Votre question

Problème avec Divocodec...

Tags :
  • Sécurité
Dernière réponse : dans Sécurité et virus
2 Janvier 2008 18:43:08

Bonjour,

Alors breve description :

Bon certains vont râler car j'ai chopé ce virus en utilisant le P2P pour un film . Le problème c'est que pour lire ce film on m'a demander d'utiliser Divocodec...

Tel le boulet que je suis je ne me suis pas renseigné sur ce "Divocodec" et j'ai apris que c'était un fake... :D 

mon Pare feu me bloque des injections de codes (HIPS) depuis que j'ai installé Divocodec.

Les dossiers qui les injecte sont Admin progam.exe ( que j'ai réussi a trouver mais je n'ose pas supprimer car soit c'est vraiment l'injecteur soit c'est un .exe vital au pc...)

Il y a un autre injecteur mais je neme souviens plus du nom...

En meme temps je voudrai savoir si ce virus...enfin quels sont ses effets ? Est-ce un propagateur de pub ? ou un truc du genre ? ou est plus grave ?

je vous serai vraiment reconnaissant de m'aider
Bonne journée

Autres pages sur : probleme divocodec

2 Janvier 2008 19:10:13

Salut,

On va voir.

Télécharge Hijackthis (de Trend Micro)
Poste un rapport en suivant ce tuto.
2 Janvier 2008 19:24:56

Voila le rapport :



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:24:26, on 02/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Avast\aswUpdSv.exe
C:\Program Files\Avast\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\FTRTSVC.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\Avast\ashMaiSv.exe
C:\Program Files\Avast\ashWebSv.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\Avast\ashDisp.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\progra~1\steam\steam.exe
C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\SAGEM Wi-Fi USB 802.11g\WLANUTL.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\MessengerDiscovery\MessengerDiscovery Live.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Cyril ze jibes king\Bureau\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://fr.yahoo.com/fsc/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\Avast\ashDisp.exe
O4 - HKLM\..\Run: [EPSON Stylus C42 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P23 "EPSON Stylus C42 Series" /O6 "USB001" /M "Stylus C42"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [close surf mail dupe] C:\Documents and Settings\All Users\Application Data\Tick Find Close Surf\browse data.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [fsc-reminder.exe] C:\WINDOWS\reminder\fsc-reminder.exe 2453927 14
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [Steam] "c:\progra~1\steam\steam.exe" -silent
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
O4 - HKCU\..\Run: [Drivedrv] C:\DOCUME~1\CYRILZ~1\APPLIC~1\MATHTR~1\Admin Program.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Démarrage rapide de HP Photosmart Premier.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Utilitaire réseau pour SAGEM Wi-Fi 11g USB adapter.lnk = ?
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://elbucho007.spaces.live.com//PhotoUpload/MsnPUpld...
O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPACl...
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Avast\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Avast\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Avast\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Avast\ashWebSv.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: Service de l'iPod (iPod Service) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe

--
End of file - 11909 bytes
Contenus similaires
2 Janvier 2008 20:05:21

Re,

Infection Lop.

Télécharge Lop S&D.exe ( d’ Eric 71 & Angeldark ) sur ton bureau

  • Double-clique dessus pour lancer l'installation
  • Puis double-clique sur le raccourci Lop S&D présent sur ton bureau
  • Séléctionne la langue souhaitée , puis choisis l'Option 1 ( Recherche )
  • Patiente jusqu'à la fin du scan
  • Poste le rapport généré ( C:\lopR.txt )

    ( Si le Bureau ne réapparait pas presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide )
    2 Janvier 2008 20:12:38

    voila :




    -----------------------------[ Lop S&D 2.0.1 ]---------------------------

    Microsoft Windows XP [version 5.1.2600] [ OS : Windows_NT ]

    "C:\Program Files\Lop SD"

    [ 02/01/2008 | 20:08:03,65 ] [ CYRIL ]


    -------------[ Listing des dossiers dans Application Data ]------------

    C:\Documents and Settings\Administrateur\APPLIC~1\Macromedia
    C:\Documents and Settings\Administrateur\APPLIC~1\Mozilla
    C:\Documents and Settings\Administrateur\APPLIC~1\Microsoft
    C:\Documents and Settings\Administrateur\APPLIC~1\desktop.ini
    C:\Documents and Settings\Administrateur\APPLIC~1\Identities

    C:\Documents and Settings\All Users\APPLIC~1\Adobe
    C:\Documents and Settings\All Users\APPLIC~1\Tick Find Close Surf
    C:\Documents and Settings\All Users\APPLIC~1\Apple Computer
    C:\Documents and Settings\All Users\APPLIC~1\Apple
    C:\Documents and Settings\All Users\APPLIC~1\FLEXnet
    C:\Documents and Settings\All Users\APPLIC~1\YAHOO
    C:\Documents and Settings\All Users\APPLIC~1\nView_Profiles
    C:\Documents and Settings\All Users\APPLIC~1\Messenger Plus!
    C:\Documents and Settings\All Users\APPLIC~1\Microsoft
    C:\Documents and Settings\All Users\APPLIC~1\WindowsLiveInstaller
    C:\Documents and Settings\All Users\APPLIC~1\HoleBalmDefaultFor
    C:\Documents and Settings\All Users\APPLIC~1\FlashFXP
    C:\Documents and Settings\All Users\APPLIC~1\CyberLink
    C:\Documents and Settings\All Users\APPLIC~1\NCH Software
    C:\Documents and Settings\All Users\APPLIC~1\NCH Swift Sound
    C:\Documents and Settings\All Users\APPLIC~1\Yahoo! Companion
    C:\Documents and Settings\All Users\APPLIC~1\WLInstaller
    C:\Documents and Settings\All Users\APPLIC~1\vsosdk
    C:\Documents and Settings\All Users\APPLIC~1\hpzinstall.log
    C:\Documents and Settings\All Users\APPLIC~1\HP
    C:\Documents and Settings\All Users\APPLIC~1\Sonic
    C:\Documents and Settings\All Users\APPLIC~1\BOONTY
    C:\Documents and Settings\All Users\APPLIC~1\Corel
    C:\Documents and Settings\All Users\APPLIC~1\Google
    C:\Documents and Settings\All Users\APPLIC~1\Installer.log
    C:\Documents and Settings\All Users\APPLIC~1\Sony Ericsson
    C:\Documents and Settings\All Users\APPLIC~1\Windows Genuine Advantage
    C:\Documents and Settings\All Users\APPLIC~1\desktop.ini
    C:\Documents and Settings\All Users\APPLIC~1\Ahead
    C:\Documents and Settings\All Users\APPLIC~1\SBSI

    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\vmntoolbar
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Vso
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Adobe
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\mathtraydog
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\BitTorrent
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\PnkBstrK.sys
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\InstallShield Installation Information
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\FileZilla
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Notepad++
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\wklnhst.dat
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Sierra Entertainment
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\SecuROM
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Dev-Cpp
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\pcouffin.log
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\ezpinst.exe
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\pcouffin.cat
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\pcouffin.sys
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\pcouffin.inf
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\NCH Swift Sound
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Macromedia
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Microsoft
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Screenshot Sender
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Xfire
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\WinRAR
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Corel
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\AdobeUM
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\teamspeak2
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\HP
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Ahead
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Mozilla
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Nvu
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\FastStone
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\iShell
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\vlc
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\InstallShield
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\CoffeeCup Software
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Lavasoft
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Google
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\FotoWire
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Leadertech
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Sun
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Apple Computer
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\CyberLink
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\MSNInstaller
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Identities
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Template
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Help
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\desktop.ini

    C:\Documents and Settings\Default User\APPLIC~1\desktop.ini
    C:\Documents and Settings\Default User\APPLIC~1\Microsoft
    C:\Documents and Settings\Default User\APPLIC~1\Identities


    C:\Documents and Settings\LocalService\APPLIC~1\Microsoft

    C:\Documents and Settings\NetworkService\APPLIC~1\Microsoft

    ----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------

    [02/01/2008 20:00][--ah-----]C:\WINDOWS\tasks\8B091E0D84E691A5.job
    [28/12/2007 15:00][--a------]C:\WINDOWS\tasks\Norton Security Scan.job
    [31/12/2007 08:48][--a------]C:\WINDOWS\tasks\AppleSoftwareUpdate.job
    [02/01/2008 18:50][--ah-----]C:\WINDOWS\tasks\SA.DAT
    [05/08/2004 13:00][-r-h-----]C:\WINDOWS\tasks\desktop.ini

