Pages publicitaires [résolu]

Section d'analyse de rapports et de désinfection : malwares en tous genre et autres indésirables. Demandes de nettoyage uniquement. Prise en charge restreinte : équipe spécialisée.

Modérateur: Modérateurs

Règles du forum :arrow: Les désinfections sont prises en charge par un groupe spécifique, tout le monde ne peut pas intervenir pour désinfecter les machines (règles).
:arrow: Les procédures sont sur-mesure, ne faites pas la même chose chez vous (explications).
:arrow: Un topic par machine, chacun crée le sien. ;)

Pages publicitaires [résolu]

Messagepar Younes_lp » 23 Fév 2008 00:42

[img][img]bonjour,

voila j ai un tit prob qui m derange
en fait c'est des pages publicitaires avec un titre de fenetre (CID: .....) qui s'ouvre chaque fois quand je surf sur internet et même si j'exécute pas internet explorer elles s'ouvrent automatiquement

j'ai essayé de mattre fin de tache a iexplorer.exe mais ça s'enleve pas (ou ça revient juste après)
voici une image representatif du gestionnaire des taches : http://www.mediafire.com/imageview.php?quickkey=gayxdyhdg0z&thumb=5

merci de bien vouloir m'aider à resoudre ce problème ^_^
Image
Avatar de l’utilisateur
Younes_lp
Libellulien Junior
Libellulien Junior
 
Messages: 159
Inscription: 22 Fév 2008 22:02

Re: Pages publicitaires

Messagepar Falkra » 23 Fév 2008 00:47

Bonjour, ça sent l'infection LOP (attrapée par exemple par le "sponsor" de MSNPlus! ou d'autres programmes).

C'est le même pc que celui infecté précédemment ?

Il me faudrait un log HJT 2.0.2 pour commencer.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: Pages publicitaires

Messagepar Younes_lp » 23 Fév 2008 00:53

oui merci Falkra

oui c'est le même PC voila le rapport mais avant je crois que vous avez raison à propos de MSNPlus et j aimerai resoudre ce problème sans desinstaller MSNPlus


voila :

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 0:49:54, on 23/02/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16609)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Java\jre1.6.0\bin\jusched.exe
C:\Program Files\Synaptics\SynTP\SynTPStart.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Windows\System32\notepad.exe
C:\Downloads\anti spyware\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll
O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\My Files\Programs\FlashGet\jccatch_1.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\My Files\Programs\FlashGet\getflash.dll
O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Flashget] C:\My Files\Programs\FlashGet\FlashGet.exe /min
O4 - HKLM\..\Run: [VGA THIS] "C:\ProgramData\WAY HOPE HOPE.t5ipu"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ccleaner] "C:\My Files\Programs\CCleaner\ccleaner.exe" /AUTO
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [BitTorrent] "C:\My Files\Programs\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O8 - Extra context menu item: &Tout télécharger avec FlashGet - C:\My Files\Programs\FlashGet\jc_all.htm
O8 - Extra context menu item: &Télécharger avec FlashGet - C:\My Files\Programs\FlashGet\jc_link.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Save Flash by &GetFlash - C:\PROGRA~1\GetFlash\getflash.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\My Files\Programs\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\My Files\Programs\FlashGet\FlashGet.exe
O13 - Gopher Prefix:
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe

--
End of file - 11002 bytes
Image
Avatar de l’utilisateur
Younes_lp
Libellulien Junior
Libellulien Junior
 
Messages: 159
Inscription: 22 Fév 2008 22:02

Re: Pages publicitaires

Messagepar Falkra » 23 Fév 2008 00:56

Ok. On voit bien les saletés qui reviennent, j'ai un outil mais qui peut ne passe pas sous Vista normalement.
On va en venir à bout, mais il faudra faire autrement.

Je vérifie 2-3 choses, on reprend demain, le temps que je contacte les auteurs de l'outil, on aura peut-être à transmettre des fichiers.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: Pages publicitaires

Messagepar Younes_lp » 23 Fév 2008 01:02

d'accord

au fait, et si je désinstalle msn plus et que je le reinstalle sans le spensore ça changera qlq choses ?

si non

ça serait bien si vous m'envoyez un message perso, comme ça j reçois un message sur ma boite hotmail

en tout cas merci pour tout
Image
Avatar de l’utilisateur
Younes_lp
Libellulien Junior
Libellulien Junior
 
Messages: 159
Inscription: 22 Fév 2008 22:02

Re: Pages publicitaires

Messagepar Falkra » 23 Fév 2008 01:04

Réinstaller MSN+ ne réglera pas l'affaire, les saletés seront laissées. (hélas)
Cette version n'est pas forcément connue des développeurs, et faire suivre les fichiers peut aider à mieux prendre en compte ces infections.

Il est possible de suivre le sujet (cliquer sur "surveiller ce sujet" en haut à gauche) : à chaque nouvelle réponse : un mail arrive.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: Pages publicitaires

Messagepar Younes_lp » 23 Fév 2008 01:10

merci pour le conseil de surveillance ;)

j ai une idée pour ton logiciel qui marche que sur XP :

j peux le faire marcher sous vista en utilisant un mode de compatibilité de XP il suffit de faire proprieté au fichier .exe et puis dans la zone compatibilité je séléctionne éxécuter ce programme en mode de compatibilité pour windows XP

essayons si ça vous derange pas :)
Image
Avatar de l’utilisateur
Younes_lp
Libellulien Junior
Libellulien Junior
 
Messages: 159
Inscription: 22 Fév 2008 22:02

Re: Pages publicitaires

Messagepar Falkra » 23 Fév 2008 01:11

Ca ne suffira pas, promis. :wink:
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: Pages publicitaires

Messagepar Younes_lp » 23 Fév 2008 01:13

d'accord

on verra cela demain ;)

a+

encore merci
Image
Avatar de l’utilisateur
Younes_lp
Libellulien Junior
Libellulien Junior
 
Messages: 159
Inscription: 22 Fév 2008 22:02

Re: Pages publicitaires

Messagepar Younes_lp » 23 Fév 2008 06:19

bonjour Falkra

je crois que j'ai reussi à résoudre le problème ;)

voila ce que j'ai fait :
- j'ai redemarré en mode sans echec
- j'ai Lancé la desinstallation de MSNPlus
- j'ai j ai choisis de desinstaller juste le sponsor
- j'ai redemarré le pc et voila le travail

je n'ai plus reçu aucune page CiD et même dans le gestionnaire des tâches il n'y a plus aucune page internet explorer ouverte (iexplorer.exe) :lol:


mais je vé kan même vous donner le rapport HJT pour que vous regardiez s'il reste qlq infections ^_^ :) :


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:16:44, on 23/02/2008
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16609)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Java\jre1.6.0\bin\jusched.exe
C:\Program Files\Synaptics\SynTP\SynTPStart.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\My Files\Programs\BitTorrent\bittorrent.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\My Files\Programs\FlashGet\flashget.exe
C:\My Files\Programs\Winamp\winamp.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Downloads\anti spyware\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll
O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - C:\My Files\Programs\FlashGet\jccatch_1.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - C:\My Files\Programs\FlashGet\getflash.dll
O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [SynTPStart] C:\Program Files\Synaptics\SynTP\SynTPStart.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Flashget] C:\My Files\Programs\FlashGet\FlashGet.exe /min
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ccleaner] "C:\My Files\Programs\CCleaner\ccleaner.exe" /AUTO
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe"
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [BitTorrent] "C:\My Files\Programs\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O8 - Extra context menu item: &Tout télécharger avec FlashGet - C:\My Files\Programs\FlashGet\jc_all.htm
O8 - Extra context menu item: &Télécharger avec FlashGet - C:\My Files\Programs\FlashGet\jc_link.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Save Flash by &GetFlash - C:\PROGRA~1\GetFlash\getflash.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\My Files\Programs\FlashGet\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\My Files\Programs\FlashGet\FlashGet.exe
O13 - Gopher Prefix:
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Com4Qlb - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4Qlb.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe

--
End of file - 10773 bytes
Image
Avatar de l’utilisateur
Younes_lp
Libellulien Junior
Libellulien Junior
 
Messages: 159
Inscription: 22 Fév 2008 22:02

Re: Pages publicitaires

Messagepar Falkra » 23 Fév 2008 08:38

Désactive l'UAC-User Account Control -contrôle des comptes utilisateurs (surtout, bien penser à le réactiver après la désinfection).

