Tom's Guide > Forum > Sécurité - Virus > Envoyer vers qui se bloque
Mot :    Pseudo :           
 

Bonjour
J'ai deux problèmes sur mon pc.
le premier est que quand je clique sur" Disque C " , il apparait une petite lampe qui cherche pensant au moins 1 a 2 minutes...... :(
le deuxième,
est que quand je fais un clic droit sur "envoyers vers", la page reste bloquée pendant 1 minute et pas de menu déroulant.... :(

Que se passe t-il?
je voudrais bien pouvoir réparer cela....

je vous remercie à l'avance de votre réponse.

Liens sponsorisés
Inscrivez-vous ou connectez-vous pour masquer ceci.

Bonjour,

(Sous Vista, il faut cliquer droit sur RSIT.exe et choisir Exécuter en tant qu'administrateur)

  • Clique sur Continue à l'écran Disclaimer.
  • Si l'outil HijackThis (version à jour) n'est pas présent ou non détecté sur l'ordinateur, RSIT le téléchargera (autorise l'accès dans ton pare-feu, si demandé) et tu devras accepter la licence.
  • Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront. Poste le contenu de log.txt (c'est celui qui apparaît à l'écran) ainsi que de info.txt (que tu verras dans la barre des tâches).


Note : les rapports sont sauvegardés dans le dossier C:\rsit.

Répondre à Destrio5

merci pour ton conseil,mais j'ai juste besoin de savoir comment " reediter la valeur sendto, je crois que c'est là que réside la solution

Répondre à omario_80

Quel est le rapport avec la section Sécurité - Virus dans ce cas ?

Répondre à Destrio5

je sais pas mais c'est ici que j'ai trouver une solution qui devera m'aider, mais je sais pas comment l'appliquer

""par hazard, j'ai juste reediter la valeur "sendto", et redemarrer mon PC pour faire disparaitre mon pb ""

c'est cette réponce que j'ai trouver , qlq avait le meme problème que moi

Répondre à omario_80

Oui, je suis tombé dessus aussi mais il n'a pas vraiment donné la réponse.

Répondre à Destrio5

oui,je sais pas trop se que c'est "réediter la valeur "sendto",je cherche depuis ce matin mais j'ai rien trouver

Répondre à omario_80

Tu devrais faire le scan que je t'ai proposé, je verrai peut-être quelque chose d'intéressant dans les rapports.

Répondre à Destrio5

Logfile of random's system information tool 1.06 (written by random/random)
Run by Administrateur at 2009-07-25 12:30:53
Microsoft Windows XP Professionnel Service Pack 2
System drive C: has 36 GB (93%) free of 38 GB
Total RAM: 503 MB (44% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:31:09, on 25/07/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\Program Files\Faronics\Deep Freeze\Install C-0\DF5Serv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\CafeAgent.exe
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\system32\CafeAgent.exe
C:\Program Files\ESET\ESET Smart Security\ekrn.exe
C:\Program Files\Faronics\Deep Freeze\Install C-0\_$Df\FrzState2k.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Internet Download Manager\IDMan.exe
C:\Program Files\Internet Download Manager\IEMonitor.exe
C:\Documents and Settings\Administrateur\Mes documents\Downloads\Programs\RSIT.exe
C:\Program Files\trend micro\Administrateur.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = wmplayer.exe //ICWLaunch
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: IDM Helper - {0055C089-8582-441B-A0BF-17B458C2A3A8} - C:\Program Files\Internet Download Manager\IDMIECC.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O4 - HKLM\..\Run: [CafeAgent] C:\WINDOWS\system32\CafeAgent.exe /normal
O4 - HKLM\..\Run: [egui] "C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
O4 - HKLM\..\RunServices: [CafeAgent] C:\WINDOWS\system32\CafeAgent.exe /normal
O4 - HKLM\..\RunOnce: [WIAWizardMenu] RUNDLL32.EXE C:\WINDOWS\system32\sti_ci.dll,WiaCreateWizardMenu
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [IDMan] C:\Program Files\Internet Download Manager\IDMan.exe /onboot
O8 - Extra context menu item: Download all links with IDM - C:\Program Files\Internet Download Manager\IEGetAll.htm
O8 - Extra context menu item: Download FLV video content with IDM - C:\Program Files\Internet Download Manager\IEGetVL.htm
O8 - Extra context menu item: Download with IDM - C:\Program Files\Internet Download Manager\IEExt.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: DfLogon - C:\WINDOWS\SYSTEM32\LogonDll.dll
O23 - Service: CafeAgent of CafeSuite (CafeAgent) - CafeSuite - C:\WINDOWS\system32\CafeAgent.exe
O23 - Service: DF5Serv - Faronics Corporation - C:\Program Files\Faronics\Deep Freeze\Install C-0\DF5Serv.exe
O23 - Service: ESET HTTP Server (EhttpSrv) - ESET - C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe

--
End of file - 4409 bytes

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0055C089-8582-441B-A0BF-17B458C2A3A8}]
IDMIEHlprObj Class - C:\Program Files\Internet Download Manager\IDMIECC.dll [2008-07-09 132528]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
AcroIEHlprObj Class - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll [2003-05-15 50376]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2008-11-07 1088296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll [2007-09-25 501136]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"CafeAgent"=C:\WINDOWS\system32\CafeAgent.exe [2005-06-09 543232]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2009-02-06 2021400]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"WIAWizardMenu"=C:\WINDOWS\system32\sti_ci.dll [2004-08-04 138240]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2004-08-04 15360]
"msnmsgr"=C:\Program Files\MSN Messenger\msnmsgr.exe [2009-07-14 7094272]
"IDMan"=C:\Program Files\Internet Download Manager\IDMan.exe [2009-07-14 2606512]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IDMan]
C:\Program Files\Internet Download Manager\IDMan.exe [2009-07-14 2606512]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxhkcmd]
C:\WINDOWS\system32\hkcmd.exe [2006-04-01 77824]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxpers]
C:\WINDOWS\system32\igfxpers.exe [2006-04-01 114688]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\igfxtray]
C:\WINDOWS\system32\igfxtray.exe [2006-04-01 94208]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
C:\Program Files\MSN Messenger\MsnMsgr.Exe [2009-07-14 7094272]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\WINDOWS\system32\NeroCheck.exe [2001-07-09 155648]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2008-11-07 21633320]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe [2007-09-25 132496]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Yahoo! Pager]
C:\PROGRA~1\Yahoo!\MESSEN~1\ypager.exe [2005-02-11 2506752]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\DfLogon]
C:\WINDOWS\system32\LogonDll.dll [2007-10-25 65536]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2006-04-01 135168]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=95000000
"NoDrives"=0
"NoViewOnDrive"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=
"NoViewOnDrive"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Yahoo!\Messenger\YPager.exe"="C:\Program Files\Yahoo!\Messenger\YPager.exe:*:Enabled:Yahoo! Messenger"
"C:\Program Files\Yahoo!\Messenger\YServer.exe"="C:\Program Files\Yahoo!\Messenger\YServer.exe:*:Enabled:Yahoo! FT Server"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 7.5"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:MSN Messenger 7.5"

