Je t'envoies les rapports,je n'avais pas vu que j'avais envoyé 4 fois le meme dossier.
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) 64 Processor 3200+ )
BIOS : Version 07.00T
USER : xavier ( Administrator )
BOOT : Normal boot
Antivirus : AntiVir Desktop 9.0.1.26 (Activated)
A:\ (USB)
C:\ (Local Disk) - FAT32 - Total:146 Go (Free:61 Go)
K:\ (USB)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [4] ( 16/05/2009|13:47 )
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ Lop Script
-----------\\ ToolBar S&D 1.2.8 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Athlon(tm) 64 Processor 3200+ )
BIOS : Version 07.00T
USER : xavier ( Administrator )
BOOT : Fail-safe boot
Antivirus : AntiVir Desktop 9.0.1.26 (Not Activated)
A:\ (USB)
C:\ (Local Disk) - FAT32 - Total:146 Go (Free:61 Go)
K:\ (USB)
"C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 )
Option : [2] ( 15/05/2009|21:42 )
-----------\\ SUPPRESSION
Supprime! - C:\DOCUME~1\xavier\Cookies\xavier@mysearchnow[2].txt.xpx
Supprime! - C:\DOCUME~1\xavier\Cookies\xavier@mywebsearch[1].txt.xpx
Supprime! - C:\DOCUME~1\xavier\APPLIC~1\Search Settings\kb127
Supprime! - C:\WINDOWS\iun6002.exe
Supprime! - C:\WINDOWS\System32\uninst.log
Supprime! - C:\DOCUME~1\xavier\APPLIC~1\Search Settings
-----------\\ Recherche de Fichiers / Dossiers ...
-----------\\ Extensions
(xavier) - {64161300-e22b-11db-8314-0800200c9a66} => speeddial
(xavier) - {35106bca-6c78-48c7-ac28-56df30b51d2b} => windowsupdate
-----------\\ [..\Internet Explorer\Main]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Default_Search_URL"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
"Start Page"="http://www.lequipe.fr/"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157"
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Local Page"="C:\\WINDOWS\\system32\\blank.htm"
"Start Page"="http://www.msn.com/"
"SearchAssistant"="http://www.crawler.com/search/ie.aspx?tb_id=61005"
"CustomizeSearch"="http://dnl.crawler.com/support/sa_customize.aspx?TbId=61005"
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
1 - "C:\ToolBar SD\TB_1.txt" - 15/05/2009|20:35 - Option : [1]
2 - "C:\ToolBar SD\TB_2.txt" - 15/05/2009|21:05 - Option : [1]
3 - "C:\ToolBar SD\TB_3.txt" - 15/05/2009|21:43 - Option : [2]
-----------\\ Fin du rapport a 21:43:24.03
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION
Supprime! - C:\DOCUME~1\xavier\Cookies\xavier@adultfriendfinder[2].txt.xpx
Supprime! - C:\DOCUME~1\xavier\Cookies\xavier@888[4].txt.xpx
Supprime! - C:\DOCUME~1\xavier\Cookies\xavier@888[2].txt.xpx
Supprime! - C:\Program Files\Circle Developement
\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\
--------------------\\ Listing des dossiers dans APPLIC~1
[03/10/2003|12:39] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Adobe
[15/11/2003|16:39] C:\DOCUME~1\DEFAUL~1\APPLIC~1\CyberLink
[30/09/2003|12:17] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[03/10/2003|12:39] C:\DOCUME~1\DEFAUL~1\APPLIC~1\InterTrust
[30/09/2003|12:11] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[30/09/2003|13:00] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Roxio
[28/01/2007|18:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[15/01/2007|19:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe(2)
[08/11/2008|14:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Alawar Stargaze
[17/09/2006|15:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[01/11/2008|13:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[18/08/2005|15:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[03/11/2004|15:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ArcSoft
[06/05/2009|14:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira
[14/07/2006|13:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Balmdeletemediaheck
[23/11/2006|17:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[30/09/2003|12:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[31/10/2006|19:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\DOES4ACESITE
[08/04/2009|15:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Estsoft
[20/07/2007|18:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FaxCtr
[15/07/2007|19:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\FireGlow
[12/09/2006|21:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[12/08/2007|18:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[15/01/2009|09:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\iDeal Designer But_4
[11/03/2008|21:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IM
[11/03/2008|21:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\IncrediMail
[27/08/2005|14:54] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kodak
[21/05/2004|17:08] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Links 2003 Demo
[13/10/2008|13:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ma-config.com