* Démarrer > Panneau de Configuration
* Double clique sur l'icône Comptes d'utilisateurs
* Clique ensuite sur Désactiver et valide.


Télécharge Lop S&D sur ton bureau

[*]Double-clique dessus pour lancer l'installation
[*]Puis double-clique sur le raccourci Lop S&D présent sur ton bureau
[*]Sélectionne la langue souhaitée, puis choisis l'Option 1 ( Recherche )
[*]Patiente jusqu'à la fin du scan
[*]Poste le rapport généré ( C:\lopR.txt )

( Si le Bureau ne réapparait pas presse Ctrl + Alt + Suppr , Onglet Fichier , Nouvelle tâche , tape explorer.exe et valide).


Réactive l'UAC.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: Pages publicitaires

Messagepar Younes_lp » 23 Fév 2008 12:40

Voilà :




-----------------------------[ Lop S&D V_X ]---------------------------

[ Windows 'Longhorn' (NT 6.0) Workstation Build 6000 ]
[ USER : Younes ] [ "C:\Program Files\LopSDV" ]
[ sam. 23/02/2008 | 12:38:33,20 ] [ PC : PC-DE-YOUNES ]
[ MAJ : 22-02-2008 | 02:15 ]

-------------[ Listing des dossiers dans Application Data ]------------

[21/02/2008|00:57] C:\Users\Younes\AppData\Roaming\Adobe\Common
[21/02/2008|00:57] C:\Users\Younes\AppData\Roaming\Adobe\..
[21/02/2008|00:57] C:\Users\Younes\AppData\Roaming\Adobe\.
[21/02/2008|00:57] C:\Users\Younes\AppData\Roaming\Adobe\Audition
[19/02/2008|22:26] C:\Users\Younes\AppData\Roaming\Adobe\Flash Player
[15/02/2008|18:08] C:\Users\Younes\AppData\Roaming\Adobe\Linguistics
[13/02/2008|15:22] C:\Users\Younes\AppData\Roaming\Adobe\Acrobat

[23/02/2008|12:32] C:\Users\Younes\AppData\Roaming\BitTorrent\bittorrent.log
[23/02/2008|05:45] C:\Users\Younes\AppData\Roaming\BitTorrent\data
[23/02/2008|03:33] C:\Users\Younes\AppData\Roaming\BitTorrent\incomplete
[21/02/2008|21:53] C:\Users\Younes\AppData\Roaming\BitTorrent\..
[21/02/2008|21:53] C:\Users\Younes\AppData\Roaming\BitTorrent\.
[21/02/2008|21:51] C:\Users\Younes\AppData\Roaming\BitTorrent\locale

[15/02/2008|11:30] C:\Users\Younes\AppData\Roaming\CyberLink\..
[15/02/2008|11:30] C:\Users\Younes\AppData\Roaming\CyberLink\PowerCinema
[15/02/2008|11:30] C:\Users\Younes\AppData\Roaming\CyberLink\.
[15/02/2008|11:30] C:\Users\Younes\AppData\Roaming\CyberLink\PowerDVD

[14/02/2008|13:06] C:\Users\Younes\AppData\Roaming\DAEMON Tools\..
[14/02/2008|13:06] C:\Users\Younes\AppData\Roaming\DAEMON Tools\daemon.ini
[14/02/2008|13:06] C:\Users\Younes\AppData\Roaming\DAEMON Tools\.
[14/02/2008|13:04] C:\Users\Younes\AppData\Roaming\DAEMON Tools\daemontools.ini

[23/02/2008|12:37] C:\Users\Younes\AppData\Roaming\FlashGet\DataBase
[14/02/2008|00:22] C:\Users\Younes\AppData\Roaming\FlashGet\..
[14/02/2008|00:22] C:\Users\Younes\AppData\Roaming\FlashGet\.

[23/02/2008|05:43] C:\Users\Younes\AppData\Roaming\Google\Local Search History
[19/02/2008|00:58] C:\Users\Younes\AppData\Roaming\Google\GoogleEarth
[19/02/2008|00:34] C:\Users\Younes\AppData\Roaming\Google\..
[19/02/2008|00:34] C:\Users\Younes\AppData\Roaming\Google\.

[14/02/2008|10:51] C:\Users\Younes\AppData\Roaming\Hewlett-Packard\..
[14/02/2008|10:51] C:\Users\Younes\AppData\Roaming\Hewlett-Packard\MSCU for Microsoft Vista
[14/02/2008|10:51] C:\Users\Younes\AppData\Roaming\Hewlett-Packard\.
[13/02/2008|15:16] C:\Users\Younes\AppData\Roaming\Hewlett-Packard\HP Software UI

[13/02/2008|19:43] C:\Users\Younes\AppData\Roaming\HP\QuickPlay
[13/02/2008|19:43] C:\Users\Younes\AppData\Roaming\HP\..
[13/02/2008|19:43] C:\Users\Younes\AppData\Roaming\HP\.

[13/02/2008|15:22] C:\Users\Younes\AppData\Roaming\Identities\..
[13/02/2008|15:22] C:\Users\Younes\AppData\Roaming\Identities\{2A6B5FE4-104C-473E-AAF1-9BE01C86ACD2}
[13/02/2008|15:22] C:\Users\Younes\AppData\Roaming\Identities\.

[14/02/2008|10:16] C:\Users\Younes\AppData\Roaming\InstallShield\..
[14/02/2008|10:16] C:\Users\Younes\AppData\Roaming\InstallShield\ISEngine12.0
[14/02/2008|10:16] C:\Users\Younes\AppData\Roaming\InstallShield\.

