-05-28 12:45 . 2009-05-28 12:50 21433720 ----a-w- c:\program files\FLV PlayerRCSetup.exe
2009-05-28 12:45 . 2009-05-30 14:02 -------- d-----w- c:\program files\FLV Player
2009-05-28 12:45 . 2009-05-28 12:45 -------- d-----w- c:\windows\Applian FLV Player
2009-05-27 15:57 . 2009-05-27 15:57 -------- d-----w- c:\program files\ALCATech
2009-05-27 15:50 . 1999-12-17 08:13 86016 ----a-w- c:\windows\unvise32.exe
2009-05-27 15:50 . 2009-05-27 15:50 -------- d-----w- c:\program files\Encore 4.5.3
2009-05-27 15:50 . 2009-05-27 15:50 -------- d-----w- c:\program files\Example Files
2009-05-27 10:06 . 1998-10-07 11:08 327168 ----a-w- c:\windows\IsUn040c.exe
2009-05-27 09:58 . 2009-05-27 09:59 -------- d-----w- c:\program files\eMule
2009-05-27 06:07 . 2009-05-28 06:34 68616 ----a-w- c:\windows\system32\GDIPFONTCACHEV1.DAT
2009-05-26 17:02 . 2008-01-17 02:00 67208 ----a-w- c:\windows\UnDeploy.exe
2009-05-26 16:14 . 2009-05-26 16:14 -------- d-----w- c:\program files\Sibelius Software
2009-05-26 15:07 . 2009-05-26 15:07 -------- d-----w- c:\documents and settings\mizot\.lilypond-fonts.cache-2
2009-05-26 15:06 . 2009-05-26 15:12 -------- d-----w- c:\program files\LilyPond
2009-05-26 13:39 . 2009-05-26 13:39 -------- d-----w- c:\documents and settings\mizot\Local Settings\Application Data\MusE
2009-05-26 12:51 . 2009-05-26 12:51 -------- d-----w- c:\documents and settings\All Users\Application Data\Sibelius Software
2009-05-26 12:47 . 2009-05-26 17:39 -------- d-----w- c:\documents and settings\mizot\Application Data\Sibelius Software
2009-05-23 08:02 . 2009-05-23 08:02 -------- d-----w- c:\program files\ConvertHelper
2009-05-22 17:20 . 2009-05-28 13:44 -------- d-----w- c:\program files\trend micro
2009-05-22 17:20 . 2009-05-22 17:20 -------- d-----w- C:\rsit
2009-05-20 06:24 . 2009-02-06 16:08 55152 ----a-w- c:\windows\system32\drivers\fssfltr_tdi.sys
2009-05-19 12:54 . 2009-05-19 12:54 -------- d-----w- c:\program files\Fichiers communs\xing shared
2009-05-19 12:54 . 2009-05-19 12:54 -------- d-----w- c:\program files\Fichiers communs\Real
2009-05-19 12:54 . 2009-05-19 12:54 -------- d-----w- c:\program files\Real
2009-05-15 10:42 . 2007-05-13 10:24 86683 ----a-w- c:\windows\system32\pthreadGC2.dll
2009-05-15 10:21 . 2009-05-15 10:42 -------- d-----w- c:\program files\MediaCoder
2009-05-11 13:30 . 2009-05-11 13:34 -------- d-----w- c:\documents and settings\All Users\Application Data\Dragon's Eye Productions
2009-05-11 13:30 . 2009-05-11 13:34 -------- d-----w- c:\program files\Furcadia
2009-05-11 13:30 . 2009-05-11 13:30 -------- d-----w- c:\documents and settings\mizot\Local Settings\Application Data\Dragon's Eye Productions
2009-05-08 09:03 . 2009-05-08 09:04 -------- d-----w- c:\program files\3DBELOTE
2009-05-06 13:10 . 2009-05-06 13:10 -------- d-sh--w- c:\documents and settings\mizot\IECompatCache
2009-05-06 13:09 . 2009-05-06 13:09 -------- d-sh--w- c:\documents and settings\mizot\PrivacIE
2009-05-06 13:07 . 2009-05-06 13:07 -------- d-sh--w- c:\documents and settings\LocalService\IETldCache
2009-05-06 13:07 . 2009-05-06 13:07 -------- d-sh--w- c:\documents and settings\mizot\IETldCache
2009-05-06 13:05 . 2009-05-06 13:05 -------- d--h--w- c:\windows\msdownld.tmp
2009-05-06 13:03 . 2009-05-06 13:04 -------- dc-h--w- c:\windows\ie8

