Mot :    Pseudo :           
 

Hello j'suis certain d'avoir un keylogger ayant clicker sur un mauvais lien du forum officiel de world of warcraft , je peux link le lien si besoin en pm car j'ai pas envie que d'autres personnes choppe la merde que j'ai
je suposes que vous allez me demander un report d'hijackthis

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 09:41:57, on 02/07/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\RtHDVCpl.exe
C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe
C:\Program Files\EoRezo\EoEngine.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam\Quickcam.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Search Settings\SearchSettings.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\ehome\ehmsas.exe
C:\Users\manoweak\AppData\Roaming\Microsoft\Live Search\Notification-LiveSearch.exe
C:\Users\manoweak\AppData\Roaming\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\Acer\Empowering Technology\eRecovery\ERAGENT.EXE
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Windows\system32\conime.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Windows\system32\SearchFilterHost.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?o=13928&l=dis
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.fr.acer.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.fr.acer.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: AskBar BHO - {201f27d4-3704-41d6-89c1-aa35e39143ed} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (file missing)
O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb127\Dealio.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: (no name) - {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb127\Dealio.dll
O3 - Toolbar: Ask Toolbar - {3041d03e-fd4b-44e0-b742-2d9b88305f98} - C:\Program Files\AskBarDis\bar\bin\askBar.dll (file missing)
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_06\bin\jusched.exe"
O4 - HKLM\..\Run: [MSConfig] "C:\Windows\system32\Msconfig.exe" /auto
O4 - HKLM\..\Run: [RAMBoosterPro] "C:\Program Files\RAM Booster Pro\RAMBoosterPro.exe" auto
O4 - HKLM\..\Run: [EoEngine] "C:\Program Files\EoRezo\EoEngine.exe"
O4 - HKLM\..\Run: [ItsTV] "C:\Program Files\ItsLabel\ItsMedia\ItsTV.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [RivaTunerStartupDaemon] "C:\Program Files\RivaTuner v2.09\RivaTunerWrapper.exe" /S
O4 - HKLM\..\Run: [BtTray] "C:\Program Files\IVT Corporation\BlueSoleil\BtTray.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [au] C:\Program Files\Dealio\DealioAU.exe
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [RAMSaverPro] C:\Program Files\Godlike Developers\RAM Saver Pro\ramsaverpro.exe
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [World Clocks Wallpaper] C:\Program Files\WorldClocksWallpaper\WorldClocksWallpaper.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Octoshape Streaming Services] "C:\Users\manoweak\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe" -inv:bootrun
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O4 - Startup: Outil de notification Live Search.lnk = C:\Users\manoweak\AppData\Roaming\Microsoft\Live Search\Notification-LiveSearch.exe
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Global Startup: Empowering Technology Launcher.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: SetPointII.lnk = ?
O8 - Extra context menu item: Compare Prices with &Dealio - C:\Users\manoweak\AppData\LocalLow\Dealio\kb127\res\DealioSearch.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send by Bluetooth - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm
O8 - Extra context menu item: Send via &Message... - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll
O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll
O13 - Gopher Prefix:
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.srtest.com/srl_bin/sysreqlab3.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: ASKUpgrade - Unknown owner - C:\Program Files\AskBarDis\bar\bin\ASKUpgrade.exe (file missing)
O23 - Service: BlueSoleilCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BlueSoleilCS.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BsHelpCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsHelpCS.exe
O23 - Service: BsMobileCS - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BsMobileCS.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: Google Update Service (gupdate1c9d440a24d9a40) (gupdate1c9d440a24d9a40) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Service de l’iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: NMSAccessU - Unknown owner - C:\Program Files\CDBurnerXP\NMSAccessU.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

--
End of file - 12382 bytes


voila , je vous remercie d'avance !


Message édité par sourays le 02-07-2009 à 10:23:20
Liens sponsorisés
Inscrivez-vous ou connectez-vous pour masquer ceci.

Bonjour,

Pourquoi tu penses à un Keylogger ?

Télécharge Toolbar-S&D (Team IDN) sur ton Bureau.

  • Lance l'installation du programme en exécutant le fichier téléchargé.
  • Double-clique maintenant sur le raccourci de Toolbar-S&D.
  • Sélectionne la langue souhaitée en tapant la lettre de ton choix puis en validant avec la touche Entrée.
  • Choisis maintenant l'option 1 (Recherche). Patiente jusqu'à la fin de la recherche.
  • Poste le rapport généré. (C:\TB.txt)

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

hello , merci d'avoir repondu aussi rapidement je penses avoir un keylogger car des gens s'amusent a mettre un lien sur les forum de wow contenant un keylogger pour avoir ton compte et te voler tes objets tes pieces d'or puis ensuite les vendres ils me l'ont deja fais ya 2-3 ans , je peux te link le lien si tu penses ne pas chopper la meme connerie que moi , j'ai pas d'antivirus qui m'a dit que j'ai choppé un keylogger mais je suis sur qu'il yen a un sur le site en question pour ce qui est du rapport :


-----------\\ ToolBar S&D 1.2.8 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : AMD Phenom(tm) 9500 Quad-Core Processor )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : manoweak ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total:144 Go (Free:11 Go)
D:\ (Local Disk) - NTFS - Total:144 Go (Free:97 Go)
E:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)

"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [1] ( 02/07/2009|18:34 )

[ UAC => 1 ]

-----------\\ Recherche de Fichiers / Dossiers ...

[Service] ASKUpgrade
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\BitLord
C:\Users\manoweak\AppData\Roaming\MICROS~1\Windows\Cookies\manoweak@bitlord[2].txt
C:\Program Files\BitLord
C:\Program Files\BitLord\BitLord.xml
C:\Program Files\BitLord\Downloads
C:\Program Files\BitLord\Downloads.xml
C:\Program Files\BitLord\lang
C:\Program Files\BitLord\rules