[21/02/2008|16:03] C:\Users\Younes\AppData\Roaming\LimeWire\library.dat
[21/02/2008|16:03] C:\Users\Younes\AppData\Roaming\LimeWire\spam.dat
[21/02/2008|16:03] C:\Users\Younes\AppData\Roaming\LimeWire\questions.props
[21/02/2008|16:03] C:\Users\Younes\AppData\Roaming\LimeWire\tables.props
[21/02/2008|16:03] C:\Users\Younes\AppData\Roaming\LimeWire\installation.props
[21/02/2008|16:03] C:\Users\Younes\AppData\Roaming\LimeWire\mojito.props
[21/02/2008|16:03] C:\Users\Younes\AppData\Roaming\LimeWire\limewire.props
[21/02/2008|16:03] C:\Users\Younes\AppData\Roaming\LimeWire\gnutella.net
[21/02/2008|16:03] C:\Users\Younes\AppData\Roaming\LimeWire\..
[21/02/2008|16:03] C:\Users\Younes\AppData\Roaming\LimeWire\.
[21/02/2008|15:58] C:\Users\Younes\AppData\Roaming\LimeWire\version.xml
[21/02/2008|15:58] C:\Users\Younes\AppData\Roaming\LimeWire\simpp.xml
[20/02/2008|13:06] C:\Users\Younes\AppData\Roaming\LimeWire\fileurns.cache
[20/02/2008|13:05] C:\Users\Younes\AppData\Roaming\LimeWire\createtimes.cache
[20/02/2008|13:05] C:\Users\Younes\AppData\Roaming\LimeWire\414splashfree.png
[17/02/2008|18:27] C:\Users\Younes\AppData\Roaming\LimeWire\responses.cache
[17/02/2008|18:27] C:\Users\Younes\AppData\Roaming\LimeWire\ttree.cache
[17/02/2008|18:27] C:\Users\Younes\AppData\Roaming\LimeWire\filters.props
[17/02/2008|17:04] C:\Users\Younes\AppData\Roaming\LimeWire\.NetworkShare
[17/02/2008|17:02] C:\Users\Younes\AppData\Roaming\LimeWire\fileurns.bak
[17/02/2008|16:57] C:\Users\Younes\AppData\Roaming\LimeWire\.AppSpecialShare
[17/02/2008|16:57] C:\Users\Younes\AppData\Roaming\LimeWire\xml
[17/02/2008|16:56] C:\Users\Younes\AppData\Roaming\LimeWire\themes

[23/02/2008|06:08] C:\Users\Younes\AppData\Roaming\Macromedia\Flash Player
[13/02/2008|15:16] C:\Users\Younes\AppData\Roaming\Macromedia\..
[13/02/2008|15:16] C:\Users\Younes\AppData\Roaming\Macromedia\.

[02/11/2006|13:37] C:\Users\Younes\AppData\Roaming\Media Center Programs\..
[02/11/2006|13:37] C:\Users\Younes\AppData\Roaming\Media Center Programs\.

[23/02/2008|04:58] C:\Users\Younes\AppData\Roaming\Media Player Classic\default.mpcpl
[14/02/2008|12:11] C:\Users\Younes\AppData\Roaming\Media Player Classic\..
[14/02/2008|12:11] C:\Users\Younes\AppData\Roaming\Media Player Classic\.

[22/02/2008|01:07] C:\Users\Younes\AppData\Roaming\Microsoft\UProof
[22/02/2008|01:03] C:\Users\Younes\AppData\Roaming\Microsoft\Office
[22/02/2008|00:42] C:\Users\Younes\AppData\Roaming\Microsoft\Crypto
[21/02/2008|16:33] C:\Users\Younes\AppData\Roaming\Microsoft\Templates
[20/02/2008|15:59] C:\Users\Younes\AppData\Roaming\Microsoft\Word
[18/02/2008|11:45] C:\Users\Younes\AppData\Roaming\Microsoft\Internet Explorer
[18/02/2008|11:44] C:\Users\Younes\AppData\Roaming\Microsoft\MSN Messenger
[16/02/2008|04:45] C:\Users\Younes\AppData\Roaming\Microsoft\Credentials
[14/02/2008|22:53] C:\Users\Younes\AppData\Roaming\Microsoft\..
[14/02/2008|22:53] C:\Users\Younes\AppData\Roaming\Microsoft\.
[14/02/2008|22:53] C:\Users\Younes\AppData\Roaming\Microsoft\Proof
[14/02/2008|21:20] C:\Users\Younes\AppData\Roaming\Microsoft\Document Building Blocks
[14/02/2008|17:35] C:\Users\Younes\AppData\Roaming\Microsoft\Excel
[14/02/2008|17:35] C:\Users\Younes\AppData\Roaming\Microsoft\AddIns
[14/02/2008|16:23] C:\Users\Younes\AppData\Roaming\Microsoft\eHome
[14/02/2008|10:50] C:\Users\Younes\AppData\Roaming\Microsoft\Installer
[13/02/2008|22:52] C:\Users\Younes\AppData\Roaming\Microsoft\MMC
[13/02/2008|19:04] C:\Users\Younes\AppData\Roaming\Microsoft\IdentityCRL
[13/02/2008|18:11] C:\Users\Younes\AppData\Roaming\Microsoft\Windows
[13/02/2008|15:22] C:\Users\Younes\AppData\Roaming\Microsoft\SystemCertificates
[13/02/2008|15:22] C:\Users\Younes\AppData\Roaming\Microsoft\Protect
[13/02/2008|15:16] C:\Users\Younes\AppData\Roaming\Microsoft\CLR Security Config

[14/02/2008|00:19] C:\Users\Younes\AppData\Roaming\Mozilla\Firefox
[14/02/2008|00:17] C:\Users\Younes\AppData\Roaming\Mozilla\..
[14/02/2008|00:17] C:\Users\Younes\AppData\Roaming\Mozilla\.

[23/02/2008|05:43] C:\Users\Younes\AppData\Roaming\nvModes.001\nvModes.001

[21/02/2008|19:32] C:\Users\Younes\AppData\Roaming\nvModes.dat\nvModes.dat

[14/02/2008|18:41] C:\Users\Younes\AppData\Roaming\Real\..
[14/02/2008|18:41] C:\Users\Younes\AppData\Roaming\Real\RealMediaSDK
[14/02/2008|18:41] C:\Users\Younes\AppData\Roaming\Real\.

[20/02/2008|18:32] C:\Users\Younes\AppData\Roaming\Roxio\MediaManager9
[20/02/2008|16:02] C:\Users\Younes\AppData\Roaming\Roxio\..
[20/02/2008|16:02] C:\Users\Younes\AppData\Roaming\Roxio\.
[20/02/2008|14:09] C:\Users\Younes\AppData\Roaming\Roxio\RoxioCentral

[20/02/2008|19:53] C:\Users\Younes\AppData\Roaming\Skype\..
[20/02/2008|19:53] C:\Users\Younes\AppData\Roaming\Skype\.
[20/02/2008|19:53] C:\Users\Younes\AppData\Roaming\Skype\shared.xml
[20/02/2008|19:53] C:\Users\Younes\AppData\Roaming\Skype\younes_lp
[20/02/2008|18:48] C:\Users\Younes\AppData\Roaming\Skype\Pictures
[20/02/2008|18:47] C:\Users\Younes\AppData\Roaming\Skype\Content
[13/02/2008|18:37] C:\Users\Younes\AppData\Roaming\Skype\shared.lck

[20/02/2008|19:53] C:\Users\Younes\AppData\Roaming\skypePM\2008-02-20-2.ezlog
[20/02/2008|16:03] C:\Users\Younes\AppData\Roaming\skypePM\..
[20/02/2008|16:03] C:\Users\Younes\AppData\Roaming\skypePM\.
[20/02/2008|15:53] C:\Users\Younes\AppData\Roaming\skypePM\2008-02-20-1.ezlog
[20/02/2008|03:47] C:\Users\Younes\AppData\Roaming\skypePM\2008-02-20-0.ezlog
[19/02/2008|23:57] C:\Users\Younes\AppData\Roaming\skypePM\2008-02-19-2.ezlog
[19/02/2008|12:36] C:\Users\Younes\AppData\Roaming\skypePM\2008-02-19-1.ezlog
[19/02/2008|03:55] C:\Users\Younes\AppData\Roaming\skypePM\2008-02-19-0.ezlog
[18/02/2008|23:55] C:\Users\Younes\AppData\Roaming\skypePM\2008-02-18-2.ezlog

[18/02/2008|00:50] C:\Users\Younes\AppData\Roaming\Sony\Sound Forge
[18/02/2008|00:50] C:\Users\Younes\AppData\Roaming\Sony\..
[18/02/2008|00:50] C:\Users\Younes\AppData\Roaming\Sony\.

