Se connecter / S'enregistrer
Votre question

Virus impossible a supprimer

Tags :
  • Sécurité
Dernière réponse : dans Sécurité et virus
20 Mars 2007 17:29:54

Bonjour, je me suis choper un vers, qui m'a tuer mon antivirus et autre outils de travail , (firewall , pc anywhere et j'en passe)

Pour le moment je suis dans l'impossibilité de les réinstaller.

Voici le log hjk , j'ai remplacer certaine donné par des xxx.
J'ai fait un scan online, tout est supprimé mais dés que je reboot, le vers revient. j ai tester des outils de suppression symantec , ect..
j'ai des pop up de pub qui s'ouvre aussi.
merci a tous de votre aide.

Logfile of HijackThis v1.97.7
Scan saved at 17:16, on 20/03/07
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WatchGuard\Mobile User VPN\IreIKE.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
C:\WINDOWS\system32\FortiSslvpnDaemon.exe
C:\Program Files\WatchGuard\Mobile User VPN\IPSecMon.exe
u:\MICROS~1\MSSQL\binn\sqlservr.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\PESTPA~1\PPControl.exe
C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
C:\PROGRA~1\PESTPA~1\CookiePatrol.exe
C:\Program Files\ATI Technologies\ATI HydraVision\HydraMD.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\CameraAssistant.exe
C:\WINDOWS\system32\ElkCtrl.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WatchGuard\Mobile User VPN\SafeCfg.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\Microsoft Office97\Office\OSA.EXE
C:\Program Files\Skype\Plugin Manager\SkypePM.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Outlook Express\msimn.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Logitech\Video\VideoEffectsWatcher.exe
C:\WINDOWS\system32\ntvdm.exe
C:\Documents and Settings\christophe\Bureau\Outils de Scan et base de registre\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://exchangeserver/requests/default.htm
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\PROGRA~1\Skype\toolbars\SKYPEF~1\SKYPE_~1.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O3 - Toolbar: Skype Toolbar for Internet Explorer - {B13721C7-F507-4982-B2E5-502A71474FED} - C:\Program Files\Skype\toolbars\Skype for Internet Explorer\skype_toolbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [PestPatrol Control Center] C:\PROGRA~1\PESTPA~1\PPControl.exe
O4 - HKLM\..\Run: [PPMemCheck] C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
O4 - HKLM\..\Run: [CookiePatrol] C:\PROGRA~1\PESTPA~1\CookiePatrol.exe
O4 - HKLM\..\Run: [KeyPatrol] C:\PROGRA~1\PESTPA~1\KeyPatrol.exe
O4 - HKLM\..\Run: [CloneCDElbyCDFL] "C:\Program Files\Elaborate Bytes\CloneCD\ElbyCheck.exe" /L ElbyCDFL
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [HydraVisionViewport] C:\Program Files\ATI Technologies\ATI HydraVision\HydraMD.exe
O4 - HKLM\..\Run: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechCameraAssistant] C:\Program Files\Logitech\Video\CameraAssistant.exe
O4 - HKLM\..\Run: [LogitechVideo[inspector]] C:\Program Files\Logitech\Video\InstallHelper.exe /inspect
O4 - HKLM\..\Run: [LogitechCameraService(E)] C:\WINDOWS\system32\ElkCtrl.exe /automation
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpamBully 3 for Outlook Express] "C:\Program Files\Axaware\Spam Bully 3 for OE\sb3oe.exe" install
O4 - Startup: Démarrage d'Office.lnk = C:\Program Files\Microsoft Office97\Office\OSA.EXE
O4 - Startup: MS Office - Démarrage accéléré.lnk = C:\MSOffice95\Office\FASTBOOT.EXE
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Mobile User VPN.lnk = C:\Program Files\WatchGuard\Mobile User VPN\SafeCfg.exe
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O9 - Extra 'Tools' menuitem: Console Java (Sun) (HKLM)
O9 - Extra button: Skype Toolbar for Internet Explorer (HKLM)
O9 - Extra 'Tools' menuitem: Skype Toolbar for Internet Explorer (HKLM)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 (HKLM)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Windows Messenger (HKLM)
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {0000000A-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/download/d/4/4/d446e8a9-3...
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab28578....
O16 - DPF: {14325268-79E0-4D2A-89A4-FFFC6E22741E} - http://akamai.downloadv3.com/binaries/LiveService/LiveS...
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/direc...
O16 - DPF: {254AA86E-5655-4518-AA87-185D7CC41801} (Rescue Technician Console) - https://secure.logmeinrescue.com/TechConsole/RescueCont...
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab285...
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin...
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/download/F/6/E/F6E491A6-7...
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8....
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common...
O16 - DPF: {7584C670-2274-4EFB-B00B-D6AABA6D3850} (Microsoft RDP Client Control (redist)) - https://xxxxxxxx.servebeer.com/Remote/msrdp.cab
O16 - DPF: {85D1F3B2-2A21-11D7-97B9-0010DC2A6243} (SecureLogin class) - http://secure2.comned.com/signuptemplates/securelogin-d...
O16 - DPF: {B0882EB7-81A5-4A11-8D45-71888F973933} (fortisslvpn Class) - https://xxxxxxxxx.245:10443/sslvpn.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash...
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown....
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = xxx
O17 - HKLM\Software\..\Telephony: DomainName = xxxx
O17 - HKLM\System\CCS\Services\Tcpip\..\{8FA09181-8334-4507-9120-58DF083E1CED}: Domain = xxxxxxx
O17 - HKLM\System\CCS\Services\Tcpip\..\{8FA09181-8334-4507-9120-58DF083E1CED}: NameServer = xxxxxxxxxxxxxxxxxxxx
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = xxx
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = xxx
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: Domain = xxx
O17 - HKLM\System\CS4\Services\Tcpip\Parameters: Domain = xxx
O17 - HKLM\System\CS5\Services\Tcpip\Parameters: Domain = xxx