[07/05/2008|14:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[06/02/2006|21:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[30/09/2003|12:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[19/03/2007|14:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSN Search Toolbar
[08/05/2004|22:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MSN6
[04/07/2007|18:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Muzzy Lane Software
[21/05/2004|21:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NFS Underground Demo
[24/08/2007|14:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles
[25/07/2007|16:26] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PlayFirst
[24/06/2004|13:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[30/08/2008|14:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\RoboForm
[08/10/2003|19:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Roxio
[21/12/2008|15:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SFR
[14/08/2007|18:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skyline
[23/05/2005|18:53] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[31/07/2004|21:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sony Corporation
[02/10/2007|13:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[01/05/2007|19:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com
[10/09/2008|13:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SymplisIT
[21/08/2008|14:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Team MediaPortal
[22/06/2007|16:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[08/04/2007|20:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
[10/04/2008|18:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TVU Networks
[09/07/2007|15:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WildTangent
[27/10/2006|11:57] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[02/12/2007|12:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[20/11/2006|18:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Yahoo! Companion
[30/09/2003|12:11] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[09/06/2008|22:38] C:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[23/10/2006|15:01] C:\DOCUME~1\LOCALS~1\APPLIC~1\Google
[01/05/2005|12:39] C:\DOCUME~1\LOCALS~1\APPLIC~1\Help
[23/10/2006|18:28] C:\DOCUME~1\LOCALS~1\APPLIC~1\Macromedia
[30/09/2003|12:11] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[21/03/2007|19:25] C:\DOCUME~1\LOCALS~1\APPLIC~1\Mozilla
[03/10/2003|12:39] C:\DOCUME~1\GUILLA~1\APPLIC~1\Adobe
[09/11/2005|18:03] C:\DOCUME~1\GUILLA~1\APPLIC~1\AdobeUM
[20/09/2006|18:57] C:\DOCUME~1\GUILLA~1\APPLIC~1\AOL
[22/10/2005|11:52] C:\DOCUME~1\GUILLA~1\APPLIC~1\Apple Computer
[10/05/2004|15:47] C:\DOCUME~1\GUILLA~1\APPLIC~1\ArcSoft
[10/05/2004|15:34] C:\DOCUME~1\GUILLA~1\APPLIC~1\Creative
[15/11/2003|16:39] C:\DOCUME~1\GUILLA~1\APPLIC~1\CyberLink
[05/06/2004|17:26] C:\DOCUME~1\GUILLA~1\APPLIC~1\EPSON
[15/08/2007|18:09] C:\DOCUME~1\GUILLA~1\APPLIC~1\FaxCtr
[13/09/2006|15:04] C:\DOCUME~1\GUILLA~1\APPLIC~1\Google
[10/05/2004|15:47] C:\DOCUME~1\GUILLA~1\APPLIC~1\Help
[30/09/2003|12:17] C:\DOCUME~1\GUILLA~1\APPLIC~1\Identities
[03/10/2003|12:39] C:\DOCUME~1\GUILLA~1\APPLIC~1\InterTrust
[09/10/2005|20:32] C:\DOCUME~1\GUILLA~1\APPLIC~1\Macromedia
[01/10/2005|16:23] C:\DOCUME~1\GUILLA~1\APPLIC~1\Media Player Classic
[30/09/2003|12:11] C:\DOCUME~1\GUILLA~1\APPLIC~1\Microsoft
[19/03/2007|14:28] C:\DOCUME~1\GUILLA~1\APPLIC~1\MSN Search Toolbar
[14/05/2004|18:38] C:\DOCUME~1\GUILLA~1\APPLIC~1\MSN6
[01/04/2005|18:45] C:\DOCUME~1\GUILLA~1\APPLIC~1\Real
[30/09/2003|13:00] C:\DOCUME~1\GUILLA~1\APPLIC~1\Roxio
[06/07/2007|02:06] C:\DOCUME~1\GUILLA~1\APPLIC~1\Spyware Terminator
[13/01/2006|21:01] C:\DOCUME~1\GUILLA~1\APPLIC~1\Template
[03/10/2003|12:39] C:\DOCUME~1\pauline\APPLIC~1\Adobe
[10/03/2006|22:29] C:\DOCUME~1\pauline\APPLIC~1\AdobeUM
[17/09/2006|18:59] C:\DOCUME~1\pauline\APPLIC~1\AOL
[19/08/2005|22:29] C:\DOCUME~1\pauline\APPLIC~1\Apple Computer
[15/05/2004|13:13] C:\DOCUME~1\pauline\APPLIC~1\ArcSoft
[09/05/2004|20:38] C:\DOCUME~1\pauline\APPLIC~1\Creative
[15/11/2003|16:39] C:\DOCUME~1\pauline\APPLIC~1\CyberLink
[11/05/2004|19:20] C:\DOCUME~1\pauline\APPLIC~1\EPSON
[16/09/2007|13:35] C:\DOCUME~1\pauline\APPLIC~1\FaxCtr
[28/12/2005|16:34] C:\DOCUME~1\pauline\APPLIC~1\Google
[02/06/2004|09:47] C:\DOCUME~1\pauline\APPLIC~1\Help
[30/09/2003|12:17] C:\DOCUME~1\pauline\APPLIC~1\Identities
[03/10/2003|12:39] C:\DOCUME~1\pauline\APPLIC~1\InterTrust
[17/05/2004|17:42] C:\DOCUME~1\pauline\APPLIC~1\Macromedia
[14/07/2006|13:56] C:\DOCUME~1\pauline\APPLIC~1\managersitepure
[13/09/2006|20:31] C:\DOCUME~1\pauline\APPLIC~1\Media Player Classic
[30/09/2003|12:11] C:\DOCUME~1\pauline\APPLIC~1\Microsoft
[19/03/2007|14:28] C:\DOCUME~1\pauline\APPLIC~1\MSN Search Toolbar
[08/05/2004|22:33] C:\DOCUME~1\pauline\APPLIC~1\MSN6
[10/02/2007|12:56] C:\DOCUME~1\pauline\APPLIC~1\Musicmatch
[22/03/2005|19:52] C:\DOCUME~1\pauline\APPLIC~1\Real
[30/09/2003|13:00] C:\DOCUME~1\pauline\APPLIC~1\Roxio
[11/09/2006|18:12] C:\DOCUME~1\pauline\APPLIC~1\Smart Panel(2)
