Chargement en cours...
Connexion au forum informatique de Sur-la-Toile
La discussion « infection win32 trojano + trojan-gen » se trouve dans le forum « Virus, troyens, etc... »
Statut de la discussion » infection win32 trojano + trojan-gen « ( résolue)

infection win32 trojano + trojan-gen

Le 30-10-2007 à 16:25 #

Voilà c'est fait !!

SDFix: Version 1.112

Run by charlier on 2007-10-30 at 14:47

Microsoft Windows XP [version 5.1.2600]

Running From: C:\SDFix

Safe Mode:
Checking Services:


Restoring Windows Registry Values
Restoring Windows Default Hosts File

Rebooting...


Normal Mode:
Checking Files:

No Trojan Files Found




Removing Temp Files...

ADS Check:

C:\WINDOWS.3
No streams found.

C:\WINDOWS.3\system32
No streams found.

C:\WINDOWS.3\system32\svchost.exe
No streams found.

C:\WINDOWS.3\system32\ntoskrnl.exe
No streams found.



Final Check:

Remaining Services:
------------------



Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
"C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe:*:Enabled:Yahoo! FT Server"
"C:\\Program Files\\Magentic\\bin\\MgImp.exe"="C:\\Program Files\\Magentic\\bin\\MgImp.exe:*:Enabled:Magentic"
"C:\\Program Files\\Magentic\\bin\\Magentic.exe"="C:\\Program Files\\Magentic\\bin\\Magentic.exe:*:Enabled:Magentic"
"C:\\Program Files\\Magentic\\bin\\MgApp.exe"="C:\\Program Files\\Magentic\\bin\\MgApp.exe:*:Enabled:Magentic"
"C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLDial.exe"="C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLDial.exe:*:Enabled:AOL Autoconnect"
"C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLacsd.exe"="C:\\Program Files\\Fichiers communs\\AOL\\ACS\\AOLacsd.exe:*:Enabled:module de connexion AOL"
"C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\\Program Files\\uTorrent\\utorrent.exe"="C:\\Program Files\\uTorrent\\utorrent.exe:*:Enabled:µTorrent"
"C:\\Program Files\\Fichiers communs\\AOL\\1166736947\\ee\\aolsoftware.exe"="C:\\Program Files\\Fichiers communs\\AOL\\1166736947\\ee\\aolsoftware.exe:*:Enabled:AOL Shared Components"
"C:\\Program Files\\AOL 9.0a\\waol.exe"="C:\\Program Files\\AOL 9.0a\\waol.exe:*:Enabled:AOL 9.0a"
"C:\\Documents and Settings\\charlier\\Local Settings\\Temp\\ST_NG_SetupWizard\\stInstall.exe"="C:\\Documents and Settings\\charlier\\Local Settings\\Temp\\ST_NG_SetupWizard\\stInstall.exe:*:Enabled:SpeedTouch Setup Wizard"
"C:\\Program Files\\AOL 9.0j\\waol.exe"="C:\\Program Files\\AOL 9.0j\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0k\\waol.exe"="C:\\Program Files\\AOL 9.0k\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0l\\waol.exe"="C:\\Program Files\\AOL 9.0l\\waol.exe:*:Enabled:AOL"
"F:\\ST536\\NAT Manager\\natmgr.exe"="F:\\ST536\\NAT Manager\\natmgr.exe:*:Enabled:SpeedTouch NAT manager"
"C:\\Program Files\\AOL 9.0m\\waol.exe"="C:\\Program Files\\AOL 9.0m\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0n\\waol.exe"="C:\\Program Files\\AOL 9.0n\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0\\waol.exe"="C:\\Program Files\\AOL 9.0\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0 VR\\waol.exe"="C:\\Program Files\\AOL 9.0 VR\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\Fichiers communs\\AOL\\TopSpeed\\3.0\\aoltpsd3.exe"="C:\\Program Files\\Fichiers communs\\AOL\\TopSpeed\\3.0\\aoltpsd3.exe:*:Enabled:AOL TopSpeed"
"C:\\Program Files\\Fichiers communs\\AOL\\Loader\\aolload.exe"="C:\\Program Files\\Fichiers communs\\AOL\\Loader\\aolload.exe:*:Enabled:AOL Loader"
"C:\\Program Files\\Fichiers communs\\AOL\\System Information\\sinf.exe"="C:\\Program Files\\Fichiers communs\\AOL\\System Information\\sinf.exe:*:Enabled:AOL System Information"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\AOL 9.0j\\waol.exe"="C:\\Program Files\\AOL 9.0j\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0k\\waol.exe"="C:\\Program Files\\AOL 9.0k\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0l\\waol.exe"="C:\\Program Files\\AOL 9.0l\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0m\\waol.exe"="C:\\Program Files\\AOL 9.0m\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0n\\waol.exe"="C:\\Program Files\\AOL 9.0n\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\AOL 9.0\\waol.exe"="C:\\Program Files\\AOL 9.0\\waol.exe:*:Enabled:AOL"
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"="C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"="C:\\Program Files\\Windows Live\\Messenger\\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"