    ---------------[ Listing des dossiers dans C:\Program Files ]--------------

    C:\Program Files\3D Flash Animator 4 Release 6
    C:\Program Files\ad-aware
    C:\Program Files\Adobe
    C:\Program Files\AGEIA Technologies
    C:\Program Files\Ahead
    C:\Program Files\Alcohol Soft
    C:\Program Files\Apple Software Update
    C:\Program Files\Avast
    C:\Program Files\BitTorrent
    C:\Program Files\Bonjour
    C:\Program Files\Bonjour(2)
    C:\Program Files\Boonty
    C:\Program Files\BoontyGames
    C:\Program Files\CamStudio
    C:\Program Files\CDBurnerXP Pro 3
    C:\Program Files\Circle Developement
    C:\Program Files\Codemasters
    C:\Program Files\Common Files
    C:\Program Files\ComPlus Applications
    C:\Program Files\Corel
    C:\Program Files\Counter-Strike 1.6
    C:\Program Files\CyberLink
    C:\Program Files\Cypron Studios
    C:\Program Files\DAEMON Tools
    C:\Program Files\Demo Battlefield 2
    C:\Program Files\Digilex
    C:\Program Files\Disc2Phone
    C:\Program Files\DivX
    C:\Program Files\DreamCatcher
    C:\Program Files\EA GAMES
    C:\Program Files\Electronic Arts
    C:\Program Files\eMule
    C:\Program Files\EPSON
    C:\Program Files\EsetOnlineScanner
    C:\Program Files\Fichiers communs
    C:\Program Files\FileZilla Client
    C:\Program Files\GameSpy
    C:\Program Files\GIMP-2.0
    C:\Program Files\Google
    C:\Program Files\Google earth
    C:\Program Files\Graphex3
    C:\Program Files\GUILD WARS
    C:\Program Files\Hewlett-Packard
    C:\Program Files\HP
    C:\Program Files\i tunes
    C:\Program Files\illiminable
    C:\Program Files\Internet Explorer
    C:\Program Files\Java
    C:\Program Files\lda
    C:\Program Files\LimeWire
    C:\Program Files\Logitech
    C:\Program Files\Lop SD
    C:\Program Files\Ma‹do Production
    C:\Program Files\MAIET
    C:\Program Files\Messenger Plus! Live
    C:\Program Files\MessengerDiscovery
    C:\Program Files\Micro Application
    C:\Program Files\Microsoft CAPICOM 2.1.0.2
    C:\Program Files\microsoft frontpage
    C:\Program Files\Microsoft Office
    C:\Program Files\Microsoft Visual Studio
    C:\Program Files\Microsoft Works
    C:\Program Files\Microsoft.NET
    C:\Program Files\Movie Maker
    C:\Program Files\Mozilla Firefox
    C:\Program Files\MSN Apps
    C:\Program Files\MSN Gaming Zone
    C:\Program Files\MSN Messenger
    C:\Program Files\MSXML 4.0
    C:\Program Files\MultiProxy
    C:\Program Files\NCH Software
    C:\Program Files\NCH Swift Sound
    C:\Program Files\NetMeeting
    C:\Program Files\Norton Security Scan
    C:\Program Files\Notepad++
    C:\Program Files\Nvu
    C:\Program Files\Online Services
    C:\Program Files\Outlook Express
    C:\Program Files\QuickTime
    C:\Program Files\Raccourcis de programmes
    C:\Program Files\SAGEM
    C:\Program Files\SAGEM Wi-Fi USB 802.11g
    C:\Program Files\Serif
    C:\Program Files\Services en ligne
    C:\Program Files\Setup
    C:\Program Files\SHARP GSM GPRS Wizard
    C:\Program Files\Sierra On-Line
    C:\Program Files\Sony Ericsson
    C:\Program Files\SplitCam
    C:\Program Files\Steam
    C:\Program Files\Sunbelt Software
    C:\Program Files\Team MediaPortal
    C:\Program Files\test
    C:\Program Files\Thomson
    C:\Program Files\THQ
    C:\Program Files\VCW VicMan's Photo Editor
    C:\Program Files\VideoLAN
    C:\Program Files\Vinum Master 2D Light
    C:\Program Files\VirtualDJ
    C:\Program Files\Visicom Media
    C:\Program Files\vmntoolbar
    C:\Program Files\vso
    C:\Program Files\Wanadoo
    C:\Program Files\Wanadoo Messager
    C:\Program Files\Warhammer 40 K
    C:\Program Files\webGobbler
    C:\Program Files\Windows Live
    C:\Program Files\Windows Live Safety Center
    C:\Program Files\Windows Media Bonus Pack for Windows XP
    C:\Program Files\Windows Media Components
    C:\Program Files\Windows Media Connect 2
    C:\Program Files\Windows Media Player
    C:\Program Files\Windows NT
    C:\Program Files\WinRAR
    C:\Program Files\xerox
    C:\Program Files\Yahoo!

    ------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------

    C:\Program Files\Fichiers communs\Adobe
    C:\Program Files\Fichiers communs\Ahead
    C:\Program Files\Fichiers communs\BOONTY Shared
    C:\Program Files\Fichiers communs\DESIGNER
    C:\Program Files\Fichiers communs\EPSON
    C:\Program Files\Fichiers communs\FotoWire
    C:\Program Files\Fichiers communs\GTK
    C:\Program Files\Fichiers communs\Hewlett-Packard
    C:\Program Files\Fichiers communs\HP
    C:\Program Files\Fichiers communs\InstallShield
    C:\Program Files\Fichiers communs\Java
    C:\Program Files\Fichiers communs\Logitech
    C:\Program Files\Fichiers communs\Macrovision Shared
    C:\Program Files\Fichiers communs\Macrovision Shared(2)
    C:\Program Files\Fichiers communs\Microsoft Shared
    C:\Program Files\Fichiers communs\MSSoap
    C:\Program Files\Fichiers communs\ODBC
    C:\Program Files\Fichiers communs\Services
    C:\Program Files\Fichiers communs\Sonic Shared
    C:\Program Files\Fichiers communs\SpeechEngines
    C:\Program Files\Fichiers communs\Symantec Shared
    C:\Program Files\Fichiers communs\System
    C:\Program Files\Fichiers communs\Teleca Shared
    C:\Program Files\Fichiers communs\Vbox
    C:\Program Files\Fichiers communs\Wise Installation Wizard

    ----------------------[ Recherche avec S_Lop ]---------------------

    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\MATHTR~1

    -----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------

    C:\WINDOWS\Tasks\8B091E0D84E691A5.job

    ----------------------[ Verification du Registre ]----------------------

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\uninstall\grey site kind]
    "DisplayName"="CiD Help"
    "UninstallString"="C:\\DOCUME~1\\CYRILZ~1\\APPLIC~1\\MATHTR~1\\Admin Program.exe -uninstall"

    [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
    "Drivedrv"="C:\\DOCUME~1\\CYRILZ~1\\APPLIC~1\\MATHTR~1\\Admin Program.exe"

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

    --------------------[ Verification du fichier Hosts ]---------------------

    Fichier Hosts MODIFIE

    127.0.0.1 drivecleaner.com ## added by CiD
    127.0.0.1 dynamique.drivecleaner.com ## added by CiD
    127.0.0.1 errorprotector.com ## added by CiD
    127.0.0.1 errorsafe.com ## added by CiD
    127.0.0.1 es.winantivirus.com ## added by CiD
    127.0.0.1 fr.winantivirus.com ## added by CiD
    127.0.0.1 fr.winfixer.com ## added by CiD
    127.0.0.1 go.drivecleaner.com ## added by CiD
    127.0.0.1 go.errorsafe.com ## added by CiD
    127.0.0.1 go.winantispyware.com ## added by CiD
    127.0.0.1 go.winantivirus.com ## added by CiD
    127.0.0.1 hk.winantivirus.com ## added by CiD
    127.0.0.1 instlog.errorsafe.com ## added by CiD
    127.0.0.1 instlog.winantivirus.com ## added by CiD
    127.0.0.1 instlog.winfixer.com ## added by CiD
    127.0.0.1 jsp.drivecleaner.com ## added by CiD
    127.0.0.1 kb.errorsafe.com ## added by CiD
    127.0.0.1 kb.winantivirus.com ## added by CiD
    127.0.0.1 nl.errorsafe.com ## added by CiD
    127.0.0.1 se.errorsafe.com ## added by CiD
    127.0.0.1 secure.drivecleaner.com ## added by CiD
    127.0.0.1 secure.errorsafe.com ## added by CiD
    127.0.0.1 secure.winantispam.com ## added by CiD
    127.0.0.1 secure.winantispy.com ## added by CiD
    127.0.0.1 secure.winantivirus.com ## added by CiD
    127.0.0.1 support.winantivirus.com ## added by CiD
    127.0.0.1 trial.updates.winsoftware.com ## added by CiD
    127.0.0.1 ulog.winantivirus.com ## added by CiD
    127.0.0.1 utils.errorsafe.com ## added by CiD
    127.0.0.1 utils.winantivirus.com ## added by CiD
    127.0.0.1 utils.winfixer.com ## added by CiD
    127.0.0.1 winantispyware.com ## added by CiD
    127.0.0.1 winantivirus.com ## added by CiD
    127.0.0.1 winfixer.com ## added by CiD
    127.0.0.1 winfixer2006.com ## added by CiD
    127.0.0.1 winsoftware.com ## added by CiD
    127.0.0.1 www.drivecleaner.com ## added by CiD
    127.0.0.1 www.errorprotector.com ## added by CiD
    127.0.0.1 www.errorsafe.com ## added by CiD
    127.0.0.1 www.systemdoctor.com ## added by CiD
    127.0.0.1 www.utils.winfixer.com ## added by CiD
    127.0.0.1 www.win-anti-virus-pro.com ## added by CiD
    127.0.0.1 www.win-virus-pro.com ## added by CiD
    127.0.0.1 www.winantispam.com ## added by CiD
    127.0.0.1 www.winantispy.com ## added by CiD
    127.0.0.1 www.winantispyware.com ## added by CiD
    127.0.0.1 www.winantivirus.com ## added by CiD
    127.0.0.1 www.winantiviruspro.com ## added by CiD
    127.0.0.1 www.windrivecleaner.com ## added by CiD
    127.0.0.1 www.windrivesafe.com ## added by CiD
    127.0.0.1 www.winfixer.com ## added by CiD
    127.0.0.1 www.winfixer2006.com ## added by CiD
    127.0.0.1 www.winsoftware.com ## added by CiD