======List of files/folders created in the last 1 months======

2009-07-25 12:30:54 ----D---- C:\Program Files\trend micro
2009-07-25 12:30:53 ----D---- C:\rsit
2009-07-25 12:29:21 ----D---- C:\Documents and Settings\Administrateur\Application Data\Adobe
2009-07-25 10:50:35 ----A---- C:\WINDOWS\ntbtlog.txt
2009-07-24 11:02:54 ----D---- C:\Documents and Settings\Administrateur\Application Data\ESET
2009-07-24 10:52:51 ----D---- C:\Program Files\ESET
2009-07-16 01:35:05 ----A---- C:\WINDOWS\system32\devil.dll
2009-07-16 01:35:03 ----A---- C:\WINDOWS\system32\avisynth.dll
2009-07-16 01:35:00 ----D---- C:\Program Files\Video Convert Master
2009-07-14 00:39:39 ----A---- C:\WINDOWS\system32\LogonDll.dll
2009-07-14 00:39:38 ----D---- C:\Program Files\Faronics
2009-07-14 00:36:25 ----A---- C:\WINDOWS\system32\CafeAgent.ini
2009-07-14 00:36:25 ----A---- C:\WINDOWS\system32\CafeAgent.exe
2009-07-14 00:32:17 ----D---- C:\WINDOWS\pss
2009-07-14 00:32:08 ----D---- C:\Program Files\Marsu-Fix
2009-07-14 00:32:08 ----A---- C:\WINDOWS\Marsu-Fix Uninstaller.exe
2009-07-14 00:30:21 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2009-07-14 00:30:03 ----D---- C:\Documents and Settings\All Users\Application Data\ESET
2009-07-14 00:28:16 ----D---- C:\Documents and Settings\Administrateur\Application Data\Mozilla
2009-07-14 00:28:15 ----D---- C:\Program Files\Mozilla Firefox
2009-07-14 00:27:45 ----SHD---- C:\RECYCLER
2009-07-14 00:27:15 ----D---- C:\Program Files\MSN Messenger
2009-07-14 00:26:32 ----D---- C:\Program Files\Camfrog
2009-07-14 00:26:27 ----D---- C:\Program Files\Skype
2009-07-14 00:26:27 ----D---- C:\Program Files\Fichiers communs\Skype
2009-07-14 00:24:51 ----A---- C:\WINDOWS\system32\javaws.exe
2009-07-14 00:24:51 ----A---- C:\WINDOWS\system32\javaw.exe
2009-07-14 00:24:51 ----A---- C:\WINDOWS\system32\java.exe
2009-07-14 00:24:23 ----D---- C:\Program Files\Java
2009-07-14 00:24:19 ----D---- C:\Program Files\Fichiers communs\Java
2009-07-14 00:24:19 ----D---- C:\Documents and Settings\Administrateur\Application Data\Macromedia
2009-07-14 00:24:10 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2009-07-14 00:23:59 ----D---- C:\Program Files\Yahoo!
2009-07-14 00:23:58 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2009-07-14 00:23:58 ----A---- C:\WINDOWS\system32\pndx5032.dll
2009-07-14 00:23:58 ----A---- C:\WINDOWS\system32\pndx5016.dll
2009-07-14 00:23:58 ----A---- C:\WINDOWS\system32\pncrt.dll
2009-07-14 00:23:57 ----A---- C:\WINDOWS\system32\msvcp71.dll
2009-07-14 00:23:56 ----D---- C:\Program Files\Real Alternative
2009-07-14 00:23:56 ----D---- C:\Documents and Settings\All Users\Application Data\Real
2009-07-14 00:23:56 ----D---- C:\Documents and Settings\Administrateur\Application Data\Real
2009-07-14 00:23:42 ----A---- C:\WINDOWS\system32\unrar.dll
2009-07-14 00:23:42 ----A---- C:\WINDOWS\avisplitter.ini
2009-07-14 00:23:40 ----A---- C:\WINDOWS\system32\yv12vfw.dll
2009-07-14 00:23:40 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2009-07-14 00:23:40 ----A---- C:\WINDOWS\system32\xvidcore.dll
2009-07-14 00:23:39 ----A---- C:\WINDOWS\system32\qt-dx331.dll
2009-07-14 00:23:39 ----A---- C:\WINDOWS\system32\dpl100.dll
2009-07-14 00:23:39 ----A---- C:\WINDOWS\system32\divx.dll
2009-07-14 00:23:38 ----A---- C:\WINDOWS\system32\ff_vfw.dll.manifest
2009-07-14 00:23:38 ----A---- C:\WINDOWS\system32\ff_vfw.dll
2009-07-14 00:23:36 ----D---- C:\Program Files\K-Lite Codec Pack
2009-07-14 00:23:36 ----A---- C:\WINDOWS\system32\msvcr71.dll
2009-07-14 00:23:13 ----D---- C:\Documents and Settings\Administrateur\Application Data\Sun
2009-07-14 00:23:05 ----A---- C:\WINDOWS\system32\BASSMOD.dll
2009-07-14 00:22:59 ----D---- C:\Documents and Settings\Administrateur\Application Data\IDM
2009-07-14 00:22:58 ----D---- C:\Documents and Settings\Administrateur\Application Data\DMCache
2009-07-14 00:22:56 ----D---- C:\Program Files\Internet Download Manager
2009-07-14 00:15:42 ----RA---- C:\WINDOWS\system32\igfxres.dll
2009-07-14 00:09:37 ----RA---- C:\WINDOWS\system32\ialmuTRK.dll
2009-07-14 00:09:37 ----RA---- C:\WINDOWS\system32\ialmuTHA.dll
2009-07-14 00:09:37 ----RA---- C:\WINDOWS\system32\ialmuSVE.dll
2009-07-14 00:09:37 ----RA---- C:\WINDOWS\system32\ialmuRUS.dll
2009-07-14 00:09:37 ----RA---- C:\WINDOWS\system32\ialmuPTG.dll
2009-07-14 00:09:37 ----RA---- C:\WINDOWS\system32\ialmuPTB.dll
2009-07-14 00:09:37 ----RA---- C:\WINDOWS\system32\ialmuPLK.dll
2009-07-14 00:09:37 ----RA---- C:\WINDOWS\system32\ialmuNOR.dll
2009-07-14 00:09:37 ----RA---- C:\WINDOWS\system32\ialmuNLD.dll
2009-07-14 00:09:37 ----RA---- C:\WINDOWS\system32\iAlmCoIn_v4363.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuKOR.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuJPN.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuITA.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuHUN.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuHEB.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuFRC.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuFRA.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuFIN.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuESP.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuENG.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuELL.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmudlg.exe