Remaining Files:
---------------


Files with Hidden Attributes:

Sat 2 Feb 2002 960 A.SH. --- "C:\5jxfao30.sys"
Thu 27 Dec 2001 102,467 A..H. --- "C:\Program Files\AOL 7.0\aolphx.exe"
Thu 27 Dec 2001 32,839 A..H. --- "C:\Program Files\AOL 7.0\aoltray.exe"
Mon 26 Nov 2001 40,960 A..H. --- "C:\Program Files\AOL 7.0\RBM.exe"
Thu 27 Dec 2001 180,287 A..H. --- "C:\Program Files\AOL 7.0\waol.exe"
Wed 23 Apr 2003 49,221 A..H. --- "C:\Program Files\AOL 8.0\aolphx.exe"
Wed 23 Apr 2003 36,937 A..H. --- "C:\Program Files\AOL 8.0\aoltray.exe"
Wed 23 Apr 2003 40,960 A..H. --- "C:\Program Files\AOL 8.0\RBM.exe"
Wed 23 Apr 2003 237,633 A..H. --- "C:\Program Files\AOL 8.0\waol.exe"
Mon 10 May 2004 54,384 A..H. --- "C:\Program Files\AOL 9.0\aolphx.exe"
Mon 10 May 2004 156,784 A..H. --- "C:\Program Files\AOL 9.0\aoltray.exe"
Mon 10 May 2004 31,344 A..H. --- "C:\Program Files\AOL 9.0\RBM.exe"
Thu 21 Jun 2007 46,384 A..H. --- "C:\Program Files\AOL 9.0 VR\AOLphx.exe"
Thu 24 May 2007 54,832 A..H. --- "C:\Program Files\AOL 9.0 VR\AOLphxex.exe"
Thu 24 May 2007 33,328 A..H. --- "C:\Program Files\AOL 9.0 VR\rbm.exe"
Fri 9 Mar 2007 8 ..SHR --- "C:\WINDOWS.3\system32\91DDA48EF8.dll"
Tue 25 Sep 2007 6,440 ..SH. --- "C:\WINDOWS.3\system32\gjllm.bak1"
Tue 11 Sep 2007 6,440 ..SH. --- "C:\WINDOWS.3\system32\ijllm.bak1"
Mon 22 Oct 2007 6,363 ..SH. --- "C:\WINDOWS.3\system32\llkkj.tmp"
Sat 29 Sep 2007 6,440 ..SH. --- "C:\WINDOWS.3\system32\opqss.bak1"
Sat 29 Sep 2007 6,440 ..SH. --- "C:\WINDOWS.3\system32\pqstv.bak1"
Sun 30 Sep 2007 23,722 ..SH. --- "C:\WINDOWS.3\system32\pqstv.bak2"
Thu 27 Sep 2007 6,440 ..SH. --- "C:\WINDOWS.3\system32\rqtss.tmp"
Sat 15 Sep 2007 6,440 ..SH. --- "C:\WINDOWS.3\system32\stutv.bak1"
Tue 18 Sep 2007 6,440 ..SH. --- "C:\WINDOWS.3\system32\stvwa.bak1"
Mon 24 Sep 2007 6,480 ..SH. --- "C:\WINDOWS.3\system32\yycdd.tmp"
Tue 9 Sep 2003 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Tue 9 Sep 2003 401 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv10.bak"
Sat 22 Oct 2005 4,348 A.SH. --- "C:\Documents and Settings\All Users.WINDOWS.2\DRM\DRMv1.bak"
Sat 12 Nov 2005 401 A.SH. --- "C:\Documents and Settings\All Users.WINDOWS.2\DRM\DRMv12.bak"
Sun 10 Sep 2006 4,348 A.SH. --- "C:\Documents and Settings\All Users.WINDOWS.3\DRM\DRMv1.bak"
Wed 30 May 2007 23,552 ...H. --- "C:\Documents and Settings\charlier\Mes documents\~WRL0653.tmp"
Wed 30 May 2007 61,440 ...H. --- "C:\Documents and Settings\charlier\Mes documents\~WRL1454.tmp"
Wed 30 May 2007 61,440 ...H. --- "C:\Documents and Settings\charlier\Mes documents\~WRL1693.tmp"
Wed 30 May 2007 20,480 ...H. --- "C:\Documents and Settings\charlier\Mes documents\~WRL1743.tmp"
Wed 30 May 2007 60,928 ...H. --- "C:\Documents and Settings\charlier\Mes documents\~WRL2067.tmp"
Wed 30 May 2007 22,016 ...H. --- "C:\Documents and Settings\charlier\Mes documents\~WRL2263.tmp"
Wed 30 May 2007 24,064 ...H. --- "C:\Documents and Settings\charlier\Mes documents\~WRL3114.tmp"
Wed 30 May 2007 60,928 ...H. --- "C:\Documents and Settings\charlier\Mes documents\~WRL3475.tmp"
Wed 30 May 2007 27,648 ...H. --- "C:\Documents and Settings\charlier\Mes documents\~WRL3486.tmp"
Wed 30 May 2007 19,968 ...H. --- "C:\Documents and Settings\charlier\Mes documents\~WRL3657.tmp"
Thu 27 Dec 2001 53,317 A..H. --- "C:\Program Files\AOL 7.0\COMIT\cswitch.exe"
Wed 23 Apr 2003 49,223 A..H. --- "C:\Program Files\AOL 8.0\COMIT\cswitch.exe"
Thu 4 Jan 2007 0 A.SH. --- "C:\Documents and Settings\All Users.WINDOWS.3\DRM\Cache\Indiv01.tmp"
Fri 13 Apr 2007 1,172,480 A..H. --- "C:\Documents and Settings\charlier\Local Settings\Temp\~WRD0095.tmp"
Fri 13 Apr 2007 1,172,480 A..H. --- "C:\Documents and Settings\charlier\Local Settings\Temp\~WRD3997.tmp"
Sun 12 Oct 2003 35,840 A..H. --- "C:\Documents and Settings\odile\Local Settings\Temp\~WRL0669.tmp"
Sun 12 Oct 2003 37,376 A..H. --- "C:\Documents and Settings\odile\Local Settings\Temp\~WRL2336.tmp"
Sun 12 Oct 2003 35,840 A..H. --- "C:\Documents and Settings\odile\Local Settings\Temp\~WRL3291.tmp"
Sun 12 Oct 2003 36,864 A..H. --- "C:\Documents and Settings\odile\Mes documents\AMELIE\~WRL0002.tmp"
Sat 1 May 2004 25,088 A..H. --- "C:\Documents and Settings\odile\Mes documents\AMELIE\~WRL0005.tmp"