C:\Program Files\BitLord\lang\lang_ar_ae.xml
C:\Program Files\BitLord\lang\lang_bg_bg.xml
C:\Program Files\BitLord\lang\lang_ca_es.xml
C:\Program Files\BitLord\lang\lang_cz_cz.xml
C:\Program Files\BitLord\lang\lang_da_dk.xml
C:\Program Files\BitLord\lang\lang_de_de.xml
C:\Program Files\BitLord\lang\lang_el_gr.xml
C:\Program Files\BitLord\lang\lang_en_us.xml
C:\Program Files\BitLord\lang\lang_es_ar.xml
C:\Program Files\BitLord\lang\lang_es_es.xml
C:\Program Files\BitLord\lang\lang_et_ee.xml
C:\Program Files\BitLord\lang\lang_fi_fi.xml
C:\Program Files\BitLord\lang\lang_fr_fr.xml
C:\Program Files\BitLord\lang\lang_gl_es.xml
C:\Program Files\BitLord\lang\lang_he_il.xml
C:\Program Files\BitLord\lang\lang_hu_hu.xml
C:\Program Files\BitLord\lang\lang_it_it.xml
C:\Program Files\BitLord\lang\lang_jp_jp.xml
C:\Program Files\BitLord\lang\lang_ko_kr.xml
C:\Program Files\BitLord\lang\lang_nb_no.xml
C:\Program Files\BitLord\lang\lang_nl_nl.xml
C:\Program Files\BitLord\lang\lang_pl_pl.xml
C:\Program Files\BitLord\lang\lang_pt_br.xml
C:\Program Files\BitLord\lang\lang_pt_pt.xml
C:\Program Files\BitLord\lang\lang_ro_ro.xml
C:\Program Files\BitLord\lang\lang_ru_ru.xml
C:\Program Files\BitLord\lang\lang_sk_sk.xml
C:\Program Files\BitLord\lang\lang_sl_si.xml
C:\Program Files\BitLord\lang\lang_sr_sr.xml
C:\Program Files\BitLord\lang\lang_sv_se.xml
C:\Program Files\BitLord\lang\lang_th_th.xml
C:\Program Files\BitLord\lang\lang_tr_tr.xml
C:\Program Files\BitLord\lang\lang_va_es.xml
C:\Program Files\BitLord\lang\lang_zh_tw.xml
C:\Program Files\BitLord\rules\ipfilter.dat
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Dealio
C:\Program Files\Dealio
C:\Program Files\Dealio\DealioAU.exe
C:\Program Files\Dealio\kb127
C:\Program Files\Dealio\SearchSettingsKit.exe
C:\Program Files\Dealio\kb127\Dealio Deskbar.exe
C:\Program Files\Dealio\kb127\Dealio.dll
C:\Program Files\Dealio\kb127\DealioRes409.dll
C:\Program Files\Dealio\kb127\res
C:\Program Files\Dealio\kb127\resDN
C:\Program Files\Dealio\kb127\rules
C:\Program Files\Dealio\kb127\temp
C:\Program Files\Dealio\kb127\res\alerts.gif
C:\Program Files\Dealio\kb127\res\alerts_over.gif
C:\Program Files\Dealio\kb127\res\alerts_rec.gif
C:\Program Files\Dealio\kb127\res\alerts_rec_over.gif
C:\Program Files\Dealio\kb127\res\chevron-small.gif
C:\Program Files\Dealio\kb127\res\DealioSearch.html
C:\Program Files\Dealio\kb127\res\deals-leftcap.gif
C:\Program Files\Dealio\kb127\res\deal_report.jpg
C:\Program Files\Dealio\kb127\res\ebay_login.jpg
C:\Program Files\Dealio\kb127\res\err_mainwindow.html
C:\Program Files\Dealio\kb127\res\err_toolbar.html
C:\Program Files\Dealio\kb127\res\global_scripts.js
C:\Program Files\Dealio\kb127\res\headerbgthin.jpg
C:\Program Files\Dealio\kb127\res\highlight-bg.png
C:\Program Files\Dealio\kb127\res\logo.gif
C:\Program Files\Dealio\kb127\res\logo_over.gif
C:\Program Files\Dealio\kb127\res\man_toolbar.css
C:\Program Files\Dealio\kb127\res\man_toolbar.html
C:\Program Files\Dealio\kb127\res\man_toolbar.js
C:\Program Files\Dealio\kb127\res\man_toolbarl.js
C:\Program Files\Dealio\kb127\res\post-this-deal.gif
C:\Program Files\Dealio\kb127\res\post-this-deal_over.gif
C:\Program Files\Dealio\kb127\res\scripts.js
C:\Program Files\Dealio\kb127\res\scroller.js
C:\Program Files\Dealio\kb127\res\search-chevron.gif
C:\Program Files\Dealio\kb127\res\search-chevron_over.gif
C:\Program Files\Dealio\kb127\res\search_bg_blink.gif
C:\Program Files\Dealio\kb127\res\separator.gif
C:\Program Files\Dealio\kb127\res\settings.gif
C:\Program Files\Dealio\kb127\res\settings_over.gif
C:\Program Files\Dealio\kb127\res\yahoo-search.png
C:\Program Files\Dealio\kb127\resDN\bottom.gif
C:\Program Files\Dealio\kb127\resDN\chevron_down.gif
C:\Program Files\Dealio\kb127\resDN\chevron_up.gif
C:\Program Files\Dealio\kb127\resDN\close.gif
C:\Program Files\Dealio\kb127\resDN\deskbar.css
C:\Program Files\Dealio\kb127\resDN\deskbar.js
C:\Program Files\Dealio\kb127\resDN\dispatch_helper.js
C:\Program Files\Dealio\kb127\resDN\ebay_compatible.jpg
C:\Program Files\Dealio\kb127\resDN\logo.gif
C:\Program Files\Dealio\kb127\resDN\logo_chevron_bkg.gif
C:\Program Files\Dealio\kb127\resDN\losing.gif
C:\Program Files\Dealio\kb127\resDN\lost.gif
C:\Program Files\Dealio\kb127\resDN\man_deskbar.html
C:\Program Files\Dealio\kb127\resDN\menu_arrow.gif
C:\Program Files\Dealio\kb127\resDN\menu_check.gif
C:\Program Files\Dealio\kb127\resDN\no_image.gif
C:\Program Files\Dealio\kb127\resDN\prod_img.gif
C:\Program Files\Dealio\kb127\resDN\search_chevron.gif
C:\Program Files\Dealio\kb127\resDN\spacer.gif
C:\Program Files\Dealio\kb127\resDN\textfield_bkg.gif
C:\Program Files\Dealio\kb127\resDN\top.gif
C:\Program Files\Dealio\kb127\resDN\unknown.gif
C:\Program Files\Dealio\kb127\resDN\winning.gif
C:\Program Files\Dealio\kb127\resDN\won.gif
C:\Program Files\Dealio\kb127\rules\index.76.35
C:\Program Files\Dealio\kb127\rules\rules.1.10.76
C:\Program Files\Dealio\kb127\rules\rules.1.109.43
C:\Program Files\Dealio\kb127\rules\rules.1.110.43
C:\Program Files\Dealio\kb127\rules\rules.1.12.52
C:\Program Files\Dealio\kb127\rules\rules.1.13.58
C:\Program Files\Dealio\kb127\rules\rules.1.130.58
C:\Program Files\Dealio\kb127\rules\rules.1.135.50
C:\Program Files\Dealio\kb127\rules\rules.1.153.44
C:\Program Files\Dealio\kb127\rules\rules.1.155.43
