Pages de pub sans cesse

Résolu/Fermé
pipalopop Messages postés 14 Date d'inscription vendredi 4 janvier 2008 Statut Membre Dernière intervention 26 janvier 2008 - 5 janv. 2008 à 14:48
 Utilisateur anonyme - 15 janv. 2008 à 23:12
Bonjour,
J'ai des pages de pub tel que en pc on internet.com qui n'arreteent pas d'apparaitre sur mon ecran.
J'ai fait un scann AVG anti spyware 7.5 ainsi qu'un scann CC Cleaner et c'est toujours pareil.
S'il vous plait aidez moi, j'en peux plus !!!!!!!!!!!
Merci par avance.

19 réponses

Blosters Messages postés 19 Date d'inscription dimanche 11 février 2007 Statut Membre Dernière intervention 11 avril 2008
5 janv. 2008 à 14:52
va sur clubic.com ou sur telecharger.com pour elecharger un antipub indépendant de ton navigateur ..
ca devrai aller mieu
0
Utilisateur anonyme
5 janv. 2008 à 14:53
bonjour telecharge avg anti rootkis free fait un scan et tu suprime le resulta de sa recherche lien si joint cordialement daniel donne reponse merci

http://www.commentcamarche.net/telecharger/telecharger 34055015 avg anti rootkit
0
Salut daniel 1704,
Je teremercie pour ton aide mais le probleme persiste !!!!
AIDEZ MOI !!!!
Merci par avance.
0
Utilisateur anonyme
5 janv. 2008 à 15:27
explique moi quel genre de pubs itempestive qui vienne s'afficher quand tu ouvre ton navigateur ?
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Salut,
Sinon tu peux utiliser mozilla firefox Firefox et installer adblock plus (https://addons.mozilla.org/fr/firefox/addon/adblock-plus/ qui est un puissant anti-pubs régulièrement mis à jour (https://addons.mozilla.org/fr/firefox/addon/1136).
0
jE VIENS DE TELECHARGER NAVIGLOG1
Le repport obtenu est celui-ci:
Search Navipromo version 3.3.8 commencé le 05/01/2008 à 15:29:00,18

!!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
!!! Postez ce rapport sur le forum pour le faire analyser !!!
!!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!!

Outil exécuté depuis C:\Program Files\navilog1
Mise à jour le 11.12.2007 à 18h00 par IL-MAFIOSO


Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 6.0.2900.2180
Système de fichiers : NTFS

Executé en mode normal

*** Recherche Programmes installés ***


WebMediaPlayer


*** Recherche dossiers dans C:\WINDOWS ***



*** Recherche dossiers dans C:\Program Files ***

C:\Program Files\WebMediaPlayer trouvé !


*** Recherche dossiers dans C:\DOCUME~1\ALLUSE~1\APPLIC~1 ***




*** Recherche dossiers dans "C:\Documents and Settings\Pipop\application data" ***


*** Recherche dossiers dans C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1 ***

...\WebMediaPlayer trouvé !

*** Recherche avec Catchme-rootkit/stealth malware detector par gmer ***
pour + d'infos : http://www.gmer.net

Fichier(s) caché(s) :

C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.dat
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.exe
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_nav.dat
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_navps.dat



*** Recherche avec GenericNaviSearch ***
!!! Tous ces résultats peuvent révéler des fichiers légitimes !!!
!!! A vérifier impérativement avant toute suppression manuelle !!!

* Recherche dans C:\WINDOWS\system32 *

* Recherche dans "C:\Documents and Settings\Pipop\local settings\application data" *

Fichiers trouvés :

cmfigqj.exe trouvé !
pgtswy.exe trouvé !



*** Recherche fichiers ***


C:\DOCUME~1\ALLUSE~1\Bureau\WebMediaPlayer.lnk trouvé !
C:\WINDOWS\system32\nvs2.inf trouvé !
C:\WINDOWS\prefetch\WEBMEDIAPLAYER.EXE-33B0F5F9.pf trouvé !


*** Recherche clés spécifiques dans le Registre ***

HKEY_CURRENT_USER\Software\Lanconfig trouvé !

*** Module de Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Recherche nouveaux fichiers Instant Access :


2)Recherche Heuristique :

* Dans C:\WINDOWS\system32 :


* Dans "C:\Documents and Settings\Pipop\local settings\application data" :

pgtswy.dat trouvé !