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-04 20:58 . 2008-11-21 18:51 -------- d-----w- c:\documents and settings\mizot\Application Data\Free Download Manager
2009-06-04 10:43 . 2009-02-10 17:52 -------- d-----w- c:\documents and settings\All Users\Application Data\Google Updater
2009-06-03 16:13 . 2009-03-31 12:52 -------- d-----w- c:\program files\ESET
2009-06-03 16:08 . 2008-09-11 13:00 -------- d-----w- c:\program files\BitComet
2009-06-03 14:13 . 2008-10-14 09:47 -------- d-----w- c:\program files\Microsoft ActiveSync
2009-06-03 13:02 . 2008-09-17 17:44 -------- d-----w- c:\program files\Windows Live Safety Center
2009-06-03 12:00 . 2009-02-25 11:16 -------- d-----w- c:\program files\ASIO4ALL v2
2009-06-02 15:44 . 2008-09-17 12:11 -------- d-----w- c:\documents and settings\mizot\Application Data\OpenOffice.org2
2009-06-02 15:42 . 2008-09-17 12:11 1 ----a-w- c:\documents and settings\mizot\Application Data\OpenOffice.org2\user\uno_packages\cache\stamp.sys
2009-06-02 08:45 . 2009-02-24 18:53 -------- d-----w- c:\program files\Eazel-FR
2009-05-29 08:03 . 2008-11-26 17:10 -------- d-----w- c:\program files\Navilog1
2009-05-28 17:51 . 2008-09-11 15:34 -------- d-----w- c:\program files\PeerGuardian2
2009-05-27 20:51 . 2008-04-14 12:00 79028 ----a-w- c:\windows\system32\perfc00C.dat
2009-05-27 20:51 . 2008-04-14 12:00 494650 ----a-w- c:\windows\system32\perfh00C.dat
2009-05-27 15:50 . 2009-05-27 15:50 10472 ----a-w- c:\program files\uninstal.log
2009-05-26 17:39 . 2008-09-10 18:56 66688 ----a-w- c:\documents and settings\mizot\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-05-26 15:40 . 2008-09-11 09:51 32 ----a-w- c:\windows\msocreg32.dat
2009-05-26 12:51 . 2009-05-26 12:51 604 ---ha-w- c:\program files\STLL Notifier
2009-05-26 12:28 . 2008-09-19 17:40 -------- d-----w- c:\program files\Google
2009-05-20 06:24 . 2008-09-11 07:34 -------- d-----w- c:\program files\Windows Live
2009-05-20 06:23 . 2009-01-23 10:12 -------- d-----w- c:\program files\MSN Messenger
2009-05-19 12:54 . 2008-09-11 09:50 499712 ----a-w- c:\windows\system32\msvcp71.dll
2009-05-19 12:54 . 2006-07-11 17:35 348160 ----a-w- c:\windows\system32\msvcr71.dll
2009-05-15 11:29 . 2008-09-18 08:36 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2009-05-15 10:42 . 2009-04-10 07:40 -------- d-----w- c:\program files\AoA Audio Extractor
2009-05-05 17:00 . 2009-04-25 17:08 -------- d-----w- c:\program files\Subagames
2009-05-05 16:54 . 2009-01-22 16:48 86576 ----a-w- c:\documents and settings\mizot\Application Data\Microsoft\Services Windows Live\Raccourci Galerie de Photos Windows Live.exe
2009-05-05 16:54 . 2009-01-22 16:48 132672 ----a-w- c:\documents and settings\mizot\Application Data\Microsoft\Services Windows Live\Raccourci Windows Live Messenger.exe
2009-05-05 16:54 . 2009-01-22 16:48 392728 ----a-w- c:\documents and settings\mizot\Application Data\Microsoft\Services Windows Live\Services Windows Live.dll
2009-05-05 12:00 . 2008-12-30 14:28 -------- d-----w- c:\program files\Yahoo!
2009-05-05 11:59 . 2008-09-11 09:50 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-04-30 14:08 . 2008-09-19 17:41 -------- d-----w- c:\program files\Fichiers communs\Adobe
2009-04-30 14:07 . 2009-04-30 14:07 -------- d-----w- c:\program files\Fichiers communs\Adobe Systems Shared
2009-04-27 17:10 . 2009-04-25 16:45 -------- d-----w- c:\documents and settings\All Users\Application Data\PMB Files
2009-04-25 17:14 . 2008-10-02 16:59 -------- d-----w- c:\program files\Common Files
2009-04-25 16:45 . 2009-04-25 16:45 -------- d-----w- c:\program files\Pando Networks
2009-04-24 20:34 . 2008-11-08 09:27 -------- d-----w- c:\documents and settings\mizot\Application Data\uTorrent
2009-04-23 08:07 . 2009-04-23 08:07 107888 ----a-w- c:\windows\system32\CmdLineExt.dll
2009-04-21 09:36 . 2009-01-24 12:58 -------- d-----w- c:\program files\Messenger Plus! Live
2009-04-11 12:56 . 2009-04-11 12:56 -------- d-----w- c:\documents and settings\mizot\Application Data\Red Alert 3 Demo
2009-04-10 07:29 . 2009-04-10 07:19 -------- d-----w- c:\program files\Free FLV Converter
2009-04-09 06:47 . 2009-04-08 13:58 138512 ----a-w- c:\windows\system32\drivers\PnkBstrK.sys
2009-04-09 06:47 . 2009-04-08 13:58 201440 ----a-w- c:\windows\system32\PnkBstrB.exe
2009-04-08 13:58 . 2009-04-08 13:58 66872 ----a-w- c:\windows\system32\PnkBstrA.exe
2009-04-07 07:38 . 2008-09-17 12:08 -------- d-----w- c:\program files\Java
2009-04-07 07:37 . 2009-04-07 07:37 152576 ----a-w- c:\documents and settings\mizot\Application Data\Sun\Java\jre1.6.0_13\lzma.dll
2009-03-27 18:36 . 2009-04-10 07:19 290816 ----a-w- c:\windows\system32\TubeFinder.exe
2009-03-19 16:54 . 2009-03-19 16:54 135680 ----a-w- c:\documents and settings\mizot\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe
2009-03-19 16:53 . 2009-01-22 16:48 0 ----a-r- c:\documents and settings\mizot\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
2009-03-16 12:18 . 2009-04-15 09:18 69448 ----a-w- c:\windows\system32\XAPOFX1_3.dll
2009-03-16 12:18 . 2009-04-15 09:18 517448 ----a-w- c:\windows\system32\XAudio2_4.dll
2009-03-16 12:18 . 2009-04-15 09:18 235352 ----a-w- c:\windows\system32\xactengine3_4.dll
2009-03-16 12:18 . 2009-04-15 09:18 22360 ----a-w- c:\windows\system32\X3DAudio1_6.dll
2009-03-09 13:27 . 2009-04-15 09:18 453456 ----a-w- c:\windows\system32\d3dx10_41.dll
2009-03-09 13:27 . 2009-04-15 09:18 1846632 ----a-w- c:\windows\system32\D3DCompiler_41.dll
2009-03-09 13:27 . 2009-04-15 09:18 4178264 ----a-w- c:\windows\system32\D3DX9_41.dll
2009-03-09 03:19 . 2008-11-12 17:17 410984 ----a-w- c:\windows\system32\deploytk.dll
2009-03-08 02:34 . 2008-04-14 12:00 914944 ----a-w- c:\windows\system32\wininet.dll
2009-03-08 02:34 . 2008-04-14 12:00 43008 ----a-w- c:\windows\system32\licmgr10.dll
2009-03-08 02:33 . 2008-04-14 12:00 18944 ----a-w- c:\windows\system32\corpol.dll
2009-03-08 02:33 . 2008-04-14 12:00 420352 ----a-w- c:\windows\system32\vbscript.dll
2009-03-08 02:32 . 2008-04-14 12:00 72704 ----a-w- c:\windows\system32\admparse.dll
2009-03-08 02:32 . 2008-04-14 12:00 71680 ----a-w- c:\windows\system32\iesetup.dll
2009-03-08 02:31 . 2008-04-14 12:00 34816 ----a-w- c:\windows\system32\imgutil.dll
2009-03-08 02:31 . 2008-04-14 12:00 48128 ----a-w- c:\windows\system32\mshtmler.dll
2009-03-08 02:31 . 2008-04-14 12:00 45568 ----a-w- c:\windows\system32\mshta.exe
2009-03-08 02:22 . 2008-04-14 12:00 156160 ----a-w- c:\windows\system32\msls31.dll
2002-12-11 12:17 . 2002-11-29 08:38 13366265 --s-a-w- c:\program files\Encore Manual.pdf
2009-04-29 12:13 . 2009-04-29 12:13 10437264 ----a-w- c:\program files\mozilla firefox\plugins\PDFNetC.dll
2009-04-29 12:30 . 2009-04-29 12:30 108272 ----a-w- c:\program files\mozilla firefox\plugins\ScorchPDFWrapper.dll
.