C:\Program Files\Dealio\kb127\rules\rules.1.156.49
C:\Program Files\Dealio\kb127\rules\rules.1.16.60
C:\Program Files\Dealio\kb127\rules\rules.1.161.52
C:\Program Files\Dealio\kb127\rules\rules.1.178.66
C:\Program Files\Dealio\kb127\rules\rules.1.184.55
C:\Program Files\Dealio\kb127\rules\rules.1.188.52
C:\Program Files\Dealio\kb127\rules\rules.1.189.45
C:\Program Files\Dealio\kb127\rules\rules.1.196.43
C:\Program Files\Dealio\kb127\rules\rules.1.198.56
C:\Program Files\Dealio\kb127\rules\rules.1.199.43
C:\Program Files\Dealio\kb127\rules\rules.1.200.53
C:\Program Files\Dealio\kb127\rules\rules.1.201.43
C:\Program Files\Dealio\kb127\rules\rules.1.202.43
C:\Program Files\Dealio\kb127\rules\rules.1.203.71
C:\Program Files\Dealio\kb127\rules\rules.1.205.62
C:\Program Files\Dealio\kb127\rules\rules.1.213.71
C:\Program Files\Dealio\kb127\rules\rules.1.214.49
C:\Program Files\Dealio\kb127\rules\rules.1.215.43
C:\Program Files\Dealio\kb127\rules\rules.1.216.67
C:\Program Files\Dealio\kb127\rules\rules.1.217.67
C:\Program Files\Dealio\kb127\rules\rules.1.218.52
C:\Program Files\Dealio\kb127\rules\rules.1.219.43
C:\Program Files\Dealio\kb127\rules\rules.1.220.43
C:\Program Files\Dealio\kb127\rules\rules.1.221.57
C:\Program Files\Dealio\kb127\rules\rules.1.222.43
C:\Program Files\Dealio\kb127\rules\rules.1.223.68
C:\Program Files\Dealio\kb127\rules\rules.1.226.68
C:\Program Files\Dealio\kb127\rules\rules.1.227.43
C:\Program Files\Dealio\kb127\rules\rules.1.228.62
C:\Program Files\Dealio\kb127\rules\rules.1.229.76
C:\Program Files\Dealio\kb127\rules\rules.1.23.63
C:\Program Files\Dealio\kb127\rules\rules.1.239.43
C:\Program Files\Dealio\kb127\rules\rules.1.24.43
C:\Program Files\Dealio\kb127\rules\rules.1.240.43
C:\Program Files\Dealio\kb127\rules\rules.1.241.43
C:\Program Files\Dealio\kb127\rules\rules.1.242.43
C:\Program Files\Dealio\kb127\rules\rules.1.243.43
C:\Program Files\Dealio\kb127\rules\rules.1.244.63
C:\Program Files\Dealio\kb127\rules\rules.1.245.43
C:\Program Files\Dealio\kb127\rules\rules.1.247.43
C:\Program Files\Dealio\kb127\rules\rules.1.248.43
C:\Program Files\Dealio\kb127\rules\rules.1.249.43
C:\Program Files\Dealio\kb127\rules\rules.1.250.43
C:\Program Files\Dealio\kb127\rules\rules.1.251.43
C:\Program Files\Dealio\kb127\rules\rules.1.252.43
C:\Program Files\Dealio\kb127\rules\rules.1.253.43
C:\Program Files\Dealio\kb127\rules\rules.1.254.43
C:\Program Files\Dealio\kb127\rules\rules.1.255.43
C:\Program Files\Dealio\kb127\rules\rules.1.256.43
C:\Program Files\Dealio\kb127\rules\rules.1.257.43
C:\Program Files\Dealio\kb127\rules\rules.1.279.43
C:\Program Files\Dealio\kb127\rules\rules.1.28.58
C:\Program Files\Dealio\kb127\rules\rules.1.282.75
C:\Program Files\Dealio\kb127\rules\rules.1.283.43
C:\Program Files\Dealio\kb127\rules\rules.1.284.43
C:\Program Files\Dealio\kb127\rules\rules.1.289.67
C:\Program Files\Dealio\kb127\rules\rules.1.290.62
C:\Program Files\Dealio\kb127\rules\rules.1.291.61
C:\Program Files\Dealio\kb127\rules\rules.1.296.43
C:\Program Files\Dealio\kb127\rules\rules.1.297.43
C:\Program Files\Dealio\kb127\rules\rules.1.304.43
C:\Program Files\Dealio\kb127\rules\rules.1.307.43
C:\Program Files\Dealio\kb127\rules\rules.1.308.75
C:\Program Files\Dealio\kb127\rules\rules.1.31.47
C:\Program Files\Dealio\kb127\rules\rules.1.310.46
C:\Program Files\Dealio\kb127\rules\rules.1.311.43
C:\Program Files\Dealio\kb127\rules\rules.1.315.43
C:\Program Files\Dealio\kb127\rules\rules.1.316.43
C:\Program Files\Dealio\kb127\rules\rules.1.317.43
C:\Program Files\Dealio\kb127\rules\rules.1.318.43
C:\Program Files\Dealio\kb127\rules\rules.1.319.49
C:\Program Files\Dealio\kb127\rules\rules.1.32.48
C:\Program Files\Dealio\kb127\rules\rules.1.334.44
C:\Program Files\Dealio\kb127\rules\rules.1.335.60
C:\Program Files\Dealio\kb127\rules\rules.1.336.44
C:\Program Files\Dealio\kb127\rules\rules.1.337.44
C:\Program Files\Dealio\kb127\rules\rules.1.338.75
C:\Program Files\Dealio\kb127\rules\rules.1.339.47
C:\Program Files\Dealio\kb127\rules\rules.1.34.43
C:\Program Files\Dealio\kb127\rules\rules.1.340.47
C:\Program Files\Dealio\kb127\rules\rules.1.341.47
C:\Program Files\Dealio\kb127\rules\rules.1.349.50
C:\Program Files\Dealio\kb127\rules\rules.1.35.48
C:\Program Files\Dealio\kb127\rules\rules.1.350.50
C:\Program Files\Dealio\kb127\rules\rules.1.351.51
C:\Program Files\Dealio\kb127\rules\rules.1.352.54
C:\Program Files\Dealio\kb127\rules\rules.1.353.51
C:\Program Files\Dealio\kb127\rules\rules.1.354.51
C:\Program Files\Dealio\kb127\rules\rules.1.357.62
C:\Program Files\Dealio\kb127\rules\rules.1.358.52
C:\Program Files\Dealio\kb127\rules\rules.1.359.52
C:\Program Files\Dealio\kb127\rules\rules.1.360.53
C:\Program Files\Dealio\kb127\rules\rules.1.361.54
C:\Program Files\Dealio\kb127\rules\rules.1.362.68
C:\Program Files\Dealio\kb127\rules\rules.1.363.58
C:\Program Files\Dealio\kb127\rules\rules.1.364.54
C:\Program Files\Dealio\kb127\rules\rules.1.365.53
C:\Program Files\Dealio\kb127\rules\rules.1.367.56
C:\Program Files\Dealio\kb127\rules\rules.1.368.58
C:\Program Files\Dealio\kb127\rules\rules.1.369.55
C:\Program Files\Dealio\kb127\rules\rules.1.370.56
C:\Program Files\Dealio\kb127\rules\rules.1.371.56
C:\Program Files\Dealio\kb127\rules\rules.1.372.57
C:\Program Files\Dealio\kb127\rules\rules.1.373.55
C:\Program Files\Dealio\kb127\rules\rules.1.375.56
