Votre question

Trojan.generic.85677

Tags :
  • Windows
  • Sécurité
Dernière réponse : dans Sécurité et virus
23 Mai 2009 18:49:59

Bonjour à tous.
Je cherche à nettoyer en profondeur mon pc qui a été infecté par le virus trojan.generic.85677.
Si vous pouviez me filer un coup de main...
Merci à vous sur le forum

Autres pages sur : trojan generic 85677

23 Mai 2009 20:05:55

salut, :) 

On va voir ce qu'il reste sur ton pc.


I)Telecharger random's system information tool: (RSIT)

http://images.malwareremoval.com/random/RSIT.exe

  • Double cliquer sur l’icône RSIT.exe .
  • Cliquer sur "continue".
  • L’analyse terminée, deux fichiers s’ouvriront, poste moi les 2 rapports stp.
  • Si les 2 fichiers ne s’ouvrent pas, va dans C:\rsit , tu y trouvera les 2 fichiers info.txt et log.txt.
    24 Mai 2009 09:37:30

    Merci pour ton aide et ta rapidité ttoto38.
    Voila les 2 rapports demandés:

    1er rapport:
    info.txt logfile of random's system information tool 1.06 2009-05-24 09:28:59

    ======Uninstall list======

    -->"C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE" /U
    -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{363435F2-7426-11D8-9966-00A0C9663221}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5CDDF96A-BC34-4D72-9ABA-E1FFF0C39977}\setup.exe" -l0x40c
    -->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AC067AB0-2594-4A7E-A1DE-ADEB7D15EB4B}\setup.exe" -l0x40c
    -->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
    ACDSee for PENTAX 3.0-->MsiExec.exe /X{82515476-A57B-4C43-B642-5F396E20C648}
    Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
    Adobe Reader 9.1.1 - Français-->MsiExec.exe /I{AC76BA86-7AD7-1036-7B44-A91000000001}
    aquarium_poisson Screensaver-->C:\WINDOWS\system32\aquarium_poisson.scr /u
    Archiveur WinRAR-->C:\Program Files\WinRAR\uninstall.exe
    ArcSoft Multimedia Email-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DD54CF66-090B-43E7-97C1-110EF526474D}\SETUP.EXE" -l0x40c -uninst
    Audacity 1.2.3-->"C:\Program Files\Audacity\unins000.exe"
    avast! Antivirus-->C:\Program Files\Alwil Software\Avast4\aswRunDll.exe "C:\Program Files\Alwil Software\Avast4\Setup\setiface.dll",RunSetup
    Canon CanoCraft CS-P 3.7-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\Canon\CanoCraft CS-P 3.7\Uninst.isu" -c"C:\Program Files\Canon\CanoCraft CS-P 3.7\scuninst.dll"
    Canon ScanGear Toolbox CS-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\Canon\ScanGear Toolbox CS\Uninst.isu" -c"C:\Program Files\Canon\ScanGear Toolbox CS\uninst.dll"
    CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
    Convertisseur Euro-->MsiExec.exe /I{17D9615B-8298-4A6B-AB49-748113B8CA46}
    Correctif pour Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
    Correctif pour Windows XP (KB961118)-->"C:\WINDOWS\$NtUninstallKB961118$\spuninst\spuninst.exe"
    Creative WebCam Center-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{363435F2-7426-11D8-9966-00A0C9663221}\setup.exe" -l0x40c /remove
    Creative WebCam Vista Plus Driver (1.00.05.0906)-->C:\WINDOWS\CtDrvIns.exe -uninstall -script VF0090.uns -unsext NT -plugin V0090Pin.dll -pluginres CtCamPin.crl
    Free Video Converter V 2.0-->"C:\Program Files\Free Video Converter\unins000.exe"
    getPlus(R) for Adobe-->"C:\Program Files\NOS\bin\getPlus_HelperSvc.exe" /UninstallGet1
    Google Desktop-->C:\Program Files\Google\Google Desktop Search\GoogleDesktopSetup.exe -uninstall
    Google Earth-->MsiExec.exe /I{1E04F83B-2AB9-4301-9EF7-E86307F79C72}
    Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_BDA1448D3D255554.exe" /uninstall
    Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
    HijackThis 2.0.2-->"H:\Sauvegarde\Part 1\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\WINDOWS\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
    hp deskjet 5550 series (Supprimer uniquement)-->C:\Program Files\hp deskjet 5550 series\hpfiui.exe -c -vdivid=HPF -vpnum=95 -vinstport=LPT1: -vproduct=5550 -huninstall
    hp print screen utility-->C:\WINDOWS\system32\prnunins.exe
    Installer Yahoo! Messenger-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AC067AB0-2594-4A7E-A1DE-ADEB7D15EB4B}\setup.exe" -l0x40c /remove
    Java(TM) 6 Update 13-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216013FF}
    LiveUpdate (Symantec Corporation)-->MsiExec.exe /x {E80F62FF-5D3C-4A19-8409-9721F2928206} /l*v "C:\Documents and Settings\All Users\Application Data\LuUninstall.LiveUpdate"
    LiveUpdate (Symantec Corporation)-->MsiExec.exe /X{E80F62FF-5D3C-4A19-8409-9721F2928206}
    Lotus SmartSuite 97-->C:\WINDOWS\lunin10.exe /T SmartSuite /V 97.0 /I "c:\lotus\suit.inf" /C "c:\lotus\cinstall.ini" /O /L FR
    Manuel d'utilisation de Creative WebCam Vista Plus (Français)-->C:\WINDOWS\IsUn040c.exe -f"C:\Program Files\Creative\Creative WebCam Vista Plus\Manuel d'utilisation de Creative WebCam Vista Plus\French\CTManual.isu"
    Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
    Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
    Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
    Microsoft .NET Framework 2.0 Service Pack 2-->MsiExec.exe /I{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}
    Microsoft .NET Framework 3.0 Service Pack 2-->MsiExec.exe /I{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}
    Microsoft .NET Framework 3.5 SP1-->C:\WINDOWS\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
    Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
    Microsoft Office 2000 CD-ROM 2-->MsiExec.exe /I{0004040C-78E1-11D2-B60F-006097C998E7}
    Microsoft Office 2000 Professional-->MsiExec.exe /I{0001040C-78E1-11D2-B60F-006097C998E7}
    Mise à jour de sécurité pour Windows XP (KB923561)-->"C:\WINDOWS\$NtUninstallKB923561$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB923789)-->C:\WINDOWS\system32\MacroMed\Flash\genuinst.exe C:\WINDOWS\system32\MacroMed\Flash\KB923789.inf
    Mise à jour de sécurité pour Windows XP (KB938464-v2)-->"C:\WINDOWS\$NtUninstallKB938464-v2$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB952004)-->"C:\WINDOWS\$NtUninstallKB952004$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB954459)-->"C:\WINDOWS\$NtUninstallKB954459$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB954600)-->"C:\WINDOWS\$NtUninstallKB954600$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB956572)-->"C:\WINDOWS\$NtUninstallKB956572$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB956802)-->"C:\WINDOWS\$NtUninstallKB956802$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB958687)-->"C:\WINDOWS\$NtUninstallKB958687$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB958690)-->"C:\WINDOWS\$NtUninstallKB958690$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB959426)-->"C:\WINDOWS\$NtUninstallKB959426$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB960225)-->"C:\WINDOWS\$NtUninstallKB960225$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB960803)-->"C:\WINDOWS\$NtUninstallKB960803$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB961373)-->"C:\WINDOWS\$NtUninstallKB961373$\spuninst\spuninst.exe"
    Mise à jour de sécurité pour Windows XP (KB963027)-->"C:\WINDOWS\$NtUninstallKB963027$\spuninst\spuninst.exe"
    Mise à jour pour Windows Internet Explorer 8 (KB969497)-->"C:\WINDOWS\ie8updates\KB969497-IE8\spuninst\spuninst.exe"
    Mise à jour pour Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
    Mise à jour pour Windows XP (KB955839)-->"C:\WINDOWS\$NtUninstallKB955839$\spuninst\spuninst.exe"
    Mise à jour pour Windows XP (KB967715)-->"C:\WINDOWS\$NtUninstallKB967715$\spuninst\spuninst.exe"
    Nero 6 Ultra Edition-->C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
    Pando Toolbar-->rundll32 C:\PROGRA~1\PandoBar\bar\2.bin\PandoBar.dll,O
    Pando-->MsiExec.exe /I{C0B0FA55-D4E9-4374-9871-BBFBF2AEF0D1}
    PDFCreator-->C:\Program Files\PDFCreator\unins000.exe
    pdfforge Toolbar v1.0-->MsiExec.exe /X{B8B0FC8B-E69B-4215-AF1A-4BDFF20D794B}
    PhotoFiltre-->"c:\Program Files\PhotoFiltre\Uninst.exe"
    PowerDVD-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\Setup.exe" -uninstall
    Rainlendar2 (remove only)-->"C:\Program Files\Rainlendar2\uninst.exe"
    Realtek AC'97 Audio-->Alcrmv.exe -r -m
    Skype™ 3.8-->MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
    SmartShopper-->C:\Program Files\Smart-Shopper\Uninst.exe
    Spybot - Search & Destroy-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
    SuperCopier2-->"C:\Program Files\SuperCopier2\SC2Uninst.exe"
    TomTom HOME-->C:\Program Files\InstallShield Installation Information\{CE325D55-FCAF-4273-BB79-069BB8747270}\setup.exe -runfromtemp -l0x040c -removeonly -removeonly
    Ulead Photo Express 4.0 My Custom Edition-->RunDll32 C:\PROGRA~1\FICHIE~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{21BCE515-D5A3-11D4-8E33-0010B53EC668}\SETUP.EXE"
    upapp-->MsiExec.exe /I{4EF69D40-4DC9-485E-95D3-B1C22F218FC8}
    VIA Gestionnaire de périphériques de plate-forme-->C:\PROGRA~1\FICHIE~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{20D4A895-748C-4D88-871C-FDB1695B0169}
    VideoLAN VLC media player 0.8.6d-->C:\Program Files\VideoLAN\VLC\uninstall.exe
    Win Généalogic 2005-->C:\PROGRA~1\WINGNA~1\UNWISE.EXE C:\PROGRA~1\WINGNA~1\INSTALL.LOG
    Windows Internet Explorer 8-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
    Windows Live Messenger-->MsiExec.exe /I{F6326B60-1B1D-4ABF-BFCD-7B7404F44411}
    Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"