[03/02/2008|11:27] C:\DOCUME~1\pauline\APPLIC~1\Spyware Terminator
[04/07/2004|14:52] C:\DOCUME~1\pauline\APPLIC~1\Symantec
[11/05/2004|17:57] C:\DOCUME~1\pauline\APPLIC~1\Template
[03/10/2003|12:39] C:\DOCUME~1\thibaut\APPLIC~1\Adobe
[29/05/2004|19:03] C:\DOCUME~1\thibaut\APPLIC~1\ArcSoft
[09/05/2004|18:56] C:\DOCUME~1\thibaut\APPLIC~1\Creative
[15/11/2003|16:39] C:\DOCUME~1\thibaut\APPLIC~1\CyberLink
[30/09/2003|12:17] C:\DOCUME~1\thibaut\APPLIC~1\Identities
[03/10/2003|12:39] C:\DOCUME~1\thibaut\APPLIC~1\InterTrust
[21/05/2004|18:25] C:\DOCUME~1\thibaut\APPLIC~1\Macromedia
[30/09/2003|12:11] C:\DOCUME~1\thibaut\APPLIC~1\Microsoft
[09/05/2004|13:42] C:\DOCUME~1\thibaut\APPLIC~1\MSN6
[30/09/2003|13:00] C:\DOCUME~1\thibaut\APPLIC~1\Roxio
[04/04/2006|18:01] C:\DOCUME~1\xavier\APPLIC~1\123 Free Solitaire
[15/01/2009|09:45] C:\DOCUME~1\xavier\APPLIC~1\2020 Fusion
[15/02/2007|14:20] C:\DOCUME~1\xavier\APPLIC~1\ABBYY
[03/10/2003|12:39] C:\DOCUME~1\xavier\APPLIC~1\Adobe
[14/09/2005|22:35] C:\DOCUME~1\xavier\APPLIC~1\AdobeUM
[20/03/2008|19:16] C:\DOCUME~1\xavier\APPLIC~1\AlauxSoft
[24/01/2008|18:41] C:\DOCUME~1\xavier\APPLIC~1\Anuman Interactive
[18/09/2006|14:49] C:\DOCUME~1\xavier\APPLIC~1\AOL
[18/08/2005|15:27] C:\DOCUME~1\xavier\APPLIC~1\Apple Computer
[09/05/2004|17:07] C:\DOCUME~1\xavier\APPLIC~1\ArcSoft
[09/02/2008|19:49] C:\DOCUME~1\xavier\APPLIC~1\Atari
[09/07/2007|14:29] C:\DOCUME~1\xavier\APPLIC~1\Big Fish Games
[30/12/2006|14:41] C:\DOCUME~1\xavier\APPLIC~1\BitTorrent
[12/08/2008|17:56] C:\DOCUME~1\xavier\APPLIC~1\Bullzip
[09/03/2009|19:19] C:\DOCUME~1\xavier\APPLIC~1\Crayon Physics Deluxe
[09/05/2004|16:51] C:\DOCUME~1\xavier\APPLIC~1\Creative
[15/11/2003|16:39] C:\DOCUME~1\xavier\APPLIC~1\CyberLink
[13/05/2009|14:41] C:\DOCUME~1\xavier\APPLIC~1\deluge
[11/06/2007|18:41] C:\DOCUME~1\xavier\APPLIC~1\Disney Interactive Studios
[14/04/2007|22:45] C:\DOCUME~1\xavier\APPLIC~1\DivX
[15/10/2008|23:38] C:\DOCUME~1\xavier\APPLIC~1\dvdcss
[05/04/2007|18:27] C:\DOCUME~1\xavier\APPLIC~1\EoRezo
[01/07/2004|15:45] C:\DOCUME~1\xavier\APPLIC~1\EPSON
[08/04/2009|15:15] C:\DOCUME~1\xavier\APPLIC~1\ESTsoft
[30/12/2007|15:45] C:\DOCUME~1\xavier\APPLIC~1\F4
[21/07/2007|14:21] C:\DOCUME~1\xavier\APPLIC~1\FaxCtr
[17/09/2007|18:16] C:\DOCUME~1\xavier\APPLIC~1\ForgottenRiddles
[10/05/2008|14:08] C:\DOCUME~1\xavier\APPLIC~1\GlarySoft
[15/09/2006|18:19] C:\DOCUME~1\xavier\APPLIC~1\Google
[04/09/2005|19:17] C:\DOCUME~1\xavier\APPLIC~1\gourmet
[13/05/2009|14:44] C:\DOCUME~1\xavier\APPLIC~1\gtk-2.0
[15/05/2004|19:27] C:\DOCUME~1\xavier\APPLIC~1\Help
[30/09/2003|12:17] C:\DOCUME~1\xavier\APPLIC~1\Identities
[12/08/2007|21:56] C:\DOCUME~1\xavier\APPLIC~1\InstallShield
[03/10/2003|12:39] C:\DOCUME~1\xavier\APPLIC~1\InterTrust
[05/04/2007|18:31] C:\DOCUME~1\xavier\APPLIC~1\ItsLabel
[28/08/2007|18:20] C:\DOCUME~1\xavier\APPLIC~1\iWin
[02/04/2008|18:30] C:\DOCUME~1\xavier\APPLIC~1\Jane s Hotel Family Hero
[26/01/2006|18:12] C:\DOCUME~1\xavier\APPLIC~1\Lavasoft
[02/05/2008|14:10] C:\DOCUME~1\xavier\APPLIC~1\LimeWire
[06/05/2009|14:56] C:\DOCUME~1\xavier\APPLIC~1\Livestation
[26/05/2004|23:30] C:\DOCUME~1\xavier\APPLIC~1\Macromedia
[15/11/2004|15:14] C:\DOCUME~1\xavier\APPLIC~1\MailWasher
[07/05/2008|14:32] C:\DOCUME~1\xavier\APPLIC~1\Malwarebytes
[19/10/2006|17:31] C:\DOCUME~1\xavier\APPLIC~1\managersitepure
[27/09/2005|21:12] C:\DOCUME~1\xavier\APPLIC~1\Media Player Classic
[22/06/2007|16:33] C:\DOCUME~1\xavier\APPLIC~1\Micro Application
[30/09/2003|12:11] C:\DOCUME~1\xavier\APPLIC~1\Microsoft
[26/09/2004|17:15] C:\DOCUME~1\xavier\APPLIC~1\Microsoft Games
[19/02/2009|19:21] C:\DOCUME~1\xavier\APPLIC~1\Moniteur neufbox
[11/03/2007|18:41] C:\DOCUME~1\xavier\APPLIC~1\Mozilla
[12/05/2004|21:59] C:\DOCUME~1\xavier\APPLIC~1\MSN6
[10/02/2007|12:56] C:\DOCUME~1\xavier\APPLIC~1\Musicmatch
[23/01/2008|19:05] C:\DOCUME~1\xavier\APPLIC~1\OMP
[22/06/2007|16:34] C:\DOCUME~1\xavier\APPLIC~1\PCAnonyme4
[25/07/2007|16:26] C:\DOCUME~1\xavier\APPLIC~1\PlayFirst
[30/07/2007|17:53] C:\DOCUME~1\xavier\APPLIC~1\profette
[12/09/2007|18:21] C:\DOCUME~1\xavier\APPLIC~1\Radios Media Player
[18/01/2009|16:20] C:\DOCUME~1\xavier\APPLIC~1\RayV
[14/03/2005|14:47] C:\DOCUME~1\xavier\APPLIC~1\Real
[30/09/2003|13:00] C:\DOCUME~1\xavier\APPLIC~1\Roxio
[03/05/2007|19:13] C:\DOCUME~1\xavier\APPLIC~1\Screenshot Sender
[12/02/2007|13:54] C:\DOCUME~1\xavier\APPLIC~1\Shareaza
[15/02/2007|14:35] C:\DOCUME~1\xavier\APPLIC~1\Smart Panel
[05/09/2006|09:10] C:\DOCUME~1\xavier\APPLIC~1\Smart Panel(2)
[25/03/2005|14:41] C:\DOCUME~1\xavier\APPLIC~1\Sun
[05/06/2004|21:21] C:\DOCUME~1\xavier\APPLIC~1\Symantec
[13/05/2008|20:21] C:\DOCUME~1\xavier\APPLIC~1\TaoUSign
[26/05/2004|23:22] C:\DOCUME~1\xavier\APPLIC~1\Template
[03/01/2009|14:40] C:\DOCUME~1\xavier\APPLIC~1\Thunderbird
[29/11/2007|16:15] C:\DOCUME~1\xavier\APPLIC~1\Todae
[29/11/2007|16:17] C:\DOCUME~1\xavier\APPLIC~1\tuxmath
[10/04/2008|18:07] C:\DOCUME~1\xavier\APPLIC~1\TVU Networks