3)Recherche Certificats :

Certificat Egroup trouvé !

4)Recherche fichiers connus :



*** Analyse terminée le 05/01/2008 à 15:39:12,71 ***
0
Utilisateur anonyme
5 janv. 2008 à 18:51
Ok ...

Passe à l'option 2 de Navilog1

-> poste le rapport une fois fini

**************************************
Télécharge Cleanup

Lance-le et choisi l'option ' cleanup! '

**************************************

Reposte un HJT aprés Navilog et cleanup fait

*************

A+
0
Si non le style de pub sont:
rueducommerce.fr
telemarket
em pc on internet.com etc...
0
Utilisateur anonyme
5 janv. 2008 à 16:05
quand tu a fait le scan avec avg anti rootkit a t'il trouvé quelque chose si oui a tu suprimer les lignes ? sinon telecharge hijackthis fait colle log que je regarde j'arrive mieux avec hijackhis le lien

http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis
0
Je viens de faire le scan avec hijackthis:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 17:36:28, on 05/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\WINDOWS\system32\HPConfig.exe
C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HPQ\One-Touch\OneTouch.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ITE\TRAYICON\TRAYICON.exe
C:\Program Files\Orange\Systray\SystrayApp.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Orange\Deskboard\deskboard.exe
C:\Program Files\Orange\browser\browser.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://192.168.1.1/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [Display Settings] C:\Program Files\HPQ\Notebook Utilities\hptasks.exe /s
O4 - HKLM\..\Run: [QT4HPOT] C:\Program Files\HPQ\One-Touch\OneTouch.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [TrayIconPath] C:\Program Files\ITE\TRAYICON\TRAYICON.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Easy PDF Creator] C:\Program Files\Easy PDF Creator\EasyPDFCreator.exe
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|PARAM= cnx
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: https://www.orange.fr/portail
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Configuration Interface Service (HPConfig) - Hewlett-Packard - C:\WINDOWS\system32\HPConfig.exe
O23 - Service: HPWirelessMgr - Hewlett-Packard Co. - C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
0
Utilisateur anonyme
5 janv. 2008 à 17:50
tu refait un scan hisjacthis
0
juanpablo Messages postés 142 Date d'inscription mercredi 30 mai 2007 Statut Membre Dernière intervention 16 juin 2008 10
5 janv. 2008 à 18:47
salut
il faudrait traiter l'infection detectée par navilog1 ...
0
pipalopop Messages postés 14 Date d'inscription vendredi 4 janvier 2008 Statut Membre Dernière intervention 26 janvier 2008 2
5 janv. 2008 à 18:24
J'ai fait la manip que tu m'as demandé.
Mais malheuresement le prolème persiste!
0
pipalopop Messages postés 14 Date d'inscription vendredi 4 janvier 2008 Statut Membre Dernière intervention 26 janvier 2008 2
5 janv. 2008 à 18:29
J'ai fait un nouveau scann voici le résultat:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:27:02, on 05/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\carpserv.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\HPQ\One-Touch\OneTouch.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\ITE\TRAYICON\TRAYICON.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
C:\WINDOWS\system32\HPConfig.exe
C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Skype\Plugin Manager\skypePM.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Orange\Launcher\Launcher.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\0\AlertModule.exe
C:\Program Files\Orange\connectivity\connectivitymanager.exe
C:\Program Files\Orange\systray\systrayapp.exe
C:\Program Files\Orange\Deskboard\deskboard.exe
C:\Program Files\Orange\connectivity\CoreCom\CoreCom.exe
C:\Program Files\Orange\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\Program Files\Orange\browser\browser.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://192.168.1.1/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\Program Files\Orange\SearchURLHook\SearchPageURL.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [Display Settings] C:\Program Files\HPQ\Notebook Utilities\hptasks.exe /s
O4 - HKLM\..\Run: [QT4HPOT] C:\Program Files\HPQ\One-Touch\OneTouch.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [TrayIconPath] C:\Program Files\ITE\TRAYICON\TRAYICON.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: https://www.orange.fr/portail
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\0\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Configuration Interface Service (HPConfig) - Hewlett-Packard - C:\WINDOWS\system32\HPConfig.exe
O23 - Service: HPWirelessMgr - Hewlett-Packard Co. - C:\Program Files\HPQ\Notebook Utilities\HPWirelessMgr.exe
0
pipalopop Messages postés 14 Date d'inscription vendredi 4 janvier 2008 Statut Membre Dernière intervention 26 janvier 2008 2
5 janv. 2008 à 18:34
La page de pub revenant le plus souvant est:
fp.pc-on-internet.com
0
stefdu34 Messages postés 82 Date d'inscription vendredi 4 janvier 2008 Statut Membre Dernière intervention 6 mai 2008 5
5 janv. 2008 à 18:57
Daniel, ces 4 lignes :