Autres pages sur : virus impossible supprimer

a b 8 Sécurité
20 Mars 2007 17:53:44

Bonjour,

Le rapport n'est pas complet.
On a besoin des lignes 017, cela pourrait être une infection...
20 Mars 2007 18:33:32

mon rapport sarrete ici , malheureusement : / je n'ai rien apres. toutes ces lignes comporte des infos sur mon domaine .
Contenus similaires
20 Mars 2007 18:36:43

je me pose plus des question sur les lignes suivantes :

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://exchangeserver/requests/default.htm
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

ma apge par defaut n'est pas microsoft et le fwlink me fait penser a une redirection , ce qui me parait bizarre.
ma page de demarage est bien celle correspondant a la ligne R0
a b 8 Sécurité
20 Mars 2007 18:37:01

Tu es certain que c'est bien ton ip ?

Télécharge Blacklight (F-Secure), clique sur " I ACCEPT " en bas de la page :
Clique sur le premier " Download " afin de télécharger le programme
Sauvegarde le sur ton Bureau
Double-clique blbeta.exe et accepte la licence; clique Scan puis Next.

A la fin du scan, NE TOUCHE A RIEN !

Tu verras un rapport, sur ton Bureau, nommé fsbl.xxxxxxx.log (les xxxxxxx sont des chiffres).
Nous devons analyser ce rapport, ferme donc le BlackLight.

Poste le rapport sur le forum.

AIDE : Tuto sur BlackLight (Malekal)
20 Mars 2007 18:39:50

merci je m'en occupe demain et je vous post tout ca.

Pour infos les "xxx" apres le nom de domaine ne sont pas des ip mes mon nom de domaine réseau. et il correspond au bon nom
a b 8 Sécurité
20 Mars 2007 18:43:06

A demain alors.
21 Mars 2007 10:31:45

Voici le rapport. je tiens a preciser, que je n'ai aucune barre d'outil yahoo, ou aucun autre soft yahoo ( messenger et autres.. dailleur rien n'apparait dans ajout /supp de prog. ) que par defaut j'utilise firefox comme navigateur, et que dans mes processus Iexplorer.exe est toujours present bien que pas demarrer. Merci encore de votre aide précieuse.