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuDEU.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuDAN.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuCSY.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuCHT.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuCHS.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuARB.dll
2009-07-14 00:09:36 ----RA---- C:\WINDOWS\system32\ialmuARA.dll
2009-07-14 00:09:35 ----RA---- C:\WINDOWS\system32\igldev32.dll
2009-07-14 00:09:34 ----RA---- C:\WINDOWS\system32\iglicd32.dll
2009-07-14 00:09:34 ----RA---- C:\WINDOWS\system32\igfxext.exe
2009-07-14 00:09:34 ----RA---- C:\WINDOWS\system32\igfxexps.dll
2009-07-14 00:09:34 ----RA---- C:\WINDOWS\system32\ialmrem.dll
2009-07-14 00:09:31 ----RA---- C:\WINDOWS\system32\igfxpers.exe
2009-07-14 00:09:30 ----RA---- C:\WINDOWS\system32\igfxress.dll
2009-07-14 00:09:30 ----RA---- C:\WINDOWS\system32\hkcmd.exe
2009-07-14 00:09:29 ----RA---- C:\WINDOWS\system32\igfxzoom.exe
2009-07-14 00:09:29 ----RA---- C:\WINDOWS\system32\igfxtray.exe
2009-07-14 00:09:29 ----RA---- C:\WINDOWS\system32\igfxdo.dll
2009-07-14 00:09:29 ----RA---- C:\WINDOWS\system32\igfxdev.dll
2009-07-14 00:09:29 ----RA---- C:\WINDOWS\system32\igfxcfg.exe
2009-07-14 00:09:28 ----RA---- C:\WINDOWS\system32\igfxsrvc.exe
2009-07-14 00:09:28 ----RA---- C:\WINDOWS\system32\igfxsrvc.dll
2009-07-14 00:09:28 ----RA---- C:\WINDOWS\system32\igfxpph.dll
2009-07-14 00:09:28 ----RA---- C:\WINDOWS\system32\hccutils.dll
2009-07-14 00:09:26 ----RA---- C:\WINDOWS\system32\ialmrnt5.dll
2009-07-14 00:09:26 ----RA---- C:\WINDOWS\system32\ialmdnt5.dll
2009-07-14 00:09:26 ----RA---- C:\WINDOWS\system32\ialmdev5.dll
2009-07-14 00:09:26 ----RA---- C:\WINDOWS\system32\ialmdd5.dll
2009-07-14 00:07:49 ----RA---- C:\WINDOWS\system32\a3d.dll
2009-07-14 00:07:46 ----A---- C:\WINDOWS\system32\ksuser.dll
2009-07-13 23:54:04 ----D---- C:\Documents and Settings\Administrateur\Application Data\Identities
2009-07-13 23:54:02 ----HD---- C:\Program Files\Uninstall Information
2009-07-13 23:53:30 ----D---- C:\WINDOWS\RegisteredPackages
2009-07-13 23:53:29 ----D---- C:\Program Files\Windows Media Player
2009-07-13 23:53:17 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2009-07-13 23:53:16 ----D---- C:\Program Files\Adobe
2009-07-13 23:52:32 ----D---- C:\WINDOWS\Cache
2009-07-13 23:52:04 ----N---- C:\WINDOWS\system32\TwnLib4.dll
2009-07-13 23:52:04 ----N---- C:\WINDOWS\system32\picn20.dll
2009-07-13 23:52:04 ----N---- C:\WINDOWS\system32\ImagXRA7.dll
2009-07-13 23:52:04 ----N---- C:\WINDOWS\system32\ImagXR7.dll
2009-07-13 23:52:04 ----N---- C:\WINDOWS\system32\ImagXpr7.dll
2009-07-13 23:52:04 ----N---- C:\WINDOWS\system32\ImagX7.dll
2009-07-13 23:52:04 ----D---- C:\Program Files\Fichiers communs\Ahead
2009-07-13 23:52:04 ----A---- C:\WINDOWS\system32\TwnLib20.dll
2009-07-13 23:52:04 ----A---- C:\WINDOWS\system32\NeroCheck.exe
2009-07-13 23:52:01 ----D---- C:\Program Files\Ahead
2009-07-13 23:51:45 ----D---- C:\Documents and Settings\All Users\Application Data\CyberLink
2009-07-13 23:51:42 ----HD---- C:\Program Files\InstallShield Installation Information
2009-07-13 23:51:42 ----D---- C:\Program Files\CyberLink
2009-07-13 23:51:39 ----D---- C:\Program Files\Fichiers communs\InstallShield
2009-07-13 23:51:38 ----D---- C:\Program Files\WinRAR
2009-07-13 23:51:35 ----SD---- C:\Documents and Settings\Administrateur\Application Data\Microsoft
2009-07-13 23:51:35 ----ASH---- C:\Documents and Settings\Administrateur\Application Data\desktop.ini
2009-07-13 23:51:29 ----D---- C:\WINDOWS\SoftwareDistribution
2009-07-13 23:51:27 ----SD---- C:\WINDOWS\system32\Microsoft
2009-07-13 23:51:27 ----D---- C:\WINDOWS\Prefetch
2009-07-13 23:51:27 ----A---- C:\WINDOWS\SchedLgU.Txt
2009-07-13 23:50:19 ----A---- C:\WINDOWS\control.ini
2009-07-13 23:50:19 ----A---- C:\AUTOEXEC.BAT
2009-07-13 23:50:17 ----A---- C:\WINDOWS\OEWABLog.txt
2009-07-13 23:50:11 ----A---- C:\WINDOWS\system32\mapi32.dll
2009-07-13 23:49:17 ----SD---- C:\WINDOWS\Downloaded Program Files
2009-07-13 23:49:17 ----RD---- C:\WINDOWS\Offline Web Pages
2009-07-13 23:49:17 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2009-07-13 23:49:11 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2009-07-13 23:49:07 ----HD---- C:\Program Files\WindowsUpdate
2009-07-13 23:49:04 ----D---- C:\Program Files\Services en ligne
2009-07-13 23:48:53 ----D---- C:\WINDOWS\system32\DirectX
2009-07-13 23:48:41 ----A---- C:\WINDOWS\system32\atrace.dll
2009-07-13 23:48:39 ----A---- C:\WINDOWS\system32\desktop.ini
2009-07-13 23:48:39 ----A---- C:\WINDOWS\desktop.ini
2009-07-13 23:48:34 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2009-07-13 23:48:33 ----D---- C:\Program Files\Fichiers communs\Services