Mon 23 Feb 2004 31,232 A..H. --- "C:\Documents and Settings\odile\Mes documents\AURORE\~WRL1675.tmp"
Mon 23 Feb 2004 32,768 A..H. --- "C:\Documents and Settings\odile\Mes documents\AURORE\~WRL2973.tmp"
Mon 23 Feb 2004 50,176 A..H. --- "C:\Documents and Settings\odile\Mes documents\AURORE\~WRL3835.tmp"
Wed 16 Mar 2005 37,888 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Amélie\~WRL0043.tmp"
Sat 12 Mar 2005 58,880 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Amélie\~WRL0370.tmp"
Sat 12 Mar 2005 59,904 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Amélie\~WRL1046.tmp"
Sat 12 Mar 2005 51,200 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Amélie\~WRL1689.tmp"
Sat 12 Mar 2005 50,688 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Amélie\~WRL1732.tmp"
Wed 16 Mar 2005 85,504 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Amélie\~WRL2233.tmp"
Sat 12 Mar 2005 52,736 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Amélie\~WRL3206.tmp"
Sat 12 Mar 2005 59,392 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Amélie\~WRL3238.tmp"
Sat 12 Mar 2005 60,416 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Amélie\~WRL3443.tmp"
Sat 12 Mar 2005 57,344 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Amélie\~WRL3505.tmp"
Fri 11 Mar 2005 46,592 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Amélie\~WRL3809.tmp"
Sat 12 Mar 2005 51,712 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Amélie\~WRL4051.tmp"
Wed 28 Feb 2007 26,624 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL0004.tmp"
Tue 1 May 2007 28,160 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL0017.tmp"
Mon 30 Apr 2007 38,400 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL0087.tmp"
Wed 18 Apr 2007 25,088 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL0258.tmp"
Mon 15 Jan 2007 28,672 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL0420.tmp"
Mon 30 Apr 2007 24,064 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL0494.tmp"
Sun 24 Jun 2007 19,968 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL0555.tmp"
Mon 30 Apr 2007 38,400 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL0562.tmp"
Wed 18 Apr 2007 24,576 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL0580.tmp"
Sun 24 Jun 2007 23,552 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL0596.tmp"
Tue 20 Feb 2007 30,720 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL0683.tmp"
Mon 30 Apr 2007 26,112 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL0798.tmp"
Mon 30 Apr 2007 19,968 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL1113.tmp"
Sun 24 Jun 2007 22,016 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL1153.tmp"
Tue 1 May 2007 30,720 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL1244.tmp"
Sun 29 Apr 2007 25,600 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL1295.tmp"
Tue 1 May 2007 26,624 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL1301.tmp"
Mon 30 Apr 2007 251,904 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL1346.tmp"
Mon 30 Apr 2007 24,576 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL1632.tmp"
Tue 1 May 2007 31,744 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL1901.tmp"
Sat 10 Mar 2007 31,232 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL1927.tmp"
Sun 29 Apr 2007 24,064 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2027.tmp"
Mon 30 Apr 2007 23,552 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2063.tmp"
Mon 30 Apr 2007 19,968 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2092.tmp"
Sun 24 Jun 2007 19,968 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2137.tmp"
Mon 30 Apr 2007 38,400 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2299.tmp"
Sat 10 Mar 2007 31,232 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2470.tmp"
Tue 1 May 2007 28,672 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2489.tmp"
Mon 30 Apr 2007 97,280 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2526.tmp"
Tue 1 May 2007 29,184 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2583.tmp"
Sun 29 Apr 2007 25,088 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2605.tmp"
Sun 24 Jun 2007 22,016 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2625.tmp"