    ======Security center information======

    AV: avast! antivirus 4.8.1335 [VPS 090523-0]

    ======System event log======

    Computer Name: PC-0DA1670EBB13
    Event Code: 7035
    Message: Un contrôle Démarrer a correctement été envoyé au service Service COM de gravage de CD IMAPI.

    Record Number: 514
    Source Name: Service Control Manager
    Time Written: 20090510181427.000000+120
    Event Type: Informations
    User: AUTORITE NT\SYSTEM

    Computer Name: PC-0DA1670EBB13
    Event Code: 7036
    Message: Le service Explorateur d'ordinateur est entré dans l'état : arrêté.

    Record Number: 513
    Source Name: Service Control Manager
    Time Written: 20090510181240.000000+120
    Event Type: Informations
    User:

    Computer Name: PC-0DA1670EBB13
    Event Code: 110
    Message: Une restauration au point de restauration "Software Distribution Service 3.0" s'est produite.

    Record Number: 512
    Source Name: SRService
    Time Written: 20090510181240.000000+120
    Event Type: Informations
    User:

    Computer Name: PC-0DA1670EBB13
    Event Code: 7036
    Message: Le service Service de la passerelle de la couche Application est entré dans l'état : en cours d'exécution.

    Record Number: 511
    Source Name: Service Control Manager
    Time Written: 20090510181237.000000+120
    Event Type: Informations
    User:

    Computer Name: PC-0DA1670EBB13
    Event Code: 7035
    Message: Un contrôle Démarrer a correctement été envoyé au service Service de la passerelle de la couche Application.

    Record Number: 510
    Source Name: Service Control Manager
    Time Written: 20090510181237.000000+120
    Event Type: Informations
    User: AUTORITE NT\SYSTEM

    =====Application event log=====

    Computer Name: PC-0DA1670EBB13
    Event Code: 1000
    Message: Les compteurs de performances pour le service TermService (Services Terminal Server) ont été chargés.
    Les données d'enregistrement contiennent les nouvelles valeurs d'index
    assignées à ce service.

    Record Number: 5
    Source Name: LoadPerf
    Time Written: 20090509013944.000000+120
    Event Type: Informations
    User:

    Computer Name: PC-0DA1670EBB13
    Event Code: 1001
    Message: Les compteurs de performances pour le service TermService (Services Terminal Server) ont été supprimés.
    Les données d'enregistrement contiennent les nouvelles valeurs du dernier compteur système
    et les dernières entrées du registre d'aide.

    Record Number: 4
    Source Name: LoadPerf
    Time Written: 20090509013944.000000+120
    Event Type: Informations
    User:

    Computer Name: PC-0DA1670EBB13
    Event Code: 1002
    Message: Les compteurs de performances pour le service RSVP (QoS RSVP) existent déjà dans le Registre
    des performances. Il n'est pas nécessaire de les réinstaller.

    Record Number: 3
    Source Name: LoadPerf
    Time Written: 20090509013909.000000+120
    Event Type: Informations
    User:

    Computer Name: PC-0DA1670EBB13
    Event Code: 1002
    Message: Les compteurs de performances pour le service PSched (Planificateur de paquets QoS) existent déjà dans le Registre
    des performances. Il n'est pas nécessaire de les réinstaller.

    Record Number: 2
    Source Name: LoadPerf
    Time Written: 20090509013907.000000+120
    Event Type: Informations
    User:

    Computer Name: PC-0DA1670EBB13
    Event Code: 1002
    Message: Les compteurs de performances pour le service RemoteAccess (Routage et accès distant) existent déjà dans le Registre
    des performances. Il n'est pas nécessaire de les réinstaller.

    Record Number: 1
    Source Name: LoadPerf
    Time Written: 20090509013858.000000+120
    Event Type: Informations
    User:

    ======Environment variables======

    "ComSpec"=%SystemRoot%\system32\cmd.exe
    "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\system32\WBEM
    "windir"=%SystemRoot%
    "FP_NO_HOST_CHECK"=NO
    "OS"=Windows_NT
    "PROCESSOR_ARCHITECTURE"=x86
    "PROCESSOR_LEVEL"=6
    "PROCESSOR_IDENTIFIER"=x86 Family 6 Model 8 Stepping 1, AuthenticAMD
    "PROCESSOR_REVISION"=0801
    "NUMBER_OF_PROCESSORS"=1
    "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
    "TEMP"=%SystemRoot%\TEMP
    "TMP"=%SystemRoot%\TEMP

    -----------------EOF-----------------

    2ème rapport:

    Logfile of random's system information tool 1.06 (written by random/random)
    Run by Principal at 2009-05-24 09:28:29
    Microsoft Windows XP Professionnel Service Pack 3
    System drive C: has 46 GB (76%) free of 60 GB
    Total RAM: 1023 MB (39% free)

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 09:28:55, on 24/05/2009
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\csrss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\WINDOWS\System32\alg.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\Creative\Shared Files\CAMTRAY.EXE
    C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
    C:\Program Files\TomTom HOME\TomTomHOME.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\Program Files\SuperCopier2\SuperCopier2.exe
    C:\Program Files\Rainlendar2\Rainlendar2.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Convertisseur Euro\Euro.exe
    C:\WINDOWS\system32\ntvdm.exe
    C:\OPLIMIT\ocrawr32.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Documents and Settings\Principal\Bureau\RSIT.exe
    C:\WINDOWS\system32\wbem\wmiprvse.exe
    C:\Program Files\trend micro\Principal.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.aliceadsl.fr
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.aliceadsl.fr
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Skype add-on (mastermind) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
    O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
    O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
    O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [Creative WebCam Tray] C:\Program Files\Creative\Shared Files\CAMTRAY.EXE
    O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME\TomTomHOME.exe" -s
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKLM\..\RunOnce: [Lusetup] C:\PROGRA~1\Symantec\LIVEUP~1\LUSetup.exe -s -a -q -log -version
    O4 - HKCU\..\Run: [SuperCopier2.exe] C:\Program Files\SuperCopier2\SuperCopier2.exe
    O4 - HKCU\..\Run: [Rainlendar2] C:\Program Files\Rainlendar2\Rainlendar2.exe
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Startup: Convertisseur Euro.lnk = ?
    O4 - Startup: OCRAWARE.lnk = C:\OPLIMIT\OCRAWARE.EXE
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O9 - Extra button: Skype - {77BF5300-1474-4EC7-9980-D32B190E9B07} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: Alice ADSL - {E439F78F-078F-44E7-B129-56940A4A8E99} - http://www.aliceadsl.fr (file missing) (HKCU)
    O14 - IERESET.INF: START_PAGE_URL=http://www.aliceadsl.fr
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls...
    O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://wwwimages.adobe.com/www.adobe.com/products/acrob...
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
    O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: Google Desktop Manager 5.8.809.23506 (GoogleDesktopManager-092308-165331) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
    O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE

    --
    End of file - 8222 bytes

    ======Registry dump======

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
    Adobe PDF Link Helper - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{22BF413B-C6D2-4d91-82A9-A0F997BA588C}]
    Skype add-on (mastermind) - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2008-11-18 1082880]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
    Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2009-01-26 1879896]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
    Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-05-17 259696]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
    Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [2009-05-17 668656]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDF3E430-B101-42AD-A544-FADC6B084872}]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
    Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [2009-05-17 470512]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
    {2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-05-17 259696]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "avast!"=C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe [2009-02-05 81000]
    "Creative WebCam Tray"=C:\Program Files\Creative\Shared Files\CAMTRAY.EXE [2004-07-30 245760]
    "Google Desktop Search"=C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe [2009-05-09 30192]
    "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-27 35696]
    "TomTomHOME.exe"=C:\Program Files\TomTom HOME\TomTomHOME.exe [2006-12-12 3577512]
    "ccApp"=C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe []
    "SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-05-21 148888]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
    "Lusetup"=C:\PROGRA~1\Symantec\LIVEUP~1\LUSetup.exe -s -a -q -log -version []