2009-07-13 23:48:33 ----A---- C:\WINDOWS\system32\acctres.dll
2009-07-13 23:48:31 ----SD---- C:\WINDOWS\Tasks
2009-07-13 23:48:31 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2009-07-13 23:48:30 ----D---- C:\Program Files\Fichiers communs\MSSoap
2009-07-13 23:48:29 ----D---- C:\WINDOWS\system32\Macromed
2009-07-13 23:48:29 ----A---- C:\WINDOWS\system32\wuweb.dll
2009-07-13 23:48:29 ----A---- C:\WINDOWS\system32\wucltui.dll
2009-07-13 23:48:29 ----A---- C:\WINDOWS\system32\wuauserv.dll
2009-07-13 23:48:29 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2009-07-13 23:48:28 ----A---- C:\WINDOWS\system32\wups.dll
2009-07-13 23:48:28 ----A---- C:\WINDOWS\system32\wuaueng.dll
2009-07-13 23:48:28 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2009-07-13 23:48:28 ----A---- C:\WINDOWS\system32\wuauclt.exe
2009-07-13 23:48:28 ----A---- C:\WINDOWS\system32\wuapi.dll
2009-07-13 23:48:28 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2009-07-13 23:48:28 ----A---- C:\WINDOWS\system32\qmgr.dll
2009-07-13 23:48:28 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2009-07-13 23:48:28 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2009-07-13 23:48:25 ----D---- C:\Program Files\Movie Maker
2009-07-13 23:48:22 ----A---- C:\WINDOWS\system32\safrslv.dll
2009-07-13 23:48:22 ----A---- C:\WINDOWS\system32\safrdm.dll
2009-07-13 23:48:22 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2009-07-13 23:48:22 ----A---- C:\WINDOWS\system32\racpldlg.dll
2009-07-13 23:48:20 ----A---- C:\WINDOWS\system32\fltMc.exe
2009-07-13 23:48:20 ----A---- C:\WINDOWS\system32\fltlib.dll
2009-07-13 23:48:19 ----D---- C:\WINDOWS\system32\Restore
2009-07-13 23:48:19 ----A---- C:\WINDOWS\system32\srrstr.dll
2009-07-13 23:48:19 ----A---- C:\WINDOWS\system32\srclient.dll
2009-07-13 23:48:19 ----A---- C:\WINDOWS\system32\ils.dll
2009-07-13 23:48:18 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2009-07-13 23:48:18 ----A---- C:\WINDOWS\system32\msconf.dll
2009-07-13 23:48:18 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2009-07-13 23:48:18 ----A---- C:\WINDOWS\system32\mnmdd.dll
2009-07-13 23:48:18 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2009-07-13 23:48:16 ----D---- C:\Program Files\NetMeeting
2009-07-13 23:48:16 ----A---- C:\WINDOWS\system32\msoert2.dll
2009-07-13 23:48:16 ----A---- C:\WINDOWS\system32\msoeacct.dll
2009-07-13 23:48:16 ----A---- C:\WINDOWS\system32\inetres.dll
2009-07-13 23:48:15 ----A---- C:\WINDOWS\system32\inetcomm.dll
2009-07-13 23:48:14 ----D---- C:\Program Files\Outlook Express
2009-07-13 23:48:14 ----A---- C:\WINDOWS\system32\mstinit.exe
2009-07-13 23:48:14 ----A---- C:\WINDOWS\system32\mstask.dll
2009-07-13 23:48:14 ----A---- C:\WINDOWS\system32\icwphbk.dll
2009-07-13 23:48:14 ----A---- C:\WINDOWS\system32\icwdial.dll
2009-07-13 23:48:13 ----A---- C:\WINDOWS\system32\isign32.dll
2009-07-13 23:48:13 ----A---- C:\WINDOWS\system32\inetcfg.dll
2009-07-13 23:48:09 ----D---- C:\Program Files\Fichiers communs\System
2009-07-13 23:48:09 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
2009-07-13 23:48:08 ----D---- C:\Program Files\Internet Explorer
2009-07-13 23:47:34 ----D---- C:\Program Files\ComPlus Applications
2009-07-13 23:47:32 ----A---- C:\WINDOWS\vbaddin.ini
2009-07-13 23:47:32 ----A---- C:\WINDOWS\vb.ini
2009-07-13 23:47:27 ----D---- C:\WINDOWS\Registration
2009-07-13 23:47:14 ----D---- C:\Program Files\Messenger
2009-07-13 23:47:11 ----D---- C:\Program Files\MSN Gaming Zone
2009-07-13 23:47:03 ----A---- C:\WINDOWS\system32\getuname.dll
2009-07-13 23:47:03 ----A---- C:\WINDOWS\system32\charmap.exe
2009-07-13 23:47:03 ----A---- C:\WINDOWS\system32\calc.exe
2009-07-13 23:47:02 ----A---- C:\WINDOWS\system32\winmine.exe
2009-07-13 23:47:02 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2009-07-13 23:47:02 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2009-07-13 23:47:02 ----A---- C:\WINDOWS\system32\tslabels.ini
2009-07-13 23:47:02 ----A---- C:\WINDOWS\system32\tskill.exe
2009-07-13 23:47:02 ----A---- C:\WINDOWS\system32\sol.exe
2009-07-13 23:47:02 ----A---- C:\WINDOWS\system32\reset.exe
2009-07-13 23:47:02 ----A---- C:\WINDOWS\system32\mshearts.exe
2009-07-13 23:47:02 ----A---- C:\WINDOWS\system32\freecell.exe
2009-07-13 23:47:01 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2009-07-13 23:47:01 ----A---- C:\WINDOWS\system32\tscon.exe
2009-07-13 23:47:01 ----A---- C:\WINDOWS\system32\shadow.exe
2009-07-13 23:47:01 ----A---- C:\WINDOWS\system32\rwinsta.exe
2009-07-13 23:47:01 ----A---- C:\WINDOWS\system32\regini.exe
2009-07-13 23:47:01 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2009-07-13 23:47:01 ----A---- C:\WINDOWS\system32\qwinsta.exe
2009-07-13 23:47:01 ----A---- C:\WINDOWS\system32\qappsrv.exe
2009-07-13 23:47:01 ----A---- C:\WINDOWS\system32\msg.exe
2009-07-13 23:47:01 ----A---- C:\WINDOWS\system32\logoff.exe
2009-07-13 23:47:01 ----A---- C:\WINDOWS\system32\cdmodem.dll