Mon 30 Apr 2007 26,624 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2673.tmp"
Sun 24 Jun 2007 29,696 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2722.tmp"
Tue 1 May 2007 26,112 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2795.tmp"
Mon 30 Apr 2007 24,576 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2814.tmp"
Wed 28 Feb 2007 30,208 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2826.tmp"
Wed 18 Apr 2007 26,112 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2835.tmp"
Mon 30 Apr 2007 250,368 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2857.tmp"
Mon 30 Apr 2007 247,296 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2871.tmp"
Tue 1 May 2007 26,112 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2873.tmp"
Mon 30 Apr 2007 37,888 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2892.tmp"
Mon 30 Apr 2007 245,760 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL2936.tmp"
Sun 24 Jun 2007 26,112 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3012.tmp"
Mon 30 Apr 2007 94,720 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3015.tmp"
Wed 20 Dec 2006 26,624 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3043.tmp"
Wed 28 Feb 2007 27,648 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3070.tmp"
Mon 30 Apr 2007 245,760 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3293.tmp"
Wed 28 Feb 2007 29,696 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3303.tmp"
Mon 30 Apr 2007 29,696 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3305.tmp"
Sun 29 Apr 2007 31,744 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3350.tmp"
Sun 24 Jun 2007 19,968 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3376.tmp"
Mon 30 Apr 2007 245,248 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3548.tmp"
Mon 30 Apr 2007 29,184 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3549.tmp"
Sat 28 Apr 2007 59,392 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3587.tmp"
Mon 15 Jan 2007 28,672 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3818.tmp"
Mon 30 Apr 2007 23,040 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3844.tmp"
Mon 30 Apr 2007 248,320 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3872.tmp"
Tue 1 May 2007 26,624 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3925.tmp"
Sun 29 Apr 2007 25,088 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL3969.tmp"
Mon 30 Apr 2007 19,968 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL4061.tmp"
Mon 30 Apr 2007 37,888 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL4067.tmp"
Mon 30 Apr 2007 246,784 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL4082.tmp"
Mon 30 Apr 2007 27,136 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL4085.tmp"
Mon 30 Apr 2007 20,480 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\~WRL4097.tmp"
Wed 6 Jun 2007 89,600 ...H. --- "C:\Documents and Settings\charlier\Application Data\Microsoft\Modèles\~WRL1003.tmp"
Tue 22 May 2007 86,528 ...H. --- "C:\Documents and Settings\charlier\Application Data\Microsoft\Modèles\~WRL1238.tmp"
Mon 18 Jun 2007 94,208 ...H. --- "C:\Documents and Settings\charlier\Application Data\Microsoft\Modèles\~WRL1312.tmp"
Wed 17 Jan 2007 48,640 ...H. --- "C:\Documents and Settings\charlier\Application Data\Microsoft\Modèles\~WRL3578.tmp"
Mon 30 Apr 2007 83,456 ...H. --- "C:\Documents and Settings\charlier\Application Data\Microsoft\Word\~WRL1203.tmp"
Thu 26 Jul 2007 19,456 ...H. --- "C:\Documents and Settings\charlier\Application Data\Microsoft\Word\~WRL1417.tmp"
Thu 26 Jul 2007 19,456 ...H. --- "C:\Documents and Settings\charlier\Application Data\Microsoft\Word\~WRL1814.tmp"
Wed 24 Oct 2007 30,720 ...H. --- "C:\Documents and Settings\charlier\Application Data\Microsoft\Word\~WRL1873.tmp"
Thu 26 Jul 2007 19,456 ...H. --- "C:\Documents and Settings\charlier\Application Data\Microsoft\Word\~WRL2867.tmp"
Wed 24 Oct 2007 30,208 ...H. --- "C:\Documents and Settings\charlier\Application Data\Microsoft\Word\~WRL2952.tmp"
Fri 13 Apr 2007 127,488 ...H. --- "C:\Documents and Settings\charlier\Application Data\Microsoft\Word\~WRL3887.tmp"