[03/02/2008|17:05] C:\DOCUME~1\xavier\APPLIC~1\Uniblue
[08/02/2007|21:38] C:\DOCUME~1\xavier\APPLIC~1\uTorrent
[13/05/2009|18:51] C:\DOCUME~1\xavier\APPLIC~1\vlc
[07/01/2009|18:23] C:\DOCUME~1\xavier\APPLIC~1\Windows Live Writer
[31/03/2007|19:06] C:\DOCUME~1\xavier\APPLIC~1\WinPatrol
[18/12/2005|17:51] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\123 Free Solitaire
[03/10/2003|12:39] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Adobe
[05/01/2006|13:48] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\AdobeUM
[24/09/2006|14:14] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\AOL
[04/09/2005|14:45] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Apple Computer
[21/08/2004|15:55] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\ArcSoft
[23/06/2004|14:07] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Creative
[15/11/2003|16:39] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\CyberLink
[09/10/2004|10:10] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\EPSON
[15/08/2007|15:35] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\FaxCtr
[17/10/2006|17:43] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Google
[24/06/2004|15:10] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Help
[30/09/2003|12:17] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Identities
[03/10/2003|12:39] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\InterTrust
[16/02/2005|11:58] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Macromedia
[28/06/2008|11:38] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\managersitepure
[30/09/2005|20:24] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Media Player Classic
[30/09/2003|12:11] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Microsoft
[26/09/2004|17:22] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Microsoft Games
[18/03/2007|12:34] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Mozilla
[19/03/2007|14:28] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\MSN Search Toolbar
[14/03/2005|17:35] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Real
[30/09/2003|13:00] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Roxio
[24/06/2007|15:37] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Spyware Terminator
[27/06/2005|13:57] C:\DOCUME~1\THIBAU~1.VÉR\APPLIC~1\Symantec
[03/10/2003|12:39] C:\DOCUME~1\VÉRONI~1\APPLIC~1\Adobe
[15/11/2003|16:39] C:\DOCUME~1\VÉRONI~1\APPLIC~1\CyberLink
[14/01/2008|18:40] C:\DOCUME~1\VÉRONI~1\APPLIC~1\FaxCtr
[14/01/2008|18:41] C:\DOCUME~1\VÉRONI~1\APPLIC~1\Google
[30/09/2003|12:17] C:\DOCUME~1\VÉRONI~1\APPLIC~1\Identities
[03/10/2003|12:39] C:\DOCUME~1\VÉRONI~1\APPLIC~1\InterTrust
[30/09/2003|12:11] C:\DOCUME~1\VÉRONI~1\APPLIC~1\Microsoft
[30/09/2003|13:00] C:\DOCUME~1\VÉRONI~1\APPLIC~1\Roxio
[14/01/2008|18:40] C:\DOCUME~1\VÉRONI~1\APPLIC~1\Spyware Terminator
[03/10/2003|12:39] C:\DOCUME~1\ADMINI~1\APPLIC~1\Adobe
[15/11/2003|16:39] C:\DOCUME~1\ADMINI~1\APPLIC~1\CyberLink
[30/09/2003|12:17] C:\DOCUME~1\ADMINI~1\APPLIC~1\Identities
[03/10/2003|12:39] C:\DOCUME~1\ADMINI~1\APPLIC~1\InterTrust
[30/09/2003|12:11] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft
[30/09/2003|13:00] C:\DOCUME~1\ADMINI~1\APPLIC~1\Roxio
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[16/05/2009 13:41][--ah-----] C:\WINDOWS\tasks\User_Feed_Synchronization-{5B21053C-C656-466D-B9E8-F08B73CD046A}.job
[16/05/2009 11:51][--a------] C:\WINDOWS\tasks\GlaryInitialize.job
[16/05/2009 11:54][--ah-----] C:\WINDOWS\tasks\MP Scheduled Scan.job
[08/05/2009 17:04][--a------] C:\WINDOWS\tasks\Uniblue SpeedUpMyPC Nag.job
[03/02/2008 17:04][--a------] C:\WINDOWS\tasks\Uniblue SpeedUpMyPC.job
[10/05/2009 19:00][--a------] C:\WINDOWS\tasks\avast! Antivirus.job
[16/05/2009 11:51][--ah-----] C:\WINDOWS\tasks\SA.DAT
[30/08/2002 12:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[27/11/2008|15:53] C:\Program Files\- Age of Empires II
[18/12/2005|17:50] C:\Program Files\123 Free Solitaire
[20/07/2007|18:59] C:\Program Files\Abbyy FineReader 6.0 Sprint
[03/10/2003|12:39] C:\Program Files\Adobe
[29/12/2007|16:48] C:\Program Files\adslTV
[27/12/2006|19:20] C:\Program Files\AGEIA Technologies
[21/03/2005|18:20] C:\Program Files\Alawar
[28/01/2007|18:11] C:\Program Files\Alice SSID
[02/01/2007|14:51] C:\Program Files\Alwil Software
[08/10/2003|18:00] C:\Program Files\Anark
[01/11/2008|13:39] C:\Program Files\Apple Software Update
[09/05/2004|17:05] C:\Program Files\ArcSoft
[22/05/2004|13:52] C:\Program Files\AstroRaid
[27/04/2009|21:25] C:\Program Files\Audacity
[12/11/2008|14:29] C:\Program Files\AusLogics Disk Defrag
[26/04/2009|12:53] C:\Program Files\AVIConverter
[06/05/2009|14:50] C:\Program Files\Avira
[30/09/2003|12:45] C:\Program Files\AvRack
[09/07/2007|14:29] C:\Program Files\Azada
[12/12/2004|11:25] C:\Program Files\Bad Toys 3D
[13/03/2008|18:40] C:\Program Files\BaseDVDivX
[02/04/2008|18:26] C:\Program Files\Bigfish Games - Jane's Hotel Family Hero + Adnan_Boy 2008!!!