2009-07-13 23:47:00 ----A---- C:\WINDOWS\system32\stclient.dll
2009-07-13 23:47:00 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2009-07-13 23:47:00 ----A---- C:\WINDOWS\system32\mtxex.dll
2009-07-13 23:47:00 ----A---- C:\WINDOWS\system32\mtxdm.dll
2009-07-13 23:47:00 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2009-07-13 23:47:00 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2009-07-13 23:47:00 ----A---- C:\WINDOWS\system32\comrepl.dll
2009-07-13 23:47:00 ----A---- C:\WINDOWS\system32\comaddin.dll
2009-07-13 23:46:59 ----A---- C:\WINDOWS\system32\comsnap.dll
2009-07-13 23:46:55 ----D---- C:\Program Files\Windows NT
2009-07-13 23:46:55 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2009-07-13 23:46:55 ----A---- C:\WINDOWS\system32\spider.exe
2009-07-13 23:46:55 ----A---- C:\WINDOWS\system32\sndrec32.exe
2009-07-13 23:46:55 ----A---- C:\WINDOWS\system32\mspaint.exe
2009-07-13 23:46:55 ----A---- C:\WINDOWS\system32\mplay32.exe
2009-07-13 23:46:55 ----A---- C:\WINDOWS\system32\clipbrd.exe
2009-07-13 23:46:54 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2009-07-13 23:46:54 ----A---- C:\WINDOWS\system32\remotepg.dll
2009-07-13 23:46:54 ----A---- C:\WINDOWS\system32\rdshost.exe
2009-07-13 23:46:54 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2009-07-13 23:46:54 ----A---- C:\WINDOWS\system32\mstscax.dll
2009-07-13 23:46:54 ----A---- C:\WINDOWS\system32\mstsc.exe
2009-07-13 23:46:53 ----D---- C:\WINDOWS\system32\MsDtc
2009-07-13 23:46:53 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2009-07-13 23:46:53 ----A---- C:\WINDOWS\system32\termsrv.dll
2009-07-13 23:46:53 ----A---- C:\WINDOWS\system32\sessmgr.exe
2009-07-13 23:46:53 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2009-07-13 23:46:53 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2009-07-13 23:46:53 ----A---- C:\WINDOWS\system32\rdpclip.exe
2009-07-13 23:46:53 ----A---- C:\WINDOWS\system32\rdchost.dll
2009-07-13 23:46:53 ----A---- C:\WINDOWS\system32\qprocess.exe
2009-07-13 23:46:53 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2009-07-13 23:46:53 ----A---- C:\WINDOWS\system32\icaapi.dll
2009-07-13 23:46:53 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2009-07-13 23:46:52 ----A---- C:\WINDOWS\system32\xolehlp.dll
2009-07-13 23:46:52 ----A---- C:\WINDOWS\system32\mtxoci.dll
2009-07-13 23:46:52 ----A---- C:\WINDOWS\system32\msdtctm.dll
2009-07-13 23:46:52 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2009-07-13 23:46:52 ----A---- C:\WINDOWS\system32\msdtclog.dll
2009-07-13 23:46:52 ----A---- C:\WINDOWS\system32\msdtc.exe
2009-07-13 23:46:51 ----D---- C:\WINDOWS\system32\Com
2009-07-13 23:46:51 ----A---- C:\WINDOWS\system32\comuid.dll
2009-07-13 23:46:51 ----A---- C:\WINDOWS\system32\comsvcs.dll
2009-07-13 23:46:51 ----A---- C:\WINDOWS\system32\colbact.dll
2009-07-13 23:46:51 ----A---- C:\WINDOWS\system32\clbcatex.dll
2009-07-13 23:46:51 ----A---- C:\WINDOWS\system32\catsrvut.dll
2009-07-13 23:46:51 ----A---- C:\WINDOWS\system32\catsrvps.dll
2009-07-13 23:46:51 ----A---- C:\WINDOWS\system32\catsrv.dll
2009-07-13 23:46:50 ----A---- C:\WINDOWS\system32\clbcatq.dll
2009-07-13 23:46:45 ----A---- C:\WINDOWS\system32\servdeps.dll
2009-07-13 23:46:45 ----A---- C:\WINDOWS\system32\mmfutil.dll
2009-07-13 23:46:45 ----A---- C:\WINDOWS\system32\licwmi.dll
2009-07-13 23:46:45 ----A---- C:\WINDOWS\system32\cmprops.dll
2009-07-13 23:46:04 ----A---- C:\WINDOWS\system32\h323log.txt
2009-07-13 23:44:41 ----A---- C:\WINDOWS\system32\usbui.dll
2009-07-13 23:43:43 ----SHD---- C:\WINDOWS\Installer
2009-07-13 23:43:43 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2009-07-13 23:43:42 ----RD---- C:\Program Files
2009-07-13 23:43:42 ----D---- C:\Program Files\Fichiers communs\ODBC
2009-07-13 23:43:42 ----D---- C:\Program Files\Fichiers communs
2009-07-13 23:43:42 ----A---- C:\WINDOWS\ODBCINST.INI
2009-07-13 23:43:41 ----RA---- C:\WINDOWS\system32\kbdarmw.dll
2009-07-13 23:43:41 ----RA---- C:\WINDOWS\system32\kbdarme.dll
2009-07-13 23:43:37 ----RA---- C:\WINDOWS\system32\kbdurdu.dll
2009-07-13 23:43:37 ----RA---- C:\WINDOWS\system32\kbdsyr2.dll
2009-07-13 23:43:37 ----RA---- C:\WINDOWS\system32\kbdsyr1.dll
2009-07-13 23:43:37 ----RA---- C:\WINDOWS\system32\kbdfa.dll
2009-07-13 23:43:37 ----RA---- C:\WINDOWS\system32\kbddiv2.dll
2009-07-13 23:43:37 ----RA---- C:\WINDOWS\system32\kbddiv1.dll
2009-07-13 23:43:37 ----RA---- C:\WINDOWS\system32\kbda3.dll
2009-07-13 23:43:37 ----RA---- C:\WINDOWS\system32\kbda2.dll
2009-07-13 23:43:37 ----RA---- C:\WINDOWS\system32\kbda1.dll
2009-07-13 23:43:37 ----A---- C:\WINDOWS\system32\kbdusa.dll
2009-07-13 23:43:35 ----RA---- C:\WINDOWS\system32\kbdycl.dll
2009-07-13 23:43:35 ----RA---- C:\WINDOWS\system32\kbdsl1.dll
2009-07-13 23:43:35 ----RA---- C:\WINDOWS\system32\kbdsl.dll
2009-07-13 23:43:35 ----RA---- C:\WINDOWS\system32\kbdro.dll
2009-07-13 23:43:35 ----RA---- C:\WINDOWS\system32\kbdpl1.dll
2009-07-13 23:43:35 ----RA---- C:\WINDOWS\system32\kbdpl.dll
2009-07-13 23:43:35 ----RA---- C:\WINDOWS\system32\kbdhu1.dll