((((((((((((((((((((((((((((( SnapShot@2009-06-03_16.19.32 )))))))))))))))))))))))))))))))))))))))))
.
+ 2009-06-03 16:57 . 2005-05-09 18:08 33792 c:\windows\LastGood\system32\DRIVERS\cledx.sys
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{a8f9752d-e2b8-4e7a-86b5-499f4330e2fe}]
2009-06-02 08:45 2094616 ----a-w- c:\program files\Eazel-FR\tbEaz0.dll

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"PeerGuardian"="c:\program files\PeerGuardian2\pg2.exe" [2009-06-03 864256]
"Free Download Manager"="c:\program files\Free Download Manager\fdm.exe" [2008-11-12 2474031]
"Google Update"="c:\documents and settings\mizot\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" [2009-01-02 133104]
"MsnMsgr"="c:\program files\Windows Live\Messenger\msnmsgr.exe" [2009-02-06 3885408]
"DAEMON Tools Lite"="c:\program files\DAEMON Tools Lite\daemon.exe" [2008-12-29 687560]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-09-22 68856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"QuickTime Task"="c:\program files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe" [2008-09-11 282624]
"TrayServer"="c:\program files\MAGIX\Video_deluxe_2008_e-version\TrayServer.exe" [2007-07-17 90112]
"snp2std"="c:\windows\vsnp2std.exe" [2006-09-15 675840]
"StartCCC"="c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2008-08-01 61440]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2008-06-12 34672]
"SSBkgdUpdate"="c:\program files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 210472]
"PaperPort PTD"="c:\program files\ScanSoft\PaperPort\pptd40nt.exe" [2007-01-29 30248]
"IndexSearch"="c:\program files\ScanSoft\PaperPort\IndexSearch.exe" [2007-01-29 46632]
"PPort11reminder"="c:\program files\ScanSoft\PaperPort\Ereg\Ereg.exe" [2007-02-01 255528]
"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2007-03-12 663552]
"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2007-01-26 65536]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-03-09 148888]
"TkBellExe"="c:\program files\Fichiers communs\Real\Update_OB\realsched.exe" [2009-05-19 198160]
"avast!"="c:\progra~1\ALWILS~1\Avast4\ashDisp.exe" [2009-02-05 81000]
"H2O"="c:\program files\SyncroSoft\Pos\H2O\cledx.exe" [2005-10-22 385024]
"DSP24"="Dsp24Set.exe" - c:\windows\system32\Dsp24Set.exe [2004-10-21 2588672]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]