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "SuperCopier2.exe"=C:\Program Files\SuperCopier2\SuperCopier2.exe [2006-07-07 1052672]
    "Rainlendar2"=C:\Program Files\Rainlendar2\Rainlendar2.exe [2009-02-21 4333568]
    "SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2009-01-26 2144088]
    "ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-14 15360]
    "MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-13 1695232]

    [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
    "getPlus(R) Helper"=3

    C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage
    Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office\OSA9.EXE

    C:\Documents and Settings\Principal\Menu Démarrer\Programmes\Démarrage
    Convertisseur Euro.lnk - C:\Documents and Settings\Principal\Application Data\Microsoft\Installer\{17D9615B-8298-4A6B-AB49-748113B8CA46}\_3c013b65.exe
    OCRAWARE.lnk - C:\OPLIMIT\OCRAWARE.EXE

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
    C:\WINDOWS\system32\WgaLogon.dll [2009-03-10 265088]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    "DisableTaskMgr"=0

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    "dontdisplaylastusername"=0
    "legalnoticecaption"=
    "legalnoticetext"=
    "shutdownwithoutlogon"=1
    "undockwithoutlogon"=1

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "NoDriveTypeAutoRun"=323
    "NoDriveAutoRun"=67108863
    "NoDrives"=0

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
    "HonorAutoRunSetting"=
    "NoDriveAutoRun"=
    "NoDriveTypeAutoRun"=
    "NoDrives"=

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
    "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
    "C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*:D isabled:@xpsp2res.dll,-22019"
    "C:\Program Files\Pando Networks\Pando\pando.exe"="C:\Program Files\Pando Networks\Pando\pando.exe:*:Enabled:p ando Application"
    "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
    "C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"
    "C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
    "%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
    "%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
    "C:\Program Files\MSN Messenger\msnmsgr.exe"="C:\Program Files\MSN Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger 8.1"
    "C:\Program Files\MSN Messenger\livecall.exe"="C:\Program Files\MSN Messenger\livecall.exe:*:Enabled:Windows Live Messenger 8.1 (Phone)"