    ----------------[ Recherche de fichiers avec Catchme ]-----------------

    catchme 0.3.1262 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-01-02 20:11:29
    Windows 5.1.2600 Service Pack 2 NTFS
    scanning hidden files ...
    scan completed successfully
    hidden files: 0

    --------------------[ Recherche d'autres infections ]---------------------

    Aucune autre infection trouvée !

    --------------------[ Fin du rapport a 20:11:40,78 ]----------------------
    2 Janvier 2008 21:08:11

    Re,

    Relance Lop S&D

  • Choisis cette fois ci l'Option 2 ( Suppression )
  • Ne ferme pas la fenêtre lors de la suppression !
  • Poste le rapport généré ( C:\lopR.txt )

    ( Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide )
    2 Janvier 2008 21:30:17


    -----------------------------[ Lop S&D 2.0.1 ]---------------------------

    Microsoft Windows XP [version 5.1.2600] [ OS : Windows_NT ]

    "C:\Program Files\Lop SD"

    [ 02/01/2008 | 21:25:28,28 ] [ CYRIL ]

    \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION /////////////////////////////

    Supprimé! - C:\WINDOWS\Tasks\8B091E0D84E691A5.job
    Supprimé! - C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\MATHTR~1
    Restauré! - Fichier Hosts

    //////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


    -------------[ Listing des dossiers dans Application Data ]------------

    C:\Documents and Settings\Administrateur\APPLIC~1\Macromedia
    C:\Documents and Settings\Administrateur\APPLIC~1\Mozilla
    C:\Documents and Settings\Administrateur\APPLIC~1\Microsoft
    C:\Documents and Settings\Administrateur\APPLIC~1\desktop.ini
    C:\Documents and Settings\Administrateur\APPLIC~1\Identities

    C:\Documents and Settings\All Users\APPLIC~1\Adobe
    C:\Documents and Settings\All Users\APPLIC~1\Tick Find Close Surf
    C:\Documents and Settings\All Users\APPLIC~1\Apple Computer
    C:\Documents and Settings\All Users\APPLIC~1\Apple
    C:\Documents and Settings\All Users\APPLIC~1\FLEXnet
    C:\Documents and Settings\All Users\APPLIC~1\YAHOO
    C:\Documents and Settings\All Users\APPLIC~1\nView_Profiles
    C:\Documents and Settings\All Users\APPLIC~1\Messenger Plus!
    C:\Documents and Settings\All Users\APPLIC~1\Microsoft
    C:\Documents and Settings\All Users\APPLIC~1\WindowsLiveInstaller
    C:\Documents and Settings\All Users\APPLIC~1\HoleBalmDefaultFor
    C:\Documents and Settings\All Users\APPLIC~1\FlashFXP
    C:\Documents and Settings\All Users\APPLIC~1\CyberLink
    C:\Documents and Settings\All Users\APPLIC~1\NCH Software
    C:\Documents and Settings\All Users\APPLIC~1\NCH Swift Sound
    C:\Documents and Settings\All Users\APPLIC~1\Yahoo! Companion
    C:\Documents and Settings\All Users\APPLIC~1\WLInstaller
    C:\Documents and Settings\All Users\APPLIC~1\vsosdk
    C:\Documents and Settings\All Users\APPLIC~1\hpzinstall.log
    C:\Documents and Settings\All Users\APPLIC~1\HP
    C:\Documents and Settings\All Users\APPLIC~1\Sonic
    C:\Documents and Settings\All Users\APPLIC~1\BOONTY
    C:\Documents and Settings\All Users\APPLIC~1\Corel
    C:\Documents and Settings\All Users\APPLIC~1\Google
    C:\Documents and Settings\All Users\APPLIC~1\Installer.log
    C:\Documents and Settings\All Users\APPLIC~1\Sony Ericsson
    C:\Documents and Settings\All Users\APPLIC~1\Windows Genuine Advantage
    C:\Documents and Settings\All Users\APPLIC~1\desktop.ini
    C:\Documents and Settings\All Users\APPLIC~1\Ahead
    C:\Documents and Settings\All Users\APPLIC~1\SBSI

    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\vmntoolbar
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Vso
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Adobe
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\BitTorrent
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\PnkBstrK.sys
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\InstallShield Installation Information
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\FileZilla
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Notepad++
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\wklnhst.dat
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Sierra Entertainment
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\SecuROM
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Dev-Cpp
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\pcouffin.log
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\pcouffin.cat
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\ezpinst.exe
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\pcouffin.inf
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\pcouffin.sys
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\NCH Swift Sound
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Macromedia
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Microsoft
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Screenshot Sender
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Xfire
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\WinRAR
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Corel
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\AdobeUM
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\teamspeak2
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\HP
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Ahead
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Mozilla
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Nvu
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\FastStone
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\iShell
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\vlc
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\InstallShield
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\CoffeeCup Software
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Lavasoft
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Google
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\FotoWire
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Leadertech
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Sun
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Apple Computer
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\CyberLink
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\MSNInstaller
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Identities
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Template
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\Help
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\desktop.ini

    C:\Documents and Settings\Default User\APPLIC~1\desktop.ini
    C:\Documents and Settings\Default User\APPLIC~1\Microsoft
    C:\Documents and Settings\Default User\APPLIC~1\Identities


    C:\Documents and Settings\LocalService\APPLIC~1\Microsoft

    C:\Documents and Settings\NetworkService\APPLIC~1\Microsoft

    ----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]---------------

    [28/12/2007 15:00][--a------]C:\WINDOWS\tasks\Norton Security Scan.job
    [31/12/2007 08:48][--a------]C:\WINDOWS\tasks\AppleSoftwareUpdate.job
    [02/01/2008 18:50][--ah-----]C:\WINDOWS\tasks\SA.DAT
    [05/08/2004 13:00][-r-h-----]C:\WINDOWS\tasks\desktop.ini