[31/03/2007|19:05] C:\Program Files\BillP Studios
[26/11/2004|10:48] C:\Program Files\BongoBoogie
[01/11/2008|13:41] C:\Program Files\Bonjour
[08/02/2007|18:40] C:\Program Files\BoontyGames
[30/03/2008|17:22] C:\Program Files\Brodaroda
[09/07/2008|15:11] C:\Program Files\Canon
[29/10/2007|18:11] C:\Program Files\CCleaner
[27/10/2007|15:10] C:\Program Files\CCleaner(2)
[18/12/2005|17:31] C:\Program Files\Charlie II
[24/08/2007|18:55] C:\Program Files\CoD American Rush 2
[04/07/2008|15:43] C:\Program Files\Common Files
[24/11/2007|19:08] C:\Program Files\Coup de Foot 2006
[30/09/2003|12:37] C:\Program Files\CyberLink
[17/12/2007|14:43] C:\Program Files\Data
[13/11/2005|18:24] C:\Program Files\directx
[20/05/2004|11:40] C:\Program Files\Disney Interactive
[04/10/2006|18:33] C:\Program Files\DivXMachine II
[13/04/2009|08:37] C:\Program Files\Dofus
[07/02/2008|14:33] C:\Program Files\Dofus(2)
[14/04/2008|18:49] C:\Program Files\DreamRender
[03/04/2005|19:22] C:\Program Files\Drippy Demo
[27/11/2008|18:58] C:\Program Files\Empire Earth
[08/04/2009|15:14] C:\Program Files\ESTsoft
[13/01/2005|12:06] C:\Program Files\ETAJV-PC
[30/09/2003|12:11] C:\Program Files\Fichiers communs
[27/12/2007|16:09] C:\Program Files\Foxit Software
[01/04/2007|12:16] C:\Program Files\Free Download Manager
[21/03/2005|18:15] C:\Program Files\Glace
[10/05/2008|14:06] C:\Program Files\Glary Utilities
[14/03/2005|14:42] C:\Program Files\Google
[02/09/2004|11:52] C:\Program Files\Greenface Demo
[15/10/2007|14:05] C:\Program Files\Hidden Expedition Titanic
[20/01/2008|15:46] C:\Program Files\IKEA HomePlanner
[08/02/2007|19:21] C:\Program Files\illiminable
[08/05/2004|19:37] C:\Program Files\Infogrames
[03/09/2004|23:04] C:\Program Files\Ingava.com
[30/09/2003|12:45] C:\Program Files\InstallShield Installation Information
[17/12/2007|14:54] C:\Program Files\Interactive Vision
[24/11/2004|18:49] C:\Program Files\InterActual
[30/09/2003|12:15] C:\Program Files\Internet Explorer
[22/01/2007|19:28] C:\Program Files\IObit
[09/05/2008|14:15] C:\Program Files\IZArc
[13/04/2005|18:48] C:\Program Files\Java
[04/04/2008|19:54] C:\Program Files\JeCreeMaCuisineAvecLeroyMerlin
[11/10/2004|16:31] C:\Program Files\JigSawedME
[10/06/2004|11:41] C:\Program Files\KraiSoft
[13/03/2005|09:45] C:\Program Files\LaserMedia
[06/06/2008|14:29] C:\Program Files\Lavalys
[05/03/2005|16:14] C:\Program Files\LawnMower2
[20/07/2007|18:48] C:\Program Files\Lexmark 6200 Series
[20/07/2007|18:57] C:\Program Files\Lexmark Fax Solutions
[20/07/2007|18:58] C:\Program Files\Lexmark_6200 Series
[20/07/2007|18:50] C:\Program Files\Lx_cats
[13/10/2008|13:57] C:\Program Files\ma-config.com
[07/05/2008|14:32] C:\Program Files\Malwarebytes' Anti-Malware
[01/08/2008|12:28] C:\Program Files\managersitepure
[26/11/2004|10:50] C:\Program Files\Memonix
[30/09/2003|12:14] C:\Program Files\Messenger
[19/10/2006|17:49] C:\Program Files\Messenger Plus! Live
[30/10/2005|22:43] C:\Program Files\Microids
[17/03/2009|19:31] C:\Program Files\Microsoft
[02/12/2007|16:14] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[30/09/2003|12:17] C:\Program Files\microsoft frontpage
[08/05/2004|19:52] C:\Program Files\Microsoft Games
[12/05/2004|21:29] C:\Program Files\Microsoft Référence
[10/08/2008|11:16] C:\Program Files\Microsoft Silverlight
[21/03/2007|15:08] C:\Program Files\Microsoft Sites publics français
[21/08/2008|14:56] C:\Program Files\Microsoft SQL Server
[09/05/2004|15:54] C:\Program Files\Microsoft Works
[21/08/2008|15:01] C:\Program Files\Microsoft.NET
[19/02/2009|19:21] C:\Program Files\Moniteur neufbox
[12/05/2004|23:25] C:\Program Files\MotoRacer
[31/10/2005|10:12] C:\Program Files\MotoRacer2
[30/09/2003|12:15] C:\Program Files\Movie Maker
[11/03/2007|18:41] C:\Program Files\Mozilla Firefox
[30/09/2003|12:14] C:\Program Files\MSN
[30/09/2003|12:14] C:\Program Files\MSN Gaming Zone
[12/02/2007|14:14] C:\Program Files\MSN Messenger
[19/03/2007|14:28] C:\Program Files\MSN Toolbar Suite
[13/11/2008|19:23] C:\Program Files\MSXML 6.0
[30/09/2003|12:15] C:\Program Files\NetMeeting