c:\documents and settings\mizot\Menu D‚marrer\Programmes\D‚marrage\
Adobe Gamma.lnk - c:\program files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe [2005-3-16 113664]
GigaTribe.lnk - c:\program files\GigaTribe\gigatribe.exe [2009-2-4 1071104]
MagicDisc.lnk - c:\program files\MagicDisc\MagicDisc.exe [2009-1-20 575488]
Notification de cadeaux MSN.lnk - c:\documents and settings\mizot\Application Data\Microsoft\Notification de cadeaux MSN\lsnfier.exe [2009-3-19 135680]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0aswBoot.exe /A:* /L:French /KBD:2

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\BitComet\\BitComet.exe"=
"c:\\Program Files\\Steinberg\\Cubase SX 3\\Cubasesx3.exe"=
"c:\\WINDOWS\\system32\\mmc.exe"=
"c:\\Program Files\\Java\\jre1.6.0_07\\bin\\javaw.exe"=
"c:\program files\Microsoft ActiveSync\rapimgr.exe"= c:\program files\Microsoft ActiveSync\rapimgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync RAPI Manager
"c:\program files\Microsoft ActiveSync\WCESMgr.exe"= c:\program files\Microsoft ActiveSync\WCESMgr.exe:169.254.2.0/255.255.255.0:Enabled:ActiveSync Application
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\GigaTribe\\gigatribe.exe"=
"c:\\Program Files\\Pando Networks\\Media Booster\\PMB.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\wlcsdk.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\eMule\\emule.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"10665:TCP"= 10665:TCP:BitComet 10665 TCP
"10665:UDP"= 10665:UDP:BitComet 10665 UDP
"26669:TCP"= 26669:TCP:BitComet 26669 TCP
"26669:UDP"= 26669:UDP:BitComet 26669 UDP
"26675:TCP"= 26675:TCP:169.254.2.0/255.255.255.0:Enabled:ActiveSync Service
"21473:TCP"= 21473:TCP:BitComet 21473 TCP
"21473:UDP"= 21473:UDP:BitComet 21473 UDP
"57025:TCP"= 57025:TCP:Pando Media Booster
"57025:UDP"= 57025:UDP:Pando Media Booster

R1 Asapi;Asapi;c:\windows\system32\drivers\asapi.sys [11/09/2008 19:26 11264]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [20/05/2009 08:24 55152]
R3 CLEDX;Team H2O CLEDX service;c:\windows\system32\drivers\cledx.sys [10/09/2008 21:45 33792]
R3 DSP24_VL;Service for DSP24 Value Driver (EWDM);c:\windows\system32\drivers\d24.sys [11/09/2008 10:11 28480]
R3 ICM2_01;%DSP24_AU.SvcDesc%;c:\windows\system32\drivers\D24Wdm.sys [11/09/2008 10:11 22944]
S2 gupdate1c98ba886f710b8;Google Update Service (gupdate1c98ba886f710b8);c:\program files\Google\Update\GoogleUpdate.exe [10/02/2009 19:53 133104]
S3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files\MAGIX\Common\Database\bin\fbserver.exe [13/09/2008 11:57 1527900]
S3 fsssvc;Windows Live Contrôle parental;c:\program files\Windows Live\Family Safety\fsssvc.exe [06/02/2009 18:08 533360]
S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [19/12/2008 17:54 195752]
S3 npggsvc;nProtect GameGuard Service;c:\windows\system32\GameMon.des -service --> c:\windows\system32\GameMon.des -service [?]
S3 SetupNTGLM7X;SetupNTGLM7X;\??\i:\ntglm7x.sys --> i:\NTGLM7X.sys [?]
.
Contenu du dossier 'Tâches planifiées'

2009-06-04 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-09-19 08:14]

2009-06-04 c:\windows\Tasks\GoogleUpdateTaskMachine.job
- c:\program files\Google\Update\GoogleUpdate.exe [2009-02-10 17:53]

2009-06-04 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-842925246-823518204-1801674531-1003.job
- c:\documents and settings\mizot\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2009-01-02 18:57]