[23/02/2008|06:25] C:\Users\Younes\AppData\Roaming\Winamp\studio.xnf
[23/02/2008|06:25] C:\Users\Younes\AppData\Roaming\Winamp\winamp.ini
[23/02/2008|06:25] C:\Users\Younes\AppData\Roaming\Winamp\winamp.m3u
[23/02/2008|06:25] C:\Users\Younes\AppData\Roaming\Winamp\Winamp.m3u8
[22/02/2008|20:14] C:\Users\Younes\AppData\Roaming\Winamp\..
[22/02/2008|20:14] C:\Users\Younes\AppData\Roaming\Winamp\.
[22/02/2008|20:14] C:\Users\Younes\AppData\Roaming\Winamp\Plugins
[18/02/2008|00:50] C:\Users\Younes\AppData\Roaming\Winamp\Winamp.pic
[14/02/2008|19:53] C:\Users\Younes\AppData\Roaming\Winamp\guru.log
[14/02/2008|01:18] C:\Users\Younes\AppData\Roaming\Winamp\Winamp.q1
[14/01/2008|18:54] C:\Users\Younes\AppData\Roaming\Winamp\stephen_malkmus_jicks_baltimore.mp3
[14/09/2005|20:17] C:\Users\Younes\AppData\Roaming\Winamp\demo.mp3

[15/02/2008|02:33] C:\Users\Younes\AppData\Roaming\WinRAR\..
[15/02/2008|02:33] C:\Users\Younes\AppData\Roaming\WinRAR\.

[14/02/2008|11:13] C:\Users\Younes\AppData\Roaming\{A004037C-8B9A-4390-9074-1D3EEE0A3BDF}\..
[14/02/2008|11:13] C:\Users\Younes\AppData\Roaming\{A004037C-8B9A-4390-9074-1D3EEE0A3BDF}\.
[14/02/2008|11:13] C:\Users\Younes\AppData\Roaming\{A004037C-8B9A-4390-9074-1D3EEE0A3BDF}\HP Active Support Library.msi
[14/02/2008|11:13] C:\Users\Younes\AppData\Roaming\{A004037C-8B9A-4390-9074-1D3EEE0A3BDF}\0x0409.ini

----------------[ Tâches planifiées dans C:\Windows\tasks ]---------------

[18/02/2008 20:06][--a------][--584--] C:\Windows\tasks\Norton Internet Security - Analyse systŠme complŠte - Younes.job
[23/02/2008 05:40][--ah-----][--6--] C:\Windows\tasks\SA.DAT
[22/02/2008 23:40][--a------][--15988--] C:\Windows\tasks\SCHEDLGU.TXT

------[ Listing des dossiers dans C:\ProgramData ]------

C:\ProgramData\Adobe
C:\ProgramData\Adobe Systems
C:\ProgramData\Application Data
C:\ProgramData\Bureau
C:\ProgramData\CyberLink
C:\ProgramData\Desktop
C:\ProgramData\Documents
C:\ProgramData\ezsid.dat
C:\ProgramData\Favoris
C:\ProgramData\Favorites
C:\ProgramData\Google
C:\ProgramData\Hewlett-Packard
C:\ProgramData\HP
C:\ProgramData\hpzinstall.log
C:\ProgramData\Lavasoft
C:\ProgramData\Menu D‚marrer
C:\ProgramData\Messenger Plus!
C:\ProgramData\Microsoft
C:\ProgramData\Microsoft Help
C:\ProgramData\ModŠles
C:\ProgramData\NVIDIA
C:\ProgramData\POP3Profiles
C:\ProgramData\Real
C:\ProgramData\Roxio
C:\ProgramData\Skype
C:\ProgramData\Sonic
C:\ProgramData\Spybot - Search & Destroy
C:\ProgramData\Start Menu
C:\ProgramData\Symantec
C:\ProgramData\Templates
C:\ProgramData\Trymedia

---------------[ Listing des dossiers dans C:\Program Files ]--------------

[23/02/2008|12:37] C:\Program Files\.
[23/02/2008|12:37] C:\Program Files\..
[21/02/2008|00:42] C:\Program Files\Adobe
[21/02/2008|22:03] C:\Program Files\BitTorrent
[23/02/2008|05:50] C:\Program Files\Common Files
[14/02/2008|13:03] C:\Program Files\DAEMON Tools Lite
[14/02/2008|02:03] C:\Program Files\desktop.ini
[18/02/2008|22:24] C:\Program Files\DivX
[24/11/2005|21:19] C:\Program Files\Fichiers communs [c:\Program Files\Common Files]
[17/02/2008|22:44] C:\Program Files\GetFlash
[22/02/2008|20:14] C:\Program Files\Google
[20/05/2007|10:17] C:\Program Files\Hewlett-Packard
[17/02/2008|16:40] C:\Program Files\HHD Software
[20/05/2007|10:17] C:\Program Files\HP
[20/05/2007|10:05] C:\Program Files\HPQ
[22/02/2008|19:38] C:\Program Files\InstallShield Installation Information
[14/02/2008|11:05] C:\Program Files\Intel
[14/02/2008|01:56] C:\Program Files\Internet Explorer
[17/02/2008|12:23] C:\Program Files\Invisible Secrets 4
[20/05/2007|10:25] C:\Program Files\Java
[14/02/2008|02:18] C:\Program Files\K-Lite Codec Pack
[23/02/2008|12:38] C:\Program Files\LopSDV
[21/02/2008|01:28] C:\Program Files\MediaEldoradoCodec
[23/02/2008|05:37] C:\Program Files\Messenger Plus! Live
[02/11/2006|13:37] C:\Program Files\Microsoft Games
[14/02/2008|17:06] C:\Program Files\Microsoft Office
[14/02/2008|17:05] C:\Program Files\Microsoft Visual Studio
[14/02/2008|17:02] C:\Program Files\Microsoft Visual Studio 8
[22/02/2008|20:14] C:\Program Files\Microsoft Works
[14/02/2008|17:05] C:\Program Files\Microsoft.NET
[20/05/2007|08:44] C:\Program Files\Motorola
[02/11/2006|13:42] C:\Program Files\Movie Maker
[20/02/2008|03:57] C:\Program Files\Mozilla Firefox
[14/02/2008|17:06] C:\Program Files\MSBuild
[02/11/2006|13:37] C:\Program Files\MSN
[23/02/2008|05:37] C:\Program Files\MSN Messenger
[14/02/2008|00:56] C:\Program Files\MSXML 4.0
[14/02/2008|02:20] C:\Program Files\Norton Internet Security
[20/05/2007|10:03] C:\Program Files\Realtek
[02/11/2006|13:37] C:\Program Files\Reference Assemblies
[20/05/2007|09:28] C:\Program Files\Roxio
[20/05/2007|10:00] C:\Program Files\Services en ligne
[17/02/2008|14:25] C:\Program Files\Skype
[18/02/2008|01:42] C:\Program Files\Sony Setup
[14/02/2008|10:15] C:\Program Files\SP38015
[14/02/2008|02:21] C:\Program Files\Symantec
[20/05/2007|08:51] C:\Program Files\Synaptics
[02/11/2006|14:01] C:\Program Files\Uninstall Information
[14/02/2008|01:56] C:\Program Files\Windows Calendar
[02/11/2006|13:42] C:\Program Files\Windows Collaboration
[14/02/2008|01:56] C:\Program Files\Windows Defender
[02/11/2006|13:42] C:\Program Files\Windows Journal
[23/02/2008|05:37] C:\Program Files\Windows Live
[14/02/2008|01:56] C:\Program Files\Windows Mail
[14/02/2008|01:56] C:\Program Files\Windows Media Player
[24/11/2005|21:19] C:\Program Files\Windows NT
[02/11/2006|13:42] C:\Program Files\Windows Photo Gallery
[14/02/2008|01:56] C:\Program Files\Windows Sidebar
[15/02/2008|13:01] C:\Program Files\WinRAR