03/21/07 10:04:36 [Info]: BlackLight Engine 1.0.55 initialized
03/21/07 10:04:36 [Info]: OS: 5.1 build 2600 (Service Pack 2)
03/21/07 10:04:36 [Note]: 7019 4
03/21/07 10:04:36 [Note]: 7005 0
03/21/07 10:04:42 [Note]: 7006 0
03/21/07 10:04:42 [Note]: 7011 668
03/21/07 10:04:42 [Note]: 7026 0
03/21/07 10:04:42 [Note]: 7026 0
03/21/07 10:04:43 [Note]: 7024 3
03/21/07 10:04:43 [Info]: Hidden process: C:\Documents and Settings\christophe\Application Data\hidires\hidr.exe
03/21/07 10:05:37 [Note]: FSRAW library version 1.7.1021
03/21/07 10:05:47 [Info]: Hidden file: C:\Documents and Settings\christophe\Application Data\hidires\hidr.exe
03/21/07 10:05:47 [Note]: 10002 2
03/21/07 10:05:47 [Info]: Hidden file: c:\Documents and Settings\christophe\Application Data\hidires\m_hook.sys
03/21/07 10:05:47 [Note]: 10002 2
03/21/07 10:05:49 [Info]: Hidden file: c:\Documents and Settings\christophe\Application Data\hidires\flec003.exe
03/21/07 10:05:49 [Note]: 10002 3
03/21/07 10:05:49 [Note]: 10002 3
03/21/07 10:05:49 [Note]: 10002 3
03/21/07 10:05:49 [Note]: 10002 2
03/21/07 10:05:49 [Note]: 10002 2
03/21/07 10:10:18 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\empty.txt
03/21/07 10:10:18 [Note]: 10002 3
03/21/07 10:10:18 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\filters.xml
03/21/07 10:10:18 [Note]: 10002 3
03/21/07 10:10:18 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\news.png
03/21/07 10:10:18 [Note]: 10002 3
03/21/07 10:10:18 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\paint.png
03/21/07 10:10:18 [Note]: 10002 3
03/21/07 10:10:18 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\profiles\blank.txt
03/21/07 10:10:18 [Note]: 10002 3
03/21/07 10:10:18 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\sample1.jpg
03/21/07 10:10:18 [Note]: 10002 3
03/21/07 10:10:18 [Info]: Hidden file: c:\Program Files\Movie Maker\shared\sample2.jpg
03/21/07 10:10:18 [Note]: 10002 3
03/21/07 10:10:18 [Note]: 10002 2
03/21/07 10:10:18 [Note]: 10002 2
03/21/07 10:10:51 [Info]: Hidden file: c:\Program Files\Seagate Software\Shared\C3ODMfr.dll
03/21/07 10:10:51 [Note]: 10002 3
03/21/07 10:10:51 [Info]: Hidden file: c:\Program Files\Seagate Software\Shared\cdo32.dll
03/21/07 10:10:51 [Note]: 10002 3
03/21/07 10:10:51 [Info]: Hidden file: c:\Program Files\Seagate Software\Shared\olapdbmg.dll
03/21/07 10:10:51 [Note]: 10002 3
03/21/07 10:10:51 [Info]: Hidden file: c:\Program Files\Seagate Software\Shared\olapdbmg.tlb
03/21/07 10:10:51 [Note]: 10002 3
03/21/07 10:10:51 [Info]: Hidden file: c:\Program Files\Seagate Software\Shared\rule1.dfa
03/21/07 10:10:51 [Note]: 10002 3
03/21/07 10:10:51 [Info]: Hidden file: c:\Program Files\Seagate Software\Shared\rule1.llr
03/21/07 10:10:51 [Note]: 10002 3
03/21/07 10:10:51 [Info]: Hidden file: c:\Program Files\Seagate Software\Shared\s2sqlprs.dll
03/21/07 10:10:51 [Note]: 10002 3
03/21/07 10:10:51 [Info]: Hidden file: c:\Program Files\Seagate Software\Shared\s3sprsfr.dll
03/21/07 10:10:51 [Note]: 10002 3
03/21/07 10:10:51 [Note]: 10002 2
03/21/07 10:10:51 [Note]: 10002 2
03/21/07 10:10:58 [Note]: 10002 3
03/21/07 10:10:58 [Note]: 10002 3
03/21/07 10:10:58 [Note]: 10002 3
03/21/07 10:10:58 [Note]: 10002 3
03/21/07 10:10:58 [Note]: 10002 3
03/21/07 10:10:58 [Note]: 10002 3
03/21/07 10:10:58 [Note]: 10002 3
03/21/07 10:10:58 [Note]: 10002 3
03/21/07 10:10:58 [Note]: 10002 2
03/21/07 10:10:58 [Note]: 10002 2
03/21/07 10:11:08 [Info]: Hidden file: c:\Program Files\Skype\toolbars\Shared\Skype4ComAPI.dll
03/21/07 10:11:08 [Note]: 10002 3
03/21/07 10:11:08 [Info]: Hidden file: c:\Program Files\Skype\toolbars\Shared\SkypeContacts.dll
03/21/07 10:11:08 [Note]: 10002 3
03/21/07 10:11:08 [Info]: Hidden file: c:\Program Files\Skype\toolbars\Shared\SkypeCUC.exe
03/21/07 10:11:08 [Note]: 10002 3
03/21/07 10:11:08 [Info]: Hidden file: c:\Program Files\Skype\toolbars\Shared\SkypeTGH.dll
03/21/07 10:11:08 [Note]: 10002 3
03/21/07 10:11:08 [Info]: Hidden file: c:\Program Files\Skype\toolbars\Shared\SkypeWWW.exe
03/21/07 10:11:08 [Note]: 10002 3
03/21/07 10:11:08 [Info]: Hidden file: c:\Program Files\Skype\toolbars\Shared\SPhoneParser.dll
03/21/07 10:11:08 [Note]: 10002 3
03/21/07 10:11:08 [Note]: 10002 2
03/21/07 10:11:08 [Note]: 10002 2
03/21/07 10:11:11 [Note]: 10002 3
03/21/07 10:11:11 [Note]: 10002 3
03/21/07 10:11:11 [Note]: 10002 3
03/21/07 10:11:11 [Note]: 10002 3
03/21/07 10:11:11 [Note]: 10002 3
03/21/07 10:11:11 [Note]: 10002 3
03/21/07 10:11:11 [Note]: 10002 2
03/21/07 10:11:11 [Note]: 10002 2
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\border_bot.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\border_bot.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\border_left.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\border_left.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\border_right.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\border_right.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\border_top.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\border_top.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\button_chevron_down.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\button_chevron_up.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\capbuttons.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\checkbox.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\columnheads.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\combo_arrow.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\games_close.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\grabbie.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\groupboxedge.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\icons_tbar_disabled.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\icons_tbar_hot.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\icons_tbar_normal.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\indigo.xml
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\menubar.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\menubar_states.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\menuitem.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\menusearchbar.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\menu_bg.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\menu_scroll.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\menu_sep.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\mute_states.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\photoshare_slider.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\photoshare_slider_tray.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\preview_indigo.jpg
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\preview_indigo_intl.jpg
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\progressbar.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\pushbuttons.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\radio.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\scroll_vbg.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\scroll_vhandle.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\scroll_buttons.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\scroll_griph.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\scroll_gripv.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\scroll_hbg.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\scroll_hhandle.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\search_bang.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\statusbar.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\statusgrabber.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\sys_menu.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\tabs.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\tabs_standard.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\tab_border.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\tbar_sep.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\toolbarbuttons.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\tool_border_bot.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\tool_border_bot.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\tool_border_left.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\tool_border_left.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\tool_border_right.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\tool_border_right.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\tool_border_top.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\tool_border_top.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\tool_capbuttons.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\trackbar_thumb_vert.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\trackbar_thumb_up.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\trackbar_h.