2009-06-04 c:\windows\Tasks\User_Feed_Synchronization-{B4979090-6002-43CA-9626-A4FE053C6956}.job
- c:\windows\system32\msfeedssync.exe [2007-08-13 02:31]
.
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.fr/
uSearchMigratedDefaultURL = hxxp://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
mWindow Title =
IE: &D&ownload &with BitComet - c:\program files\BitComet\BitComet.exe/AddLink.htm
IE: &D&ownload all video with BitComet - c:\program files\BitComet\BitComet.exe/AddVideo.htm
IE: &D&ownload all with BitComet - c:\program files\BitComet\BitComet.exe/AddAllLink.htm
IE: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
IE: Tout télécharger avec Free Download Manager - file://c:\program files\Free Download Manager\dlall.htm
IE: Télécharger avec Free Download Manager - file://c:\program files\Free Download Manager\dllink.htm
IE: Télécharger la sélection avec Free Download Manager - file://c:\program files\Free Download Manager\dlselected.htm
IE: Télécharger la vidéo avec Free Download Manager - file://c:\program files\Free Download Manager\dlfvideo.htm
FF - ProfilePath - c:\documents and settings\mizot\Application Data\Mozilla\Firefox\Profiles\8zs1ncl9.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2095689&SearchSource=3&q=
FF - prefs.js: browser.startup.homepage - hxxp://www.miely.free.fr/google_chti/
FF - prefs.js: keyword.URL - hxxp://search.live.com/results.aspx?mkt=fr-FR&FORM=MIMWA2&q=
FF - component: c:\program files\Mozilla Firefox\extensions\{a8f9752d-e2b8-4e7a-86b5-499f4330e2fe}\components\FFAlert.dll
FF - plugin: c:\documents and settings\mizot\Local Settings\Application Data\Google\Update\1.2.145.5\npGoogleOneClick8.dll
FF - plugin: c:\program files\Google\Google Updater\2.4.1536.6592\npCIDetect13.dll
FF - plugin: c:\program files\Google\Update\1.2.145.5\npGoogleOneClick8.dll
FF - plugin: c:\program files\ma-config.com\nphardwaredetection.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npPandoWebInst.dll
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-06-04 23:01
Windows 5.1.2600 Service Pack 3 NTFS

Recherche de processus cachés ...

Recherche d'éléments en démarrage automatique cachés ...

Recherche de fichiers cachés ...

Scan terminé avec succès
Fichiers cachés: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\System\ControlSet001\Services\npggsvc]
"ImagePath"="c:\windows\system32\GameMon.des -service"
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------

[HKEY_USERS\S-1-5-21-842925246-823518204-1801674531-1003\Software\SecuROM\License information*]
"datasecu"=hex:c6,f3,df,a6,9c,14,a0,90,21,46,ba,57,5c,87,9a,29,0f,d3,1f,5c,dd,
14,07,76,cf,6f,50,93,68,35,0e,77,8f,84,43,2d,90,04,ff,f1,79,3e,67,17,e4,b4,\
"rkeysecu"=hex:29,23,be,84,e1,6c,d6,ae,52,90,49,f1,f1,bb,e9,eb
.
--------------------- DLLs chargées dans les processus actifs ---------------------

- - - - - - - > 'winlogon.exe'(1704)
c:\windows\system32\Ati2evxx.dll
.
Heure de fin: 2009-06-04 23:02
ComboFix-quarantined-files.txt 2009-06-04 21:02
ComboFix2.txt 2009-06-03 16:23

Avant-CF: 7 582 171 136 octets libres
Après-CF: 7 706 071 040 octets libres

291 --- E O F --- 2008-09-14 01:00

Répondre à mizot 59

si si beaucoup mieux j'ai reinstaller cubase tout vas bien pour le reste aussi sauf nod32 donc j'ai installer avast version familiale aussi bon je crois .... voila bonne soirée

Répondre à mizot 59

Re,

On va terminer.

Désinstalle l'antivirus Avast!.

&

Télécharge Ccleaner sur ton Bureau.

  • Clique sur "download the latest version"
  • Installe-le en laissant seulement les options suivantes cochées :

- Ajouter un raccourci sur le Bureau
- Contrôler automatiquement les mises à jour de CCleaner

  • Lance le Nettoyage
  • Clique sur Chercher des erreurs et sauvegarde si tu le souhaites.


Aide : Comment utiliser CCleaner.

&

Télécharge AntiVir sur ton Bureau.

  • Double clique sur l'exécutable téléchargé pour lancer l'installation.
  • A la fin de l'installation, clique sur Finish.
  • Ouvre Antivir, assure-toi qu’il soit bien à jour !
  • Dans l'onglet Protection Locale, choisis Contrôler.
  • Active la recherche de rootkits via le + de Recherche de Rootkits, puis dans Sélection manuelle, coche tout (tes partitions de disque dur).
  • Clique sur la loupe du milieu pour lancer le scan en tant qu'Administrateur.
  • Poste moi le rapport généré : Pour cela, clique sur l'onglet Aperçu, puis choisis Rapports, tu trouveras son rapport..
  • Sélectionne le rapport et clique sur l'icône "Afficher le fichier de rapport du rapport sélectionné.


Note : Pour une éradication des menaces plus efficace, lance le scan en mode sans échec.