------[ Listing des dossiers dans C:\Program Files\Common Files ]------

[23/02/2008|05:50] C:\Program Files\Common Files\.
[23/02/2008|05:50] C:\Program Files\Common Files\..
[21/02/2008|00:46] C:\Program Files\Common Files\Adobe
[21/02/2008|00:46] C:\Program Files\Common Files\Adobe Systems Shared
[14/02/2008|17:05] C:\Program Files\Common Files\DESIGNER
[20/05/2007|09:57] C:\Program Files\Common Files\HP
[20/05/2007|10:04] C:\Program Files\Common Files\InstallShield
[20/05/2007|10:25] C:\Program Files\Common Files\Java
[20/05/2007|10:05] C:\Program Files\Common Files\LightScribe
[17/02/2008|18:37] C:\Program Files\Common Files\microsoft shared
[23/02/2008|05:50] C:\Program Files\Common Files\NSV
[20/05/2007|09:27] C:\Program Files\Common Files\Roxio Shared
[02/11/2006|12:18] C:\Program Files\Common Files\Services
[22/02/2008|20:14] C:\Program Files\Common Files\Skype
[20/05/2007|09:26] C:\Program Files\Common Files\Sonic Shared
[02/11/2006|12:18] C:\Program Files\Common Files\SpeechEngines
[16/02/2008|04:48] C:\Program Files\Common Files\Steam
[22/02/2008|20:14] C:\Program Files\Common Files\SureThing Shared
[22/02/2008|20:14] C:\Program Files\Common Files\Symantec Shared
[14/02/2008|17:01] C:\Program Files\Common Files\System

----------------------[ Recherche avec S_Lop ]---------------------

Aucun fichier / dossier Lop trouvé !

-----------------[ Recherche de Fichiers / Dossiers Lop ]-----------------

Aucun fichier / dossier Lop trouvé !

----------------------[ Verification du Registre ]----------------------

..... OK !

--------------------[ Verification du fichier Hosts ]---------------------

Fichier Hosts PROPRE


----------------[ Recherche de fichiers avec Catchme ]-----------------

catchme 0.3.1262 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-02-23 12:38:38
Windows 6.0.6000 NTFS
scanning hidden files ...
scan completed successfully
hidden files: 0

--------------------[ Recherche d'autres infections ]---------------------

Aucune autre infection trouvée !

/!\ [Fich:77][Doss:6] C:\Users\Younes\AppData\Local\Temp
/!\ [Fich:31][Doss:1] C:\Users\Younes\AppData\Roaming\MICROS~1\Windows\Cookies
/!\ [Fich:973][Doss:4] C:\Users\Younes\AppData\Local\MICROS~1\Windows\TEMPOR~1\content.IE5

--------------------[ Fin du rapport a 12:38:47,54 ]----------------------
Image
Avatar de l’utilisateur
Younes_lp
Libellulien Junior
Libellulien Junior
 
Messages: 159
Inscription: 22 Fév 2008 22:02

Re: Pages publicitaires

Messagepar Falkra » 23 Fév 2008 14:36

Ok, il n'y a rien là dedans. On va faire autrement.

  • Télécharge OTMoveIt de OldTimer.
  • Sauvegarde le sur ton Bureau.
  • Double-Clique sur OTMoveIt.exe pour le lancer.
  • Copie le chemin des fichiers suivants en sélectionnant TOUT le contenu de la citation ci-dessous et en appuyant sur CTRL+C (ou, après avoir sélectionner, clique-droit et choisis Copier) :
C:\ProgramData\

  • Retourne dans OTMoveit, fais un clique-droit dans la partie gauche intitulée "Paste List of Files/Folders to be moved" et choisis Coller.
  • Clique sur le bouton rouge Moveit!.
  • Ferme OTMoveIt.
    Note : Si un fichier ou un dossier ne peut être déplacé immédiatement il te sera demander de redémarrer ta machine pour finir le processus. Si c'est le cas, choisis Yes.

Poste le rapport de OTMoveIT dispo ici : C:\_OTMoveIt\MovedFiles.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: Pages publicitaires

Messagepar Younes_lp » 23 Fév 2008 15:06

keski se passe
j ai eu plusieurs messages d erreur au demarage ( norton , windows defender .... )
ça serait bien si vous m expliquez ce qui se passe SVP
voila le rapport