    ======List of files/folders created in the last 1 months======

    2009-05-24 09:28:30 ----D---- C:\Program Files\trend micro
    2009-05-24 09:28:29 ----D---- C:\rsit
    2009-05-23 16:50:00 ----D---- C:\Program Files\Fichiers communs\Symantec Shared
    2009-05-23 09:47:09 ----D---- C:\WINDOWS\BDOSCAN8
    2009-05-22 17:06:32 ----HDC---- C:\WINDOWS\$NtUninstallKB961118$
    2009-05-21 18:29:31 ----D---- C:\WINDOWS\Sun
    2009-05-21 18:27:55 ----A---- C:\WINDOWS\system32\javaws.exe
    2009-05-21 18:27:55 ----A---- C:\WINDOWS\system32\deploytk.dll
    2009-05-21 18:27:54 ----A---- C:\WINDOWS\system32\javaw.exe
    2009-05-21 18:27:54 ----A---- C:\WINDOWS\system32\java.exe
    2009-05-21 18:27:34 ----D---- C:\Program Files\Java
    2009-05-21 18:26:54 ----D---- C:\Documents and Settings\Principal\Application Data\Sun
    2009-05-21 18:06:48 ----D---- C:\WINDOWS\system32\XPSViewer
    2009-05-21 18:06:43 ----D---- C:\Program Files\MSBuild
    2009-05-21 18:06:41 ----D---- C:\WINDOWS\system32\en-US
    2009-05-21 18:06:32 ----D---- C:\Program Files\Reference Assemblies
    2009-05-21 18:06:01 ----N---- C:\WINDOWS\system32\xpssvcs.dll
    2009-05-21 18:06:01 ----N---- C:\WINDOWS\system32\xpsshhdr.dll
    2009-05-21 18:06:01 ----N---- C:\WINDOWS\system32\prntvpt.dll
    2009-05-20 20:44:15 ----SHD---- C:\RECYCLER
    2009-05-20 18:05:17 ----A---- C:\ComboFix.txt
    2009-05-20 17:57:49 ----D---- C:\Sylvain56
    2009-05-20 16:47:27 ----D---- C:\Documents and Settings\Principal\Application Data\Symantec
    2009-05-20 16:46:43 ----D---- C:\Program Files\Symantec
    2009-05-20 16:46:31 ----D---- C:\Documents and Settings\All Users\Application Data\Symantec
    2009-05-20 16:23:31 ----D---- C:\Program Files\TomTom HOME
    2009-05-20 16:22:41 ----D---- C:\Documents and Settings\Principal\Application Data\InstallShield
    2009-05-18 13:50:55 ----D---- C:\WINDOWS\A4W_DATA
    2009-05-18 13:50:55 ----A---- C:\WINDOWS\A4W.INI
    2009-05-18 13:48:51 ----A---- C:\WINDOWS\OPLEInst.ini
    2009-05-18 13:48:51 ----A---- C:\WINDOWS\MAXLINK.INI
    2009-05-18 13:48:26 ----A---- C:\WINDOWS\CTL3D.DLL
    2009-05-18 13:48:24 ----D---- C:\OPLIMIT
    2009-05-18 13:47:50 ----A---- C:\WINDOWS\oplimit.ini
    2009-05-18 13:47:13 ----A---- C:\WINDOWS\UN16040C.EXE
    2009-05-18 13:47:05 ----A---- C:\WINDOWS\UNINST16.EXE
    2009-05-18 13:45:49 ----A---- C:\WINDOWS\system32\Csp2utl.dll
    2009-05-18 13:45:49 ----A---- C:\WINDOWS\system32\Csp2osu.dll
    2009-05-18 13:45:48 ----A---- C:\WINDOWS\system32\Ucs32p.dll
    2009-05-18 13:45:48 ----A---- C:\WINDOWS\Sifbp2.dll
    2009-05-18 13:45:48 ----A---- C:\WINDOWS\ScFBPPM2.DLL
    2009-05-18 13:45:45 ----D---- C:\WINDOWS\system32\COLOR
    2009-05-18 13:45:45 ----D---- C:\Program Files\Canon
    2009-05-18 13:37:18 ----A---- C:\WINDOWS\vidwiz.ini
    2009-05-18 13:37:18 ----A---- C:\WINDOWS\Ulead32.ini
    2009-05-18 13:36:49 ----A---- C:\WINDOWS\system32\RARV10EN.DLL
    2009-05-18 13:36:49 ----A---- C:\WINDOWS\system32\RARV1032.DLL
    2009-05-18 13:36:49 ----A---- C:\WINDOWS\system32\RA32SIPR.DLL
    2009-05-18 13:36:49 ----A---- C:\WINDOWS\system32\RA32RV10.DLL
    2009-05-18 13:36:49 ----A---- C:\WINDOWS\system32\RA32DNET.DLL
    2009-05-18 13:36:49 ----A---- C:\WINDOWS\system32\RA32CLV1.DLL
    2009-05-18 13:36:49 ----A---- C:\WINDOWS\system32\RA3228_8.DLL
    2009-05-18 13:36:49 ----A---- C:\WINDOWS\system32\RA3214_4.DLL
    2009-05-18 13:36:49 ----A---- C:\WINDOWS\system32\PNENG50.DLL
    2009-05-18 13:36:49 ----A---- C:\WINDOWS\system32\ENCDNET.DLL
    2009-05-18 13:36:49 ----A---- C:\WINDOWS\system32\DECDNET.DLL
    2009-05-18 13:36:49 ----A---- C:\WINDOWS\system32\CLRVIDDC.DLL
    2009-05-18 13:36:49 ----A---- C:\WINDOWS\system32\CLRVIDCC.DLL
    2009-05-18 13:36:47 ----A---- C:\WINDOWS\system32\PNC3250.DLL
    2009-05-18 12:37:56 ----A---- C:\WINDOWS\system32\decdll.dll
    2009-05-18 12:37:55 ----D---- C:\Program Files\Free Video Converter
    2009-05-18 01:34:23 ----D---- C:\Program Files\pdfforge Toolbar
    2009-05-18 01:33:51 ----A---- C:\WINDOWS\system32\pdfcmnnt.dll
    2009-05-18 01:33:48 ----D---- C:\Program Files\PDFCreator
    2009-05-18 01:33:48 ----A---- C:\WINDOWS\system32\MSMPIDE.DLL
    2009-05-17 18:27:36 ----D---- C:\Documents and Settings\Principal\Application Data\Google
    2009-05-17 18:21:49 ----D---- C:\Documents and Settings\All Users\Application Data\Google
    2009-05-17 18:21:38 ----D---- C:\Program Files\Fichiers communs\Skype
    2009-05-17 18:15:08 ----D---- C:\WINDOWS\system32\appmgmt
    2009-05-17 18:02:44 ----D---- C:\Program Files\Smart-Shopper
    2009-05-17 17:30:51 ----D---- C:\Documents and Settings\Principal\Application Data\Help
    2009-05-17 12:05:55 ----D---- C:\WINDOWS\ie8updates
    2009-05-17 12:05:20 ----D---- C:\WINDOWS\pss
    2009-05-17 11:47:43 ----A---- C:\Boot.bak
    2009-05-17 11:47:37 ----RASHD---- C:\cmdcons
    2009-05-17 11:46:54 ----A---- C:\WINDOWS\zip.exe
    2009-05-17 11:46:54 ----A---- C:\WINDOWS\vFind.exe
    2009-05-17 11:46:54 ----A---- C:\WINDOWS\SWXCACLS.exe
    2009-05-17 11:46:54 ----A---- C:\WINDOWS\SWSC.exe
    2009-05-17 11:46:54 ----A---- C:\WINDOWS\SWREG.exe
    2009-05-17 11:46:54 ----A---- C:\WINDOWS\sed.exe
    2009-05-17 11:46:54 ----A---- C:\WINDOWS\NIRCMD.exe
    2009-05-17 11:46:54 ----A---- C:\WINDOWS\grep.exe
    2009-05-17 11:46:38 ----D---- C:\WINDOWS\ERDNT
    2009-05-17 11:46:37 ----D---- C:\Combo-Fix
    2009-05-17 11:46:10 ----D---- C:\Qoobox
    2009-05-15 11:42:59 ----D---- C:\Documents and Settings\Principal\Application Data\Free Spider TreeCardGames
    2009-05-14 11:02:26 ----A---- C:\WINDOWS\system32\Vbis4032.dll
    2009-05-14 11:02:26 ----A---- C:\WINDOWS\system32\TabCtFR.dll
    2009-05-14 11:02:26 ----A---- C:\WINDOWS\system32\stdftfr.dll
    2009-05-14 11:02:25 ----A---- C:\WINDOWS\system32\Rdo20FR.dll
    2009-05-14 11:02:25 ----A---- C:\WINDOWS\system32\RchTxFR.dll
    2009-05-14 11:02:25 ----A---- C:\WINDOWS\system32\MSDBRptR.dll
    2009-05-14 11:02:25 ----A---- C:\WINDOWS\system32\MSCmCFR.dll
    2009-05-14 11:02:25 ----A---- C:\WINDOWS\system32\MSCc2FR.dll
    2009-05-14 11:02:25 ----A---- C:\WINDOWS\system32\MCIFR.dll
    2009-05-14 11:02:24 ----A---- C:\WINDOWS\system32\GAPI32.dll
    2009-05-14 11:02:24 ----A---- C:\WINDOWS\system32\Dzip32.dll
    2009-05-14 11:02:24 ----A---- C:\WINDOWS\system32\Dzactx.dll
    2009-05-14 11:02:24 ----A---- C:\WINDOWS\system32\Duzactx.dll
    2009-05-14 11:02:24 ----A---- C:\WINDOWS\system32\Dunzip32.dll
    2009-05-14 11:02:24 ----A---- C:\WINDOWS\system32\DBRpRFR.dll
    2009-05-14 11:02:24 ----A---- C:\WINDOWS\system32\DBLstFR.dll
    2009-05-14 11:02:24 ----A---- C:\WINDOWS\system32\CmDlgFR.dll
    2009-05-14 11:02:18 ----D---- C:\Program Files\Win Généalogic
    2009-05-14 11:02:15 ----A---- C:\WINDOWS\system32\Msrd2x35.dll
    2009-05-14 11:02:15 ----A---- C:\WINDOWS\system32\msjet35.dll
    2009-05-14 11:02:14 ----A---- C:\WINDOWS\system32\msrepl35.dll
    2009-05-14 11:02:14 ----A---- C:\WINDOWS\system32\MSJTER35.DLL
    2009-05-14 11:02:14 ----A---- C:\WINDOWS\system32\MSJINT35.DLL
    2009-05-14 10:59:57 ----D---- C:\WINDOWS\system32\URTTemp
    2009-05-13 09:18:53 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
    2009-05-13 09:18:36 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
    2009-05-13 09:18:11 ----HDC---- C:\WINDOWS\$NtUninstallKB954459$
    2009-05-12 11:35:27 ----HD---- C:\WINDOWS\msdownld.tmp
    2009-05-12 11:35:27 ----D---- C:\WINDOWS\RegisteredPackages
    2009-05-12 11:35:26 ----D---- C:\Documents and Settings\All Users\Application Data\ACD Systems
    2009-05-12 11:35:19 ----D---- C:\Program Files\Goggle Earth
    2009-05-12 10:30:03 ----D---- C:\WINDOWS\Prefetch
    2009-05-12 10:24:49 ----HDC---- C:\WINDOWS\$NtUninstallKB967715$
    2009-05-12 10:24:41 ----HDC---- C:\WINDOWS\$NtUninstallKB963027$
    2009-05-12 10:24:35 ----HDC---- C:\WINDOWS\$NtUninstallKB961373$
    2009-05-12 10:24:29 ----HDC---- C:\WINDOWS\$NtUninstallKB960803$
    2009-05-12 10:24:22 ----HDC---- C:\WINDOWS\$NtUninstallKB960225$
    2009-05-12 10:24:16 ----HDC---- C:\WINDOWS\$NtUninstallKB959426$
    2009-05-12 10:24:11 ----HDC---- C:\WINDOWS\$NtUninstallKB958690$
    2009-05-12 10:24:05 ----HDC---- C:\WINDOWS\$NtUninstallKB958687$
    2009-05-12 10:24:00 ----HDC---- C:\WINDOWS\$NtUninstallKB958644$
    2009-05-12 10:23:54 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
    2009-05-12 10:23:48 ----HDC---- C:\WINDOWS\$NtUninstallKB956803$
    2009-05-12 10:23:43 ----HDC---- C:\WINDOWS\$NtUninstallKB956802$
    2009-05-12 10:23:33 ----HDC---- C:\WINDOWS\$NtUninstallKB956572$
    2009-05-12 10:23:25 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
    2009-05-12 10:23:19 ----HDC---- C:\WINDOWS\$NtUninstallKB954600$
    2009-05-12 10:23:13 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
    2009-05-12 10:23:07 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
    2009-05-12 10:23:01 ----HDC---- C:\WINDOWS\$NtUninstallKB952004$
    2009-05-12 10:22:53 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
    2009-05-12 10:22:47 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
    2009-05-12 10:22:42 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
    2009-05-12 10:22:36 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