C:\Program Files\Dealio\kb127\rules\rules.1.376.57
C:\Program Files\Dealio\kb127\rules\rules.1.377.55
C:\Program Files\Dealio\kb127\rules\rules.1.378.65
C:\Program Files\Dealio\kb127\rules\rules.1.384.58
C:\Program Files\Dealio\kb127\rules\rules.1.386.71
C:\Program Files\Dealio\kb127\rules\rules.1.387.59
C:\Program Files\Dealio\kb127\rules\rules.1.388.59
C:\Program Files\Dealio\kb127\rules\rules.1.389.59
C:\Program Files\Dealio\kb127\rules\rules.1.390.60
C:\Program Files\Dealio\kb127\rules\rules.1.391.60
C:\Program Files\Dealio\kb127\rules\rules.1.392.60
C:\Program Files\Dealio\kb127\rules\rules.1.393.60
C:\Program Files\Dealio\kb127\rules\rules.1.394.60
C:\Program Files\Dealio\kb127\rules\rules.1.396.61
C:\Program Files\Dealio\kb127\rules\rules.1.397.61
C:\Program Files\Dealio\kb127\rules\rules.1.398.60
C:\Program Files\Dealio\kb127\rules\rules.1.399.60
C:\Program Files\Dealio\kb127\rules\rules.1.403.61
C:\Program Files\Dealio\kb127\rules\rules.1.404.63
C:\Program Files\Dealio\kb127\rules\rules.1.405.61
C:\Program Files\Dealio\kb127\rules\rules.1.406.61
C:\Program Files\Dealio\kb127\rules\rules.1.407.76
C:\Program Files\Dealio\kb127\rules\rules.1.408.63
C:\Program Files\Dealio\kb127\rules\rules.1.409.61
C:\Program Files\Dealio\kb127\rules\rules.1.412.62
C:\Program Files\Dealio\kb127\rules\rules.1.413.62
C:\Program Files\Dealio\kb127\rules\rules.1.414.62
C:\Program Files\Dealio\kb127\rules\rules.1.415.62
C:\Program Files\Dealio\kb127\rules\rules.1.416.62
C:\Program Files\Dealio\kb127\rules\rules.1.417.62
C:\Program Files\Dealio\kb127\rules\rules.1.418.62
C:\Program Files\Dealio\kb127\rules\rules.1.419.62
C:\Program Files\Dealio\kb127\rules\rules.1.420.62
C:\Program Files\Dealio\kb127\rules\rules.1.421.62
C:\Program Files\Dealio\kb127\rules\rules.1.423.63
C:\Program Files\Dealio\kb127\rules\rules.1.424.63
C:\Program Files\Dealio\kb127\rules\rules.1.425.63
C:\Program Files\Dealio\kb127\rules\rules.1.426.63
C:\Program Files\Dealio\kb127\rules\rules.1.427.63
C:\Program Files\Dealio\kb127\rules\rules.1.428.65
C:\Program Files\Dealio\kb127\rules\rules.1.429.63
C:\Program Files\Dealio\kb127\rules\rules.1.430.63
C:\Program Files\Dealio\kb127\rules\rules.1.432.65
C:\Program Files\Dealio\kb127\rules\rules.1.433.64
C:\Program Files\Dealio\kb127\rules\rules.1.434.65
C:\Program Files\Dealio\kb127\rules\rules.1.435.64
C:\Program Files\Dealio\kb127\rules\rules.1.436.76
C:\Program Files\Dealio\kb127\rules\rules.1.437.64
C:\Program Files\Dealio\kb127\rules\rules.1.438.71
C:\Program Files\Dealio\kb127\rules\rules.1.439.71
C:\Program Files\Dealio\kb127\rules\rules.1.440.75
C:\Program Files\Dealio\kb127\rules\rules.1.442.73
C:\Program Files\Dealio\kb127\rules\rules.1.443.73
C:\Program Files\Dealio\kb127\rules\rules.1.444.73
C:\Program Files\Dealio\kb127\rules\rules.1.445.68
C:\Program Files\Dealio\kb127\rules\rules.1.446.69
C:\Program Files\Dealio\kb127\rules\rules.1.450.67
C:\Program Files\Dealio\kb127\rules\rules.1.451.67
C:\Program Files\Dealio\kb127\rules\rules.1.452.68
C:\Program Files\Dealio\kb127\rules\rules.1.453.68
C:\Program Files\Dealio\kb127\rules\rules.1.454.69
C:\Program Files\Dealio\kb127\rules\rules.1.456.69
C:\Program Files\Dealio\kb127\rules\rules.1.457.75
C:\Program Files\Dealio\kb127\rules\rules.1.458.70
C:\Program Files\Dealio\kb127\rules\rules.1.459.70
C:\Program Files\Dealio\kb127\rules\rules.1.460.69
C:\Program Files\Dealio\kb127\rules\rules.1.462.74
C:\Program Files\Dealio\kb127\rules\rules.1.463.69
C:\Program Files\Dealio\kb127\rules\rules.1.464.70
C:\Program Files\Dealio\kb127\rules\rules.1.465.68
C:\Program Files\Dealio\kb127\rules\rules.1.468.70
C:\Program Files\Dealio\kb127\rules\rules.1.469.70
C:\Program Files\Dealio\kb127\rules\rules.1.470.70
C:\Program Files\Dealio\kb127\rules\rules.1.471.73
C:\Program Files\Dealio\kb127\rules\rules.1.472.70
C:\Program Files\Dealio\kb127\rules\rules.1.478.74
C:\Program Files\Dealio\kb127\rules\rules.1.479.73
C:\Program Files\Dealio\kb127\rules\rules.1.480.68
C:\Program Files\Dealio\kb127\rules\rules.1.481.71
C:\Program Files\Dealio\kb127\rules\rules.1.482.74
C:\Program Files\Dealio\kb127\rules\rules.1.49.67
C:\Program Files\Dealio\kb127\rules\rules.1.50.43
C:\Program Files\Dealio\kb127\rules\rules.1.500.71
C:\Program Files\Dealio\kb127\rules\rules.1.501.74
C:\Program Files\Dealio\kb127\rules\rules.1.502.71
C:\Program Files\Dealio\kb127\rules\rules.1.51.69
C:\Program Files\Dealio\kb127\rules\rules.1.52.72
C:\Program Files\Dealio\kb127\rules\rules.1.520.76
C:\Program Files\Dealio\kb127\rules\rules.1.521.76
C:\Program Files\Dealio\kb127\rules\rules.1.522.76
C:\Program Files\Dealio\kb127\rules\rules.1.53.51
C:\Program Files\Dealio\kb127\rules\rules.1.531.76
C:\Program Files\Dealio\kb127\rules\rules.1.532.75
C:\Program Files\Dealio\kb127\rules\rules.1.534.75
C:\Program Files\Dealio\kb127\rules\rules.1.54.47
C:\Program Files\Dealio\kb127\rules\rules.1.55.45
C:\Program Files\Dealio\kb127\rules\rules.1.56.69
C:\Program Files\Dealio\kb127\rules\rules.1.57.43
C:\Program Files\Dealio\kb127\rules\rules.1.58.47
C:\Program Files\Dealio\kb127\rules\rules.1.593.76
C:\Program Files\Dealio\kb127\rules\rules.1.595.76
C:\Program Files\Dealio\kb127\rules\rules.1.63.57
C:\Program Files\Dealio\kb127\rules\rules.1.66.47
C:\Program Files\Dealio\kb127\rules\rules.1.70.75
C:\Program Files\Dealio\kb127\rules\rules.1.71.43