[14/06/2008|14:59] C:\Program Files\NTFS Undelete
[13/04/2007|18:01] C:\Program Files\Odebit Multimédia
[30/09/2004|16:46] C:\Program Files\ODI
[14/11/2007|21:33] C:\Program Files\OpenAL
[30/05/2004|18:42] C:\Program Files\Oquirrh
[30/09/2003|12:15] C:\Program Files\Outlook Express
[04/09/2005|19:20] C:\Program Files\Pacman 2005 demo
[27/11/2008|19:30] C:\Program Files\PC Games - Microsoft Combat Flight Simulator
[15/10/2008|23:03] C:\Program Files\PDFCreator
[07/06/2007|15:22] C:\Program Files\Plane Arcade
[15/07/2007|19:58] C:\Program Files\Plumeboom - The First Chapter
[18/11/2008|19:04] C:\Program Files\Pocket Tanks
[01/02/2005|19:00] C:\Program Files\Pool 'm Up
[30/09/2003|12:38] C:\Program Files\PowerPoint Viewer
[24/06/2004|13:51] C:\Program Files\QuickTime
[13/04/2007|14:57] C:\Program Files\QuickZip4
[18/02/2008|21:19] C:\Program Files\RamBoost XP
[25/08/2004|16:59] C:\Program Files\Real
[27/09/2005|21:11] C:\Program Files\Real Alternative
[21/10/2007|14:56] C:\Program Files\RealArcade Games
[05/03/2005|16:09] C:\Program Files\Realore
[04/08/2005|18:02] C:\Program Files\Reflector Studio
[16/10/2004|14:50] C:\Program Files\ReflexiveArcade
[10/09/2004|09:43] C:\Program Files\RegCleaner
[17/09/2004|18:22] C:\Program Files\RGAMES
[15/05/2004|21:46] C:\Program Files\Roll 'm Up
[30/09/2003|12:59] C:\Program Files\Roxio
[30/09/2003|12:14] C:\Program Files\Services en ligne
[18/12/2008|23:29] C:\Program Files\SFR
[05/03/2005|16:15] C:\Program Files\Sharewaretv
[14/01/2005|19:18] C:\Program Files\SigmaTel
[17/01/2008|18:25] C:\Program Files\Skyline
[01/03/2006|15:01] C:\Program Files\Soldier of Fortune II - SP Demo
[31/07/2004|21:22] C:\Program Files\Sony
[25/12/2004|12:21] C:\Program Files\Sony Corporation
[31/08/2007|19:01] C:\Program Files\SpongeBob SquarePants Quad Pack
[12/04/2008|14:27] C:\Program Files\Spybot - Search & Destroy
[04/08/2008|19:44] C:\Program Files\Stardock
[13/11/2004|14:51] C:\Program Files\Starlinesinc
[23/08/2007|22:05] C:\Program Files\Super DX-Ball Deluxe
[04/04/2009|14:10] C:\Program Files\SymplisIT
[08/03/2007|18:44] C:\Program Files\Tarobot
[28/06/2005|15:32] C:\Program Files\TLC
[30/01/2005|17:15] C:\Program Files\TLC-Edusoft
[01/05/2005|12:34] C:\Program Files\TomCat Soft
[04/05/2008|17:42] C:\Program Files\Trend Micro
[08/07/2004|18:14] C:\Program Files\Ubi Soft
[27/10/2007|14:45] C:\Program Files\UltraDefrag
[30/09/2003|12:20] C:\Program Files\Uninstall Information
[21/05/2004|18:39] C:\Program Files\Universal Interactive
[25/12/2007|11:59] C:\Program Files\USB Disk Win98 Driver
[17/12/2007|14:43] C:\Program Files\User
[14/04/2007|22:35] C:\Program Files\VideoLAN
[05/11/2006|21:19] C:\Program Files\Virtualis
[30/09/2003|13:25] C:\Program Files\Visage
[10/05/2009|18:58] C:\Program Files\Wakfu
[12/08/2004|16:37] C:\Program Files\WildTangent
[02/05/2008|13:47] C:\Program Files\Windows Defender
[02/12/2007|12:34] C:\Program Files\Windows Live
[15/02/2007|20:45] C:\Program Files\Windows Live Safety Center
[17/03/2009|19:31] C:\Program Files\Windows Live SkyDrive
[31/10/2006|23:33] C:\Program Files\Windows Media Connect 2
[30/09/2003|12:14] C:\Program Files\Windows Media Player
[30/09/2003|12:14] C:\Program Files\Windows NT
[30/09/2003|12:14] C:\Program Files\WindowsUpdate
[28/01/2007|18:11] C:\Program Files\Wireless 802.11g Monitor
[30/09/2003|12:17] C:\Program Files\xerox
[30/09/2003|13:24] C:\Program Files\XnView Deluxe
[05/02/2009|20:17] C:\Program Files\ZebHelpProcess 2
[06/10/2004|15:18] C:\Program Files\zzdarts
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[03/10/2003|12:39] C:\Program Files\Fichiers communs\Adobe
[01/11/2008|13:39] C:\Program Files\Fichiers communs\Apple
[24/05/2007|15:08] C:\Program Files\Fichiers communs\AVSMedia
[23/11/2006|17:17] C:\Program Files\Fichiers communs\BOONTY Shared
[12/05/2004|21:37] C:\Program Files\Fichiers communs\DirectX
[30/09/2003|12:45] C:\Program Files\Fichiers communs\InstallShield
[11/05/2007|19:02] C:\Program Files\Fichiers communs\Java
[30/09/2003|12:11] C:\Program Files\Fichiers communs\Microsoft Shared