    2009-05-12 10:22:31 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
    2009-05-12 10:22:23 ----HDC---- C:\WINDOWS\$NtUninstallKB938464-v2$
    2009-05-12 10:22:16 ----HDC---- C:\WINDOWS\$NtUninstallKB923561$
    2009-05-12 10:09:33 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
    2009-05-11 11:00:34 ----D---- C:\lotus
    2009-05-10 11:02:51 ----D---- C:\AC97
    2009-05-10 10:25:27 ----D---- C:\Documents and Settings\All Users\Application Data\ACD Systems(2)
    2009-05-10 10:13:08 ----SHD---- C:\Config.Msi
    2009-05-10 09:46:26 ----D---- C:\Documents and Settings\Principal\Application Data\Smart-Shopper
    2009-05-10 09:46:21 ----D---- C:\Program Files\PandoBar
    2009-05-10 09:46:10 ----D---- C:\Program Files\Pando Networks
    2009-05-10 09:38:20 ----RSD---- C:\WINDOWS\assembly
    2009-05-10 09:37:33 ----D---- C:\WINDOWS\Microsoft.NET
    2009-05-10 09:17:20 ----D---- C:\Documents and Settings\Principal\Application Data\skypePM
    2009-05-10 09:12:28 ----D---- C:\Documents and Settings\Principal\Application Data\Skype
    2009-05-10 09:12:02 ----D---- C:\Program Files\Skype
    2009-05-10 09:11:55 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
    2009-05-10 08:40:03 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
    2009-05-10 08:39:53 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
    2009-05-10 08:39:46 ----HDC---- C:\WINDOWS\$NtUninstallKB959426_0$
    2009-05-10 08:39:37 ----HDC---- C:\WINDOWS\$NtUninstallKB961373_0$
    2009-05-10 08:39:29 ----HDC---- C:\WINDOWS\$NtUninstallKB956803_0$
    2009-05-10 08:39:21 ----HDC---- C:\WINDOWS\$NtUninstallKB955839$
    2009-05-10 08:39:13 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
    2009-05-10 08:39:05 ----HDC---- C:\WINDOWS\$NtUninstallKB960225_0$
    2009-05-10 08:38:44 ----HDC---- C:\WINDOWS\$NtUninstallKB956572_0$
    2009-05-10 08:38:25 ----HDC---- C:\WINDOWS\$NtUninstallKB938464-v2_0$
    2009-05-10 08:37:59 ----HDC---- C:\WINDOWS\$NtUninstallKB952004_0$
    2009-05-10 08:37:48 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
    2009-05-10 08:37:40 ----HDC---- C:\WINDOWS\$NtUninstallKB957097_0$
    2009-05-10 08:37:33 ----HDC---- C:\WINDOWS\$NtUninstallKB958687_0$
    2009-05-10 08:37:25 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
    2009-05-10 08:37:15 ----HDC---- C:\WINDOWS\$NtUninstallKB967715_0$
    2009-05-10 08:37:05 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$
    2009-05-10 08:36:57 ----HDC---- C:\WINDOWS\$NtUninstallKB958690_0$
    2009-05-10 08:36:45 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
    2009-05-10 08:36:28 ----HDC---- C:\WINDOWS\$NtUninstallKB960803_0$
    2009-05-10 08:36:20 ----HDC---- C:\WINDOWS\$NtUninstallKB954600_0$
    2009-05-10 08:36:12 ----HDC---- C:\WINDOWS\$NtUninstallKB958644_0$
    2009-05-10 08:36:04 ----HDC---- C:\WINDOWS\$NtUninstallKB955069_0$
    2009-05-10 08:35:56 ----HDC---- C:\WINDOWS\$NtUninstallKB956802_0$
    2009-05-10 08:35:37 ----HDC---- C:\WINDOWS\$NtUninstallKB963027_0$
    2009-05-10 08:35:27 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
    2009-05-10 08:35:10 ----HDC---- C:\WINDOWS\$NtUninstallKB923561_0$
    2009-05-09 23:00:38 ----D---- C:\Program Files\Google
    2009-05-09 22:48:59 ----A---- C:\WINDOWS\MultiClipboard.ini
    2009-05-09 22:39:51 ----DC---- C:\WINDOWS\system32\DRVSTORE
    2009-05-09 22:39:43 ----D---- C:\Program Files\MSN Messenger
    2009-05-09 22:37:25 ----D---- C:\Program Files\PhotoFiltre
    2009-05-09 22:36:37 ----D---- C:\Program Files\CCleaner
    2009-05-09 22:31:42 ----D---- C:\Program Files\Convertisseur Euro
    2009-05-09 22:29:31 ----D---- C:\Program Files\Bi-Exploreur
    2009-05-09 22:18:45 ----D---- C:\Program Files\Spybot - Search & Destroy
    2009-05-09 22:16:55 ----D---- C:\Program Files\TeaTimer (Spybot - Search & Destroy)
    2009-05-09 22:16:54 ----D---- C:\Program Files\SDHelper (Spybot - Search & Destroy)
    2009-05-09 22:16:53 ----D---- C:\Program Files\Misc. Support Library (Spybot - Search & Destroy)
    2009-05-09 22:16:53 ----D---- C:\Program Files\File Scanner Library (Spybot - Search & Destroy)
    2009-05-09 22:07:02 ----A---- C:\WINDOWS\RtlRack.ini
    2009-05-09 22:03:12 ----D---- C:\Program Files\Audacity
    2009-05-09 22:02:49 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
    2009-05-09 21:58:40 ----D---- C:\Program Files\Aide mémoire
    2009-05-09 21:56:03 ----D---- C:\Documents and Settings\Principal\Application Data\ACD Systems
    2009-05-09 21:09:47 ----D---- C:\Program Files\Rainlendar2
    2009-05-09 21:05:46 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
    2009-05-09 21:05:36 ----D---- C:\Program Files\Fichiers communs\Adobe
    2009-05-09 21:03:12 ----D---- C:\Documents and Settings\All Users\Application Data\NOS
    2009-05-09 21:03:11 ----D---- C:\Program Files\NOS
    2009-05-09 21:00:24 ----D---- C:\Documents and Settings\Principal\Application Data\AdobeUM
    2009-05-09 20:51:56 ----D---- C:\Program Files\Fichiers communs\ACD Systems
    2009-05-09 20:51:56 ----D---- C:\Program Files\ACD Systems
    2009-05-09 20:40:20 ----A---- C:\WINDOWS\ODBC.INI
    2009-05-09 20:39:33 ----D---- C:\Program Files\Fichiers communs\Designer
    2009-05-09 20:39:19 ----D---- C:\WINDOWS\ShellNew
    2009-05-09 20:37:32 ----D---- C:\Documents and Settings\All Users\Application Data\SBT
    2009-05-09 20:37:31 ----D---- C:\Program Files\Snapshot Viewer
    2009-05-09 20:36:40 ----D---- C:\Program Files\Microsoft Office
    2009-05-09 20:36:40 ----D---- C:\Documents and Settings\Principal\Application Data\Microsoft Web Folders
    2009-05-09 20:26:09 ----A---- C:\WINDOWS\system32\wpa.bak
    2009-05-09 20:22:55 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
    2009-05-09 20:08:49 ----D---- C:\Documents and Settings\Principal\Application Data\ArcSoft
    2009-05-09 20:02:35 ----D---- C:\Documents and Settings\Principal\Application Data\Macromedia
    2009-05-09 16:57:45 ----D---- C:\Documents and Settings\Principal\Application Data\Creative
    2009-05-09 16:53:31 ----RA---- C:\WINDOWS\V0090Cfg.exe
    2009-05-09 16:53:31 ----RA---- C:\WINDOWS\system32\V0090Vfw.dll
    2009-05-09 16:53:31 ----RA---- C:\WINDOWS\CtDrvIns.exe
    2009-05-09 16:53:29 ----RA---- C:\WINDOWS\system32\V0090Sti.dll
    2009-05-09 16:53:29 ----RA---- C:\WINDOWS\system32\V0090Srv.exe
    2009-05-09 16:53:29 ----RA---- C:\WINDOWS\system32\V0090Pin.dll
    2009-05-09 16:53:29 ----RA---- C:\WINDOWS\system32\V0090Hwx.dll
    2009-05-09 16:53:29 ----RA---- C:\WINDOWS\system32\CtRegApp.dll
    2009-05-09 16:53:29 ----RA---- C:\WINDOWS\system32\CtCamMgr.dll
    2009-05-09 16:53:23 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
    2009-05-09 16:52:39 ----D---- C:\Program Files\ArcSoft
    2009-05-09 16:52:39 ----A---- C:\WINDOWS\PCDLIB32.DLL
    2009-05-09 16:52:39 ----A---- C:\WINDOWS\ME_setup.ini
    2009-05-09 16:51:58 ----RA---- C:\WINDOWS\system32\ROBOEX32.DLL
    2009-05-09 16:51:25 ----D---- C:\Program Files\Ulead Systems
    2009-05-09 16:48:16 ----A---- C:\WINDOWS\IsUn040c.exe
    2009-05-09 16:47:52 ----D---- C:\Program Files\Creative
    2009-05-09 16:37:39 ----A---- C:\WINDOWS\system32\prnunins.exe
    2009-05-09 16:37:36 ----A---- C:\WINDOWS\IsUninst.exe
    2009-05-09 16:37:28 ----D---- C:\Program Files\hp deskjet 5550 series
    2009-05-09 16:37:05 ----D---- C:\Program Files\Hewlett-Packard
    2009-05-09 01:41:59 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
    2009-05-09 01:32:32 ----A---- C:\WINDOWS\system32\spxcoins.dll
    2009-05-09 01:32:32 ----A---- C:\WINDOWS\system32\irclass.dll
    2009-05-09 01:32:11 ----RA---- C:\WINDOWS\SET33.tmp
    2009-05-09 01:32:09 ----RA---- C:\WINDOWS\SET27.tmp
    2009-05-09 01:32:07 ----RA---- C:\WINDOWS\SET24.tmp
    2009-05-09 01:03:39 ----RA---- C:\WINDOWS\SET91.tmp
    2009-05-09 01:03:32 ----RA---- C:\WINDOWS\SET56.tmp
    2009-05-09 01:03:29 ----RA---- C:\WINDOWS\SET4A.tmp
    2009-05-09 01:03:27 ----RA---- C:\WINDOWS\SET47.tmp
    2009-05-09 00:42:48 ----D---- C:\Program Files\VIA
    2009-05-09 00:42:48 ----A---- C:\WINDOWS\system32\difxapi.dll
    2009-05-09 00:42:21 ----RA---- C:\WINDOWS\system32\ChCfg.exe
    2009-05-09 00:41:53 ----RA---- C:\WINDOWS\system32\RTLCPL.exe
    2009-05-09 00:41:53 ----RA---- C:\WINDOWS\system32\RtlCPAPI.dll
    2009-05-09 00:41:52 ----RA---- C:\WINDOWS\soundman.exe
    2009-05-09 00:41:49 ----A---- C:\WINDOWS\system32\ksuser.dll
    2009-05-09 00:41:45 ----RA---- C:\WINDOWS\avrack.ini
    2009-05-09 00:41:45 ----D---- C:\Program Files\Realtek Sound Manager
    2009-05-09 00:41:45 ----D---- C:\Program Files\AvRack
    2009-05-09 00:41:35 ----D---- C:\Program Files\Realtek AC97
    2009-05-09 00:41:32 ----RA---- C:\WINDOWS\alcupd.exe
    2009-05-09 00:41:32 ----RA---- C:\WINDOWS\Alcrmv.exe
    2009-05-09 00:35:19 ----D---- C:\Documents and Settings\Principal\Application Data\vlc
    2009-05-08 20:04:58 ----A---- C:\WINDOWS\system32\MRT.exe
    2009-05-08 19:45:33 ----D---- C:\Documents and Settings\Principal\Application Data\Adobe
    2009-05-08 19:33:36 ----D---- C:\WINDOWS\system32\PreInstall
    2009-05-08 19:33:34 ----HD---- C:\WINDOWS\$hf_mig$
    2009-05-08 19:29:42 ----D---- C:\WINDOWS\system32\SoftwareDistribution
    2009-05-08 01:46:15 ----A---- C:\WINDOWS\system32\h323log.txt