C:\ProgramData\Trymedia\licenses moved successfully.
C:\ProgramData\Trymedia\data moved successfully.
C:\ProgramData\Trymedia moved successfully.
C:\ProgramData\Templates moved successfully.
Folder move failed. C:\ProgramData\Symantec\SymNetDrv scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\SyKnAppS\Updates scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\SyKnAppS\LiveUpdate scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\SyKnAppS\Freezer scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\SyKnAppS scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\SubEng\Temp scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\SubEng scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\SRTSP\SrtETmp scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\SRTSP\Quarantine scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\SRTSP scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\SPBBC scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{FCF6B885-4248-4736-AC4B-71E813F9DD44} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{E862CF81-22D4-42DC-A847-6F4927513A70} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{D0956104-6324-462F-B6DF-4FA05F998C12} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{C3F29509-211D-4968-A1A8-ACBDDC0515C5} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{BE603046-C92E-4E48-A6CC-B0F0EFD76653} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{BE2D5B18-3E35-4107-8972-3A6E6D05A1E4} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{B6F28B6A-C921-429D-A350-AD92F772B229} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{A52C49ED-3E9E-4142-8512-AC3C1D7C8A5E} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{9F7B1862-DCFF-4C0B-9FFA-F6FCBBA044CC} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{94A06474-58BE-4C73-9881-097573B1CDD7} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{61448118-6D3C-4BA5-A2B5-DEF5E49C77DC} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{5F5CE270-FCAB-48F7-92B7-B28700E16ED4} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{40E8A1FE-190B-4256-B607-C3EA5FDC27F0} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{3E5CC9DB-2C5C-4483-881A-28A8CF57F2DF} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{348BDF54-8FAB-4AAA-968A-6B184AE724CD} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{238615EC-0DAC-4517-885F-21CE74D8ED14} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{21384024-392E-4F2A-94B9-B522060D0A32} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{110DAC0A-EDFE-4B8F-B3B8-66BECC16CD9F} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{0E32DF4A-7291-456B-9368-8339711BA6BA} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup\{00E04411-30E5-4190-9F76-A2C81098E6A7} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared\QBackup scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Shared scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\SVAR scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PollManager scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PEPCollectors scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\MsgQueue scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08} scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\PIF scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Norton AntiVirus\Tasks scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Norton AntiVirus scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\LiveUpdate\Downloads scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\LiveUpdate scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\IDS scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\VirusDefs\tmpf5e.tmp scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\VirusDefs\tmp58a5.tmp scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\VirusDefs\TextHub scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\VirusDefs\incoming scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\VirusDefs\BinHub scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\VirusDefs\20080222.003 scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\VirusDefs\20080221.002 scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\VirusDefs scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\SymcData\nco1.0defs\tmp676d.tmp scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\SymcData\nco1.0defs\tmp5898.tmp scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\SymcData\nco1.0defs\tmp5466.tmp scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\SymcData\nco1.0defs\tmp45d.tmp scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\SymcData\nco1.0defs\latest-hub-webauth.sql scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\SymcData\nco1.0defs\incoming scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\SymcData\nco1.0defs\BinHub scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\SymcData\nco1.0defs\20080223.002 scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\SymcData\nco1.0defs\20080223.001 scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions\SymcData\nco1.0defs scheduled to be moved on reboot.
C:\ProgramData\Symantec\Definitions\SymcData\idsdefs\tmp5904.tmp moved successfully.
C:\ProgramData\Symantec\Definitions\SymcData\idsdefs\tmp586e.tmp moved successfully.
C:\ProgramData\Symantec\Definitions\SymcData\idsdefs\tmp50f6.tmp moved successfully.
C:\ProgramData\Symantec\Definitions\SymcData\idsdefs\tmp459c.tmp moved successfully.
C:\ProgramData\Symantec\Definitions\SymcData\idsdefs\tmp450.tmp moved successfully.
C:\ProgramData\Symantec\Definitions\SymcData\idsdefs\tmp2c74.tmp moved successfully.
C:\ProgramData\Symantec\Definitions\SymcData\idsdefs\incoming moved successfully.
C:\ProgramData\Symantec\Definitions\SymcData\idsdefs\BinHub moved successfully.
C:\ProgramData\Symantec\Definitions\SymcData\idsdefs\20080221.003 moved successfully.
C:\ProgramData\Symantec\Definitions\SymcData\idsdefs\20080215.002 moved successfully.
C:\ProgramData\Symantec\Definitions\SymcData\idsdefs moved successfully.
Folder move failed. C:\ProgramData\Symantec\Definitions\SymcData scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Definitions scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Common Client\Temp scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec\Common Client scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Symantec scheduled to be moved on reboot.
C:\ProgramData\Start Menu moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Recovery moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Logs moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Excludes moved successfully.
C:\ProgramData\Spybot - Search & Destroy\Backups moved successfully.
C:\ProgramData\Spybot - Search & Destroy moved successfully.
C:\ProgramData\Sonic moved successfully.
C:\ProgramData\Skype\{5C82DAE5-6EB0-4374-9254-BE3319BA4E82} moved successfully.
C:\ProgramData\Skype\Wallpapers moved successfully.
C:\ProgramData\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Local Cache moved successfully.
C:\ProgramData\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8\Games moved successfully.
C:\ProgramData\Skype\Plugins\Plugins\F57B48ADF2224F088EDD1A2B9BAD84E8 moved successfully.
C:\ProgramData\Skype\Plugins\Plugins moved successfully.
C:\ProgramData\Skype\Plugins\Local Cache\Categories moved successfully.
C:\ProgramData\Skype\Plugins\Local Cache moved successfully.
C:\ProgramData\Skype\Plugins moved successfully.
C:\ProgramData\Skype\Pictures moved successfully.
C:\ProgramData\Skype moved successfully.
C:\ProgramData\Roxio\VideoWave9\Templates\Produce moved successfully.
C:\ProgramData\Roxio\VideoWave9\Templates moved successfully.
C:\ProgramData\Roxio\VideoWave9\Plugins moved successfully.
C:\ProgramData\Roxio\VideoWave9 moved successfully.
C:\ProgramData\Roxio\MediaCapture9\VideoProfiles moved successfully.
C:\ProgramData\Roxio\MediaCapture9 moved successfully.
C:\ProgramData\Roxio moved successfully.
C:\ProgramData\Real moved successfully.
C:\ProgramData\POP3Profiles moved successfully.
C:\ProgramData\NVIDIA moved successfully.
C:\ProgramData\Modèles moved successfully.
C:\ProgramData\Microsoft Help moved successfully.
C:\ProgramData\Microsoft\WPD moved successfully.
C:\ProgramData\Microsoft\Works moved successfully.
C:\ProgramData\Microsoft\Wlansvc\Profiles\Interfaces\{C20FAB9B-D941-425C-A7C5-CE2E34C7346D} moved successfully.
C:\ProgramData\Microsoft\Wlansvc\Profiles\Interfaces moved successfully.
C:\ProgramData\Microsoft\Wlansvc\Profiles moved successfully.
C:\ProgramData\Microsoft\Wlansvc moved successfully.
Folder move failed. C:\ProgramData\Microsoft\Windows Defender\Support scheduled to be moved on reboot.
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Resource moved successfully.
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results\Quick moved successfully.
C:\ProgramData\Microsoft\Windows Defender\Scans\History\Results moved successfully.
C:\ProgramData\Microsoft\Windows Defender\Scans\History moved successfully.
C:\ProgramData\Microsoft\Windows Defender\Scans moved successfully.
C:\ProgramData\Microsoft\Windows Defender\Quarantine moved successfully.
C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{05A348C7-0655-4A98-8570-2A93D89E9EFE} moved successfully.
C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Updates moved successfully.
C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Default moved successfully.
C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup moved successfully.
C:\ProgramData\Microsoft\Windows Defender\Definition Updates moved successfully.
Folder move failed. C:\ProgramData\Microsoft\Windows Defender scheduled to be moved on reboot.