-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"SEARCH PAGE"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Local Page"="C:\\Windows\\system32\\blank.htm"
"SearchMigratedDefaultURL"="http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7"
"Search Bar"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://www.ask.com/?o=13928&l=dis"
"Url"="http://go.microsoft.com/fwlink/?LinkId=75720"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://fr.fr.acer.yahoo.com"
"Default_Page_URL"="http://fr.fr.acer.yahoo.com"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"


--------------------\\ Recherche d'autres infections

C:\Program Files\InternetGameBox
C:\Program Files\InternetGameBox\language
C:\Program Files\InternetGameBox\ressources
C:\Program Files\InternetGameBox\skins
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\InternetGameBox
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\InternetGameBox\Conditions g‚n‚rales.url
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\InternetGameBox\Confidentialit‚.url
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\InternetGameBox\Website.url
C:\Program Files\WebMediaPlayer
C:\Program Files\WebMediaPlayer\resources
C:\Program Files\WebMediaPlayer\skins
C:\Program Files\WebMediaPlayer\updates
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\WebMediaPlayer
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\WebMediaPlayer\Conditions g‚n‚rales.url
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\WebMediaPlayer\Confidentialit‚.url
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\WebMediaPlayer\Website.url

C:\Users\manoweak\AppData\Local\ikqekgq.dat
C:\Users\manoweak\AppData\Local\ikqekgq_nav.dat
C:\Users\manoweak\AppData\Local\ikqekgq_navps.dat
C:\Users\manoweak\AppData\Local\zgrvinam.dat
C:\Users\manoweak\AppData\Local\zgrvinam_nav.dat
C:\Users\manoweak\AppData\Local\zgrvinam_navps.dat
==> EGDACCESS <==

--------------------\\ Cracks & Keygens ..

C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\Crack
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\gburner27.exe.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\The Sims 3 + MUI.iso.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\Crack\rld-sim3.exe.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\Crack\TS3.exe.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\124 Highbeach Court.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressbacktie.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afBodyDressBohemian.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressfluffygloves.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressfrontbow.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydresshalter.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydresshalterlong.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydresslongsideslit.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressmaxi.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressmodernlayers.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressopenback.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydresssimpleflair.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressstrappy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydresssuntiesbeads.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydresstennis.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodygownevening.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodyjacketpencilskirt.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodyoutfitrocker.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottompantsbootcut_leather.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottompantsdresscuffed.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottompantshemzip.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottompantsyoga.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottomskirtmodernswirls.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottomskirtpencil_lacedup.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottomskirttiersdiag.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottomskirtvamp.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairbuckethatlong.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairbuckethatmed.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairbuckethatupdo.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairflatcaplong.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairflatcapmed.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairflatcapupdo.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairhighponytail.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairkhalil.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairlongwave.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairmaggi.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairponytailhigh.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairshortmatin.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopblousebohemianbow.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopblousecollarround.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopblousecorset.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopblousefrilly_necklace.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftophalterbeads.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftophalterurban.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopjacket34sleevebandcollar.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopjacketafternoon(0).Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopjacketafternoon.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afTopJacketClosed_quiltedLeather.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopjacketmilitary.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopshirtcollarsweaterround.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopshirtfitted_tank1.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopshirtshortsleevesweater.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afTopShirtTee_crew1.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopshirttee_crewstore.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopshirtvamp_necklace.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopsweaterbohemian_necklace.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopsweaterplungeback.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftoptanksport.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\ambodycoatlongmandarincollar.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\ambottomkiltbelts.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\ambottompantsbaggycargo_sporty.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\ambottompantsgenie.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\ambottompantskungfu.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\ambottompantsresort.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhairboaterhatemoboy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhairboaterhatshaggy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhaircleancut.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhairemoboy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhairnewsboycapnerd.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhairshaggy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhairspikeysuav.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopblazerhoodie.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amTopBlazerTNeck.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopfleezezip.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtophenleyjohnnycollar.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtophenleylacedcollar.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopjacketbaseball.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopjacketcoatopen.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopjacketmandarincollar.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopjacketshirtuntucked_vest.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopjacketshirtupcollar_preppy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopshirtfitted_tank1.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopshirthenley.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopshirtshortsleevetie.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopshirttee_crewstore.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopteelongsleevescarf.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopvestshirttie.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopvestteerolledsleeve.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\BaysideFullset.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Bayside_Fullset.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\CarExoticSuperCE.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\CarMuscle.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\CarPriusV.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cfhairmaggi.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairboaterhatemoboy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairboaterhatshaggy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairbuckethatcleancut.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairemoboy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairnewsboycapcleancut.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairshaggy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairsmallspike.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairspikeysuav.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\computerNaszaKlasa.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Contemporary Living{1}.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Crumble House.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\efbodyjacketpencilskirt.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\emtopblazertneck.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Flow house no fam.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Flow House.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\flowery garden(furnished).Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Hewnsman_Fullset.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\JinjaNinja's Hillside Manor.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\LightingTableHulaTiki.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Mirage Beach.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Modern loft Altea.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Monte Bianco.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\pmhairshaggy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Ranch Inspired Home -fullyfurnished.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\RefrigeratorFanta.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\RiverbankLoft.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Riverview.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\sculptureFloorNaszaKlasa.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\sculptureTableNaszaKlasa.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\SculptureTableStatueTiki.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Storybook_Fullset.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\tfbodydresssuntiesbeads.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\tftopshirtteetank.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Tiki_Fullset.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\water-front residence{1}.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\VirtualStore\Program Files\BitLord\Torrents\StyleXPInstallMale + Keygen_BY IULY69 AND BY www.newscine.helloweb.eu .rar.torrent
C:\Users\manoweak\AppData\Local\VirtualStore\Program Files\BitLord\Torrents\The Sims 3 - Multi lang + crack.torrent
C:\Users\manoweak\AppData\Local\VirtualStore\Program Files\BitLord\Torrents\The Sims 3 - Multi lang + crack[0].torrent
C:\Users\manoweak\AppData\Local\VirtualStore\Program Files\BitLord\Torrents\The Sims 3 - Multi lang + crack[0].xml
C:\Users\manoweak\AppData\Roaming\.ABC\torrent\[isoHunt] The Sims 3 - Multi lang crack-1.torrent
C:\Users\manoweak\AppData\Roaming\.ABC\torrent\[PC GAME] Assassins Creed (Full) + CRACK [mininova].torrent
C:\Users\manoweak\AppData\Roaming\.ABC\torrentinfo\[isoHunt] The Sims 3 - Multi lang crack-1.torrent.info
C:\Users\manoweak\AppData\Roaming\.ABC\torrentinfo\[PC GAME] Assassins Creed (Full) + CRACK [mininova].torrent.info
C:\Users\manoweak\Documents\Mes fichiers re‡us\Eminem Feat Dr. Dre & 50 Cent - Crack A Bottle.mp3
C:\Users\manoweak\Documents\Mes fichiers re‡us\LimeWire\Incomplete\LMN6QFVXCSKWRDHWQDDBWJUUZA4JPNNF\Medieval II Total War + Kingdoms\Crack
C:\Users\manoweak\Documents\Mes fichiers re‡us\LimeWire\Incomplete\LMN6QFVXCSKWRDHWQDDBWJUUZA4JPNNF\Medieval II Total War + Kingdoms\Crack\kingdoms.exe
C:\Users\manoweak\Documents\Mes fichiers re‡us\LimeWire\Incomplete\LMN6QFVXCSKWRDHWQDDBWJUUZA4JPNNF\Medieval II Total War + Kingdoms\Crack\medieval2.exe
C:\Users\manoweak\Downloads\eMule\Incoming\Fraps 2.9.1 [With Crack].zip