    2009-05-08 01:43:47 ----A---- C:\WINDOWS\system32\nv4_disp.dll
    2009-05-08 01:42:12 ----SHD---- C:\WINDOWS\Installer
    2009-05-08 01:42:12 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
    2009-05-08 01:42:11 ----D---- C:\Program Files\Fichiers communs\ODBC
    2009-05-08 01:42:11 ----A---- C:\WINDOWS\ODBCINST.INI
    2009-05-08 01:42:08 ----RD---- C:\Program Files
    2009-05-08 01:42:08 ----D---- C:\Program Files\Fichiers communs\SpeechEngines
    2009-05-08 01:42:08 ----D---- C:\Program Files\Fichiers communs\Microsoft Shared
    2009-05-08 01:42:08 ----D---- C:\Program Files\Fichiers communs
    2009-05-08 01:41:54 ----A---- C:\WINDOWS\system32\EqnClass.Dll
    2009-05-08 01:41:54 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
    2009-05-08 01:41:51 ----A---- C:\WINDOWS\system32\CONFIG.TMP
    2009-05-08 01:41:49 ----A---- C:\WINDOWS\system32\storprop.dll
    2009-05-08 01:41:39 ----ASH---- C:\Documents and Settings\All Users\Application Data\desktop.ini
    2009-05-08 01:41:34 ----RA---- C:\WINDOWS\SET8.tmp
    2009-05-08 01:41:32 ----RA---- C:\WINDOWS\SET4.tmp
    2009-05-08 01:41:30 ----RA---- C:\WINDOWS\SET3.tmp
    2009-05-08 01:41:24 ----D---- C:\WINDOWS\system32\CatRoot2
    2009-05-08 01:41:24 ----D---- C:\WINDOWS\system32\CatRoot
    2009-05-08 01:41:19 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
    2009-05-08 01:40:57 ----D---- C:\Documents and Settings
    2009-05-08 01:40:56 ----SHD---- C:\System Volume Information
    2009-05-08 01:40:05 ----RASH---- C:\boot.ini
    2009-05-08 01:33:51 ----RSHDC---- C:\WINDOWS\system32\dllcache
    2009-05-08 01:33:51 ----RSD---- C:\WINDOWS\Fonts
    2009-05-08 01:33:51 ----RD---- C:\WINDOWS\Web
    2009-05-08 01:33:51 ----HD---- C:\WINDOWS\inf
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\WinSxS
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\twain_32
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\Temp
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\wins
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\wbem
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\usmt
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\spool
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\ShellExt
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\Setup
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\ras
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\oobe
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\npp
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\mui
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\inetsrv
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\IME
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\icsxml
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\ias
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\export
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\drivers
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\dhcp
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\config
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\3com_dmi
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\3076
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\2052
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\1054
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\1042
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\1041
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\1037
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\1036
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\1033
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\1031
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\1028
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32\1025
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system32
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\system
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\security
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\Resources
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\repair
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\Provisioning
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\PeerNet
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\pchealth
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\mui
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\msapps
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\msagent
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\Media
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\java
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\ime
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\Help
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\ehome
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\Driver Cache
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\Debug
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\Cursors
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\Connection Wizard
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\Config
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\AppPatch
    2009-05-08 01:33:51 ----D---- C:\WINDOWS\addins
    2009-05-08 01:33:51 ----D---- C:\WINDOWS
    2009-05-08 00:41:04 ----D---- C:\Documents and Settings\All Users\Application Data\CyberLink
    2009-05-08 00:41:02 ----HD---- C:\Program Files\InstallShield Installation Information
    2009-05-08 00:41:02 ----D---- C:\Program Files\CyberLink
    2009-05-08 00:40:48 ----D---- C:\Program Files\Fichiers communs\InstallShield
    2009-05-08 00:37:55 ----A---- C:\WINDOWS\system32\picn20.dll
    2009-05-08 00:37:54 ----D---- C:\Program Files\Fichiers communs\Ahead
    2009-05-08 00:37:54 ----A---- C:\WINDOWS\system32\NeroCheck.exe
    2009-05-08 00:37:54 ----A---- C:\WINDOWS\system32\ImagXpr5.dll
    2009-05-08 00:37:54 ----A---- C:\WINDOWS\system32\imagx5.dll
    2009-05-08 00:37:54 ----A---- C:\WINDOWS\system32\imagr5.dll
    2009-05-08 00:37:50 ----D---- C:\Program Files\Ahead
    2009-05-08 00:33:55 ----D---- C:\Program Files\Adobe
    2009-05-08 00:31:03 ----D---- C:\WINDOWS\WBEM
    2009-05-08 00:29:30 ----HDC---- C:\WINDOWS\ie8
    2009-05-08 00:29:01 ----A---- C:\WINDOWS\system32\MSVCR71.dll
    2009-05-08 00:29:01 ----A---- C:\WINDOWS\system32\MSVCP71.dll
    2009-05-08 00:29:01 ----A---- C:\WINDOWS\system32\MFC71.dll
    2009-05-08 00:29:01 ----A---- C:\WINDOWS\system32\aswBoot.exe
    2009-05-08 00:28:58 ----D---- C:\Program Files\Alwil Software
    2009-05-08 00:28:16 ----D---- C:\Program Files\VideoLAN
    2009-05-08 00:28:06 ----D---- C:\Program Files\SuperCopier2
    2009-05-08 00:27:40 ----D---- C:\Program Files\WinRAR
    2009-05-08 00:11:35 ----A---- C:\WINDOWS\system32\msxml6r.dll
    2009-05-08 00:11:35 ----A---- C:\WINDOWS\system32\msxml6.dll
    2009-05-08 00:11:24 ----A---- C:\WINDOWS\system32\smtpapi.dll
    2009-05-08 00:11:24 ----A---- C:\WINDOWS\system32\rwnh.dll
    2009-05-08 00:11:24 ----A---- C:\WINDOWS\system32\comsdupd.exe
    2009-05-08 00:11:21 ----A---- C:\WINDOWS\system32\bitsprx4.dll
    2009-05-08 00:11:21 ----A---- C:\WINDOWS\system32\azroles.dll
    2009-05-08 00:11:21 ----A---- C:\WINDOWS\system32\ativvaxx.dll
    2009-05-08 00:11:21 ----A---- C:\WINDOWS\system32\ativtmxx.dll
    2009-05-08 00:11:21 ----A---- C:\WINDOWS\system32\ati3duag.dll
    2009-05-08 00:11:21 ----A---- C:\WINDOWS\system32\ati3d1ag.dll
    2009-05-08 00:11:21 ----A---- C:\WINDOWS\system32\ati2dvag.dll
    2009-05-08 00:11:21 ----A---- C:\WINDOWS\system32\ati2dvaa.dll
    2009-05-08 00:11:21 ----A---- C:\WINDOWS\system32\ati2cqag.dll
    2009-05-08 00:11:21 ----A---- C:\WINDOWS\system32\aaclient.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\hsfcisp2.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\eapsvc.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\eapqec.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\eappprxy.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\eapphost.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\eappgnui.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\eappcfg.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\eapp3hst.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\eapolqec.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\dot3ui.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\dot3svc.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\dot3msm.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\dot3gpclnt.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\dot3dlg.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\dot3cfg.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\dot3api.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\dimsroam.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\dimsntfy.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\dhcpqec.dll
    2009-05-08 00:11:20 ----A---- C:\WINDOWS\system32\credssp.dll
    2009-05-08 00:11:19 ----A---- C:\WINDOWS\system32\kbdpash.dll
    2009-05-08 00:11:19 ----A---- C:\WINDOWS\system32\kbdnepr.dll
    2009-05-08 00:11:19 ----A---- C:\WINDOWS\system32\kbdiultn.dll
    2009-05-08 00:11:19 ----A---- C:\WINDOWS\system32\kbdbhc.dll
    2009-05-08 00:11:18 ----A---- C:\WINDOWS\system32\napstat.exe
    2009-05-08 00:11:18 ----A---- C:\WINDOWS\system32\napmontr.dll
    2009-05-08 00:11:18 ----A---- C:\WINDOWS\system32\napipsec.dll