C:\ProgramData\Microsoft\Windows\WER\ReportQueue moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report1f7fd0f8 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report1a9f13fa moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report16ee65f9 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report1664755e moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report16389b26 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report1634bd94 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report1557facb moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report14e4a756 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report14939f8a moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report1490955c moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report1409bfad moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report1409bec3 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report138ccabd moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report11c48342 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report116c5afb moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report10d0ae38 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report10d0acc2 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report10d0ab2c moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0fd88555 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0f433504 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0f0a15d7 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0f0a14fd moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0f06e0fb moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0eecb1f0 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0eb89194 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0eb890ca moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0eb88fef moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0e82fd03 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0d70ac55 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0cf38063 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0cc3141c moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0c79a396 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0bf93a8d moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0bdafda2 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0bc0aadf moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0ba6eea2 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0b1b3dda moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report09d52756 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report09d34235 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report09d1eb8e moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report08bc951d moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report07af7b68 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report07a66110 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report06b303b8 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report060c907c moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0480aa71 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report047d9af7 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report04518084 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report02e0b3c4 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report02e0afed moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report024deeab moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report024de3d3 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report024dd9c5 moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\Report0204e08e moved successfully.
C:\ProgramData\Microsoft\Windows\WER\ReportArchive moved successfully.
C:\ProgramData\Microsoft\Windows\WER moved successfully.
C:\ProgramData\Microsoft\Windows\Templates moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft\Prince of Persia T2T moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ubisoft moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Utilities\Migration Tools moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Utilities moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony\Sound Forge 7.0 moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Services en ligne\Suisse moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Services en ligne\France moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Services en ligne\Belgique moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Services en ligne moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roxio moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games\GTA San Andreas moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recovery Manager moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Internet Security moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Works moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office\Outils Microsoft Office moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games\Age of Empires III\Diagnostics moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games\Age of Empires III moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LiveUpdate Notice moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LimeWire moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Uninstall moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Tools moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Help moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack\Configuration moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Matrix Storage Manager moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\HP Photosmart Essential 2.0 moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GetFlash moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Extras and Upgrades moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES\The Sims 2 moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES\Need for Speed™ Most Wanted moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX\DivX Web Player\Links moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX\DivX Web Player moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX\DivX Content Uploader moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DivX moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitTorrent moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Media Center\Media Center Programs moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Media Center moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programs moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu\Programmes moved successfully.
C:\ProgramData\Microsoft\Windows\Start Menu moved successfully.
C:\ProgramData\Microsoft\Windows\Sqm\Upload moved successfully.
C:\ProgramData\Microsoft\Windows\Sqm\Sessions moved successfully.
C:\ProgramData\Microsoft\Windows\Sqm moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{FE0C678C-EF0B-400D-B830-86E31D21507D}\SupportTasks\3 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{FE0C678C-EF0B-400D-B830-86E31D21507D}\SupportTasks\2 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{FE0C678C-EF0B-400D-B830-86E31D21507D}\SupportTasks\1 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{FE0C678C-EF0B-400D-B830-86E31D21507D}\SupportTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{FE0C678C-EF0B-400D-B830-86E31D21507D}\SupportTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{FE0C678C-EF0B-400D-B830-86E31D21507D}\PlayTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{FE0C678C-EF0B-400D-B830-86E31D21507D}\PlayTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{FE0C678C-EF0B-400D-B830-86E31D21507D} moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{E91579C0-4EA9-4a2a-A9B2-04BEF1D6DC29}\SupportTasks\2 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{E91579C0-4EA9-4a2a-A9B2-04BEF1D6DC29}\SupportTasks\1 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{E91579C0-4EA9-4a2a-A9B2-04BEF1D6DC29}\SupportTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{E91579C0-4EA9-4a2a-A9B2-04BEF1D6DC29}\SupportTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{E91579C0-4EA9-4a2a-A9B2-04BEF1D6DC29}\PlayTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{E91579C0-4EA9-4a2a-A9B2-04BEF1D6DC29}\PlayTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{E91579C0-4EA9-4a2a-A9B2-04BEF1D6DC29} moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{D1A7F7E0-D4E9-49e8-BF2C-CEAA01D2E670}\SupportTasks\2 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{D1A7F7E0-D4E9-49e8-BF2C-CEAA01D2E670}\SupportTasks\1 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{D1A7F7E0-D4E9-49e8-BF2C-CEAA01D2E670}\SupportTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{D1A7F7E0-D4E9-49e8-BF2C-CEAA01D2E670}\SupportTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{D1A7F7E0-D4E9-49e8-BF2C-CEAA01D2E670}\PlayTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{D1A7F7E0-D4E9-49e8-BF2C-CEAA01D2E670}\PlayTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{D1A7F7E0-D4E9-49e8-BF2C-CEAA01D2E670} moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AFA7FF39-1DDF-4f70-A2D5-23FCFFF02E5F}\SupportTasks\2 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AFA7FF39-1DDF-4f70-A2D5-23FCFFF02E5F}\SupportTasks\1 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AFA7FF39-1DDF-4f70-A2D5-23FCFFF02E5F}\SupportTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AFA7FF39-1DDF-4f70-A2D5-23FCFFF02E5F}\SupportTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AFA7FF39-1DDF-4f70-A2D5-23FCFFF02E5F}\PlayTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AFA7FF39-1DDF-4f70-A2D5-23FCFFF02E5F}\PlayTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AFA7FF39-1DDF-4f70-A2D5-23FCFFF02E5F} moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AF698A5B-24D6-4f78-AE95-204B09EDC7B6}\SupportTasks\2 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AF698A5B-24D6-4f78-AE95-204B09EDC7B6}\SupportTasks\1 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AF698A5B-24D6-4f78-AE95-204B09EDC7B6}\SupportTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AF698A5B-24D6-4f78-AE95-204B09EDC7B6}\SupportTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AF698A5B-24D6-4f78-AE95-204B09EDC7B6}\PlayTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AF698A5B-24D6-4f78-AE95-204B09EDC7B6}\PlayTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{AF698A5B-24D6-4f78-AE95-204B09EDC7B6} moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{91CA4D38-EA2B-4f3c-94DE-36C1386182FC}\SupportTasks\2 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{91CA4D38-EA2B-4f3c-94DE-36C1386182FC}\SupportTasks\1 