2009-07-13 23:43:35 ----RA---- C:\WINDOWS\system32\kbdhu.dll
2009-07-13 23:43:35 ----RA---- C:\WINDOWS\system32\kbdcz2.dll
2009-07-13 23:43:35 ----RA---- C:\WINDOWS\system32\kbdcz1.dll
2009-07-13 23:43:35 ----RA---- C:\WINDOWS\system32\kbdcz.dll
2009-07-13 23:43:35 ----RA---- C:\WINDOWS\system32\kbdcr.dll
2009-07-13 23:43:35 ----RA---- C:\WINDOWS\system32\KBDAL.DLL
2009-07-13 23:43:32 ----A---- C:\WINDOWS\system32\irclass.dll
2009-07-13 23:43:32 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2009-07-13 23:43:31 ----A---- C:\WINDOWS\system32\spxcoins.dll
2009-07-13 23:43:31 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2009-07-13 23:43:31 ----A---- C:\WINDOWS\system32\dgsetup.dll
2009-07-13 23:43:30 ----N---- C:\WINDOWS\system32\CONFIG.TMP
2009-07-13 23:43:30 ----A---- C:\WINDOWS\TASKMAN.EXE
2009-07-13 23:43:29 ----A---- C:\WINDOWS\system32\batt.dll
2009-07-13 23:43:29 ----A---- C:\WINDOWS\NOTEPAD.EXE
2009-07-13 23:43:28 ----A---- C:\WINDOWS\system32\storprop.dll
2009-07-13 23:43:21 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
2009-07-13 23:43:17 ----RA---- C:\WINDOWS\SET8.tmp
2009-07-13 23:43:15 ----RA---- C:\WINDOWS\SET4.tmp
2009-07-13 23:43:14 ----RA---- C:\WINDOWS\SET3.tmp
2009-07-13 23:43:09 ----D---- C:\WINDOWS\system32\CatRoot2
2009-07-13 23:43:09 ----D---- C:\WINDOWS\system32\CatRoot
2009-07-13 23:43:03 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2009-07-13 23:42:48 ----A---- C:\WINDOWS\setuplog.txt
2009-07-13 23:42:44 ----D---- C:\Documents and Settings
2009-07-13 23:42:43 ----SHD---- C:\System Volume Information
2009-07-13 23:42:10 ----SH---- C:\boot.ini
2009-07-13 23:38:30 ----RSHDC---- C:\WINDOWS\system32\dllcache
2009-07-13 23:38:30 ----RSD---- C:\WINDOWS\Fonts
2009-07-13 23:38:30 ----RD---- C:\WINDOWS\Web
2009-07-13 23:38:30 ----HD---- C:\WINDOWS\inf
2009-07-13 23:38:30 ----D---- C:\WINDOWS\WinSxS
2009-07-13 23:38:30 ----D---- C:\WINDOWS\twain_32
2009-07-13 23:38:30 ----D---- C:\WINDOWS\Temp
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\wins
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\wbem
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\usmt
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\spool
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\ShellExt
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\Setup
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\ras
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\oobe
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\npp
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\mui
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\inetsrv
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\IME
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\icsxml
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\ias
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\export
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\drivers
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\dhcp
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\config
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\3com_dmi
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\3076
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\2052
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\1054
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\1042
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\1041
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\1037
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\1036
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\1033
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\1031
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\1028
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32\1025
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system32
2009-07-13 23:38:30 ----D---- C:\WINDOWS\system
2009-07-13 23:38:30 ----D---- C:\WINDOWS\security
2009-07-13 23:38:30 ----D---- C:\WINDOWS\Resources
2009-07-13 23:38:30 ----D---- C:\WINDOWS\repair
2009-07-13 23:38:30 ----D---- C:\WINDOWS\Provisioning
2009-07-13 23:38:30 ----D---- C:\WINDOWS\PeerNet
2009-07-13 23:38:30 ----D---- C:\WINDOWS\pchealth
2009-07-13 23:38:30 ----D---- C:\WINDOWS\NLDRV
2009-07-13 23:38:30 ----D---- C:\WINDOWS\mui
2009-07-13 23:38:30 ----D---- C:\WINDOWS\msapps
2009-07-13 23:38:30 ----D---- C:\WINDOWS\msagent
2009-07-13 23:38:30 ----D---- C:\WINDOWS\Media
2009-07-13 23:38:30 ----D---- C:\WINDOWS\java
2009-07-13 23:38:30 ----D---- C:\WINDOWS\ime
2009-07-13 23:38:30 ----D---- C:\WINDOWS\Help
2009-07-13 23:38:30 ----D---- C:\WINDOWS\ehome
2009-07-13 23:38:30 ----D---- C:\WINDOWS\Driver Cache
2009-07-13 23:38:30 ----D---- C:\WINDOWS\Debug
2009-07-13 23:38:30 ----D---- C:\WINDOWS\Cursors
2009-07-13 23:38:30 ----D---- C:\WINDOWS\Connection Wizard
2009-07-13 23:38:30 ----D---- C:\WINDOWS\Config
2009-07-13 23:38:30 ----D---- C:\WINDOWS\AppPatch
2009-07-13 23:38:30 ----D---- C:\WINDOWS\addins
2009-07-13 23:38:30 ----D---- C:\WINDOWS