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\trackbar_thumb_down.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\trackbar_thumb_horz.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\trackbar_thumb_left.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\trackbar_thumb_right.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\trackbar_v.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\combo.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\up_down.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\up_down_arrow.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\up_down_h.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\up_down_h_arrow.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\voice_tbar.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\voice_tbar_incoming.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\voice_callbtn.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\voice_ctrls.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\voice_lights.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Indigo\voice_ringer.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\border_bot.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\border_bot.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\border_left.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\border_left.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\border_right.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\border_right.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\border_top.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\border_top.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\button_chevron_down.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\button_chevron_up.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\capbuttons.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\checkbox.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\columnheads.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\combo_arrow.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\games_close.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\grabbie.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\groupboxedge.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\icons_tbar_disabled.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\icons_tbar_hot.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\icons_tbar_normal.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\maverick.xml
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\menubar.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\menubar_states.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\menuitem.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\menusearchbar.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\menu_bg.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\menu_scroll.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\menu_sep.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\photoshare_slider.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\photoshare_slider_tray.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\preview_mavblue.jpg
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\preview_mavblue_intl.jpg
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\progressbar.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\pushbuttons.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\radio.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\scroll_vbg.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\scroll_hhandle.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\scroll_vhandle.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\scroll_griph.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\scroll_gripv.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\scroll_hbg.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\scroll_buttons.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\search_bang.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\statusbar.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\statusgrabber.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\sys_menu.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tabs_standard.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tab_border.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tbar_bg.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tbar_sep.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\toolbarbuttons.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tool_border_bot.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tool_border_bot.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tool_border_left.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tool_border_left.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tool_border_right.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tool_border_right.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tool_border_top.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tool_border_top.rgn
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tool_capbuttons.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\trackbar_thumb_vert.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\trackbar_thumb_up.bmp
03/21/07 10:11:57 [Note]: 10002 3
03/21/07 10:11:57 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\trackbar_h.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\trackbar_thumb_down.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\trackbar_thumb_horz.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\trackbar_thumb_left.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\trackbar_thumb_right.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\trackbar_v.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\combo.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\tabs.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\up_down.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\up_down_arrow.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\up_down_h.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\up_down_h_arrow.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\voice_tbar.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\voice_tbar_incoming.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\voice_callbtn.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\voice_ctrls.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\voice_lights.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\Maverick\voice_ringer.bmp
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\Graphics\preview_classic_msgr.jpg
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\YAlertCenter.dll
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\YbSkin2.dll
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\YbSkinSelect.dll
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Info]: Hidden file: c:\Program Files\Yahoo!\Shared\YbSkinSelectRes.dll
03/21/07 10:11:58 [Note]: 10002 3
03/21/07 10:11:58 [Note]: 10002 2
03/21/07 10:11:58 [Note]: 10002 2
03/21/07 10:19:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\imepaden.hlp
03/21/07 10:19:11 [Note]: 10002 3
03/21/07 10:19:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\imepadsm.dll
03/21/07 10:19:11 [Note]: 10002 3
03/21/07 10:19:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\imepadsv.exe
03/21/07 10:19:11 [Note]: 10002 3
03/21/07 10:19:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\imlang.dll
03/21/07 10:19:11 [Note]: 10002 3
03/21/07 10:19:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\res\PADRS404.DLL
03/21/07 10:19:11 [Note]: 10002 3
03/21/07 10:19:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\res\padrs411.dll
03/21/07 10:19:11 [Note]: 10002 3
03/21/07 10:19:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\res\padrs412.dll
03/21/07 10:19:11 [Note]: 10002 3
03/21/07 10:19:11 [Info]: Hidden file: c:\WINDOWS\ime\shared\res\padrs804.dll
03/21/07 10:19:11 [Note]: 10002 3
03/21/07 10:19:11 [Note]: 10002 2
03/21/07 10:19:11 [Note]: 10002 2
03/21/07 10:19:31 [Note]: 10002 3
03/21/07 10:19:31 [Note]: 10002 3
03/21/07 10:19:31 [Note]: 10002 3
03/21/07 10:19:31 [Note]: 10002 3
03/21/07 10:19:31 [Note]: 10002 3
03/21/07 10:19:31 [Note]: 10002 3
03/21/07 10:19:31 [Note]: 10002 3
03/21/07 10:19:31 [Note]: 10002 3
03/21/07 10:19:31 [Note]: 10002 2
03/21/07 10:19:31 [Note]: 10002 2
03/21/07 10:20:09 [Info]: Hidden file: c:\WINDOWS\system32\wintems.exe
03/21/07 10:20:09 [Note]: 10002 2
03/21/07 10:25:47 [Note]: 2000 1012
03/21/07 10:25:47 [Note]: 2000 1012
03/21/07 10:25:47 [Note]: 2000 1012
03/21/07 10:25:47 [Note]: 2000 1012
03/21/07 10:25:47 [Note]: 2000 1012
03/21/07 10:25:47 [Note]: 2000 1012
21 Mars 2007 11:04:41