Aide : Comment installer et utiliser AntiVir.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

n'arrive pas a t'envoyer le rapport l'ordi se bloque ?? je vais refaire un scan

Répondre à mizot 59

Il avait détecté des infections ?

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

oui 5

dois je garder antivir comme antivirus principale ?

Répondre à mizot 59

Oui. Quand tu refais un scan avec AntiVir, tu as encore des infections ?

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

voila je viens de refaire un scan

Avira AntiVir Personal
Date de création du fichier de rapport : lundi 8 juin 2009 17:23

La recherche porte sur 1459719 souches de virus.

Détenteur de la licence :Avira AntiVir PersonalEdition Classic
Numéro de série : 0000149996-ADJIE-0001
Plateforme : Windows XP
Version de Windows :(Service Pack 3) [5.1.2600]
Mode Boot : Démarré normalement
Identifiant : mizot
Nom de l'ordinateur :MIZOT-F8ACACD9C

Informations de version :
BUILD.DAT : 8.2.0.61 17752 Bytes 25/05/2009 13:47:00
AVSCAN.EXE : 8.1.4.10 315649 Bytes 18/11/2008 07:21:00
AVSCAN.DLL : 8.1.4.1 49921 Bytes 21/07/2008 12:44:27
LUKE.DLL : 8.1.4.5 164097 Bytes 12/06/2008 11:44:16
LUKERES.DLL : 8.1.4.0 13057 Bytes 04/07/2008 06:30:27
ANTIVIR0.VDF : 7.1.0.0 15603712 Bytes 27/10/2008 10:30:36
ANTIVIR1.VDF : 7.1.2.12 3336192 Bytes 11/02/2009 08:50:12
ANTIVIR2.VDF : 7.1.4.38 2692096 Bytes 29/05/2009 08:50:19
ANTIVIR3.VDF : 7.1.4.70 283648 Bytes 08/06/2009 12:28:39
Version du moteur: 8.2.0.180
AEVDF.DLL : 8.1.1.1 106868 Bytes 06/06/2009 08:50:28
AESCRIPT.DLL : 8.1.2.0 389497 Bytes 06/06/2009 08:50:27
AESCN.DLL : 8.1.2.3 127347 Bytes 06/06/2009 08:50:26
AERDL.DLL : 8.1.1.3 438645 Bytes 04/11/2008 12:58:38
AEPACK.DLL : 8.1.3.18 401783 Bytes 06/06/2009 08:50:26
AEOFFICE.DLL : 8.1.0.36 196987 Bytes 06/06/2009 08:50:25
AEHEUR.DLL : 8.1.0.129 1761655 Bytes 06/06/2009 08:50:25
AEHELP.DLL : 8.1.2.2 119158 Bytes 06/06/2009 08:50:22
AEGEN.DLL : 8.1.1.44 348532 Bytes 06/06/2009 08:50:22
AEEMU.DLL : 8.1.0.9 393588 Bytes 14/10/2008 09:05:56
AECORE.DLL : 8.1.6.12 180599 Bytes 06/06/2009 08:50:21
AEBB.DLL : 8.1.0.3 53618 Bytes 14/10/2008 09:05:56
AVWINLL.DLL : 1.0.0.12 15105 Bytes 09/07/2008 07:40:02
AVPREF.DLL : 8.0.2.0 38657 Bytes 16/05/2008 08:27:58
AVREP.DLL : 8.0.0.3 155688 Bytes 06/06/2009 08:50:20
AVREG.DLL : 8.0.0.1 33537 Bytes 09/05/2008 10:26:37
AVARKT.DLL : 1.0.0.23 307457 Bytes 12/02/2008 07:29:19
AVEVTLOG.DLL : 8.0.0.16 119041 Bytes 12/06/2008 11:27:46
SQLITE3.DLL : 3.3.17.1 339968 Bytes 22/01/2008 16:28:02
SMTPLIB.DLL : 1.2.0.23 28929 Bytes 12/06/2008 11:49:36
NETNT.DLL : 8.0.0.1 7937 Bytes 25/01/2008 11:05:07
RCIMAGE.DLL : 8.0.0.51 2371841 Bytes 04/07/2008 06:23:16
RCTEXT.DLL : 8.0.52.1 86273 Bytes 17/07/2008 09:08:43

Configuration pour la recherche actuelle :
Nom de la tâche..................: Sélection manuelle
Fichier de configuration.........: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\PROFILES\folder.avp
Documentation....................: bas
Action principale................: interactif
Action secondaire................: ignorer
Recherche sur les secteurs d'amorçage maître: marche
Recherche sur les secteurs d'amorçage: marche
Secteurs d'amorçage..............: C:, D:,
Recherche dans les programmes actifs: marche
Recherche en cours sur l'enregistrement: marche
Recherche de Rootkits............: arrêt
Fichier mode de recherche........: Sélection de fichiers intelligente
Recherche sur les archives.......: marche
Limiter la profondeur de récursivité: 20
Archive Smart Extensions.........: marche
Heuristique de macrovirus........: marche
Heuristique fichier..............: moyen