    2009-05-08 00:11:18 ----A---- C:\WINDOWS\system32\mtxparhd.dll
    2009-05-08 00:11:18 ----A---- C:\WINDOWS\system32\msshavmsg.dll
    2009-05-08 00:11:18 ----A---- C:\WINDOWS\system32\mssha.dll
    2009-05-08 00:11:18 ----A---- C:\WINDOWS\system32\mmcperf.exe
    2009-05-08 00:11:18 ----A---- C:\WINDOWS\system32\mmcfxcommon.dll
    2009-05-08 00:11:18 ----A---- C:\WINDOWS\system32\mmcex.dll
    2009-05-08 00:11:18 ----A---- C:\WINDOWS\system32\microsoft.managementconsole.dll
    2009-05-08 00:11:18 ----A---- C:\WINDOWS\system32\mdmxsdk.dll
    2009-05-08 00:11:18 ----A---- C:\WINDOWS\system32\l2gpstore.dll
    2009-05-08 00:11:18 ----A---- C:\WINDOWS\system32\kmsvc.dll
    2009-05-08 00:11:17 ----A---- C:\WINDOWS\system32\rhttpaa.dll
    2009-05-08 00:11:17 ----A---- C:\WINDOWS\system32\rasqec.dll
    2009-05-08 00:11:17 ----A---- C:\WINDOWS\system32\qutil.dll
    2009-05-08 00:11:17 ----A---- C:\WINDOWS\system32\qcliprov.dll
    2009-05-08 00:11:17 ----A---- C:\WINDOWS\system32\qagentrt.dll
    2009-05-08 00:11:17 ----A---- C:\WINDOWS\system32\qagent.dll
    2009-05-08 00:11:17 ----A---- C:\WINDOWS\system32\photometadatahandler.dll
    2009-05-08 00:11:17 ----A---- C:\WINDOWS\system32\onex.dll
    2009-05-08 00:11:16 ----A---- C:\WINDOWS\system32\xpsp3res.dll
    2009-05-08 00:11:16 ----A---- C:\WINDOWS\system32\slserv.exe
    2009-05-08 00:11:16 ----A---- C:\WINDOWS\system32\slrundll.exe
    2009-05-08 00:11:16 ----A---- C:\WINDOWS\system32\slgen.dll
    2009-05-08 00:11:16 ----A---- C:\WINDOWS\system32\slextspk.dll
    2009-05-08 00:11:16 ----A---- C:\WINDOWS\system32\slcoinst.dll
    2009-05-08 00:11:16 ----A---- C:\WINDOWS\system32\setupn.exe
    2009-05-08 00:11:16 ----A---- C:\WINDOWS\system32\s3gnb.dll
    2009-05-08 00:11:15 ----A---- C:\WINDOWS\system32\wmphoto.dll
    2009-05-08 00:11:15 ----A---- C:\WINDOWS\system32\wlanapi.dll
    2009-05-08 00:11:15 ----A---- C:\WINDOWS\system32\windowscodecsext.dll
    2009-05-08 00:11:15 ----A---- C:\WINDOWS\system32\windowscodecs.dll
    2009-05-08 00:11:15 ----A---- C:\WINDOWS\system32\verclsid.exe
    2009-05-08 00:11:15 ----A---- C:\WINDOWS\system32\tzchange.exe
    2009-05-08 00:11:15 ----A---- C:\WINDOWS\system32\tspkg.dll
    2009-05-08 00:11:15 ----A---- C:\WINDOWS\system32\tsgqec.dll
    2009-05-08 00:11:13 ----D---- C:\WINDOWS\system32\fr-fr
    2009-05-08 00:11:13 ----A---- C:\WINDOWS\system32\xmllite.dll
    2009-05-08 00:11:13 ----A---- C:\WINDOWS\slrundll.exe
    2009-05-08 00:11:12 ----D---- C:\WINDOWS\system32\fr
    2009-05-08 00:11:12 ----D---- C:\WINDOWS\system32\bits
    2009-05-08 00:11:12 ----D---- C:\WINDOWS\l2schemas
    2009-05-08 00:09:25 ----D---- C:\WINDOWS\ServicePackFiles
    2009-05-08 00:07:29 ----D---- C:\WINDOWS\network diagnostic
    2009-05-08 00:06:03 ----N---- C:\WINDOWS\system32\spmsg.dll
    2009-05-08 00:06:00 ----A---- C:\WINDOWS\002690_.tmp
    2009-05-08 00:05:47 ----D---- C:\WINDOWS\system32\ReinstallBackups
    2009-05-08 00:05:38 ----A---- C:\WINDOWS\system32\spupdsvc.exe
    2009-05-07 23:58:32 ----D---- C:\Documents and Settings\Principal\Application Data\Identities
    2009-05-07 23:58:30 ----HD---- C:\Program Files\Uninstall Information
    2009-05-07 23:58:23 ----SD---- C:\Documents and Settings\Principal\Application Data\Microsoft
    2009-05-07 23:58:23 ----ASH---- C:\Documents and Settings\Principal\Application Data\desktop.ini
    2009-05-07 23:57:28 ----D---- C:\WINDOWS\SoftwareDistribution
    2009-05-07 23:57:26 ----SD---- C:\WINDOWS\system32\Microsoft
    2009-05-07 23:57:26 ----A---- C:\WINDOWS\SchedLgU.Txt
    2009-05-07 23:54:00 ----D---- C:\WINDOWS\system32\xircom
    2009-05-07 23:54:00 ----D---- C:\Program Files\xerox
    2009-05-07 23:54:00 ----D---- C:\Program Files\microsoft frontpage
    2009-05-07 23:53:35 ----A---- C:\WINDOWS\control.ini
    2009-05-07 23:53:35 ----A---- C:\AUTOEXEC.BAT
    2009-05-07 23:53:15 ----A---- C:\WINDOWS\system32\mapi32.dll
    2009-05-07 23:52:11 ----SD---- C:\WINDOWS\Downloaded Program Files
    2009-05-07 23:52:11 ----RD---- C:\WINDOWS\Offline Web Pages
    2009-05-07 23:52:03 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
    2009-05-07 23:51:58 ----HD---- C:\Program Files\WindowsUpdate
    2009-05-07 23:51:52 ----D---- C:\Program Files\Services en ligne
    2009-05-07 23:51:36 ----D---- C:\WINDOWS\system32\DirectX
    2009-05-07 23:51:16 ----A---- C:\WINDOWS\system32\atrace.dll
    2009-05-07 23:51:14 ----A---- C:\WINDOWS\system32\desktop.ini
    2009-05-07 23:51:14 ----A---- C:\WINDOWS\desktop.ini
    2009-05-07 23:51:07 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
    2009-05-07 23:51:06 ----A---- C:\WINDOWS\system32\acctres.dll
    2009-05-07 23:51:05 ----D---- C:\Program Files\Fichiers communs\Services
    2009-05-07 23:51:03 ----SD---- C:\WINDOWS\Tasks
    2009-05-07 23:51:03 ----A---- C:\WINDOWS\system32\icfgnt5.dll
    2009-05-07 23:51:02 ----D---- C:\Program Files\Fichiers communs\MSSoap
    2009-05-07 23:50:58 ----D---- C:\WINDOWS\system32\Macromed
    2009-05-07 23:50:58 ----D---- C:\WINDOWS\srchasst
    2009-05-07 23:50:55 ----A---- C:\WINDOWS\system32\wuweb.dll
    2009-05-07 23:50:55 ----A---- C:\WINDOWS\system32\wucltui.dll
    2009-05-07 23:50:55 ----A---- C:\WINDOWS\system32\wuauserv.dll
    2009-05-07 23:50:55 ----A---- C:\WINDOWS\system32\wuaueng1.dll
    2009-05-07 23:50:54 ----A---- C:\WINDOWS\system32\wups.dll
    2009-05-07 23:50:54 ----A---- C:\WINDOWS\system32\wuaueng.dll
    2009-05-07 23:50:54 ----A---- C:\WINDOWS\system32\wuauclt1.exe
    2009-05-07 23:50:54 ----A---- C:\WINDOWS\system32\wuauclt.exe
    2009-05-07 23:50:54 ----A---- C:\WINDOWS\system32\wuapi.dll
    2009-05-07 23:50:54 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
    2009-05-07 23:50:54 ----A---- C:\WINDOWS\system32\qmgr.dll
    2009-05-07 23:50:54 ----A---- C:\WINDOWS\system32\bitsprx3.dll
    2009-05-07 23:50:54 ----A---- C:\WINDOWS\system32\bitsprx2.dll
    2009-05-07 23:50:50 ----D---- C:\Program Files\Movie Maker
    2009-05-07 23:50:46 ----A---- C:\WINDOWS\system32\safrslv.dll
    2009-05-07 23:50:46 ----A---- C:\WINDOWS\system32\safrdm.dll
    2009-05-07 23:50:46 ----A---- C:\WINDOWS\system32\safrcdlg.dll
    2009-05-07 23:50:46 ----A---- C:\WINDOWS\system32\racpldlg.dll
    2009-05-07 23:50:43 ----D---- C:\WINDOWS\system32\Restore
    2009-05-07 23:50:43 ----A---- C:\WINDOWS\system32\srrstr.dll
    2009-05-07 23:50:43 ----A---- C:\WINDOWS\system32\fltmc.exe
    2009-05-07 23:50:43 ----A---- C:\WINDOWS\system32\fltlib.dll
    2009-05-07 23:50:42 ----A---- C:\WINDOWS\system32\srsvc.dll
    2009-05-07 23:50:42 ----A---- C:\WINDOWS\system32\srclient.dll
    2009-05-07 23:50:42 ----A---- C:\WINDOWS\system32\mnmdd.dll
    2009-05-07 23:50:42 ----A---- C:\WINDOWS\system32\isrdbg32.dll
    2009-05-07 23:50:42 ----A---- C:\WINDOWS\system32\ils.dll
    2009-05-07 23:50:41 ----A---- C:\WINDOWS\system32\nmmkcert.dll
    2009-05-07 23:50:41 ----A---- C:\WINDOWS\system32\msconf.dll
    2009-05-07 23:50:41 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
    2009-05-07 23:50:39 ----D---- C:\Program Files\NetMeeting
    2009-05-07 23:50:39 ----A---- C:\WINDOWS\system32\msoert2.dll
    2009-05-07 23:50:38 ----A---- C:\WINDOWS\system32\msoeacct.dll
    2009-05-07 23:50:37 ----A---- C:\WINDOWS\system32\inetres.dll
    2009-05-07 23:50:37 ----A---- C:\WINDOWS\system32\inetcomm.dll
    2009-05-07 23:50:37 ----A---- C:\WINDOWS\system32\inetcomm(2).dll
    2009-05-07 23:50:35 ----D---- C:\Program Files\Outlook Express
    2009-05-07 23:50:35 ----A---- C:\WINDOWS\system32\schedsvc.dll
    2009-05-07 23:50:35 ----A---- C:\WINDOWS\system32\mstinit.exe
    2009-05-07 23:50:35 ----A---- C:\WINDOWS\system32\mstask.dll
    2009-05-07 23:50:35 ----A---- C:\WINDOWS\system32\icwphbk.dll
    2009-05-07 23:50:35 ----A---- C:\WINDOWS\system32\icwdial.dll
    2009-05-07 23:50:34 ----A---- C:\WINDOWS\system32\isign32.dll
    2009-05-07 23:50:34 ----A---- C:\WINDOWS\system32\inetcfg.dll
    2009-05-07 23:50:29 ----D---- C:\Program Files\Fichiers communs\System
    2009-05-07 23:50:27 ----D---- C:\Program Files\Internet Explorer
    2009-05-07 23:49:43 ----D---- C:\Program Files\ComPlus Applications
    2009-05-07 23:49:40 ----A---- C:\WINDOWS\vbaddin.ini
    2009-05-07 23:49:40 ----A---- C:\WINDOWS\vb.ini
    2009-05-07 23:49:35 ----D---- C:\WINDOWS\Registration
    2009-05-07 23:49:26 ----D---- C:\Program Files\Windows Media Player
    2009-05-07 23:49:26 ----D---- C:\Program Files\Online Services
    2009-05-07 23:49:19 ----D---- C:\Program Files\Messenger
    2009-05-07 23:49:15 ----D---- C:\Program Files\MSN Gaming Zone
    2009-05-07 23:49:15 ----A---- C:\WINDOWS\system32\write.exe
    2009-05-07 23:49:07 ----A---- C:\WINDOWS\system32\sndvol32.exe
    2009-05-07 23:49:07 ----A---- C:\WINDOWS\system32\hticons.dll
    2009-05-07 23:49:06 ----A---- C:\WINDOWS\system32\winchat.exe
    2009-05-07 23:49:06 ----A---- C:\WINDOWS\system32\avwav.dll
    2009-05-07 23:49:06 ----A---- C:\WINDOWS\system32\avtapi.dll
    2009-05-07 23:49:06 ----A---- C:\WINDOWS\system32\avmeter.dll
    2009-05-07 23:48:59 ----A---- C:\WINDOWS\system32\getuname.dll
    2009-05-07 23:48:59 ----A---- C:\WINDOWS\system32\charmap.exe
    2009-05-07 23:48:59 ----A---- C:\WINDOWS\s
    24 Mai 2009 10:22:32