Rapport GenProc 0.23 effectué le 21/03/07 à 11:05:20,62 - SystemRoot = C:\WINDOWS

Dans CCleaner, clique sur "Options", "Avancé" et décoche la case "Effacer uniquement les fichiers, du dossier Temp de Windows, plus vieux que 48 heures". Par la suite, laisse-le avec ses réglages par défaut. C'est tout.

# Etape 1/ Télécharge :

- ELIBAGLA en bas de cette page http://www.zonavirus.com/datos/descargas/95/elibagla.as... (clique sur le bouton "Descargar Elibagla") sur ton bureau.
Lance l'outil ELIBAGLA, de préférence en mode sans échec si tu en as la possibilité, en mode normal dans le cas contraire. Patiente le temps du scan.
Lorsque c'est terminé, redémarre ton ordinateur.

# Etape 2/ Lance CCleaner > "Nettoyeur" > "Lancer le nettoyage" et c'est tout.

# Etape 3/ Poste le contenu du fichier infosat.txt qui se trouve dans Poste de travail > disque C:\ et un nouveau rapport GenProc.
21 Mars 2007 11:17:56

Re,

C'est OK fait les 3 etapes proposées par GenProc.
21 Mars 2007 12:04:16

Il a reussi a tout nettoyer j'ai l'impression :)  , j'ai refait une analyse elibaglia apres le redemarrage et il n'a plus rien trouver.

Je vais essayer de réinstaller mon antivirus now et mon firewall. je posterai pour vous tenir informé si tout est reparti correctement.

1000 merci pour votre aide, j'y ai passer une semaine sans y arriver.

rapport infos sat:

Wed Mar 21 11:29:43 2007
EliBagle v10.30 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):
C:\WINDOWS\SYSTEM32\WINTEMS.EXE --> Eliminado Bagle
C:\WINDOWS\SYSTEM32\BAN_LIST.TXT --> Eliminado Bagle
C:\DOCUMENTS AND SETTINGS\CHRISTOPHE\APPLICATION DATA\HIDIRES\HIDR.EXE --> Bagle Renombrado a .VIR
C:\DOCUMENTS AND SETTINGS\CHRISTOPHE\APPLICATION DATA\HIDIRES\M_HOOK.SYS --> Eliminado Bagle (rootkit)
Eliminada Carpeta "%WinDir%\exefld"
Restaurada Clave: "SafeBoot\Minimal y Network"

Wed Mar 21 11:35:01 2007
EliBagle v10.30 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):

Wed Mar 21 11:35:27 2007
EliBagle v10.30 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):

Wed Mar 21 11:35:30 2007
EliBagle v10.30 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
C:\Documents and Settings\christophe\Application Data\hidires\HIDR.EXE.VIR --> Eliminado Bagle

Wed Mar 21 11:49:45 2007
EliBagle v10.30 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):
Eliminada Carpeta "%AppData%\Hidires"

Wed Mar 21 11:49:51 2007
EliBagle v10.30 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\
Exploración Detenida por el Usuario.

Wed Mar 21 11:51:05 2007
EliBagle v10.30 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Acción Directa):

Wed Mar 21 11:51:08 2007
EliBagle v10.30 (c)2007 S.G.H. / Satinfo S.L.
----------------------------------------------
Lista de Acciones (por Exploración):
Explorando Unidad C:\

rapport genproc:

Aucune infection caractéristique trouvée !


21 Mars 2007 12:19:25

c'est ok j'ai pu réinstallerm on antivirus. Merci encore pour votre aide précieuse.
a b 8 Sécurité
21 Mars 2007 13:30:05

Reposte un rapport Hijackthis.
21 Mars 2007 13:49:12

voila chef :) 