Début de la recherche : lundi 8 juin 2009 17:23

La recherche sur les processus démarrés commence :
Processus de recherche 'avscan.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avcenter.exe' - '1' module(s) sont contrôlés
Processus de recherche 'wlcomm.exe' - '1' module(s) sont contrôlés
Processus de recherche 'alg.exe' - '1' module(s) sont contrôlés
Processus de recherche 'wmiapsrv.exe' - '1' module(s) sont contrôlés
Processus de recherche 'CCC.exe' - '1' module(s) sont contrôlés
Processus de recherche 'lsnfier.exe' - '1' module(s) sont contrôlés
Processus de recherche 'MagicDisc.exe' - '1' module(s) sont contrôlés
Processus de recherche 'BrMfcMon.exe' - '1' module(s) sont contrôlés
Processus de recherche 'gigatribe.exe' - '1' module(s) sont contrôlés
Processus de recherche 'GoogleToolbarNotifier.exe' - '1' module(s) sont contrôlés
Processus de recherche 'daemon.exe' - '1' module(s) sont contrôlés
Processus de recherche 'msnmsgr.exe' - '1' module(s) sont contrôlés
Processus de recherche 'GoogleUpdate.exe' - '1' module(s) sont contrôlés
Processus de recherche 'fdm.exe' - '1' module(s) sont contrôlés
Processus de recherche 'BrccMCtl.exe' - '1' module(s) sont contrôlés
Processus de recherche 'ctfmon.exe' - '1' module(s) sont contrôlés
Processus de recherche 'mmrtkrnl.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avgnt.exe' - '1' module(s) sont contrôlés
Processus de recherche 'cledx.exe' - '1' module(s) sont contrôlés
Processus de recherche 'realsched.exe' - '1' module(s) sont contrôlés
Processus de recherche 'jusched.exe' - '1' module(s) sont contrôlés
Processus de recherche 'BrMfcWnd.exe' - '1' module(s) sont contrôlés
Processus de recherche 'MOM.exe' - '1' module(s) sont contrôlés
Processus de recherche 'pptd40nt.exe' - '1' module(s) sont contrôlés
Processus de recherche 'LOGICI~2.EXE' - '1' module(s) sont contrôlés
Processus de recherche 'vsnp2std.exe' - '1' module(s) sont contrôlés
Processus de recherche 'qttask.exe' - '1' module(s) sont contrôlés
Processus de recherche 'Dsp24Set.exe' - '1' module(s) sont contrôlés
Processus de recherche 'wscntfy.exe' - '1' module(s) sont contrôlés
Processus de recherche 'Bandoo.exe' - '1' module(s) sont contrôlés
Processus de recherche 'WTSrv.exe' - '1' module(s) sont contrôlés
Processus de recherche 'wdfmgr.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'PnkBstrA.exe' - '1' module(s) sont contrôlés
Processus de recherche 'jqs.exe' - '1' module(s) sont contrôlés
Processus de recherche 'avguard.exe' - '1' module(s) sont contrôlés
Processus de recherche 'explorer.exe' - '1' module(s) sont contrôlés
Processus de recherche 'GoogleUpdate.exe' - '1' module(s) sont contrôlés
Processus de recherche 'sched.exe' - '1' module(s) sont contrôlés
Processus de recherche 'spoolsv.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'svchost.exe' - '1' module(s) sont contrôlés
Processus de recherche 'lsass.exe' - '1' module(s) sont contrôlés
Processus de recherche 'services.exe' - '1' module(s) sont contrôlés
Processus de recherche 'winlogon.exe' - '1' module(s) sont contrôlés
Processus de recherche 'csrss.exe' - '1' module(s) sont contrôlés
Processus de recherche 'smss.exe' - '1' module(s) sont contrôlés
'51' processus ont été contrôlés avec '51' modules

La recherche sur les secteurs d'amorçage maître commence :
Secteur d'amorçage maître HD0
[INFO] Aucun virus trouvé !
Secteur d'amorçage maître HD1
[INFO] Aucun virus trouvé !
[AVERTISSEMENT] Erreur système [21]: Le périphérique n'est pas prêt.
Secteur d'amorçage maître HD2
[INFO] Aucun virus trouvé !
[AVERTISSEMENT] Erreur système [21]: Le périphérique n'est pas prêt.
Secteur d'amorçage maître HD3
[INFO] Aucun virus trouvé !
[AVERTISSEMENT] Erreur système [21]: Le périphérique n'est pas prêt.
Secteur d'amorçage maître HD4
[INFO] Aucun virus trouvé !
[AVERTISSEMENT] Erreur système [21]: Le périphérique n'est pas prêt.
Secteur d'amorçage maître HD5
[INFO] Aucun virus trouvé !
[AVERTISSEMENT] Erreur système [21]: Le périphérique n'est pas prêt.

La recherche sur les secteurs d'amorçage commence :
Secteur d'amorçage 'C:\'
[INFO] Aucun virus trouvé !
Secteur d'amorçage 'D:\'
[INFO] Aucun virus trouvé !

La recherche sur les renvois aux fichiers exécutables (registre) commence.
Le registre a été contrôlé ( '72' fichiers).