[ UAC => 1 ]


1 - "C:\ToolBar SD\TB_1.txt" - 02/07/2009|18:34 - Option : [1]

-----------\\ Fin du rapport a 18:34:37,71

Répondre à sourays

Commence par supprimer tous tes cracks.

&

Relance Toolbar-S&D en double-cliquant sur le raccourci.

  • Choisis cette fois l'option 2 puis valide en appuyant sur Entrée.

! Ne ferme pas la fenêtre lors de la suppression !

  • Un rapport sera généré, poste son contenu ici, puis un nouveau rapport HijackThis.


Si ton bureau ne réapparait pas, fais CTRL+ALT+SUPP pour ouvrir le gestionnaire de tâches.
Puis rends-toi à l'onglet "processus". Clique en haut à gauche sur fichiers et choisis "Nouvelle tâche (exécuter)"
Tapes explorer et valide. Cela te fera apparaitre ton bureau

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

yo ,


-----------\\ ToolBar S&D 1.2.8 XP/Vista

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : AMD Phenom(tm) 9500 Quad-Core Processor )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : manoweak ( Administrator )
BOOT : Normal boot
C:\ (Local Disk) - NTFS - Total:144 Go (Free:4 Go)
D:\ (Local Disk) - NTFS - Total:144 Go (Free:97 Go)
E:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)

"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 04/07/2009| 8:24 )

[ UAC => 1 ]

-----------\\ SUPPRESSION

Supprime! - [Service] ASKUpgrade
Supprime! - C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\BitLord
Supprime! - C:\Users\manoweak\AppData\Roaming\MICROS~1\Windows\Cookies\manoweak@bitlord[2].txt
Supprime! - C:\Program Files\BitLord\BitLord.xml
Supprime! - C:\Program Files\BitLord\Downloads
Supprime! - C:\Program Files\BitLord\Downloads.xml
Supprime! - C:\Program Files\BitLord\lang
Supprime! - C:\Program Files\BitLord\rules
Supprime! - C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Dealio
Supprime! - C:\Program Files\Dealio\DealioAU.exe
Supprime! - C:\Program Files\Dealio\kb127
Supprime! - C:\Program Files\Dealio\SearchSettingsKit.exe
Supprime! - C:\Program Files\BitLord
Supprime! - C:\Program Files\Dealio

-----------\\ Recherche de Fichiers / Dossiers ...

C:\Program Files\Search Settings
C:\Program Files\Search Settings\kb127
C:\Program Files\Search Settings\SearchSettings.exe
C:\Program Files\Search Settings\kb127\SearchSettings.dll
C:\Program Files\Search Settings\kb127\SearchSettingsRes409.dll

-----------\\ [..\Internet Explorer\Main]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"SEARCH PAGE"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Local Page"="C:\\Windows\\system32\\blank.htm"
"SearchMigratedDefaultURL"="http://search.yahoo.com/search?p={searchTerms}&ei=utf-8&fr=b1ie7"
"Search Bar"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://www.ask.com/?o=13928&l=dis"
"Url"="http://go.microsoft.com/fwlink/?LinkId=75720"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/"
"Default_Page_URL"="http://fr.fr.acer.yahoo.com"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"


--------------------\\ Recherche d'autres infections

C:\Program Files\InternetGameBox
C:\Program Files\InternetGameBox\language
C:\Program Files\InternetGameBox\ressources
C:\Program Files\InternetGameBox\skins
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\InternetGameBox
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\InternetGameBox\Conditions g‚n‚rales.url
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\InternetGameBox\Confidentialit‚.url
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\InternetGameBox\Website.url
C:\Program Files\WebMediaPlayer
C:\Program Files\WebMediaPlayer\resources
C:\Program Files\WebMediaPlayer\skins
C:\Program Files\WebMediaPlayer\updates
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\WebMediaPlayer
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\WebMediaPlayer\Conditions g‚n‚rales.url
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\WebMediaPlayer\Confidentialit‚.url
C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\WebMediaPlayer\Website.url

C:\Users\manoweak\AppData\Local\ikqekgq.dat
C:\Users\manoweak\AppData\Local\ikqekgq_nav.dat
C:\Users\manoweak\AppData\Local\ikqekgq_navps.dat
C:\Users\manoweak\AppData\Local\zgrvinam.dat
C:\Users\manoweak\AppData\Local\zgrvinam_nav.dat
C:\Users\manoweak\AppData\Local\zgrvinam_navps.dat
==> EGDACCESS <==

--------------------\\ Cracks & Keygens ..