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O4 - HKLM\..\Run: [Easy PDF Creator] C:\Program Files\Easy
O4 - HKLM\..\Run: [SystrayORAHSS] "C:\Program Files\Orange\Systray\SystrayApp.exe"
O4 - HKLM\..\Run: [ORAHSSSessionManager] C:\Program Files\Orange\SessionManager\SessionManager.exe

n'ont strictement rien à voir avec le pb de pipalopop...

De plus Hijackthis tout seul ne suffit pas.

Donc Pipa...commence par ça déjà :

1 ) récupère Spybot, installe le, met le à jour, vaccine ton système
récupère ad aware, installe le, met le à jour

2 ) désactive la restauration système de windows

3 ) redémarre en mode sans échec

4 ) lance les scans et les nettoyages les uns aprés les autres de :

spybot, ad aware, avg, ccleaner ( nettoyage + registre )

5 ) une fois finis, redémarre normallement, remet ta restauration système et dis nous si c'est ok ou pas.
0
^^Marie^^ Messages postés 113929 Date d'inscription mardi 6 septembre 2005 Statut Membre Dernière intervention 28 août 2020 3 274
5 janv. 2008 à 20:55
Bonsoir

2 ) désactive la restauration système de windows

IMPORTANT :

Ne pas désactiver la restauration système,
tant que le pc n'est pas propre. Merci
Une fois désinfecté le pc, on peut alors désactiver la restauration système pour la purger de ses m.....et repartir sur un point sain.


A++
0
Utilisateur anonyme
5 janv. 2008 à 19:05
merci pour ton aide stefdu34 je me suis un peut perdu
--
0
pipalopop Messages postés 14 Date d'inscription vendredi 4 janvier 2008 Statut Membre Dernière intervention 26 janvier 2008 2
5 janv. 2008 à 19:13
voici le resultat apres l'étape2 de navilog1:

Clean Navipromo version 3.3.8 commencé le 05/01/2008 à 18:58:16,73

Outil exécuté depuis C:\Program Files\navilog1
Mise à jour le 11.12.2007 à 18h00 par IL-MAFIOSO


Microsoft Windows XP [version 5.1.2600]
Internet Explorer : 6.0.2900.2180
Système de fichiers : NTFS

Mode suppression automatique


*** Creation backups fichiers trouvés par Catchme ***

Copie vers "C:\Program Files\navilog1\Backupnavi"

Copie C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.dat réalisée avec succès !
Copie C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.exe réalisée avec succès !
Copie C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_nav.dat réalisée avec succès !
Copie C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_navps.dat réalisée avec succès !

*** Suppression des fichiers trouvés avec Catchme ***

C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.dat supprimé !
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy.exe supprimé !
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_nav.dat supprimé !
C:\Documents and Settings\Pipop\Local Settings\Application Data\pgtswy_navps.dat supprimé !

** 2ème passage avec résultats Catchme **

* Dans C:\WINDOWS\system32 *


C:\WINDOWS\prefetch\pgtswy*.pf trouvé !
Copie C:\WINDOWS\prefetch\pgtswy*.pf réalisée avec succès !
C:\WINDOWS\prefetch\pgtswy*.pf supprimé !

* Dans "C:\Documents and Settings\Pipop\local settings\application data" *


*** Suppression avec sauvegardes résultats GenericNaviSearch ***

* Suppression dans C:\WINDOWS\System32 *


* Suppression dans "C:\Documents and Settings\Pipop\local settings\application data" *

cmfigqj.exe trouvé !
Copie cmfigqj.exe réalisée avec succès !
cmfigqj.exe supprimé !