Logfile of HijackThis v1.97.7
Scan saved at 13:44, on 21/03/07
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WatchGuard\Mobile User VPN\IreIKE.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
C:\WINDOWS\system32\FortiSslvpnDaemon.exe
C:\Program Files\WatchGuard\Mobile User VPN\IPSecMon.exe
u:\MICROS~1\MSSQL\binn\sqlservr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\PESTPA~1\PPControl.exe
C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
C:\PROGRA~1\PESTPA~1\CookiePatrol.exe
C:\Program Files\ATI Technologies\ATI HydraVision\HydraMD.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\CameraAssistant.exe
C:\WINDOWS\system32\ElkCtrl.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WatchGuard\Mobile User VPN\SafeCfg.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\Microsoft Office97\Office\OSA.EXE
C:\Program Files\Skype\Plugin Manager\SkypePM.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Outlook Express\msimn.exe
C:\WINDOWS\system32\wuauclt.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\WINDOWS\system32\mspaint.exe
C:\Program Files\Adobe\Photoshop 6.0\Photoshp.exe
C:\Program Files\Fichiers communs\Adobe\Web\AOM.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\christophe\Bureau\Outils de Scan et base de registre\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://exchangeserver/requests/default.htm
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\PROGRA~1\Skype\toolbars\SKYPEF~1\SKYPE_~1.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O3 - Toolbar: Skype Toolbar for Internet Explorer - {B13721C7-F507-4982-B2E5-502A71474FED} - C:\Program Files\Skype\toolbars\Skype for Internet Explorer\skype_toolbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [PestPatrol Control Center] C:\PROGRA~1\PESTPA~1\PPControl.exe
O4 - HKLM\..\Run: [PPMemCheck] C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
O4 - HKLM\..\Run: [CookiePatrol] C:\PROGRA~1\PESTPA~1\CookiePatrol.exe
O4 - HKLM\..\Run: [KeyPatrol] C:\PROGRA~1\PESTPA~1\KeyPatrol.exe
O4 - HKLM\..\Run: [CloneCDElbyCDFL] "C:\Program Files\Elaborate Bytes\CloneCD\ElbyCheck.exe" /L ElbyCDFL
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [HydraVisionViewport] C:\Program Files\ATI Technologies\ATI HydraVision\HydraMD.exe
O4 - HKLM\..\Run: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechCameraAssistant] C:\Program Files\Logitech\Video\CameraAssistant.exe
O4 - HKLM\..\Run: [LogitechVideo[inspector]] C:\Program Files\Logitech\Video\InstallHelper.exe /inspect
O4 - HKLM\..\Run: [LogitechCameraService(E)] C:\WINDOWS\system32\ElkCtrl.exe /automation
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpamBully 3 for Outlook Express] "C:\Program Files\Axaware\Spam Bully 3 for OE\sb3oe.exe" install
O4 - Startup: Démarrage d'Office.lnk = C:\Program Files\Microsoft Office97\Office\OSA.EXE
O4 - Startup: MS Office - Démarrage accéléré.lnk = C:\MSOffice95\Office\FASTBOOT.EXE
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Mobile User VPN.lnk = C:\Program Files\WatchGuard\Mobile User VPN\SafeCfg.exe
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O9 - Extra 'Tools' menuitem: Console Java (Sun) (HKLM)
O9 - Extra button: Skype Toolbar for Internet Explorer (HKLM)
O9 - Extra 'Tools' menuitem: Skype Toolbar for Internet Explorer (HKLM)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 (HKLM)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Windows Messenger (HKLM)
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {0000000A-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/download/d/4/4/d446e8a9-3...
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab28578....
O16 - DPF: {14325268-79E0-4D2A-89A4-FFFC6E22741E} - http://akamai.downloadv3.com/binaries/LiveService/LiveS...
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/direc...
O16 - DPF: {254AA86E-5655-4518-AA87-185D7CC41801} (Rescue Technician Console) - https://secure.logmeinrescue.com/TechConsole/RescueCont...
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab285...
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin...
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/download/F/6/E/F6E491A6-7...
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8....
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common...
O16 - DPF: {7584C670-2274-4EFB-B00B-D6AABA6D3850} (Microsoft RDP Client Control (redist)) - https://xxxxxxxxxxxxxxx.com/Remote/msrdp.cab
O16 - DPF: {85D1F3B2-2A21-11D7-97B9-0010DC2A6243} (SecureLogin class) - http://secure2.comned.com/signuptemplates/securelogin-d...
O16 - DPF: {B0882EB7-81A5-4A11-8D45-71888F973933} (fortisslvpn Class) - https://xxxxxxxxxxxxxxxx/sslvpn.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash...
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown....
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = xxxx
O17 - HKLM\Software\..\Telephony: DomainName = xxxx
O17 - HKLM\System\CCS\Services\Tcpip\..\{8FA09181-8334-4507-9120-58DF083E1CED}: Domain = xxxx
O17 - HKLM\System\CCS\Services\Tcpip\..\{8FA09181-8334-4507-9120-58DF083E1CED}: NameServer = xxxxxxx
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = xxx
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = xxxx
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: Domain = xxx
O17 - HKLM\System\CS4\Services\Tcpip\Parameters: Domain = xxx
O17 - HKLM\System\CS5\Services\Tcpip\Parameters: Domain = xx

a b 8 Sécurité
21 Mars 2007 13:56:03

Refais un scan Blacklight stp.

Télécharge Clean.zip (de Malekal),
Décompresse-le sur ton bureau (Clique-Droit/Extraire tout), tu dois obtenir un dossier Clean.
Ouvre le dossier clean, double-clique sur clean.cmd.
Choisis l'option 1 puis patiente. Poste ensuite le contenu du rapport.