    Bonjour,

    Il n'y a pas de grosse infections.

    On va faire ceci.

    I)Télécharger sur ton bureau Malwarebyte's Anti-Malware :

    telecharge malware's bytes Anti-Malware a cette adresse:

    malwaresbyte's anti-malware

    1)Double-clic « mbam-setup »,l'installation se lance (installer sans rien changer).
    2)Lance le programme,va dans l'onlet « mise à jour » puis clique « recherche de mise à jour ».
    3)Va dans l'onglet « recherche » puis cocher « Exécuter un exament complet » >>clique « rechercher » puis lancer l'examen.
    4)A la fin du scan ,si il y a des infections clique « afficher résultat ».
    5)fermer toutes les autres applications.
    6)Vérifier si tout est coché et clic « Supprimer la sélection ».

    7)Un rapport s'ouvre copier-coller dans ta prochaine réponse

    Comment coller un rapport Malwarebyte's Anti-Malware sur le forum ?

    . rend toi dans l'onglet rapport/log de malwarebyte’s.
    . tu cliques dessus le dernier rapport pour l'afficher .
    . le bloc notes s’ouvre.
    . clique sur edition en haut du boc notes,et puis sur sélectionner tous .
    . recliques sur edition puis sur copier et tu reviens sur le forum ou tu doit mettre ta réponse .
    . tu cliques droit dans le cadre de la reponse et coller.

    (note :si vous avez windows vista et que le logiciel ne se lance pas , faite clique droit éxécuter en tant qu’administrateur )
    24 Mai 2009 12:33:20

    Voila! le scan est terminé.
    je poste le rapport de fin à ton intention. Merci encore pour le temps que tu me consacres.

    Rapport de "malwarebytes' anti-malware"

    Malwarebytes' Anti-Malware 1.36
    Version de la base de données: 2174
    Windows 5.1.2600 Service Pack 3

    24/05/2009 12:23:43
    mbam-log-2009-05-24 (12-23-43).txt

    Type de recherche: Examen complet (C:\|D:\|H:\|)
    Eléments examinés: 281815
    Temps écoulé: 1 hour(s), 19 minute(s), 38 second(s)

    Processus mémoire infecté(s): 0
    Module(s) mémoire infecté(s): 0
    Clé(s) du Registre infectée(s): 6
    Valeur(s) du Registre infectée(s): 0
    Elément(s) de données du Registre infecté(s): 0
    Dossier(s) infecté(s): 0
    Fichier(s) infecté(s): 6

    Processus mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Module(s) mémoire infecté(s):
    (Aucun élément nuisible détecté)

    Clé(s) du Registre infectée(s):
    HKEY_CLASSES_ROOT\TypeLib\{305c6cb1-9d31-4489-881d-5a8e2dc3fe14} (Adware.Shoper) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{e79b1445-dfea-4bef-a786-e0c0f33c863b} (Adware.Shoper) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{4cf088bd-be95-40a5-be9b-677f8683edea} (Adware.Shoper) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{6fac4823-815e-4361-836e-46d65ed2550b} (Adware.Shoper) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{911f251e-34fd-465e-b6ce-df00ff49a6be} (Adware.Shoper) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{fe4f1649-8909-49c0-87ba-24d65120db46} (Adware.Shoper) -> Quarantined and deleted successfully.

    Valeur(s) du Registre infectée(s):
    (Aucun élément nuisible détecté)

    Elément(s) de données du Registre infecté(s):
    (Aucun élément nuisible détecté)

    Dossier(s) infecté(s):
    (Aucun élément nuisible détecté)

    Fichier(s) infecté(s):
    C:\Program Files\Smart-Shopper\Bin\2.5.1\Smrt-Shpr.dll (Adware.Shoper) -> Quarantined and deleted successfully.
    C:\System Volume Information\_restore{A6D60B90-B576-416C-88C2-BFC91A747754}\RP25\A0003778.exe (Malware.Tool) -> Quarantined and deleted successfully.
    C:\System Volume Information\_restore{A6D60B90-B576-416C-88C2-BFC91A747754}\RP23\A0001116.exe (Malware.Tool) -> Quarantined and deleted successfully.
    C:\System Volume Information\_restore{A6D60B90-B576-416C-88C2-BFC91A747754}\RP24\A0001742.dll (Adware.Shoper) -> Quarantined and deleted successfully.
    H:\Sauvegarde\Part 1\Program Files\Pinnacle\Shared Files\InstantCDDVD\Pixie\RegTool.exe (Rogue.RegTool) -> Quarantined and deleted successfully.
    H:\Sauvegarde\Part 2\Part 1\Program Files\Pinnacle\Shared Files\InstantCDDVD\Pixie\RegTool.exe (Rogue.RegTool) -> Quarantined and deleted successfully.
    Tom's guide dans le monde
    • Allemagne
    • Italie
    • Irlande
    • Royaume Uni
    • Etats Unis
    Suivre Tom's Guide
    Inscrivez-vous à la Newsletter
    • ajouter à twitter
    • ajouter à facebook
    • ajouter un flux RSS