[30/09/2003|12:15] C:\Program Files\Fichiers communs\MSSoap
[25/12/2004|12:21] C:\Program Files\Fichiers communs\muvee Technologies
[16/02/2007|16:32] C:\Program Files\Fichiers communs\ODBC
[05/09/2006|09:02] C:\Program Files\Fichiers communs\Python(2)
[25/08/2004|16:59] C:\Program Files\Fichiers communs\Real
[30/09/2003|12:57] C:\Program Files\Fichiers communs\Roxio Shared
[30/09/2003|12:15] C:\Program Files\Fichiers communs\Services
[09/05/2004|15:52] C:\Program Files\Fichiers communs\Softwin
[31/07/2004|21:22] C:\Program Files\Fichiers communs\Sony Shared
[30/09/2003|12:11] C:\Program Files\Fichiers communs\SpeechEngines
[04/08/2008|19:44] C:\Program Files\Fichiers communs\Stardock
[05/06/2004|21:21] C:\Program Files\Fichiers communs\Symantec Shared
[30/09/2003|12:15] C:\Program Files\Fichiers communs\System
[26/01/2006|18:50] C:\Program Files\Fichiers communs\Vbox
[30/09/2003|13:25] C:\Program Files\Fichiers communs\Visage Software
[28/01/2009|18:08] C:\Program Files\Fichiers communs\Windows Live
[02/12/2007|12:34] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[30/09/2003|13:24] C:\Program Files\Fichiers communs\Wise Installation Wizard
[18/04/2008|19:25] C:\Program Files\Fichiers communs\xing shared
--------------------\\ Process
( 41 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-05-16 13:48:14
Windows 5.1.2600 Service Pack 3 FAT NTAPI
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 0
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:64][D:0]-> C:\DOCUME~1\xavier\Cookies
[F:293][D:7]-> C:\DOCUME~1\xavier\LOCALS~1\TEMPOR~1\content.IE5
[F:2][D:0]-> C:\Recycled
1 - "C:\Lop SD\LopR_1.txt" - 15/05/2009|20:23 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 15/05/2009|21:40 - Option : [2]
3 - "C:\Lop SD\LopR_3.txt" - 16/05/2009|13:49 - Option : [4]
--------------------\\ Fin du rapport a 13:49:13
############################## [ UsbFix V3.020 # Scan ]
# User : xavier (Administrateurs) # VÉROXA
# Update on 15/05/09 by Chiquitine29, C_XX & Chimay8
# WebSite : http://pagesperso-orange.fr/NosTools/usbfix.html
# Start at: 22:10:43 | 15/05/2009
# AMD Athlon(tm) 64 Processor 3200+
# Microsoft Windows XP Édition familiale (5.1.2600 32-bit) # Service Pack 3
# Internet Explorer 8.0.6001.18702
# Windows Firewall Status : Enabled
# AV : AntiVir Desktop 9.0.1.26 [ Enabled | Updated ]
# A:\ # Lecteur de disquettes 3 ½ pouces
# C:\ # Disque fixe local # 146.22 Go (62.04 Go free) [FMZ70F4] # FAT32
# K:\ # Disque amovible
############################## [ Processus actifs ]
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Windows Media Player\WMPNetwk.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\System32\WScript.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\wbem\wmiprvse.exe
################## [ Registre # Startup ]
HKCU_Main: "Local Page"="C:\\WINDOWS\\system32\\blank.htm"
HKCU_Main: "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch"
HKCU_Main: "Start Page"="http://www.lequipe.fr/"
HKLM_logon: "Userinit"="C:\\WINDOWS\\system32\\userinit.exe,"
HKLM_logon: "DefaultUserName"="xavier"
HKLM_logon: "AltDefaultUserName"="xavier"
HKLM_logon: "LegalNoticeCaption"=""
HKLM_logon: "LegalNoticeText"=""
HKLM_Run: NvCplDaemon=RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM_Run: LXBUCATS=rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXBUtime.dll,_RunDLLEntry@16
HKLM_Run: DriverMagicSchedule="C:\Program Files\SymplisIT\DriverMagic\dmschedule.exe" /boot
HKLM_Run: NvMediaCenter=RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
HKLM_Run: QuickTime Task="C:\Program Files\QuickTime\qttask.exe" -atboottime
HKLM_Run: avgnt="C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
HKCU_Run: ctfmon.exe=C:\WINDOWS\system32\ctfmon.exe
HKCU_Run: WMPNSCFG="C:\Program Files\Windows Media Player\WMPNSCFG.exe"
################## [ Informations ]
################## [ Fichiers # Dossiers infectieux ]
Found ! C:\WINDOWS\system32\tmp.txt
################## [ Registre # Clés Run infectieuses ]
################## [ Registre # Mountpoints2 ]