La recherche sur les fichiers sélectionnés commence :

Recherche débutant dans 'C:\'
C:\pagefile.sys
[AVERTISSEMENT] Impossible d'ouvrir le fichier !
C:\Downloads\AA283FullInstaller.exe
[0] Type d'archive: RAR SFX (self extracting)
--> AAComp~1.cab
[1] Type d'archive: CAB (Microsoft)
--> M_AA2_WeaponsCache.usx.fz
[AVERTISSEMENT] Aucun autre fichier n'a pu être décompressé de cette archive. L'archive est refermée.
C:\Downloads\VSO.Software.ConvertXtoDVD.3.v3.2.1.55b-TE\tc32155.r05
[0] Type d'archive: RAR
--> Crack\vso_hwe.dll
[AVERTISSEMENT] Aucun autre fichier n'a pu être décompressé de cette archive. L'archive est refermée.
C:\Downloads\VSO.Software.ConvertXtoDVD.3.v3.2.1.55b-TE\tc32155g.zip
[0] Type d'archive: ZIP
--> tc32155.r05
[1] Type d'archive: RAR
--> Crack\vso_hwe.dll
[AVERTISSEMENT] Aucun autre fichier n'a pu être décompressé de cette archive. L'archive est refermée.
C:\WINDOWS\system32\drivers\sptd.sys
[AVERTISSEMENT] Impossible d'ouvrir le fichier !
Recherche débutant dans 'D:\' <Données>
D:\DiskTemp\crack\rld-s4kg.EXE
[RESULTAT] Contient le cheval de Troie TR/Dldr.2257
[REMARQUE] Le fichier a été déplacé dans le répertoire de quarantaine sous le nom '4a9137fc.qua' !
D:\downloads\kis8.0.0.506fr.exe.bc!
[0] Type d'archive: NSIS
--> Settings/release_notes_kis8.0cf2_fr.html
[AVERTISSEMENT] Aucun autre fichier n'a pu être décompressé de cette archive. L'archive est refermée.
D:\Savegarde xp\Disque local (E)\Documents and Settings\mizot\Bureau\setup audio\native.instruments.absynth.v.3.0.1.15.incl.keygen-h2o.zip
[0] Type d'archive: ZIP
--> keygen.exe
[RESULTAT] Contient le cheval de Troie TR/Agent.132272.B
[REMARQUE] Le fichier a été déplacé dans le répertoire de quarantaine sous le nom '4aa13bd9.qua' !
D:\Savegarde xp\Disque local (E)\Documents and Settings\mizot\Mes documents\AmericasArmy270_GameDaily.exe
[0] Type d'archive: RAR SFX (self extracting)
--> Americ~1.cab
[1] Type d'archive: CAB (Microsoft)
--> Official_U.S._Army_Web_Site.
[AVERTISSEMENT] Aucun autre fichier n'a pu être décompressé de cette archive. L'archive est refermée.
D:\Savegarde xp\Disque local (E)\Program Files\emagic\Logic 5\Xskey.dll
[RESULTAT] Contient le code suspect : HEUR/Crypted
[REMARQUE] Le fichier a été déplacé dans le répertoire de quarantaine sous le nom '4a983e92.qua' !
D:\Savegarde xp\Disque local (E)\WINDOWS\system32\Keyfinder.exe
[RESULTAT] Contient le cheval de Troie TR/Agent.241779.A
[REMARQUE] Le fichier a été déplacé dans le répertoire de quarantaine sous le nom '4aa6461f.qua' !


Fin de la recherche : lundi 8 juin 2009 19:09
Temps nécessaire: 1:46:12 Heure(s)

La recherche a été effectuée intégralement

24480 Les répertoires ont été contrôlés
811917 Des fichiers ont été contrôlés
3 Des virus ou programmes indésirables ont été trouvés
1 Des fichiers ont été classés comme suspects
0 Des fichiers ont été supprimés
0 Des virus ou programmes indésirables ont été réparés
4 Les fichiers ont été déplacés dans la quarantaine
0 Les fichiers ont été renommés
2 Impossible de contrôler des fichiers
811911 Fichiers non infectés
6358 Les archives ont été contrôlées
12 Avertissements
4 Consignes

Répondre à mizot 59

Faudrait arrêter les cracks :/

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

oui je sais mais bon .....sinon la c'est bon ?

une autre question je viens d'acheter un pc portable et le gars a mis vista et je voudrais remettre xp peux tu me dire la procédure a faire merci

Répondre à mizot 59

Citation :

oui je sais mais bon .....sinon la c'est bon ?


Mais bon tu vas te rechopper une infection et personne ne t'aidera :)
Ça me semble ok sinon.

Citation :

une autre question je viens d'acheter un pc portable et le gars a mis vista et je voudrais remettre xp peux tu me dire la procédure a faire merci


No idea.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

ok je vais arrêter tout ça encore merci de m'avoir dépanné salut et bonne soirée

Répondre à mizot 59
Page Précédente
1 2
Tom's Guide > Forum > Sécurité - Virus > Win32 injector on
Aller à :

Il y a 2632 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.

Liens