Thu 26 Jul 2007 19,456 ...H. --- "C:\Documents and Settings\charlier\Application Data\Microsoft\Word\~WRL3941.tmp"
Wed 4 Oct 2006 3,072,000 A..H. --- "C:\Documents and Settings\charlier\Application Data\U3\temp\Launchpad Removal.exe"
Sat 20 Jan 2007 27,648 ...H. --- "C:\Documents and Settings\charlier\Mes documents\Aurore\ECOLE\~WRL1986.tmp"
Wed 16 Mar 2005 37,888 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Amélie\~WRL0043.tmp"
Sat 12 Mar 2005 58,880 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Amélie\~WRL0370.tmp"
Sat 12 Mar 2005 59,904 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Amélie\~WRL1046.tmp"
Sat 12 Mar 2005 51,200 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Amélie\~WRL1689.tmp"
Sat 12 Mar 2005 50,688 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Amélie\~WRL1732.tmp"
Wed 16 Mar 2005 85,504 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Amélie\~WRL2233.tmp"
Sat 12 Mar 2005 52,736 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Amélie\~WRL3206.tmp"
Sat 12 Mar 2005 59,392 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Amélie\~WRL3238.tmp"
Sat 12 Mar 2005 60,416 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Amélie\~WRL3443.tmp"
Sat 12 Mar 2005 57,344 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Amélie\~WRL3505.tmp"
Fri 11 Mar 2005 46,592 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Amélie\~WRL3809.tmp"
Sat 12 Mar 2005 51,712 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Amélie\~WRL4051.tmp"
Sat 11 Aug 2007 96,072 ...H. --- "C:\Program Files\Fichiers communs\AOL\TopSpeed\3.0\WBUnins.exe"
Mon 13 Sep 2004 5,331,232 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\0412288c132eb52d75186b7e771b5888\BIT3D.tmp"
Sun 12 Sep 2004 5,331,232 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\0412288c132eb52d75186b7e771b5888\BIT45.tmp"
Mon 13 Sep 2004 927,336 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\07785a5e68c156065c235ef17a52786b\BIT68.tmp"
Mon 13 Sep 2004 2,051,688 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\1fe6025d838ba6fd3cc67492ba08a2b8\BIT4E.tmp"
Mon 13 Sep 2004 2,226,272 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\32cec100c9040c3f7c6551ae9921755d\BIT42.tmp"
Mon 13 Sep 2004 3,102,456 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\3ef21a8ca71511ee74f82629ae381b61\BIT4D.tmp"
Mon 13 Sep 2004 3,102,456 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\3ef21a8ca71511ee74f82629ae381b61\BIT51.tmp"
Sun 12 Sep 2004 2,941,544 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\47bb60c2a6967206051134719cb03176\BIT45.tmp"
Mon 13 Sep 2004 2,941,544 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\47bb60c2a6967206051134719cb03176\BIT49.tmp"
Wed 25 Aug 2004 658,152 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\4ca0457c617a9fbc7f870c92a22c1995\BIT85.tmp"
Mon 13 Sep 2004 3,003,160 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\4cb1e7bf86cdf0647dc026156103b77e\BIT55.tmp"
Mon 13 Sep 2004 1,376,528 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\697c39edaba505b6c250218e3469a4f7\BIT50.tmp"
Mon 13 Sep 2004 2,919,160 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\792a01b121b8a999c5a87a2f8c9ee77a\BIT4E.tmp"
Mon 13 Sep 2004 2,919,160 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\792a01b121b8a999c5a87a2f8c9ee77a\BIT52.tmp"
Mon 13 Sep 2004 2,425,104 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\96f2f8735e556df280ebc02f74d56d52\BIT65.tmp"
Mon 13 Sep 2004 540,432 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\aef95e89ff577df67c11d230bf69ae5c\BIT47.tmp"
Mon 13 Sep 2004 2,096,312 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\c64daf5eec3bec30fbcfda6646ded1cc\BIT51.tmp"
Sun 12 Sep 2004 2,096,312 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\c64daf5eec3bec30fbcfda6646ded1cc\BIT67.tmp"
Mon 13 Sep 2004 713,488 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\c7b69ee2d33be7e523c4e04c9ab7cb03\BIT39.tmp"
Sun 12 Sep 2004 713,488 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\c7b69ee2d33be7e523c4e04c9ab7cb03\BIT44.tmp"
Sun 12 Sep 2004 1,332,584 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\cbab1b960efde05dcaf84cabe3ad9411\BIT59.tmp"