======List of files/folders modified in the last 1 months======

2009-07-14 00:32:21 ----A---- C:\WINDOWS\win.ini
2009-07-14 00:32:21 ----A---- C:\WINDOWS\system.ini

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2009-02-06 106208]
R1 epfwtdi;epfwtdi; C:\WINDOWS\system32\DRIVERS\epfwtdi.sys [2009-02-06 56280]
R1 intelppm;Pilote de processeur Intel; C:\WINDOWS\system32\DRIVERS\intelppm.sys [2004-08-04 40320]
R2 eamon;eamon; C:\WINDOWS\system32\DRIVERS\eamon.sys [2009-02-06 113448]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2009-02-06 130952]
R3 aeaudio;aeaudio; C:\WINDOWS\system32\drivers\aeaudio.sys [2006-04-01 100224]
R3 b57w2k;Broadcom NetXtreme Gigabit Ethernet; C:\WINDOWS\system32\DRIVERS\b57xp32.sys [2006-04-01 134272]
R3 Epfwndis;Eset Personal Firewall; C:\WINDOWS\system32\DRIVERS\Epfwndis.sys [2009-02-06 33096]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2006-04-01 1049180]
R3 Pcouffin;Low level access layer for CD devices; C:\WINDOWS\System32\Drivers\Pcouffin.sys [2009-07-16 47360]
R3 smwdm;smwdm; C:\WINDOWS\system32\drivers\smwdm.sys [2006-04-01 578304]
R3 usbehci;Pilote miniport de contrôleur d'hôte amélioré Microsoft USB 2.0; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2004-08-03 26624]
R3 usbhub;Concentrateur USB2; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2004-08-03 57600]
R3 usbuhci;Pilote miniport de contrôleur hôte universel USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2004-08-03 20480]
S3 CCDECODE;Décodeur sous-titre fermé; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2004-08-03 17024]
S3 MSTEE;Convertisseur en T/site-à-site de répartition Microsoft; C:\WINDOWS\system32\drivers\MSTEE.sys [2004-08-03 5504]
S3 NABTSFEC;Codec NABTS/FEC VBI; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2004-08-03 85376]
S3 NdisIP;Connection TV/vidéo Microsoft; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2004-08-03 10880]
S3 SLIP;Détrameur décalage BDA; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2004-08-03 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2004-08-03 15360]
S3 usbccgp;Pilote parent générique USB Microsoft; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 usbvideo;Périphérique vidéo USB (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2004-08-03 78464]
S3 WSTCODEC;Codec Teletext standard; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2004-08-03 19328]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 CafeAgent;CafeAgent of CafeSuite; C:\WINDOWS\system32\CafeAgent.exe [2005-06-09 543232]
R2 DF5Serv;DF5Serv; C:\Program Files\Faronics\Deep Freeze\Install C-0\DF5Serv.exe [2007-10-25 430080]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2009-02-06 727720]
R2 UMWdf;Windows User Mode Driver Framework; C:\WINDOWS\system32\wdfmgr.exe [2004-08-10 38912]
S3 EhttpSrv;ESET HTTP Server; C:\Program Files\ESET\ESET Smart Security\EHttpSrv.exe [2009-02-06 20680]

-----------------EOF-----------------

Répondre à omario_80

info.txt logfile of random's system information tool 1.06 2009-07-25 12:31:11

======Uninstall list======

-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Adobe Flash Player 9 ActiveX-->MsiExec.exe /X{BB65C393-C76E-4F06-9B0C-2124AA8AF97B}
Adobe Flash Player Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 6.0 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-000000000001}
Camfrog Video Chat 5.2-->"C:\Program Files\Camfrog\Camfrog Video Chat\uninstall.exe"
HijackThis 2.0.2-->"C:\Program Files\trend micro\HijackThis.exe" /uninstall
Intel(R) Extreme Graphics 2 Driver-->RUNDLL32.EXE C:\WINDOWS\system32\ialmrem.dll,UninstallW2KIGfx PCI\VEN_8086&DEV_2572
Internet Download Manager-->C:\Program Files\Internet Download Manager\Uninstall.exe
Java(TM) 6 Update 3-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
K-Lite Codec Pack 4.9.5 (Full)-->"C:\Program Files\K-Lite Codec Pack\unins000.exe"
Lecteur Windows Media 10-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Marsu-Fix-->C:\WINDOWS\Marsu-Fix Uninstaller.exe
Mozilla Firefox (3.5)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSN Messenger 7.5-->MsiExec.exe /I{BAFD3C1E-03EC-11DA-BFBD-00065BBDC0B5}
Nero 6 Ultra Edition-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
PowerDVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall
Real Alternative 1.8.0-->"C:\Program Files\Real Alternative\unins000.exe"
Skype™ 3.8-->MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
Video Convert Master Trial Version (English) 7.9.0.6-->"C:\Program Files\Video Convert Master\unins000.exe"
Windows Media Format Runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
Yahoo! Messenger-->C:\PROGRA~1\Yahoo!\MESSEN~1\UNWISE.EXE C:\PROGRA~1\Yahoo!\MESSEN~1\INSTALL.LOG

Hosts File Missing
Securitycenter WMI appears to be broken

======System event log======

Computer Name: WINDOWS_XP
Event Code: 6011
Message: Le nom NetBIOS et le nom de l'hôte DNS de cet ordinateur ont été modifiés de MACHINENAME vers WINDOWS_XP.

Record Number: 5
Source Name: EventLog
Time Written: 20090713234607.000000+000
Event Type: Informations
User:

Computer Name: MACHINENAME
Event Code: 2
Message: Pendant la validation de \Device\Serial1 en tant que port série, une FIFO a été détectée. La FIFO sera utilisée.

Record Number: 4
Source Name: Serial
Time Written: 20090713234559.000000+000
Event Type: Informations
User:

Computer Name: MACHINENAME
Event Code: 2
Message: Pendant la validation de \Device\Serial0 en tant que port série, une FIFO a été détectée. La FIFO sera utilisée.

Record Number: 3
Source Name: Serial
Time Written: 20090713234309.000000+000
Event Type: Informations
User:

Computer Name: MACHINENAME
Event Code: 6005
Message: Le service d'Enregistrement d'événement a démarré.

Record Number: 2
Source Name: EventLog
Time Written: 20090713234249.000000+000
Event Type: Informations
User:

Computer Name: MACHINENAME
Event Code: 6009
Message: Microsoft (R) Windows (R) 5.01. 2600 Service Pack 2 Uniprocessor Free.

Record Number: 1
Source Name: EventLog
Time Written: 20090713234249.000000+000
Event Type: Informations
User:

=====Application event log=====

Computer Name: WINDOWS_XP
Event Code: 1000
Message: Les compteurs de performances pour le service MSDTC (MSDTC) ont été chargés.
Les données d'enregistrement contiennent les nouvelles valeurs d'index
assignées à ce service.

Record Number: 5
Source Name: LoadPerf
Time Written: 20090713234722.000000+000
Event Type: Informations
User:

Computer Name: WINDOWS_XP
Event Code: 1000
Message: Les compteurs de performances pour le service TermService (Services Terminal Server) ont été chargés.
Les données d'enregistrement contiennent les nouvelles valeurs d'index
assignées à ce service.

Record Number: 4
Source Name: LoadPerf
Time Written: 20090713234720.000000+000
Event Type: Informations
User:

Computer Name: WINDOWS_XP
Event Code: 1000
Message: Les compteurs de performances pour le service RemoteAccess (Routage et accès distant) ont été chargés.
Les données d'enregistrement contiennent les nouvelles valeurs d'index
assignées à ce service.

Record Number: 3
Source Name: LoadPerf
Time Written: 20090713234641.000000+000
Event Type: Informations
User:

Computer Name: WINDOWS_XP
Event Code: 1000
Message: Les compteurs de performances pour le service PSched (PSched) ont été chargés.
Les données d'enregistrement contiennent les nouvelles valeurs d'index
assignées à ce service.

Record Number: 2
Source Name: LoadPerf
Time Written: 20090713234624.000000+000
Event Type: Informations
User:

Computer Name: WINDOWS_XP
Event Code: 1000
Message: Les compteurs de performances pour le service RSVP (QoS RSVP) ont été chargés.
Les données d'enregistrement contiennent les nouvelles valeurs d'index
assignées à ce service.