21 Mars 2007 14:06:03

Rapport clean par Malekal_morte - http://www.malekal.com
Option 1, executee le 21/03/07 a 14:06:38,93

*** Recherche de fichiers sur C:
C:\unwise.exe FOUND

*** Recherche des fichiers dans C:\WINDOWS\

*** Recherche des fichiers dans C:\WINDOWS\system32

*** Fin du rapport !
21 Mars 2007 14:11:02

O16 - DPF: {14325268-79E0-4D2A-89A4-FFFC6E22741E} - http://akamai.downloadv3.com/binar [...] _FR_XP.cab

cela contient un trojan, bloker par mon antivirus je vien de le virer avec hijackthis.
a b 8 Sécurité
21 Mars 2007 14:20:27

Et le Blacklight ?
21 Mars 2007 14:45:02

j avais zaper la ligne ^^ dsl.

voici le rapport ;

03/21/07 14:24:56 [Info]: BlackLight Engine 1.0.55 initialized
03/21/07 14:24:56 [Info]: OS: 5.1 build 2600 (Service Pack 2)
03/21/07 14:24:57 [Note]: 7019 4
03/21/07 14:24:57 [Note]: 7005 0
03/21/07 14:24:59 [Note]: 7006 0
03/21/07 14:24:59 [Note]: 7011 272
03/21/07 14:24:59 [Note]: 7026 0
03/21/07 14:24:59 [Note]: 7026 0
03/21/07 14:25:22 [Note]: FSRAW library version 1.7.1021
03/21/07 14:42:18 [Note]: 2000 1012
03/21/07 14:45:56 [Note]: 7007 0

clean quoi :) 
a b 8 Sécurité
21 Mars 2007 14:51:17

Reposte un rapport Hijackthis.
21 Mars 2007 14:54:07

Logfile of HijackThis v1.97.7
Scan saved at 14:54, on 21/03/07
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\WatchGuard\Mobile User VPN\IreIKE.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\fichiers communs\logitech\lvmvfm\LVPrcSrv.exe
C:\WINDOWS\system32\FortiSslvpnDaemon.exe
C:\Program Files\WatchGuard\Mobile User VPN\IPSecMon.exe
u:\MICROS~1\MSSQL\binn\sqlservr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Eset\nod32krn.exe
C:\WINDOWS\System32\tcpsvcs.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\PESTPA~1\PPControl.exe
C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
C:\PROGRA~1\PESTPA~1\CookiePatrol.exe
C:\Program Files\ATI Technologies\ATI HydraVision\HydraMD.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\CameraAssistant.exe
C:\WINDOWS\system32\ElkCtrl.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Eset\nod32kui.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WatchGuard\Mobile User VPN\SafeCfg.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\Program Files\Microsoft Office97\Office\OSA.EXE
C:\Program Files\Skype\Plugin Manager\SkypePM.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Outlook Express\msimn.exe
C:\WINDOWS\system32\wuauclt.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Adobe\Photoshop 6.0\Photoshp.exe
C:\Program Files\Fichiers communs\Adobe\Web\AOM.exe
C:\Documents and Settings\christophe\Bureau\Outils de Scan et base de registre\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://exchangeserver/requests/default.htm
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {22BF413B-C6D2-4d91-82A9-A0F997BA588C} - C:\PROGRA~1\Skype\toolbars\SKYPEF~1\SKYPE_~1.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: (no name) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O3 - Toolbar: Skype Toolbar for Internet Explorer - {B13721C7-F507-4982-B2E5-502A71474FED} - C:\Program Files\Skype\toolbars\Skype for Internet Explorer\skype_toolbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [PestPatrol Control Center] C:\PROGRA~1\PESTPA~1\PPControl.exe
O4 - HKLM\..\Run: [PPMemCheck] C:\PROGRA~1\PESTPA~1\PPMemCheck.exe
O4 - HKLM\..\Run: [CookiePatrol] C:\PROGRA~1\PESTPA~1\CookiePatrol.exe
O4 - HKLM\..\Run: [KeyPatrol] C:\PROGRA~1\PESTPA~1\KeyPatrol.exe
O4 - HKLM\..\Run: [CloneCDElbyCDFL] "C:\Program Files\Elaborate Bytes\CloneCD\ElbyCheck.exe" /L ElbyCDFL
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [HydraVisionViewport] C:\Program Files\ATI Technologies\ATI HydraVision\HydraMD.exe
O4 - HKLM\..\Run: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechCameraAssistant] C:\Program Files\Logitech\Video\CameraAssistant.exe
O4 - HKLM\..\Run: [LogitechVideo[inspector]] C:\Program Files\Logitech\Video\InstallHelper.exe /inspect
O4 - HKLM\..\Run: [LogitechCameraService(E)] C:\WINDOWS\system32\ElkCtrl.exe /automation
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
O4 - HKLM\..\Run: [nod32kui] "C:\Program Files\Eset\nod32kui.exe" /WAITSERVICE
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SpamBully 3 for Outlook Express] "C:\Program Files\Axaware\Spam Bully 3 for OE\sb3oe.exe" install
O4 - Startup: Démarrage d'Office.lnk = C:\Program Files\Microsoft Office97\Office\OSA.EXE
O4 - Startup: MS Office - Démarrage accéléré.lnk = C:\MSOffice95\Office\FASTBOOT.EXE
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: Mobile User VPN.lnk = C:\Program Files\WatchGuard\Mobile User VPN\SafeCfg.exe
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O9 - Extra 'Tools' menuitem: Console Java (Sun) (HKLM)
O9 - Extra button: Skype Toolbar for Internet Explorer (HKLM)
O9 - Extra 'Tools' menuitem: Skype Toolbar for Internet Explorer (HKLM)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 (HKLM)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 (HKLM)
O9 - Extra button: Messenger (HKLM)
O9 - Extra 'Tools' menuitem: Windows Messenger (HKLM)
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {0000000A-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/download/d/4/4/d446e8a9-3...
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab28578....
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://download.macromedia.com/pub/shockwave/cabs/direc...
O16 - DPF: {254AA86E-5655-4518-AA87-185D7CC41801} (Rescue Technician Console) - https://xxxxxxxxxxxxxxxxxxxxxxx.com/TechConsole/RescueC...
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab285...
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin...
O16 - DPF: {33564D57-0000-0010-8000-00AA00389B71} - http://download.microsoft.com/download/F/6/E/F6E491A6-7...
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8....
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common...
O16 - DPF: {7584C670-2274-4EFB-B00B-D6AABA6D3850} (Microsoft RDP Client Control (redist)) - https://cxxxxxxxxxxxxxxxxxx.com/Remote/msrdp.cab
O16 - DPF: {85D1F3B2-2A21-11D7-97B9-0010DC2A6243} (SecureLogin class) - http://secure2.comned.com/signuptemplates/securelogin-d...
O16 - DPF: {B0882EB7-81A5-4A11-8D45-71888F973933} (fortisslvpn Class) - https://xxxxxxxxxxxx10443/sslvpn.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://download.macromedia.com/pub/shockwave/cabs/flash...
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown....
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = xxxx
O17 - HKLM\Software\..\Telephony: DomainName = xxxx
O17 - HKLM\System\CCS\Services\Tcpip\..\{8FA09181-8334-4507-9120-58DF083E1CED}: Domain = xxxxx
O17 - HKLM\System\CCS\Services\Tcpip\..\{8FA09181-8334-4507-9120-58DF083E1CED}: NameServer = xxxxxxxx.2.113
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = xxx
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = xxx
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: Domain = xxx
O17 - HKLM\System\CS4\Services\Tcpip\Parameters: Domain = xxx
O17 - HKLM\System\CS5\Services\Tcpip\Parameters: Domain = xxx