C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\Crack
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\gburner27.exe.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\The Sims 3 + MUI.iso.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\Crack\rld-sim3.exe.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\Crack\TS3.exe.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\124 Highbeach Court.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressbacktie.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afBodyDressBohemian.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressfluffygloves.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressfrontbow.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydresshalter.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydresshalterlong.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydresslongsideslit.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressmaxi.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressmodernlayers.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressopenback.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydresssimpleflair.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydressstrappy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydresssuntiesbeads.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodydresstennis.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodygownevening.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodyjacketpencilskirt.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbodyoutfitrocker.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottompantsbootcut_leather.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottompantsdresscuffed.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottompantshemzip.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottompantsyoga.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottomskirtmodernswirls.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottomskirtpencil_lacedup.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottomskirttiersdiag.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afbottomskirtvamp.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairbuckethatlong.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairbuckethatmed.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairbuckethatupdo.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairflatcaplong.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairflatcapmed.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairflatcapupdo.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairhighponytail.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairkhalil.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairlongwave.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairmaggi.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairponytailhigh.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afhairshortmatin.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopblousebohemianbow.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopblousecollarround.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopblousecorset.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopblousefrilly_necklace.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftophalterbeads.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftophalterurban.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopjacket34sleevebandcollar.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopjacketafternoon(0).Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopjacketafternoon.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afTopJacketClosed_quiltedLeather.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopjacketmilitary.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopshirtcollarsweaterround.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopshirtfitted_tank1.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopshirtshortsleevesweater.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\afTopShirtTee_crew1.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopshirttee_crewstore.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopshirtvamp_necklace.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopsweaterbohemian_necklace.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftopsweaterplungeback.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\aftoptanksport.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\ambodycoatlongmandarincollar.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\ambottomkiltbelts.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\ambottompantsbaggycargo_sporty.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\ambottompantsgenie.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\ambottompantskungfu.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\ambottompantsresort.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhairboaterhatemoboy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhairboaterhatshaggy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhaircleancut.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhairemoboy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhairnewsboycapnerd.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhairshaggy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amhairspikeysuav.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopblazerhoodie.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amTopBlazerTNeck.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopfleezezip.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtophenleyjohnnycollar.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtophenleylacedcollar.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopjacketbaseball.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopjacketcoatopen.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopjacketmandarincollar.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopjacketshirtuntucked_vest.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopjacketshirtupcollar_preppy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopshirtfitted_tank1.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopshirthenley.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopshirtshortsleevetie.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopshirttee_crewstore.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopteelongsleevescarf.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopvestshirttie.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\amtopvestteerolledsleeve.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\BaysideFullset.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Bayside_Fullset.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\CarExoticSuperCE.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\CarMuscle.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\CarPriusV.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cfhairmaggi.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairboaterhatemoboy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairboaterhatshaggy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairbuckethatcleancut.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairemoboy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairnewsboycapcleancut.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairshaggy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairsmallspike.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\cmhairspikeysuav.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\computerNaszaKlasa.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Contemporary Living{1}.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Crumble House.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\efbodyjacketpencilskirt.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\emtopblazertneck.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Flow house no fam.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Flow House.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\flowery garden(furnished).Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Hewnsman_Fullset.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\JinjaNinja's Hillside Manor.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\LightingTableHulaTiki.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Mirage Beach.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Modern loft Altea.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Monte Bianco.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\pmhairshaggy.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Ranch Inspired Home -fullyfurnished.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\RefrigeratorFanta.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\RiverbankLoft.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Riverview.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\sculptureFloorNaszaKlasa.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\sculptureTableNaszaKlasa.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\SculptureTableStatueTiki.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Storybook_Fullset.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\tfbodydresssuntiesbeads.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\tftopshirtteetank.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\Tiki_Fullset.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\Temp\The Sims 3 - Multi lang + crack\TS3 shop\water-front residence{1}.Sims3Pack.bc!
C:\Users\manoweak\AppData\Local\VirtualStore\Program Files\BitLord\Torrents\StyleXPInstallMale + Keygen_BY IULY69 AND BY www.newscine.helloweb.eu .rar.torrent
C:\Users\manoweak\AppData\Local\VirtualStore\Program Files\BitLord\Torrents\The Sims 3 - Multi lang + crack.torrent
C:\Users\manoweak\AppData\Local\VirtualStore\Program Files\BitLord\Torrents\The Sims 3 - Multi lang + crack[0].torrent
C:\Users\manoweak\AppData\Local\VirtualStore\Program Files\BitLord\Torrents\The Sims 3 - Multi lang + crack[0].xml
C:\Users\manoweak\AppData\Roaming\.ABC\torrent\[isoHunt] The Sims 3 - Multi lang crack-1.torrent
C:\Users\manoweak\AppData\Roaming\.ABC\torrent\[PC GAME] Assassins Creed (Full) + CRACK [mininova].torrent
C:\Users\manoweak\AppData\Roaming\.ABC\torrentinfo\[isoHunt] The Sims 3 - Multi lang crack-1.torrent.info
C:\Users\manoweak\AppData\Roaming\.ABC\torrentinfo\[PC GAME] Assassins Creed (Full) + CRACK [mininova].torrent.info
C:\Users\manoweak\Documents\Mes fichiers re‡us\Eminem Feat Dr. Dre & 50 Cent - Crack A Bottle.mp3
C:\Users\manoweak\Documents\Mes fichiers re‡us\LimeWire\Incomplete\LMN6QFVXCSKWRDHWQDDBWJUUZA4JPNNF\Medieval II Total War + Kingdoms\Crack
C:\Users\manoweak\Documents\Mes fichiers re‡us\LimeWire\Incomplete\LMN6QFVXCSKWRDHWQDDBWJUUZA4JPNNF\Medieval II Total War + Kingdoms\Crack\kingdoms.exe
C:\Users\manoweak\Documents\Mes fichiers re‡us\LimeWire\Incomplete\LMN6QFVXCSKWRDHWQDDBWJUUZA4JPNNF\Medieval II Total War + Kingdoms\Crack\medieval2.exe
C:\Users\manoweak\Downloads\eMule\Incoming\Fraps 2.9.1 [With Crack].zip


[ UAC => 1 ]


1 - "C:\ToolBar SD\TB_1.txt" - 02/07/2009|18:34 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 04/07/2009| 8:31 - Option : [2]

-----------\\ Fin du rapport a 8:31:14,71


j'ai pourtant supprimé tous les cracks , du moins ce que je voyais merci beaucoup pour tes reponses en tous cas !


Message édité par sourays le 04-07-2009 à 08:56:45
Répondre à sourays

Re,

 

Telecharge ATFcleaner sur ton Bureau.

 
  • Double-clique sur l'exécutable téléchargé.
  • Dans l'onglet Main, coche simplement la case Select All (toutes les cases vont se cocher) puis sur le bouton Empty Selected.
  • Si tu possèdes Firefox ou Opera comme navigateur, pense à choisir ton navigateur en haut a gauche avant de sélectionner Select All puis Empty Selected.
  • Puis réponds Non au message qui s'affiche, si tu ne souhaites pas perdre tes mots de passe.


Aide : Comment utiliser AFTCleaner.