    ---------------[ Listing des dossiers dans C:\Program Files ]--------------

    C:\Program Files\3D Flash Animator 4 Release 6
    C:\Program Files\ad-aware
    C:\Program Files\Adobe
    C:\Program Files\AGEIA Technologies
    C:\Program Files\Ahead
    C:\Program Files\Alcohol Soft
    C:\Program Files\Apple Software Update
    C:\Program Files\Avast
    C:\Program Files\BitTorrent
    C:\Program Files\Bonjour
    C:\Program Files\Bonjour(2)
    C:\Program Files\Boonty
    C:\Program Files\BoontyGames
    C:\Program Files\CamStudio
    C:\Program Files\CDBurnerXP Pro 3
    C:\Program Files\Circle Developement
    C:\Program Files\Codemasters
    C:\Program Files\Common Files
    C:\Program Files\ComPlus Applications
    C:\Program Files\Corel
    C:\Program Files\Counter-Strike 1.6
    C:\Program Files\CyberLink
    C:\Program Files\Cypron Studios
    C:\Program Files\DAEMON Tools
    C:\Program Files\Demo Battlefield 2
    C:\Program Files\Digilex
    C:\Program Files\Disc2Phone
    C:\Program Files\DivX
    C:\Program Files\DreamCatcher
    C:\Program Files\EA GAMES
    C:\Program Files\Electronic Arts
    C:\Program Files\eMule
    C:\Program Files\EPSON
    C:\Program Files\EsetOnlineScanner
    C:\Program Files\Fichiers communs
    C:\Program Files\FileZilla Client
    C:\Program Files\GameSpy
    C:\Program Files\GIMP-2.0
    C:\Program Files\Google
    C:\Program Files\Google earth
    C:\Program Files\Graphex3
    C:\Program Files\GUILD WARS
    C:\Program Files\Hewlett-Packard
    C:\Program Files\HP
    C:\Program Files\i tunes
    C:\Program Files\illiminable
    C:\Program Files\Internet Explorer
    C:\Program Files\Java
    C:\Program Files\lda
    C:\Program Files\LimeWire
    C:\Program Files\Logitech
    C:\Program Files\Lop SD
    C:\Program Files\Ma‹do Production
    C:\Program Files\MAIET
    C:\Program Files\Messenger Plus! Live
    C:\Program Files\MessengerDiscovery
    C:\Program Files\Micro Application
    C:\Program Files\Microsoft CAPICOM 2.1.0.2
    C:\Program Files\microsoft frontpage
    C:\Program Files\Microsoft Office
    C:\Program Files\Microsoft Visual Studio
    C:\Program Files\Microsoft Works
    C:\Program Files\Microsoft.NET
    C:\Program Files\Movie Maker
    C:\Program Files\Mozilla Firefox
    C:\Program Files\MSN Apps
    C:\Program Files\MSN Gaming Zone
    C:\Program Files\MSN Messenger
    C:\Program Files\MSXML 4.0
    C:\Program Files\MultiProxy
    C:\Program Files\NCH Software
    C:\Program Files\NCH Swift Sound
    C:\Program Files\NetMeeting
    C:\Program Files\Norton Security Scan
    C:\Program Files\Notepad++
    C:\Program Files\Nvu
    C:\Program Files\Online Services
    C:\Program Files\Outlook Express
    C:\Program Files\QuickTime
    C:\Program Files\Raccourcis de programmes
    C:\Program Files\SAGEM
    C:\Program Files\SAGEM Wi-Fi USB 802.11g
    C:\Program Files\Serif
    C:\Program Files\Services en ligne
    C:\Program Files\Setup
    C:\Program Files\SHARP GSM GPRS Wizard
    C:\Program Files\Sierra On-Line
    C:\Program Files\Sony Ericsson
    C:\Program Files\SplitCam
    C:\Program Files\Steam
    C:\Program Files\Sunbelt Software
    C:\Program Files\Team MediaPortal
    C:\Program Files\test
    C:\Program Files\Thomson
    C:\Program Files\THQ
    C:\Program Files\VCW VicMan's Photo Editor
    C:\Program Files\VideoLAN
    C:\Program Files\Vinum Master 2D Light
    C:\Program Files\VirtualDJ
    C:\Program Files\Visicom Media
    C:\Program Files\vmntoolbar
    C:\Program Files\vso
    C:\Program Files\Wanadoo
    C:\Program Files\Wanadoo Messager
    C:\Program Files\Warhammer 40 K
    C:\Program Files\webGobbler
    C:\Program Files\Windows Live
    C:\Program Files\Windows Live Safety Center
    C:\Program Files\Windows Media Bonus Pack for Windows XP
    C:\Program Files\Windows Media Components
    C:\Program Files\Windows Media Connect 2
    C:\Program Files\Windows Media Player
    C:\Program Files\Windows NT
    C:\Program Files\WinRAR
    C:\Program Files\xerox
    C:\Program Files\Yahoo!

    ------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------

    C:\Program Files\Fichiers communs\Adobe
    C:\Program Files\Fichiers communs\Ahead
    C:\Program Files\Fichiers communs\BOONTY Shared
    C:\Program Files\Fichiers communs\DESIGNER
    C:\Program Files\Fichiers communs\EPSON
    C:\Program Files\Fichiers communs\FotoWire
    C:\Program Files\Fichiers communs\GTK
    C:\Program Files\Fichiers communs\Hewlett-Packard
    C:\Program Files\Fichiers communs\HP
    C:\Program Files\Fichiers communs\InstallShield
    C:\Program Files\Fichiers communs\Java
    C:\Program Files\Fichiers communs\Logitech
    C:\Program Files\Fichiers communs\Macrovision Shared
    C:\Program Files\Fichiers communs\Macrovision Shared(2)
    C:\Program Files\Fichiers communs\Microsoft Shared
    C:\Program Files\Fichiers communs\MSSoap
    C:\Program Files\Fichiers communs\ODBC
    C:\Program Files\Fichiers communs\Services
    C:\Program Files\Fichiers communs\Sonic Shared
    C:\Program Files\Fichiers communs\SpeechEngines
    C:\Program Files\Fichiers communs\Symantec Shared
    C:\Program Files\Fichiers communs\System
    C:\Program Files\Fichiers communs\Teleca Shared
    C:\Program Files\Fichiers communs\Vbox
    C:\Program Files\Fichiers communs\Wise Installation Wizard

    ----------------------[ Recherche avec S_Lop ]---------------------


    -----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------

    Aucun fichier / dossier Lop trouvé !

    ----------------------[ Verification du Registre ]----------------------

    ..... OK !

    --------------------[ Verification du fichier Hosts ]---------------------

    Fichier Hosts PROPRE


    ----------------[ Recherche de fichiers avec Catchme ]-----------------

    catchme 0.3.1262 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
    Rootkit scan 2008-01-02 21:29:22
    Windows 5.1.2600 Service Pack 2 NTFS
    scanning hidden files ...
    scan completed successfully
    hidden files: 0

    --------------------[ Recherche d'autres infections ]---------------------

    Aucune autre infection trouvée !

    --------------------[ Fin du rapport a 21:29:34,76 ]----------------------
    2 Janvier 2008 21:41:36

    Re,

    Télécharge OTMoveIt > Tuto <

    Sauvegarde-le sur le Bureau

    Séléctionne l'encadré ci-dessous
    C:\Program Files\Fichiers communs\BOONTY Shared
    C:\Program Files\Windows Live Safety Center
    C:\Program Files\vmntoolbar
    C:\Program Files\Boonty
    C:\Documents and Settings\All Users\APPLIC~1\BOONTY
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\vmntoolbar
    C:\Documents and Settings\All Users\APPLIC~1\Tick Find Close Surf

    Lance maintenant OTMoveIt .
    Assure toi que la case unregister dll’s and ocx’s soit cochée.
    Deux cadres apparaissent , clique droit sur le cadre de gauche , puis colle l'encadré ci desssus.
    Et clique sur Movelt !

    Si le programme te demande de redemarrer, accepte.

    Poste le rapport qui se trouve dans : C:\_OTMoveIt\MovedFiles\date de création!

    NOTE : Si tu obtiens un message comme quoi le rapport ne peut pas être créé, copie/colle ce qui apparaît dans la colonne droite de l’outil.



    Télécharge sur ton bureau : Clean (de Malekal) >Tuto<
    Dézippe le sur ton bureau. Double-clic sur ce dossier clean.
    Double-clic sur clean.cmd. (L’extension cmd peut ne pas apparaître) Cela va ouvrir une fenêtre noire.
    Un menu va apparaître, choisis l'option 1 puis entrée. Ensuite appuies sur une touche comme il te sera demandé et poste le rapport ici.
    Le rapport se trouve ici : C:\rapport_clean.txt

    Si tu obtiens un fichier C:\upload_moi.zip, merci de faire ceci.
    2 Janvier 2008 21:54:12

    le rapport Otmovelt :


    C:\Program Files\Fichiers communs\BOONTY Shared\Service moved successfully.
    C:\Program Files\Fichiers communs\BOONTY Shared moved successfully.
    C:\Program Files\Windows Live Safety Center moved successfully.
    C:\Program Files\vmntoolbar moved successfully.
    C:\Program Files\Boonty\Components moved successfully.
    C:\Program Files\Boonty moved successfully.
    C:\Documents and Settings\All Users\APPLIC~1\BOONTY\Licenses moved successfully.
    C:\Documents and Settings\All Users\APPLIC~1\BOONTY moved successfully.
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\vmntoolbar\NewCfg moved successfully.
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\vmntoolbar\downfile moved successfully.
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\vmntoolbar\1 moved successfully.
    C:\Documents and Settings\Cyril ze jibes king\APPLIC~1\vmntoolbar moved successfully.
    C:\Documents and Settings\All Users\APPLIC~1\Tick Find Close Surf moved successfully.