Sun 12 Sep 2004 429,928 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\d240100897e76576b9f61f4e33193a74\BIT41.tmp"
Mon 13 Sep 2004 429,928 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\d240100897e76576b9f61f4e33193a74\BIT47.tmp"
Sun 12 Sep 2004 878,840 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\db655e776e3f92e9e6a4a7a26adf6ee1\BIT40.tmp"
Sun 12 Sep 2004 878,840 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\db655e776e3f92e9e6a4a7a26adf6ee1\BIT46.tmp"
Sun 12 Sep 2004 3,999,000 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\e7f37242524b22c1ccdc44e9a8dd0ed9\BIT62.tmp"
Mon 13 Sep 2004 824,096 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\ecce8cf554f65c36330c8852dd011ef1\BIT4B.tmp"
Mon 13 Sep 2004 1,394,560 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\fbc88ec87160bfeb2d299f34e6b6ba4d\BIT4C.tmp"
Mon 13 Sep 2004 3,325,288 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\fcc9239871f493c3fd9ed526f118b823\BIT50.tmp"
Mon 13 Sep 2004 3,325,288 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\fcc9239871f493c3fd9ed526f118b823\BIT5F.tmp"
Wed 24 Oct 2007 31,232 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\IFSI\DSI\~WRL1697.tmp"
Sun 17 Dec 2006 29,184 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\IFSI\DSI\~WRL2225.tmp"
Wed 24 Oct 2007 25,600 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\IFSI\DSI\~WRL2714.tmp"
Wed 16 Mar 2005 37,888 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL0043.tmp"
Sat 12 Mar 2005 58,880 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL0370.tmp"
Sat 12 Mar 2005 59,904 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL1046.tmp"
Sat 12 Mar 2005 51,200 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL1689.tmp"
Sat 12 Mar 2005 50,688 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL1732.tmp"
Wed 16 Mar 2005 85,504 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL2233.tmp"
Sat 12 Mar 2005 52,736 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL3206.tmp"
Sat 12 Mar 2005 59,392 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL3238.tmp"
Sat 12 Mar 2005 60,416 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL3443.tmp"
Sat 12 Mar 2005 57,344 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL3505.tmp"
Fri 11 Mar 2005 46,592 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL3809.tmp"
Sat 12 Mar 2005 51,712 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL4051.tmp"
Sat 23 Jun 2007 19,456 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\autres\~WRL2347.tmp"
Sun 24 Jun 2007 19,968 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\TFE\autres\~WRL2684.tmp"
Wed 16 Mar 2005 37,888 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL0043.tmp"
Sat 12 Mar 2005 58,880 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL0370.tmp"
Sat 12 Mar 2005 59,904 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL1046.tmp"
Sat 12 Mar 2005 51,200 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL1689.tmp"
Sat 12 Mar 2005 50,688 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL1732.tmp"
Wed 16 Mar 2005 85,504 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL2233.tmp"
Sat 12 Mar 2005 52,736 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL3206.tmp"
Sat 12 Mar 2005 59,392 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL3238.tmp"
Sat 12 Mar 2005 60,416 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL3443.tmp"
Sat 12 Mar 2005 57,344 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL3505.tmp"
Fri 11 Mar 2005 46,592 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL3809.tmp"
Sat 12 Mar 2005 51,712 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Ma musique\Amélie\~WRL4051.tmp"
Sun 12 Sep 2004 314,098 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\S-1-5-18\12526ac778be9328f87d17f00f3e72ec\download\BIT43.tmp"
Sun 17 Dec 2006 28,160 ...H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\IFSI\DSI\démarche 1\~WRL2025.tmp"
Sat 3 Sep 2005 28,160 A..H. --- "C:\Documents and Settings\Amélie 2\Mes documents\SESSION AMELIE\Ma musique\Amélie\DSI\~WRL3578.tmp"
Sat 3 Sep 2005 28,160 A..H. --- "C:\Documents and Settings\denis.CHARLIER-WXYE89\Mes documents\SESSION AMELIE\Ma musique\Amélie\DSI\~WRL3578.tmp"