 

&

 

Désactive l'UAC (Menu Démarrer \ Panneau de Configuration \ Comptes d'utilisateurs et protection des utilisateurs \ Comptes d'utilisateurs \ Activer ou désactiver le contrôle des comptes d'utilisateurs \ décoche la case Utiliser le contrôle ... et valide par OK , il te sera demandé de redémarrer, fais le)

 

Télécharge Navilog1 (d' IL-MAFIOSO) sur ton bureau.

 

/!\ Désactive ton Anti-virus , Anti-spyware , pare-feu /!\

 
  • Ensuite Clique droit sur navilog1.exe "(Lancer en tant qu'administrateur)" pour lancer l'installation.
  • Une fois l'installation terminée, double-clique sur le raccourci Navilog1 présent sur le bureau.
  • Laisse-toi guider. Appuie sur une touche quand on te le demande.
  • Au menu principal, choisis 1 et valide.


/!\ Ne fais pas le choix 2 /!\

 
  • Patiente le temps du scan. Il te sera peut-être demandé de redémarrer ton PC.
  • Laisse l'outil le faire automatiquement, sinon redémarre ton PC normalement s'il te le demande.


  • Patiente jusqu'au message "Scan terminé le......"
  • Appuie sur une touche comme demandé ; le bloc-notes va s'ouvrir.
  • Copie-colle l'intégralité dans ta réponse. Referme le bloc-notes.


Note : le rapport est, aussi, sauvegardé à la racine du disque dur C:\cleannavi.txt


Message édité par Angeldark le 04-07-2009 à 13:49:51
------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

re ,

Fix Navipromo version 4.0.0 commencé le 04/07/2009 à 14:56:24,63

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!

Outil exécuté depuis C:\Program Files\navilog1

Mise à jour le 19.06.2009 à 20h00 par IL-MAFIOSO

Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1
X86-based PC ( Multiprocessor Free : AMD Phenom(tm) 9500 Quad-Core Processor )
BIOS : Phoenix - AwardBIOS v6.00PG
USER : manoweak ( Administrator )
BOOT : Normal boot




C:\ (Local Disk) - NTFS - Total:144 Go (Free:29 Go)
D:\ (Local Disk) - NTFS - Total:144 Go (Free:97 Go)
E:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)


Recherche exécutée en mode normal

Nettoyage exécuté au redémarrage de l'ordinateur


c:\progra~2\micros~1\windows\startm~1\programs\InternetGamebox supprimé !
c:\progra~2\micros~1\windows\startm~1\programs\WebMediaPlayer supprimé !
C:\Users\manoweak\AppData\Local\virtualstore\Program Files\InternetGamebox supprimé !


Nettoyage contenu C:\Windows\Temp effectué !
Nettoyage contenu C:\Users\manoweak\AppData\Local\Temp effectué !


*** Sauvegarde du Registre vers dossier Safebackup ***

sauvegarde du Registre réalisée avec succès !

*** Nettoyage Registre ***

Nettoyage Registre Ok





*** Scan terminé le 04/07/2009 à 15:21:43,86 ***


sinon j'ai fais une annalyse avec malawarebytes et ca a trouvé 2keylogger adranax un truc comme ca j'lai ai supprimé

Répondre à sourays

Reposte un rapport Hijackthis.

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 23:44:35, on 05/07/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Teamspeak2_RC2\TeamSpeak.exe
C:\Windows\system32\conime.exe
C:\Program Files\Anti Keylogger Shield\AntiKeyloggerShield.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\mIRC\mirc.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.ask.com/?o=13928&l=dis
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.fr.acer.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_06\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send by Bluetooth - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tsinfo.htm
O8 - Extra context menu item: Send via &Message... - C:\Program Files\IVT Corporation\BlueSoleil\TransSend\IE\tssms.htm
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.srtest.com/srl_bin/sysreqlab3.cab
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/bina [...] b56986.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/bina [...] b56907.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe

--
End of file - 4842 bytes

Répondre à sourays

Re,

Choisis do a system scan only, coche ces lignes (si toujours présentes) :

R3 - URLSearchHook: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU)


Ferme toutes les applications en cours (particulièrement ton navigateur Internet).
Puis Fix Checked !

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

voila c'est fait , tu trouves que mon pc est propre maintenant ? en tous cas merci beaucoup pour ton aide

Répondre à sourays

Quel est ton antivirus par contre ?

------------------------------ Prévention & Protection||Vous m'aimez ? Cliquez :o
Répondre à Angeldark

euh j'en ai pas =x

Répondre à sourays

ok c'est fait ! alors c'est bon tu penses que mon pc est " propre " ?
merci encore !

Répondre à sourays

Bonjour,

Angeldark est en vacances, je reprends la désinfection.

  • Télécharge Malwarebytes' Anti-Malware (MBAM) sur ton Bureau.
  • Double-clique sur le fichier téléchargé pour lancer le processus d'installation.
  • Dans l'onglet Mise à jour, clique sur le bouton Recherche de mise à jour : si le pare-feu demande l'autorisation à MBAM de se connecter à Internet, accepte.
  • Une fois la mise à jour terminée, rends-toi dans l'onglet Recherche.
  • Sélectionne Exécuter un examen rapide.
  • Clique sur Rechercher. L'analyse démarre.
  • A la fin de l'analyse, un message s'affiche :
Citation :

L'examen s'est terminé normalement. Cliquez sur 'Afficher les résultats' pour afficher tous les objets trouvés.


  • Clique sur OK pour poursuivre. Si MBAM n'a rien trouvé, il te le dira aussi.
  • Ferme tes navigateurs.
  • Si des malwares ont été détectés, clique sur Afficher les résultats.
  • Sélectionne tout (ou laisse coché) et clique sur Supprimer la sélection, MBAM va détruire les fichiers et clés de registre infectés et en mettre une copie dans la quarantaine.
  • MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Copie-colle ce rapport dans ta prochaine réponse.

Répondre à Destrio5

yo

Malwarebytes' Anti-Malware 1.38
Version de la base de données: 2371
Windows 6.0.6001 Service Pack 1

11/07/2009 19:27:25
mbam-log-2009-07-11 (19-27-25).txt

Type de recherche: Examen rapide
Eléments examinés: 77660
Temps écoulé: 3 minute(s), 44 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 0
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)

Répondre à sourays

  • Double-clique sur l'icône d'Antivir (Parapluie) dans la barre des tâches.
  • Dans Antivir, choisis Outils puis Configuration.
  • Coche Mode Expert et coche Rech. Rootkit au dém. de la recherche à droite dans Autres réglages.
  • Fais un scan complet et poste le rapport.


Tutoriel : Scanner le(s) disque(s) dur(s)

Répondre à Destrio5

hello désolé j'etais pas chez moi je fais le scan et j'te poste ça à toute

Répondre à sourays
Tom's Guide > Forum > Sécurité - Virus > Keylogger
Aller à :

Il y a 2241 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.

Liens