    Created on 01/02/2008 21:45:13
    -------------------------------------------------------------------------------------

    le rapport Clean :


    02/01/2008 a 21:48:44,18

    *** Recherche des fichiers dans C:

    *** Recherche des fichiers dans C:\WINDOWS\

    *** Recherche des fichiers dans C:\WINDOWS\system32
    "C:\Documents and Settings\Cyril ze jibes king\Application Data\ezpinst.exe" FOUND

    *** Recherche des fichiers dans C:\Program Files
    *** Fin du rapport !

    2 Janvier 2008 21:56:22

    Re,

    Télécharge AVG Anti-Spyware Installes-le.
    Si le lien ne fonctionne pas : >Clique ici<
    Lance AVG et fais une mise à jour.
    Clique sur le bouton Analyse (de la barre d'outils)
    Puis sur l'onglet comment réagir, clique sur Actions recommandées. Choisis Quarantaine.
    Ne fais pas d’analyse pour le moment.
    Redémarre en mode sans échec
    /!\ Ne jamais démarrer en mode sans échec via MSCONFIG /!\
    Relance Avg.
    Reviens à l'onglet Analyse. Clique sur Analyse complète du système.
    A la fin du scan, choisis l'option " Appliquer toutes les actions " en bas.
    Clique sur "Enregistrer le rapport". Ceci génère un rapport qui se trouve dans le dossier Reports du dossier d'AVG Anti-Spyware.
    Poste le ici.
    &
    Toujours en mode sans échec, relance clean et fais l'option 2, poste le rapport.
    3 Janvier 2008 09:26:29

    le rapport AVG:


    ---------------------------------------------------------
    AVG Anti-Spyware - Rapport d'analyse
    ---------------------------------------------------------

    + Créé à: 09:10:05 03/01/2008

    + Résultat de l'analyse:



    HKLM\SOFTWARE\WhenUSearch -> Adware.SaveNow : Aucune action entreprise.
    HKLM\SOFTWARE\WhenUSearch\Partners -> Adware.SaveNow : Aucune action entreprise.
    HKLM\SOFTWARE\WhenUSearch\Partners\desktop -> Adware.SaveNow : Aucune action entreprise.
    HKLM\SOFTWARE\WhenUSearch\WHSE -> Adware.SaveNow : Aucune action entreprise.
    C:\qoobox\Quarantine\C\WINDOWS\system32\WinUpdater.exe.vir -> Backdoor.IRCBot.awp : Aucune action entreprise.
    C:\System Volume Information\_restore{C3D36E4A-511B-4767-B408-394DFFCF9315}\RP7\A0001564.bat -> Backdoor.Prorat.19.i : Aucune action entreprise.
    C:\System Volume Information\_restore{C3D36E4A-511B-4767-B408-394DFFCF9315}\RP7\A0001563.exe -> Backdoor.Prorat.191 : Aucune action entreprise.
    C:\_OTMoveIt\MovedFiles\Documents and Settings\Cyril ze jibes king\Mes documents\john-16w.zip/john-16/run/john-k6.zip/john.exe -> Not-A-Virus.HackTool.Win32.John : Aucune action entreprise.
    C:\_OTMoveIt\MovedFiles\Documents and Settings\Cyril ze jibes king\Mes documents\john-16w.zip/john-16/run/john-mmx.zip/john.exe -> Not-A-Virus.HackTool.Win32.John : Aucune action entreprise.
    C:\_OTMoveIt\MovedFiles\Documents and Settings\Cyril ze jibes king\Mes documents\john-16w.zip/john-16/run/john.exe -> Not-A-Virus.HackTool.Win32.John : Aucune action entreprise.
    :mozilla.167:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.247realmedia : Aucune action entreprise.
    :mozilla.168:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.247realmedia : Aucune action entreprise.
    :mozilla.169:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.247realmedia : Aucune action entreprise.
    :mozilla.170:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.247realmedia : Aucune action entreprise.
    :mozilla.171:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.247realmedia : Aucune action entreprise.
    :mozilla.172:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.247realmedia : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@247realmedia[2].txt -> TrackingCookie.247realmedia : Aucune action entreprise.
    :mozilla.198:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
    :mozilla.199:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
    :mozilla.200:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
    :mozilla.201:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
    :mozilla.202:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
    :mozilla.203:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
    :mozilla.204:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
    :mozilla.205:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
    :mozilla.206:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
    :mozilla.207:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
    :mozilla.218:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
    :mozilla.622:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
    :mozilla.836:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.2o7 : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@2o7[2].txt -> TrackingCookie.2o7 : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@boonty.122.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@metacafe.122.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@microsoftconsumermarketing.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@microsofteup.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@microsoftwlmessengermkt.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@msnaccountservices.112.2o7[2].txt -> TrackingCookie.2o7 : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@sfr.122.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@snapfish.112.2o7[1].txt -> TrackingCookie.2o7 : Aucune action entreprise.
    :mozilla.391:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Adbrite : Aucune action entreprise.
    :mozilla.392:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Adbrite : Aucune action entreprise.
    :mozilla.46:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Adbrite : Aucune action entreprise.
    :mozilla.47:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Adbrite : Aucune action entreprise.
    :mozilla.48:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Adbrite : Aucune action entreprise.
    :mozilla.49:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Adbrite : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@2.adbrite[2].txt -> TrackingCookie.Adbrite : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@3.adbrite[2].txt -> TrackingCookie.Adbrite : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@4.adbrite[2].txt -> TrackingCookie.Adbrite : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@adbrite[2].txt -> TrackingCookie.Adbrite : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ads.adbrite[1].txt -> TrackingCookie.Adbrite : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ads.addynamix[1].txt -> TrackingCookie.Addynamix : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ad.adition[2].txt -> TrackingCookie.Adition : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@rotator.adjuggler[2].txt -> TrackingCookie.Adjuggler : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@admarketplace[2].txt -> TrackingCookie.Admarketplace : Aucune action entreprise.
    :mozilla.676:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
    :mozilla.677:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
    :mozilla.678:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
    :mozilla.679:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
    :mozilla.680:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
    :mozilla.682:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
    :mozilla.683:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@adrevolver[1].txt -> TrackingCookie.Adrevolver : Aucune action entreprise.
    :mozilla.155:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Adtech : Aucune action entreprise.
    :mozilla.156:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Adtech : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@adtech[1].txt -> TrackingCookie.Adtech : Aucune action entreprise.
    :mozilla.285:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
    :mozilla.286:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
    :mozilla.287:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
    :mozilla.288:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
    :mozilla.289:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Advertising : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@advertising[1].txt -> TrackingCookie.Advertising : Aucune action entreprise.
    :mozilla.233:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Adviva : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@adviva[2].txt -> TrackingCookie.Adviva : Aucune action entreprise.
    :mozilla.180:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Atdmt : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Local Settings\Temp\Cookies\cyril ze jibes king@atdmt[2].txt -> TrackingCookie.Atdmt : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@www.belstat[2].txt -> TrackingCookie.Belstat : Aucune action entreprise.
    :mozilla.331:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@bluestreak[2].txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@iv2.bluestreak[1].txt -> TrackingCookie.Bluestreak : Aucune action entreprise.
    :mozilla.792:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Burstnet : Aucune action entreprise.
    :mozilla.793:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Burstnet : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@burstnet[1].txt -> TrackingCookie.Burstnet : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@www.burstnet[2].txt -> TrackingCookie.Burstnet : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@casalemedia[1].txt -> TrackingCookie.Casalemedia : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@casinodelrio[1].txt -> TrackingCookie.Casinodelrio : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@www.casinodelrio[1].txt -> TrackingCookie.Casinodelrio : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@banner.casinoking[2].txt -> TrackingCookie.Casinoking : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@casinoking[1].txt -> TrackingCookie.Casinoking : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@casinotropez[1].txt -> TrackingCookie.Casinotropez : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@promo.casinotropez[1].txt -> TrackingCookie.Casinotropez : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@www.casinotropez[2].txt -> TrackingCookie.Casinotropez : Aucune action entreprise.
    :mozilla.811:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Clickhype : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ad1.clickhype[2].txt -> TrackingCookie.Clickhype : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@banner.clubdicecasino[2].txt -> TrackingCookie.Clubdicecasino : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@clubdicecasino[2].txt -> TrackingCookie.Clubdicecasino : Aucune action entreprise.
    :mozilla.126:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Comclick : Aucune action entreprise.
    :mozilla.130:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Comclick : Aucune action entreprise.
    :mozilla.131:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Comclick : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@connextra[2].txt -> TrackingCookie.Connextra : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@stat.dealtime[2].txt -> TrackingCookie.Dealtime : Aucune action entreprise.
    :mozilla.222:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@doubleclick[1].txt -> TrackingCookie.Doubleclick : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@c.enhance[1].txt -> TrackingCookie.Enhance : Aucune action entreprise.
    :mozilla.277:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Estat : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@estat[1].txt -> TrackingCookie.Estat : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@www.etracker[1].txt -> TrackingCookie.Etracker : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@as-eu.falkag[1].txt -> TrackingCookie.Falkag : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@as1.falkag[1].txt -> TrackingCookie.Falkag : Aucune action entreprise.
    :mozilla.408:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Fastclick : Aucune action entreprise.
    :mozilla.410:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Fastclick : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@fastclick[1].txt -> TrackingCookie.Fastclick : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@findwhat[2].txt -> TrackingCookie.Findwhat : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@fortunecity[1].txt -> TrackingCookie.Fortunecity : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ads.gamershell[1].txt -> TrackingCookie.Gamershell : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@cityclub.gamingpromo[2].txt -> TrackingCookie.Gamingpromo : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@gamingpromo[2].txt -> TrackingCookie.Gamingpromo : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@c.goclick[1].txt -> TrackingCookie.Goclick : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@goclick[2].txt -> TrackingCookie.Goclick : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@banner.goldenpalace[2].txt -> TrackingCookie.Goldenpalace : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@goldenpalace[1].txt -> TrackingCookie.Goldenpalace : Aucune action entreprise.
    :mozilla.703:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ehg-ads.hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ehg-bestwestern.hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ehg-bluesouth.hitbox[1].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ehg-danieljouvance.hitbox[1].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ehg-gamedaily.hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ehg-globalgamingleague.hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ehg-groupernetworks.hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ehg-mybc.hitbox[1].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ehg-neuftelecom.hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ehg-systran.hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ehg-telecomitalia.hitbox[1].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ehg-wmc.hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@hitbox[2].txt -> TrackingCookie.Hitbox : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@hotlog[1].txt -> TrackingCookie.Hotlog : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@idot[1].txt -> TrackingCookie.Idot : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@info[2].txt -> TrackingCookie.Info : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@searchportal.information[2].txt -> TrackingCookie.Information : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@intelli-direct[1].txt -> TrackingCookie.Intelli-direct : Aucune action entreprise.
    :mozilla.617:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Liveperson : Aucune action entreprise.
    :mozilla.618:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Liveperson : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@server.iad.liveperson[2].txt -> TrackingCookie.Liveperson : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@www.lop[1].txt -> TrackingCookie.Lop : Aucune action entreprise.
    :mozilla.19:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
    :mozilla.21:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@mediaplex[1].txt -> TrackingCookie.Mediaplex : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@search.msn[2].txt -> TrackingCookie.Msn : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@www.myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : Aucune action entreprise.
    :mozilla.64:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Netflame : Aucune action entreprise.
    :mozilla.269:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Overture : Aucune action entreprise.
    :mozilla.270:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Overture : Aucune action entreprise.
    :mozilla.271:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Overture : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@overture[2].txt -> TrackingCookie.Overture : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ads.planetactive[1].txt -> TrackingCookie.Planetactive : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@qksrv[1].txt -> TrackingCookie.Qksrv : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@questionmarket[2].txt -> TrackingCookie.Questionmarket : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@realmedia[2].txt -> TrackingCookie.Realmedia : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@revenue[1].txt -> TrackingCookie.Revenue : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@revsci[1].txt -> TrackingCookie.Revsci : Aucune action entreprise.
    :mozilla.355:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
    :mozilla.356:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
    :mozilla.357:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
    :mozilla.358:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
    :mozilla.359:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
    :mozilla.360:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
    :mozilla.361:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
    :mozilla.362:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@bs.serving-sys[2].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@serving-sys[1].txt -> TrackingCookie.Serving-sys : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@cs.sexcounter[2].txt -> TrackingCookie.Sexcounter : Aucune action entreprise.
    :mozilla.25:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
    :mozilla.32:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
    :mozilla.33:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
    :mozilla.34:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
    :mozilla.76:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
    :mozilla.77:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@spylog[2].txt -> TrackingCookie.Spylog : Aucune action entreprise.
    :mozilla.561:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.562:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.563:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.564:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.565:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.566:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.567:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.568:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.569:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.570:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.571:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.572:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.573:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.574:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.575:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.576:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.577:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.578:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.579:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.580:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.581:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    :mozilla.582:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@statcounter[2].txt -> TrackingCookie.Statcounter : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@tacoda[1].txt -> TrackingCookie.Tacoda : Aucune action entreprise.
    :mozilla.26:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
    :mozilla.27:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
    :mozilla.28:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
    :mozilla.29:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
    :mozilla.30:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Aucune action entreprise.
    :mozilla.363:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Valuead : Aucune action entreprise.
    :mozilla.364:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Valuead : Aucune action entreprise.
    :mozilla.365:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Valuead : Aucune action entreprise.
    :mozilla.366:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Valuead : Aucune action entreprise.
    :mozilla.798:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Valuead : Aucune action entreprise.
    :mozilla.799:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Valuead : Aucune action entreprise.
    :mozilla.800:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Valuead : Aucune action entreprise.
    :mozilla.801:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Valuead : Aucune action entreprise.
    :mozilla.802:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Valuead : Aucune action entreprise.
    :mozilla.803:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Valuead : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@valueclick[2].txt -> TrackingCookie.Valueclick : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@vegasred[2].txt -> TrackingCookie.Vegasred : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@www.vegasred[2].txt -> TrackingCookie.Vegasred : Aucune action entreprise.
    :mozilla.67:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Weborama : Aucune action entreprise.
    :mozilla.68:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Weborama : Aucune action entreprise.
    :mozilla.72:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Weborama : Aucune action entreprise.
    :mozilla.73:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Weborama : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@weborama[2].txt -> TrackingCookie.Weborama : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@m.webtrends[2].txt -> TrackingCookie.Webtrends : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@statse.webtrendslive[1].txt -> TrackingCookie.Webtrendslive : Aucune action entreprise.
    :mozilla.675:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Yadro : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@yadro[2].txt -> TrackingCookie.Yadro : Aucune action entreprise.
    :mozilla.11:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
    :mozilla.12:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
    :mozilla.13:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
    :mozilla.14:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
    :mozilla.15:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
    :mozilla.16:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
    :mozilla.535:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
    :mozilla.536:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
    :mozilla.537:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
    :mozilla.538:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
    :mozilla.539:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Local Settings\Temp\Cookies\cyril ze jibes king@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Aucune action entreprise.
    :mozilla.34:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Zedo : Aucune action entreprise.
    :mozilla.35:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Zedo : Aucune action entreprise.
    :mozilla.36:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Zedo : Aucune action entreprise.
    :mozilla.37:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Zedo : Aucune action entreprise.
    :mozilla.43:C:\Documents and Settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\7gpypokw.default\cookies.txt -> TrackingCookie.Zedo : Aucune action entreprise.
    :mozilla.605:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Zedo : Aucune action entreprise.
    :mozilla.606:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Zedo : Aucune action entreprise.
    :mozilla.607:C:\Documents and Settings\Cyril ze jibes king\Application Data\Mozilla\Firefox\Profiles\rgrxq8i4.default\cookies.txt -> TrackingCookie.Zedo : Aucune action entreprise.
    C:\Documents and Settings\Cyril ze jibes king\Cookies\cyril ze jibes king@zedo[1].txt -> TrackingCookie.Zedo : Aucune action entreprise.
    C:\FSC-OdyseeyClient\proginst.exe -> Trojan.Small.gv : Aucune action entreprise.


    Fin du rapport

    ---------------------------------------------------------------------------------------

    Rapport Clean :


    Script execute en mode sans echec
    Rapport clean par Malekal_morte - http://www.malekal.com
    Script execute en mode sans echec 03/01/2008 a 9:13:19,54

    Microsoft Windows XP [version 5.1.2600]

    *** Suppression des fichiers dans C:

    *** Suppression des fichiers dans C:\WINDOWS\

    *** Suppression des fichiers dans C:\WINDOWS\system32
    tentative de suppression de "C:\Documents and Settings\Cyril ze jibes king\Application Data\ezpinst.exe"

    *** Suppression des fichiers dans C:\Program Files

    *** Suppression des clefs du registre effectuee..
    *** Fin du rapport !
    3 Janvier 2008 13:13:34

    Re,

    Pour avg, il faut appliquer toutes les actions.