Finished!

Le 30-10-2007 à 16:31 #

Télécharger sur le bureau
SuperAntispywarepro
= Clic sur le rectangle vert (download free trial professional )
= double clic sur : Superantispywarepro , qui est sur le bureau pour Installer
= A l’invite : …..update now ==> clic:oui
=Lancer par double-clic sur le raccourci bureau
=Clic droit sur le symbole ocre style scarabé en bas à droite de la barre de tache
=Clic Scan for Spyware,adware,malware
= Clic Scan your computer
= Cocher les disques à verifier
= Cocher Perform Complet scan
= Clic Suivant
= En fin de Scan ( assez long +/- 1 heure)
= Si infection suivre demandes pour supprimer

Le 30-10-2007 à 16:45 #

Le scan est lancé.

On m'a dit que c'était pas bien d'avoir plusieurs antivirus et antispyware
Tu me conseille de garder lequel entre AVG antispyware et SUPERantispyware ?

Le 30-10-2007 à 16:45 #

tu pourra desinstallet superantispyware apres

Le 30-10-2007 à 17:12 #

Tout compte fait je pense garder SUPERantispyware

Il m'a déja trouvé 48 adware vundo, 27 trojan winfiwer, 270 adware tracking cookie et 7 adware hotbar

C'est beaucoup tu trouve ?

Le 30-10-2007 à 17:12 #

c'est énorme le scan est fini ?

Le 30-10-2007 à 17:14 #

Non pas encore fini dans 1 heure (1h30) je pense


Ajout du 30-10-2007 à 21:40:

Ohh lala j'avais 481 menaces :s

Tu crois que maintenant mon ordinateur court encore des risques ?

Le 30-10-2007 à 21:44 #

Logfile of HijackThis v1.99.1
Scan saved at 21:44, on 2007-10-30
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16544)