Record Number: 1
Source Name: LoadPerf
Time Written: 20090713234614.000000+000
Event Type: Informations
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 2 Stepping 9, GenuineIntel
"PROCESSOR_REVISION"=0209
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP

-----------------EOF-----------------

Répondre à omario_80

Je n'ai rien vu d'intéressant. Ton PC n'est pas infecté en tout cas.

Tu peux essayer ceci :

  • Télécharge Malwarebytes' Anti-Malware (MBAM) sur ton Bureau.
  • Double-clique sur le fichier téléchargé pour lancer le processus d'installation.
  • Dans l'onglet Mise à jour, clique sur le bouton Recherche de mise à jour : si le pare-feu demande l'autorisation à MBAM de se connecter à Internet, accepte.
  • Une fois la mise à jour terminée, rends-toi dans l'onglet Recherche.
  • Sélectionne Exécuter un examen rapide.
  • Clique sur Rechercher. L'analyse démarre.
  • A la fin de l'analyse, un message s'affiche :
Citation :

L'examen s'est terminé normalement. Cliquez sur 'Afficher les résultats' pour afficher tous les objets trouvés.


  • Clique sur OK pour poursuivre. Si MBAM n'a rien trouvé, il te le dira aussi.
  • Ferme tes navigateurs.
  • Si des malwares ont été détectés, clique sur Afficher les résultats.
  • Sélectionne tout (ou laisse coché) et clique sur Supprimer la sélection, MBAM va détruire les fichiers et clés de registre infectés et en mettre une copie dans la quarantaine.
  • MBAM va ouvrir le Bloc-notes et y copier le rapport d'analyse. Copie-colle ce rapport dans ta prochaine réponse.

Répondre à Destrio5

Malwarebytes' Anti-Malware 1.39
Version de la base de données: 2498
Windows 5.1.2600 Service Pack 2

25/07/2009 12:47:29
mbam-log-2009-07-25 (12-46-51).txt

Type de recherche: Examen rapide
Eléments examinés: 75422
Temps écoulé: 2 minute(s), 59 second(s)

Processus mémoire infecté(s): 0
Module(s) mémoire infecté(s): 0
Clé(s) du Registre infectée(s): 177
Valeur(s) du Registre infectée(s): 0
Elément(s) de données du Registre infecté(s): 0
Dossier(s) infecté(s): 0
Fichier(s) infecté(s): 0

Processus mémoire infecté(s):
(Aucun élément nuisible détecté)

Module(s) mémoire infecté(s):
(Aucun élément nuisible détecté)

Clé(s) du Registre infectée(s):
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avp.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\LUALL.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Nmain.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360Safe.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360tray.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ACKWIN32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ANTI-Trojan.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AUTODOWN.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVCONSOL.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVE32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVGCTRL.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVKSERV.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVPUPD.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVSCHED32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\AVWIN95.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\BLACKD.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\BLACKICE.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CFIADMIN.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CFIAUDIT.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CFINET.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CFINET32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CLAW95.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CLEANER.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CLEANER3.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DVP95.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ECENGINE.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ESAFE.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\F-AGNT95.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\F-PROT.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\F-PROT95.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\F-STOPW.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FINDVIRU.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FP-WIN.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\FRW.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IAMAPP.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IAMSERV.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IBMASN.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IBMAVSP.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ICLOAD95.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ICLOADNT.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\IOMON98.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAV32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVMonXP.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\LOCKDOWN2000.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\LOOKOUT.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MOOLIVE.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\MPFTRAY.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Navapsvc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Navapw32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NAVLU32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NAVNT.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\navw32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NAVWNT.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NISUM.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NORMIST.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NUPGRADE.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\NVC95.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PAVCL.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PCCWIN98.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PCFWALLICON.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PERSFW.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Rav.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RAV7.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RAV7WIN.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RAVmon.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RAVmonD.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SAFEWEB.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SCAN32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SCANPM.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SCRSCAN.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SERV95.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SMC.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SPHINX.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SWEEP95.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TBSCAN.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TCA.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TDS2-98.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TDS2-NT.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VET95.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VETTRAY.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VSECOMR.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VSHWIN32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VSSTAT.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\WEBSCANX.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\WFINDV32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ZONEALARM.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avsynmgr.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\cfind.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\claw95ct.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dv95.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dv95_o.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\EFINET32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\espwatch.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\icmoon.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\icssuppnt.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\jed.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\lucomserver.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\navrunr.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\navsched.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\navw.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\nisserv.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\outpost.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\padmin.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pcciomon.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pccmain.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pview95.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\webscan.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\CCenter.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KASMain.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KAVStart.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KPFW32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KPFWSvc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KWatch.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mcafee.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Ras.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RavStub.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\RavTask.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\SREng.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\regedit.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\360safebox.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KPPMain.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\safeboxTray.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\kissvc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\icesword.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\XDelBox.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\anti.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\antivir.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\atrack.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avk.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\avxonsol.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\DAVPFW.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\dbg.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\debu.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\explorewclass.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\fir.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ice.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\iom.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Kabackreport.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KRF.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\KVPreScan.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\lamapp.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Microsoft.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\mon.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\moniker.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\ms.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\N32ACAN.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pcc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PCCClient.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\pccguide.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\PpPpWallRun.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\program.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\prot.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rescue32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Rfw.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\rn.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\scam32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\scan.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\scon.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\secu.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\sirc32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\smtpsvc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\spy.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\symproxysvc.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Tmntsrv.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TMOAgent.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tmproxy.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\tmupdito.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\TSC.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\UlibCfg.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vavrunr.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\vir.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VPC32.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\VSSCAN40 (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\webtrap.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\WindowsÓÅ»¯´óʦ.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\wink.exe (Security.Hijack) -> No action taken.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\norton.exe (Security.Hijack) -> No action taken.

Valeur(s) du Registre infectée(s):
(Aucun élément nuisible détecté)

Elément(s) de données du Registre infecté(s):
(Aucun élément nuisible détecté)

Dossier(s) infecté(s):
(Aucun élément nuisible détecté)

Fichier(s) infecté(s):
(Aucun élément nuisible détecté)

Répondre à omario_80

Tu as supprimé ce que MBAM a trouvé ?

Répondre à Destrio5

oui;c'est fait, mais y a tjrs ce blocage de " envoyer vers"

Répondre à omario_80

Menu Démarrer > Exécuter > Tape sendto et valide.

Je ne pense pas que ça te serve à quelque chose mais bon...

Répondre à Destrio5

oui :-);ça sert a rien
en tt cas merci bcp pour tes conseiles;et pour ton temps;chèr ami

Répondre à omario_80
Tom's Guide > Forum > Sécurité - Virus > Envoyer vers qui se bloque
Aller à :

Il y a 222 utilisateurs connus et inconnus. Pour voir la liste des connectés connus, cliquez ici.

Liens