    Reposte un Hijackthis.
    3 Janvier 2008 13:43:32

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 13:43:04, on 03/01/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Avast\aswUpdSv.exe
    C:\Program Files\Avast\ashServ.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe
    C:\WINDOWS\System32\FTRTSVC.exe
    C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\system32\HPZipm12.exe
    C:\WINDOWS\system32\PnkBstrA.exe
    C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
    C:\Program Files\Avast\ashMaiSv.exe
    C:\Program Files\Avast\ashWebSv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Sunbelt Software\Personal Firewall\kpf4gui.exe
    C:\WINDOWS\RTHDCPL.EXE
    C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    C:\PROGRA~1\Avast\ashDisp.exe
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE
    C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
    C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    C:\WINDOWS\system32\rundll32.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
    C:\progra~1\steam\steam.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    C:\Program Files\SAGEM Wi-Fi USB 802.11g\WLANUTL.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\Program Files\MessengerDiscovery\MessengerDiscovery Live.exe
    C:\Program Files\MSN Messenger\usnsvc.exe
    C:\WINDOWS\system32\RUNDLL32.exe
    C:\WINDOWS\system32\RUNDLL32.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Documents and Settings\Cyril ze jibes king\Bureau\HiJackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com/ext/search/search.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/ie/defaults/s...*http://www.yahoo.com
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://fr.yahoo.com/fsc/
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL (file missing)
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
    O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
    O3 - Toolbar: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL (file missing)
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O4 - HKLM\..\Run: [Raccourci vers la page des propriétés de High Definition Audio] HDAShCut.exe
    O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\Avast\ashDisp.exe
    O4 - HKLM\..\Run: [EPSON Stylus C42 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S10IC2.EXE /P23 "EPSON Stylus C42 Series" /O6 "USB001" /M "Stylus C42"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
    O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
    O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [close surf mail dupe] C:\Documents and Settings\All Users\Application Data\Tick Find Close Surf\browse data.exe
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [fsc-reminder.exe] C:\WINDOWS\reminder\fsc-reminder.exe 2453927 14
    O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
    O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
    O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
    O4 - HKCU\..\Run: [Steam] "c:\progra~1\steam\steam.exe" -silent
    O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
    O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
    O4 - Global Startup: Démarrage rapide de HP Photosmart Premier.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
    O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
    O4 - Global Startup: Utilitaire réseau pour SAGEM Wi-Fi 11g USB adapter.lnk = ?
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://elbucho007.spaces.live.com//PhotoUpload/MsnPUpld...
    O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPACl...
    O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Avast\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Avast\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Avast\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Avast\ashWebSv.exe
    O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Boonty Games - Unknown owner - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe (file missing)
    O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe
    O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Fichiers communs\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1150\Intel 32\IDriverT.exe
    O23 - Service: Service de l'iPod (iPod Service) - Unknown owner - C:\Program Files\iPod\bin\iPodService.exe (file missing)
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
    O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
    O23 - Service: Sunbelt Personal Firewall 4 (SPF4) - Sunbelt Software - C:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe

    --
    End of file - 12058 bytes
    3 Janvier 2008 13:50:40

    Re,

    Toujours autant de problème ?
    Te conseille de désinstaller et supprimer ARES.

    Relance HiJackThis, do a system scan only, coche ces lignes :

    O2 - BHO: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL (file missing)
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O3 - Toolbar: VMN Toolbar - {4E7BD74F-2B8D-469E-8DA9-FD60BB9AAE33} - C:\PROGRA~1\VMNTOO~1\VMNTOO~1.DLL (file missing)
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [close surf mail dupe] C:\Documents and Settings\All Users\Application Data\Tick Find Close Surf\browse data.exe
    O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares\Ares.exe" -h
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)
    O23 - Service: Boonty Games - Unknown owner - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe (file missing)

    Puis Fix Checked !


    Désinstalle avast, redémarre et supprime ~~>C:\Program Files\Alwil Software

    Télécharge ccleaner (>>tuto à lire !<<), tu download «the latest version » puis installe le en décochant - Ajouter la Barre d'Outils Yahoo! CCleaner
    Puis lance le nettoyage, puis fais chercher des erreurs et sauvegardes si tu le souhaites.

    Télécharge et installe Antivir. (tuto)
    Pourquoi changer ? Avast vs Antivir
    Vérifie qu’il soit bien à jour ! Fais une analyse complète, poste le rapport.
    3 Janvier 2008 18:44:08

    je n'ai pas trouver ARES même avec le chemin :

    C:\Program Files\Ares\Ares.exe

    De meme que je ne trouve pas

    C:\Program Files\Alwil Software


    J'ai bien fait ce que tu m'as demandé avec Hijackthis
    J'ai aussi désinstallé avast! et je l'ai remplacé par Antivir

    J'ai aussi fais l'opération avec Ccleaner

    Pour le rapport Antivir :



    AntiVir PersonalEdition Classic
    Report file date: jeudi 3 janvier 2008 14:44

    Scanning for 999937 virus strains and unwanted programs.

    Licensed to: Avira AntiVir PersonalEdition Classic
    Serial number: 0000149996-ADJIE-0001
    Platform: Windows XP
    Windows version: (Service Pack 2) [5.1.2600]
    Username: SYSTEM
    Computer name: CYRIL

    Version information:
    BUILD.DAT : 270 15603 Bytes 19/09/2007 13:32:00
    AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 13:16:29
    AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 12:23:51
    LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 15:32:47
    LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 12:35:20
    ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 13:43:05
    ANTIVIR1.VDF : 7.0.1.95 3367424 Bytes 14/12/2007 13:43:07
    ANTIVIR2.VDF : 7.0.1.170 311296 Bytes 28/12/2007 13:43:08
    ANTIVIR3.VDF : 7.0.1.190 81920 Bytes 03/01/2008 13:43:08
    AVEWIN32.DLL : 7.6.0.46 3084800 Bytes 03/01/2008 13:43:09
    AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 10:36:26
    AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 07:39:17
    AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:16:24
    AVPACK32.DLL : 7.6.0.2 360488 Bytes 03/01/2008 13:43:10
    AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 07:17:06
    AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 12:26:33
    AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 07:10:18
    NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 11:09:42
    RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 12:38:13
    RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 12:50:37
    SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 09:37:21

    Configuration settings for the scan:
    Jobname..........................: Complete system scan
    Configuration file...............: c:\program files\avira\antivir personaledition classic\sysscan.avp
    Logging..........................: low
    Primary action...................: interactive
    Secondary action.................: ignore
    Scan master boot sector..........: off
    Scan boot sector.................: on
    Boot sectors.....................: C:,
    Scan memory......................: on
    Process scan.....................: on
    Scan registry....................: on
    Search for rootkits..............: off
    Scan all files...................: Intelligent file selection
    Scan archives....................: on
    Recursion depth..................: 20
    Smart extensions.................: on
    Macro heuristic..................: on
    File heuristic...................: medium

    Start of the scan: jeudi 3 janvier 2008 14:44

    The scan of running processes will be started
    Scan process 'avscan.exe' - '1' Module(s) have been scanned
    Scan process 'avcenter.exe' - '1' Module(s) have been scanned
    Scan process 'sched.exe' - '1' Module(s) have been scanned
    Scan process 'avgnt.exe' - '1' Module(s) have been scanned
    Scan process 'avguard.exe' - '1' Module(s) have been scanned
    Scan process 'firefox.exe' - '1' Module(s) have been scanned
    Scan process 'wscntfy.exe' - '1' Module(s) have been scanned
    Scan process 'mDNSResponder.exe' - '1' Module(s) have been scanned
    Scan process 'rundll32.exe' - '1' Module(s) have been scanned
    Scan process 'rundll32.exe' - '1' Module(s) have been scanned
    Scan process 'usnsvc.exe' - '1' Module(s) have been scanned
    Scan process 'MessengerDiscovery Live.exe' - '1' Module(s) have been scanned
    Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned
    Scan process 'hpqste08.exe' - '1' Module(s) have been scanned
    Scan process 'hpqimzone.exe' - '1' Module(s) have been scanned
    Scan process 'WLANUTL.exe' - '1' Module(s) have been scanned
    Scan process 'hpqtra08.exe' - '1' Module(s) have been scanned
    Scan process 'steam.exe' - '1' Module(s) have been scanned
    Scan process 'LogitechDesktopMessenger.exe' - '1' Module(s) have been scanned
    Scan process 'ctfmon.exe' - '1' Module(s) have been scanned
    Scan process 'avgas.exe' - '1' Module(s) have been scanned
    Scan process 'FxSvr2.exe' - '1' Module(s) have been scanned
    Scan process 'rundll32.exe' - '1' Module(s) have been scanned
    Scan process 'hpwuSchd2.exe' - '1' Module(s) have been scanned
    Scan process 'LogiTray.exe' - '1' Module(s) have been scanned
    Scan process 'LVCOMSX.EXE' - '1' Module(s) have been scanned
    Scan process 'TaskBarIcon.exe' - '1' Module(s) have been scanned
    Scan process 'jusched.exe' - '1' Module(s) have been scanned
    Scan process 'E_S10IC2.EXE' - '1' Module(s) have been scanned
    Scan process 'PDVDServ.exe' - '1' Module(s) have been scanned
    Scan process 'RTHDCPL.EXE' - '1' Module(s) have been scanned
    Scan process 'kpf4gui.exe' - '1' Module(s) have been scanned
    Scan process 'explorer.exe' - '1' Module(s) have been scanned
    Scan process 'alg.exe' - '1' Module(s) have been scanned
    Scan process 'kpf4gui.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'kpf4ss.exe' - '1' Module(s) have been scanned
    Scan process 'PnkBstrA.exe' - '1' Module(s) have been scanned
    Scan process 'HPZipm12.exe' - '1' Module(s) have been scanned
    Scan process 'nvsvc32.exe' - '1' Module(s) have been scanned
    Scan process 'MDM.EXE' - '1' Module(s) have been scanned
    Scan process 'FTRTSVC.exe' - '1' Module(s) have been scanned
    Scan process 'SAgent2.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'guard.exe' - '0' Module(s) have been scanned
    Scan process 'spoolsv.exe' - '1' Module(s) have been scanned
    Scan process 'ashServ.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'svchost.exe' - '1' Module(s) have been scanned
    Scan process 'lsass.exe' - '1' Module(s) have been scanned
    Scan process 'services.exe' - '1' Module(s) have been scanned
    Scan process 'winlogon.exe' - '1' Module(s) have been scanned
    Scan process 'csrss.exe' - '1' Module(s) have been scanned
    Scan process 'smss.exe' - '1' Module(s) have been scanned
    57 processes with 57 modules were scanned