Running processes:
C:\WINDOWS.3\System32\smss.exe
C:\WINDOWS.3\system32\winlogon.exe
C:\WINDOWS.3\system32\services.exe
C:\WINDOWS.3\system32\lsass.exe
C:\WINDOWS.3\system32\svchost.exe
C:\WINDOWS.3\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS.3\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\WINDOWS.3\Explorer.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS.3\System32\cisvc.exe
C:\WINDOWS.3\system32\nvsvc32.exe
C:\WINDOWS.3\system32\slserv.exe
C:\WINDOWS.3\System32\svchost.exe
C:\WINDOWS.3\wanmpsvc.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\PROGRA~1\TECHCI~1\AOLSAV\AOLAgent.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\EPSON\Creativity Suite\Event Manager\EEventManager.exe
C:\Program Files\Fichiers communs\AOL\1166736947\ee\aolsoftware.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS.3\system32\LVComS.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS.3\system32\ctfmon.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Microsoft Office\Office\OSA.EXE
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\wkcalrem.exe
C:\WINDOWS.3\system32\cidaemon.exe
C:\Program Files\AOL 9.0 VR\waol.exe
C:\Program Files\AOL 9.0 VR\shellmon.exe
C:\Program Files\Fichiers communs\AOL\Topspeed\3.0\aoltpsd3.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\DOCUME~1\charlier\LOCALS~1\Temp\Répertoire temporaire 1 pour hijackthis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,First Home Page = C:\Program Files\AOL Toolbar\welcome.html
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.kingoloto.com/inscription.php?p=13510967&e=allias68@hotmail.fr&id=1&idc=198
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: AOLTBSearch Class - {EA756889-2338-43DB-8F07-D1CA6FB9C90D} - C:\Program Files\AOL\AOL Toolbar 4.0\aoltb.dll
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn4\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn4\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: {4ad53852-1f6a-256b-5054-43c788349ba7} - {7ab94388-7c34-4505-b652-a6f125835da4} - C:\WINDOWS.3\system32\nhdortwt.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 4.0\aoltb.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - C:\Program Files\Microsoft Money\System\mnyviewer.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn4\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 4.0\aoltb.dll
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [AOLSAV] C:\PROGRA~1\TECHCI~1\AOLSAV\AOLAgent.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Fichiers communs\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [WorksFUD] C:\Program Files\Microsoft Works\wkfud.exe
O4 - HKLM\..\Run: [Microsoft Works Portfolio] C:\Program Files\Microsoft Works\WksSb.exe /AllUsers
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [MoneyStartUp10.0] "C:\Program Files\Microsoft Money\System\Activation.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [EEventManager] C:\Program Files\EPSON\Creativity Suite\Event Manager\EEventManager.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Fichiers communs\AOL\1166736947\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [Magentic] C:\PROGRA~1\Magentic\bin\Magentic.exe /c
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS.3\system32\ctfmon.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Startup: dcu.lnk = ?
O4 - Startup: IMVU.lnk = C:\Program Files\IMVU\IMVUClient.exe
O4 - Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O4 - Startup: reminder.lnk = ?
O4 - Global Startup: Démarrage d'Office.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O4 - Global Startup: Rappels du Calendrier Microsoft Works.lnk = ?
O8 - Extra context menu item: &Recherche AOL Toolbar - c:\program files\aol\aol toolbar 4.0\resources\fr-FR\local\search.html
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?ed4926d7ca934fab9c89168d6f7cee9f
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?ed4926d7ca934fab9c89168d6f7cee9f
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 4.0\aoltb.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\Yahoo!\Common\yhexbmesfr.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\Yahoo!\Common\yhexbmesfr.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS.3\system32\Shdocvw.dll
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\charlier\Menu Démarrer\Programmes\IMVU\Run IMVU.lnk (file missing)
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyviewer.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www3.snapfish.fr/SnapfishActivia.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.mail.live.com/mail/w1/resources/MSNPUpld.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://www.touslesdrivers.com/fichiers/hardwaredetection/hardwaredetection_2_0_4_6.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab50997.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O20 - AppInit_DLLs: C:\WINDOWS.3\system32\__c002D704.dat
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: jkklmmm - C:\WINDOWS.3\SYSTEM32\jkklmmm.dll
O20 - Winlogon Notify: opnmjhi - C:\WINDOWS.3\SYSTEM32\opnmjhi.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS.3\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS.3\system32\WPDShServiceObj.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS.3\system32\nvsvc32.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS.3\SYSTEM32\slserv.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS.3\wanmpsvc.exe
O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe


Le 30-10-2007 à 21:46 #

tu es encore infecté par Vundo

repasse un coup de comofix et poste moi le rapport
» Liste des Forums » Virus, troyens, etc...

Sujets Connexes

Arakien & WéWé


Forums

Navigation


Publicité

Connectés

Il y a actuellement 88 visiteurs et 2 toiliens en ligne.

Recherche

Concours


Sauf mention contraire, le contenu du blog et du forum est sous licence Creative Commons By-Sa. Vous avez le droit de le reproduire à condition de citer l'auteur, de faire un lien vers la page d'origine, et de partager vos travaux dérivés selon les mêmes conditions.

Conditions d'utilisation -

Partenaires: [Informatique Multimédia] [Portail du Maroc] [Actualité High Tech]
[Tutoriaux Photoshop] [éligibilité ADSL] [Astuces Windows]

Page générée en 518 millisecondes sur WWW1.