*** Suppression dossiers dans C:\WINDOWS ***


*** Suppression dossiers dans C:\Program Files ***

C:\Program Files\WebMediaPlayer ...suppression...
C:\Program Files\WebMediaPlayer supprimé !


*** Suppression dossiers dans C:\DOCUME~1\ALLUSE~1\APPLIC~1 ***


*** Suppression dossiers dans "C:\Documents and Settings\Pipop\application data" ***


*** Suppression dossiers dans C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1 ***

...\WebMediaPlayer ...suppression...
...\WebMediaPlayer supprimé !



*** Suppression fichiers ***

C:\DOCUME~1\ALLUSE~1\Bureau\WebMediaPlayer.lnk supprimé !
C:\WINDOWS\system32\nvs2.inf supprimé !
C:\WINDOWS\prefetch\WEBMEDIAPLAYER.EXE-33B0F5F9.pf supprimé !

*** Suppression fichiers temporaires ***

Nettoyage contenu C:\WINDOWS\Temp effectué !
Nettoyage contenu C:\Documents and Settings\Pipop\local settings\Temp effectué !

*** Traitement Recherche complémentaire ***
(Recherche fichiers spécifiques)

1)Suppression avec sauvegardes nouveaux fichiers Instant Access :

2)Recherche, création sauvegardes et suppression Heuristique :


* Dans C:\WINDOWS\system32 *


* Dans "C:\Documents and Settings\Pipop\local settings\application data" *


*** Sauvegarde du Registre vers dossier Backupnavi ***

sauvegarde du Registre réalisée avec succès !

*** Nettoyage Registre ***

Nettoyage Registre Ok


*** Certificats ***

Certificat Egroup supprimé !

*** Nettoyage terminé le 05/01/2008 à 19:08:02,60 ***
0
pipalopop Messages postés 14 Date d'inscription vendredi 4 janvier 2008 Statut Membre Dernière intervention 26 janvier 2008 2
5 janv. 2008 à 19:17
Rapport de cleanup:

CleanUp! started on 01/05/08 19:15:52.
...
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\528992t[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\66801t[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\;var1=;var2=1;var3=56100;var4=;sz=1x1;ord=8554101511500767[2] - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\actions_03[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\actions_07[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\action_03[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\addressbook200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\anim_crea_bal[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\anim_mobilite[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\Antispam200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\arrow[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\b4[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_actions[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_actions[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_bdb[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_cnx[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_num[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_suite01[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_suite02[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_titre[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\back_titre[2].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\bnt_search[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\boutonLeft[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\btnSearch[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\btn_decnx[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\bt_combo_int[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\bullet_off[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\bullet_on_orange[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\CAA6TZIN.htm - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\cm_writeSMS[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\combo200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\contextMenu200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\degradeSearch[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\discusplus[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\disc_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\download[2].css - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\exalead[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\flashDown[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\FlashTag200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\fleche2[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\fonc_04[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\forum[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\frame[1].html - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\hit[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\hit[2].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ico_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ico_02[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ico_sms[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ico_write[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\logo[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\navig_next10_off[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\ongletLeft[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\o[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\picto_exclam[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\picto_letter[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\picto_print[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\picto_search[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_03[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_04[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_ecrir[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_forum_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_interv[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_prefs[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\pic_stats[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\radio[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\redirectfilter200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\sendConfirmationReading_frame[1].htm - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\sep[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\sep_02_1[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\sep_right[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\shadow[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\shadow[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\signatures200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\troisPts[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\W1EB8127\wousdat[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\248t[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\264t[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\actions_02[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\action_02[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\action_05[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\arrow-down[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\arrow[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\autocompletion200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\b1[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_bdb[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_input[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_shortcuts[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_suite01[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_suite02[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_suite02[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_titre[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_titre[4].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\back_titre[5].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\c2c_call[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\CA6PU7S5.swf - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\ccm[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\centre[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\checkbox200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\cm_call[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\cm_writeMMS[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\coche[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\coinFooterD[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\default[2].css - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\discusplusr[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\discus[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\disc_sans[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\droite[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\Exception200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\filters200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\flashobject200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\fonc_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\fonc_03[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\fondJauge[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\forum[2].css - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\frame[1].htm - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\hit[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\ico_msg[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\ico_oLink[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\listMails200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\ongletRight[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\orange[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\o[1].css - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto1[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_attach[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_bList[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_inbox[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_junk[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\picto_manage[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_02[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_06[1].jpg - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_disc[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_disc_01[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_member[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\pic_rss[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\radio_off[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\read[1].htm - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\richText200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sep[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sep_01_2[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sep_02[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sep_left[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\shadow[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\shadow[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\short_01a[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\short_02a[2].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\short_04a[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\short_06a[1].png - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\show_ads[2].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\sms200712051808[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\titreWebMail[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\track[1].gif - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\xiti[1].js - deleted
C:\Documents and Settings\Pipop\Local Settings\Temporary Internet Files\Content.IE5\WT2RKX2N\xms_notification200712051808[1].js - deleted
C:\Documents and Settings\NetworkService\Cookies\index.dat - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\index.dat - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\692FU1IL\061-3452.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\692FU1IL\061-3638.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\692FU1IL\index-windows-1[1].sucatalog - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\692FU1IL\iTunesSetupAdmin[1].exe - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\G5U3CXIF\061-3395.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\G5U3CXIF\061-4066.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\G5U3CXIF\AppleMobileDeviceSupport[1].msi - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\KPMFC5EN\061-2802.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\KPMFC5EN\061-3872.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\KPMFC5EN\AppleSoftwareUpdate[1].msi - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\KPMFC5EN\iTunes[1].msi - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\WP6V0TQJ\061-3637.English[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\WP6V0TQJ\061-4121.French[1].dist - deleted
C:\Documents and Settings\NetworkService\locals~1\tempor~1\Content.IE5\WP6V0TQJ\QuickTime[1].msi - deleted
C:\Documents and Settings\NetworkService\Cookies\index.dat - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\692FU1IL\061-3452.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\692FU1IL\061-3638.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\692FU1IL\index-windows-1[1].sucatalog - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\692FU1IL\iTunesSetupAdmin[1].exe - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\G5U3CXIF\061-3395.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\G5U3CXIF\061-4066.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\G5U3CXIF\AppleMobileDeviceSupport[1].msi - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\KPMFC5EN\061-2802.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\KPMFC5EN\061-3872.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\KPMFC5EN\AppleSoftwareUpdate[1].msi - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\KPMFC5EN\iTunes[1].msi - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\WP6V0TQJ\061-3637.English[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\WP6V0TQJ\061-4121.French[1].dist - deleted
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\WP6V0TQJ\QuickTime[1].msi - deleted
C:\Documents and Settings\LocalService\Cookies\index.dat - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\index.dat - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\AWLTS894\ - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\C06PGAT7\ - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\L113USPC\ - deleted
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\WAEFJVRP\ - deleted
C:\Documents and Settings\LocalService\Cookies\index.dat - deleted
C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat - deleted
C:\Documents and Settings\LocalService\Local Settings\Temp\Historique\History.IE5\index.dat - deleted
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat - deleted
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat - deleted
C:\Documents and Settings\Default User\Cookies\index.dat - deleted
C:\Documents and Settings\Default User\locals~1\tempor~1\Content.IE5\index.dat - deleted
C:\Documents and Settings\Default User\Cookies\index.dat - deleted
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5\index.dat - deleted
'Run MRU' list - removed from the registry.
'Doc Find Spec MRU' list - removed from the registry.
'FindComputerMRU' list - removed from the registry.
'ComputerNameMRU' list - removed from the registry.
'ContainingTextMRU' list - removed from the registry.
'FilesNamedMRU' list - removed from the registry.
Search Assistant MRU list - removed from the registry.
Explorer Open/Save MRU list - removed from the registry.
Explorer Last Visited MRU list - removed from the registry.
Paint Recent File List - removed from the registry.
WordPad Recent File List - removed from the registry.
Telnet's MRU list - removed from the registry.
Windows Media Player Recent File List - removed from the registry.
WinZip Extract MRU list - removed from the registry.
WinZip File MRU list - removed from the registry.
CleanUp! 4.5.2 recovered 143.3 MB of disk space from 2354 files.
CleanUp! finished on 01/05/08 19:16:00.
0
Utilisateur anonyme
5 janv. 2008 à 20:07
Ok , ou en sont tes problèmes ?

A+
0
c est resolu merci beaucoup a tout le monde.
Vraiment cool!
0
Utilisateur anonyme
15 janv. 2008 à 23:12
De rien ;)
0