# -> Not Found !
################## [ ! Fin du rapport # UsbFix V3.020 ! ]
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:56:34, on 16/05/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Outlook Express\msimn.exe
C:\WINDOWS\system32\cmd.exe
C:\WINDOWS\system32\cmd.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.lequipe.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=61005
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=61005
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = seanet:80
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - Default URLSearchHook is missing
O2 - BHO: e-Carte Bleue Browser Helper Object - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} - C:\WINDOWS\system32\BhoECart.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: PicLens plug-in for Internet Explorer - {EAEE5C74-6D0D-4aca-9232-0DA4A7B866BA} - (no file)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [LXBUCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXBUtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [DriverMagicSchedule] "C:\Program Files\SymplisIT\DriverMagic\dmschedule.exe" /boot
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] "C:\Program Files\Windows Media Player\WMPNSCFG.exe"
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t (User 'Default user')
O8 - Extra context menu item: Easy-WebPrint Ajouter à la Liste à Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?9b99491aa5438bac4d2b3a724edc
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?9b99491aa5438bac4d2b3a724edc
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Launch PicLens - {3437D640-C91A-458f-89F5-B9095EA4C28B} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: Small-Book 5 - {58C8F974-6F2B-471E-A0C8-10776537AB9E} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra 'Tools' menuitem: Version 5 de Small-Book - {58C8F974-6F2B-471E-A0C8-10776537AB9E} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.tele2.fr/startpage/dialup/fr/
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {5AE58FCF-6F6A-49B2-B064-02492C66E3F4} (MUCatalogWebControl Class) - http://catalog.update.microsoft.com/...
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.coupdepoucepc.com/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/resource/download/scanner/wlscbase9602.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/...
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://fichiers.touslesdrivers.com/...
O16 - DPF: {8EF27A70-DD04-11D6-B7F6-00A0C9CD5F8A} - http://www.quikshield.com/qshsetup.exe
O16 - DPF: {8F48147B-78D9-40F9-ACC0-BDDE59B246F4} (AccountHelper Class) - http://abonnement.aliceadsl.fr/configurateur/AccountHelper.cab
O23 - Service: Avira AntiVir Planificateur (AntiVirSchedulerService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira AntiVir Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Fichiers communs\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Unknown owner - C:\WINDOWS\system32\drivers\KodakCCS.exe (file missing)
O23 - Service: lxbu_device - Lexmark International, Inc. - C:\WINDOWS\system32\lxbucoms.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Planificateur LiveUpdate automatique - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\Sptisrv.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
End of file - 9813 bytes
Rapport GenProc 2.560 [7]
@ 16/05/2009 à 13:57:53
@ Windows XP Service Pack 3
@ Internet Explorer (8.0.6001.18702) [Navigateur par défaut]
# Etape 1/ Télécharge :
- USBFix (Chiquitine29) sur le Bureau, et procède simplement à son installation.
Redémarre en mode sans échec comme indiqué ici ; Choisis ta session courante *** USERNAME *** (pour retrouver le rapport, clique sur le raccourci "Rapport GenProc[nbre3]" sur ton bureau).
# Etape 2/
Branche tes sources de données externes à ton PC (clé USB, disque dur externe, etc...) susceptibles d'avoir été infectées sans les ouvrir, puis double-clique sur le raccourci UsbFix présent sur ton Bureau : choisis l' option 2 (Suppression), ton bureau disparaitra et le pc redémarrera. Au redémarrage, UsbFix scannera ton pc, laisse travailler l'outil.
# Etape 3/
Lance CCleaner : "Nettoyeur"/"lancer le nettoyage" et c'est tout.
# Etape 4/
Redémarre normalement et poste, dans la même réponse :
- Le contenu du rapport UsbFix.txt situé dans C:\ ;
- Un nouveau rapport HijackThis ;
- Un nouveau rapport GenProc ;
Précise les difficultés que tu as eu (ce que tu n'as pas pu faire...) ainsi que l'évolution de la situation.
----------------------------------------------------------------------
Sites officiels GenProc : www.alt-shift-return.org et www.genproc.com
----------------------------------------------------------------------
~~ Arguments de la procédure ~~
# Détections [1] GenProc 2.560 15/05/2009 à 19:33:47
Lop:le 15/05/2009 à 19:33:54 "C:\Program Files\Circle Developement"
Toolbar:le 15/05/2009 à 19:33:55 "C:\Documents and Settings\xavier\Application Data\Search Settings"
Vundo:le 15/05/2009 à 19:33:55 "C:\WINDOWS\system32\*.ini2"
USBFix:le 15/05/2009 à 19:34:04 "C:\WINDOWS\System32\tmp.reg"
# Détections [2] GenProc 2.560 15/05/2009 à 20:15:41
Lop:le 15/05/2009 à 20:15:50 "C:\Program Files\Circle Developement"
Toolbar:le 15/05/2009 à 20:15:50 "C:\Documents and Settings\xavier\Application Data\Search Settings"
Vundo:le 15/05/2009 à 20:15:50 "C:\WINDOWS\system32\*.ini2"
USBFix:le 15/05/2009 à 20:15:59 "C:\WINDOWS\System32\tmp.reg"
# Détections [3] GenProc 2.560 15/05/2009 à 20:42:45
# Détections [4] GenProc 2.560 15/05/2009 à 20:58:16
Lop:le 15/05/2009 à 20:58:22 "C:\Program Files\Circle Developement"
Toolbar:le 15/05/2009 à 20:58:23 "C:\Documents and Settings\xavier\Application Data\Search Settings"
Vundo:le 15/05/2009 à 20:58:23 "C:\WINDOWS\system32\*.ini2"
USBFix:le 15/05/2009 à 20:58:32 "C:\WINDOWS\System32\tmp.reg"
# Détections [5] GenProc 2.560 15/05/2009 à 21:21:47
Lop:le 15/05/2009 à 21:21:50 "C:\Program Files\Circle Developement"
Toolbar:le 15/05/2009 à 21:21:50 "C:\Documents and Settings\xavier\Application Data\Search Settings"
Vundo:le 15/05/2009 à 21:21:50 "C:\WINDOWS\system32\*.ini2"
# Détections [6] GenProc 2.560 15/05/2009 à 22:08:48
Lop:le 15/05/2009 à 22:08:54 "C:\Program Files\Circle Developement"
USBFix:le 15/05/2009 à 22:09:04 "C:\WINDOWS\System32\tmp.txt"
# Détections [7] GenProc 2.560 16/05/2009 à 13:57:17
USBFix:le 16/05/2009 à 13:57:34 "C:\WINDOWS\System32\tmp.txt"
j'espère que tu as bien reçu les rapports.merci encore pour ton aide..