    Start scanning boot sectors:
    Boot sector 'C:\'
    [NOTE] No virus was found!

    Starting to scan the registry.
    The registry was scanned ( '39' files ).


    Starting the file scan:

    Begin scan in 'C:\' <442924>
    C:\hiberfil.sys
    [WARNING] The file could not be opened!
    C:\pagefile.sys
    [WARNING] The file could not be opened!
    C:\Documents and Settings\Cyril ze jibes king\Mes documents\Ma musique\devildriver\05 Track 5 (devildriver).wma
    [DETECTION] Is the Trojan horse TR/Wimad.A.Gen
    [INFO] The file was moved to '479cfaff.qua'!
    C:\Documents and Settings\Cyril ze jibes king\Mes documents\Mes images\theme\Xtreme.ace
    [0] Archive type: ACE
    --> Xtreme\theme_info.cfg
    [WARNING] Error creating the file
    --> Xtreme\Xtreme.cfg
    [WARNING] No further files can be extracted from this archive. The archive will be closed
    [WARNING] No further files can be extracted from this archive. The archive will be closed
    C:\Program Files\Circle Developement\Uninstall.exe
    [DETECTION] Is the Trojan horse TR/Obfusgen.A.5368
    [INFO] The file was moved to '47e6058d.qua'!
    C:\qoobox\Quarantine\C\WINDOWS\system32\WinUpdater.exe.vir
    [DETECTION] Contains detection pattern of the worm WORM/SdBot3.UXM
    [INFO] The file was moved to '47eb11e3.qua'!
    C:\System Volume Information\_restore{C3D36E4A-511B-4767-B408-394DFFCF9315}\RP14\A0003668.exe
    [DETECTION] Is the Trojan horse TR/Obfusgen.A.5368
    [INFO] The file was moved to '47ad1360.qua'!
    C:\System Volume Information\_restore{C3D36E4A-511B-4767-B408-394DFFCF9315}\RP5\A0000008.exe
    [DETECTION] Contains detection pattern of the dropper DR/Obfuscated.MR.6
    [INFO] The file was moved to '47ad1368.qua'!
    C:\System Volume Information\_restore{C3D36E4A-511B-4767-B408-394DFFCF9315}\RP5\A0000009.exe
    [DETECTION] Contains detection pattern of the dropper DR/Obfuscated.MR.6
    [INFO] The file was moved to '47ad136b.qua'!
    C:\System Volume Information\_restore{C3D36E4A-511B-4767-B408-394DFFCF9315}\RP6\A0001442.exe
    [DETECTION] Is the Trojan horse TR/Obfuscated.MR
    [INFO] The file was moved to '47ad13b6.qua'!
    C:\System Volume Information\_restore{C3D36E4A-511B-4767-B408-394DFFCF9315}\RP6\A0001445.exe
    [DETECTION] Is the Trojan horse TR/Obfuscated.IB
    [INFO] The file was moved to '47ad13ba.qua'!
    C:\System Volume Information\_restore{C3D36E4A-511B-4767-B408-394DFFCF9315}\RP6\A0001446.ax
    [DETECTION] Is the Trojan horse TR/Obfuscated.IB.1
    [INFO] The file was moved to '47ad13be.qua'!
    C:\System Volume Information\_restore{C3D36E4A-511B-4767-B408-394DFFCF9315}\RP6\A0001466.exe
    [DETECTION] Contains detection pattern of the dropper DR/Obfuscated.MR.6
    [INFO] The file was moved to '47ad13c2.qua'!
    C:\System Volume Information\_restore{C3D36E4A-511B-4767-B408-394DFFCF9315}\RP7\A0001563.exe
    [DETECTION] Contains detection pattern of the backdoor control software BDC/Prorat.19.P.
    [INFO] The file was moved to '47ad13d8.qua'!
    C:\System Volume Information\_restore{C3D36E4A-511B-4767-B408-394DFFCF9315}\RP7\A0001564.bat
    [DETECTION] Contains a detection pattern of the (dangerous) backdoor program BDS/Prorat.19.I Backdoor server programs
    [INFO] The file was moved to '47ad13df.qua'!
    C:\WINDOWS\system32\drivers\dtscsi.sys
    [WARNING] The file could not be opened!
    C:\WINDOWS\system32\drivers\sptd.sys
    [WARNING] The file could not be opened!


    End of the scan: jeudi 3 janvier 2008 18:25
    Used time: 3:41:22 min

    The scan has been done completely.

    10820 Scanning directories
    523428 Files were scanned
    12 viruses and/or unwanted programs were found
    0 Files were classified as suspicious:
    0 files were deleted
    0 files were repaired
    12 files were moved to quarantine
    0 files were renamed
    4 Files cannot be scanned
    523416 Files not concerned
    8660 Archives were scanned
    7 Warnings
    482 Notes

    3 Janvier 2008 20:58:50

    Re,

    Toujours des problèmes ?
    Supprime C:\Program Files\Circle Developement\
    3 Janvier 2008 21:19:28

    pour suprimer circle dévlopement c'est fait . Et je constate avec satisfaction que je n'ai plus aucun problème

    Fin a priori c'est bon !!!!

    Donc sérieux gars tu gère ;)  j'en tomberai presque amoureux xD :love: 

    Fin merci beaucoup

    ( dis pourquoi j'arrive pas à envoyer des mp ? )
    3 Janvier 2008 21:33:40

    Re,

    De rien.
    J'ai ce problème aussi actuellement sous Firefox, passe sous IE pour le moment, probablement un bug provisoire.

    Désinstalle, supprime tous les logiciels utilisés pour la désinfection ainsi que les dossiers créés correspondants.. Garde ccleaner, avg et antivir si nous les avons installé..
    Rapporte ton infection sur Malware Complaints >Tuto<
    Ton(tes) infection(s) : Lop

    Puis regarde ces pages :

    Sécuriser son Ordinateur
    cracks/P2P
    3 Janvier 2008 21:48:23

    Merci je ferai ce que tu me dis.

    Et je connais les risques du P2P seulement là je n'y ai pas fais gaffe ( d'habitude je fais attention car j'utilise très souvent le P2P ) et j'avais surtout l'habitude de scanner avec Avast!...seulement la il ne m'a servi à rien.

    Merci pour l'info pour Antivir j'ai lu le topic le concernant et il est réellement meilleur que Avast! malgrès ce qu'en dise beaucoup d'internautes.

    Je vais bien lire tes liens car je me suis rendu compte que je suis maintenant à la masse concernant la protection du pc...

    Merci d'avoir utiliser ton temps pour moi :) 

    encore merci

    bonne soirée

    et bonne année ;) 
    3 Janvier 2008 21:59:37

    Idem ;) 
    Tom's guide dans le monde
    • Allemagne
    • Italie
    • Irlande
    • Royaume Uni
    • Etats Unis
    Suivre Tom's Guide
    Inscrivez-vous à la Newsletter
    • ajouter à twitter
    • ajouter à facebook
    • ajouter un flux RSS