a b 8 Sécurité
21 Mars 2007 14:58:00

Tu as toujours des problèmes ?

  • Fais un scan en ligne Kaspersky avec Internet Explorer :
  • Clique sur
  • Clique maintenant sur J'accepte.
  • Valide l'installation d'un ou de plusieurs ActiveX si c'est nécessaire.
  • Patiente pendant l'installation des Mises à jour.
  • Choisis par la suite l'analyse du Poste de travail
  • Sauvegarde puis colle le rapport généré en fin d'analyse.

    AIDE : Configurer le contrôle des ActiveX

    NOTE : Si tu reçois le message "La licence de Kaspersky On-line Scanner est périmée", va dans Ajout/Suppression de programmes puis désinstalle On-Line Scanner, reconnecte toi sur le site de Kaspersky pour retenter le scan en ligne.
    21 Mars 2007 15:15:21

    Non je n'ai plus aucun probleme , pour moi tout est ok, mon antivirus est réinstaler et remis a jour. mes autres appli sont réparés , et les dernier scan ne trouve rien.

    Merci encore une fois pour toute votre aide.

    Bonne continuation a vous.

    a b 8 Sécurité
    21 Mars 2007 15:16:20

    Tu veux pas faire le scan Kaspersky :(  ?
    21 Mars 2007 15:25:20

    lol , soit pas triste, je pensais pas etre obliger :)  un scan en ligne ( bit defender et autres prendra enormément de tps, j'ai deux disque dur bien remplit)

    Mais si tu insiste et que tu dmeande gentillement je le fais :) 

    je plaisante bien sur. je vais le faire rien que pour toi ;)  parce que tu m'as aider et que tu es benevole :) 

    En tout cas vous faite du bon boulot, quand je vois le nombre de posts que vous avez a traiter , . je te dis le resultat ds 4 h :p 
    a b 8 Sécurité
    21 Mars 2007 15:27:42

    Merci :D 
    21 Mars 2007 15:31:27

    lol mon antivirus vient de detecter elibaglia comme une menace et la mis en quarantaine , vous n'essayeriez pas de me vérolé mon post hein :p 
    Tom's guide dans le monde
    • Allemagne
    • Italie
    • Irlande
    • Royaume Uni
    • Etats Unis
    Suivre Tom's Guide
    Inscrivez-vous à la Newsletter
    • ajouter à twitter
    • ajouter à facebook
    • ajouter un flux RSS