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{91CA4D38-EA2B-4f3c-94DE-36C1386182FC}\SupportTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{91CA4D38-EA2B-4f3c-94DE-36C1386182FC}\SupportTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{91CA4D38-EA2B-4f3c-94DE-36C1386182FC}\PlayTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{91CA4D38-EA2B-4f3c-94DE-36C1386182FC}\PlayTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{91CA4D38-EA2B-4f3c-94DE-36C1386182FC} moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{6C815596-821F-40b3-8A84-643B73A8EB16}\SupportTasks\2 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{6C815596-821F-40b3-8A84-643B73A8EB16}\SupportTasks\1 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{6C815596-821F-40b3-8A84-643B73A8EB16}\SupportTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{6C815596-821F-40b3-8A84-643B73A8EB16}\SupportTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{6C815596-821F-40b3-8A84-643B73A8EB16}\PlayTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{6C815596-821F-40b3-8A84-643B73A8EB16}\PlayTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{6C815596-821F-40b3-8A84-643B73A8EB16} moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{64EEA791-0271-4B53-00AC-2BF05F5FBEF6}\PlayTasks\4 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{64EEA791-0271-4B53-00AC-2BF05F5FBEF6}\PlayTasks\3 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{64EEA791-0271-4B53-00AC-2BF05F5FBEF6}\PlayTasks\2 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{64EEA791-0271-4B53-00AC-2BF05F5FBEF6}\PlayTasks\1 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{64EEA791-0271-4B53-00AC-2BF05F5FBEF6}\PlayTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{64EEA791-0271-4B53-00AC-2BF05F5FBEF6}\PlayTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{64EEA791-0271-4B53-00AC-2BF05F5FBEF6} moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{48DE2B25-A3A2-4121-808D-5DD991D9FEBB}\SupportTasks\1 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{48DE2B25-A3A2-4121-808D-5DD991D9FEBB}\SupportTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{48DE2B25-A3A2-4121-808D-5DD991D9FEBB}\SupportTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{48DE2B25-A3A2-4121-808D-5DD991D9FEBB}\PlayTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{48DE2B25-A3A2-4121-808D-5DD991D9FEBB}\PlayTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{48DE2B25-A3A2-4121-808D-5DD991D9FEBB} moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{205286E5-F5F2-4306-BDB1-864245E33227}\SupportTasks\2 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{205286E5-F5F2-4306-BDB1-864245E33227}\SupportTasks\1 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{205286E5-F5F2-4306-BDB1-864245E33227}\SupportTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{205286E5-F5F2-4306-BDB1-864245E33227}\SupportTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{205286E5-F5F2-4306-BDB1-864245E33227}\PlayTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{205286E5-F5F2-4306-BDB1-864245E33227}\PlayTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{205286E5-F5F2-4306-BDB1-864245E33227} moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{00D8862B-6453-4957-A821-3D98D74C76BE}\SupportTasks\2 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{00D8862B-6453-4957-A821-3D98D74C76BE}\SupportTasks\1 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{00D8862B-6453-4957-A821-3D98D74C76BE}\SupportTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{00D8862B-6453-4957-A821-3D98D74C76BE}\SupportTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{00D8862B-6453-4957-A821-3D98D74C76BE}\PlayTasks\0 moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{00D8862B-6453-4957-A821-3D98D74C76BE}\PlayTasks moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer\{00D8862B-6453-4957-A821-3D98D74C76BE} moved successfully.
C:\ProgramData\Microsoft\Windows\GameExplorer moved successfully.
C:\ProgramData\Microsoft\Windows\DRM\Cache moved successfully.
C:\ProgramData\Microsoft\Windows\DRM moved successfully.
C:\ProgramData\Microsoft\Windows moved successfully.
C:\ProgramData\Microsoft\User Account Pictures\Default Pictures moved successfully.
C:\ProgramData\Microsoft\User Account Pictures moved successfully.
Folder move failed. C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Microsoft\Search\Data\Temp scheduled to be moved on reboot.
C:\ProgramData\Microsoft\Search\Data\Config moved successfully.
Folder move failed. C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\SecStore scheduled to be moved on reboot.
C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Save moved successfully.
Folder move failed. C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\PropMap scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer\CiFiles scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex\Indexer scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Projects\SystemIndex scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Projects scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Microsoft\Search\Data\Applications\Windows\GatherLogs\SystemIndex scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Microsoft\Search\Data\Applications\Windows\GatherLogs scheduled to be moved on reboot.
C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Config moved successfully.
Folder move failed. C:\ProgramData\Microsoft\Search\Data\Applications\Windows scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Microsoft\Search\Data\Applications scheduled to be moved on reboot.
Folder move failed. C:\ProgramData\Microsoft\Search\Data scheduled to be moved on reboot.
C:\ProgramData\Microsoft\Search\Config moved successfully.
Folder move failed. C:\ProgramData\Microsoft\Search scheduled to be moved on reboot.
C:\ProgramData\Microsoft\RAC\StateData moved successfully.
C:\ProgramData\Microsoft\RAC\PublishedData moved successfully.
C:\ProgramData\Microsoft\RAC moved successfully.
C:\ProgramData\Microsoft\Provisioning moved successfully.
C:\ProgramData\Microsoft\OFFICE\Groove moved successfully.
C:\ProgramData\Microsoft\OFFICE\DATA moved successfully.
C:\ProgramData\Microsoft\OFFICE moved successfully.
Folder move failed. C:\ProgramData\Microsoft\Network\Downloader scheduled to be moved on reboot.
C:\ProgramData\Microsoft\Network\Connections\Pbk moved successfully.
C:\ProgramData\Microsoft\Network\Connections moved successfully.
Folder move failed. C:\ProgramData\Microsoft\Network scheduled to be moved on reboot.
C:\ProgramData\Microsoft\MSDN\8.0 moved successfully.
C:\ProgramData\Microsoft\MSDN moved successfully.
C:\ProgramData\Microsoft\MF moved successfully.
C:\ProgramData\Microsoft\Media Player moved successfully.
C:\ProgramData\Microsoft\Media Index moved successfully.
C:\ProgramData\Microsoft\IdentityCRL\production moved successfully.
C:\ProgramData\Microsoft\IdentityCRL moved successfully.
C:\ProgramData\Microsoft\Event Viewer\Views\ApplicationViewsRootNode moved successfully.
C:\ProgramData\Microsoft\Event Viewer\Views moved successfully.
C:\ProgramData\Microsoft\Event Viewer moved successfully.
C:\ProgramData\Microsoft\eHome\Recording moved successfully.
C:\ProgramData\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight moved successfully.
C:\ProgramData\Microsoft\eHome\Packages\MCESpotlight moved successfully.
C:\ProgramData\Microsoft\eHome\Packages moved successfully.
C:\ProgramData\Microsoft\eHome\logs moved successfully.
C:\ProgramData\Microsoft\eHome\Favorites moved successfully.
C:\ProgramData\Microsoft\eHome\EPG\tracehelper moved successfully.
C:\ProgramData\Microsoft\eHome\EPG\prefs moved successfully.
C:\ProgramData\Microsoft\eHome\EPG moved successfully.
C:\ProgramData\Microsoft\eHome moved successfully.
C:\ProgramData\Microsoft\DRM\Server moved successfully.
C:\ProgramData\Microsoft\DRM moved successfully.
C:\ProgramData\Microsoft\Crypto\RSA\S-1-5-18 moved successfully.
C:\ProgramData\Microsoft\Crypto\RSA\MachineKeys moved successfully.
C:\ProgramData\Microsoft\Crypto\RSA moved successfully.
C:\ProgramData\Microsoft\Crypto\Keys moved successfully.
C:\ProgramData\Microsoft\Crypto\DSS\MachineKeys moved successfully.
C:\ProgramData\Microsoft\Crypto\DSS moved successfully.
C:\ProgramData\Microsoft\Crypto moved successfully.
C:\ProgramData\Microsoft\Assistance\Client\1.0\fr-FR moved successfully.
C:\ProgramData\Microsoft\Assistance\Client\1.0 moved successfully.
C:\ProgramData\Microsoft\Assistance\Client moved successfully.
C:\ProgramData\Microsoft\Assistance moved successfully.
Folder move failed. C:\ProgramData\Microsoft scheduled to be moved on reboot.
C:\ProgramData\Messenger Plus! moved successfully.
C:\ProgramData\Menu Démarrer moved successfully.
C:\ProgramData\Lavasoft\MiniMessage moved successfully.
C:\ProgramData\Lavasoft\License moved successfully.
C:\ProgramData\Lavasoft moved successfully.
C:\ProgramData\HP\QuickPlay\Game moved successfully.
C:\ProgramData\HP\QuickPlay moved successfully.
C:\ProgramData\HP\Installer\Temp moved successfully.
C:\ProgramData\HP\Installer moved successfully.
C:\ProgramData\HP\Digital Imaging\Data moved successfully.
C:\ProgramData\HP\Digital Imaging moved successfully.
C:\ProgramData\HP moved successfully.
C:\ProgramData\Hewlett-Packard\SDP\Temp moved successfully.
C:\ProgramData\Hewlett-Packard\SDP\Logs moved successfully.
C:\ProgramData\Hewlett-Packard\SDP moved successfully.
C:\ProgramData\Hewlett-Packard\images moved successfully.
C:\ProgramData\Hewlett-Packard\HP Software UI\Easy Internet Signup\offers moved successfully.
C:\ProgramData\Hewlett-Packard\HP Software UI\Easy Internet Signup moved successfully.
C:\ProgramData\Hewlett-Packard\HP Software UI moved successfully.
C:\ProgramData\Hewlett-Packard moved successfully.
C:\ProgramData\Google\Toolbar Dictionary moved successfully.
C:\ProgramData\Google\Custom Buttons moved successfully.
C:\ProgramData\Google moved successfully.
C:\ProgramData\Favorites moved successfully.
C:\ProgramData\Favoris moved successfully.
C:\ProgramData\Documents moved successfully.
C:\ProgramData\Desktop moved successfully.
Folder move failed. C:\ProgramData\CyberLink\TinyDB scheduled to be moved on reboot.
C:\ProgramData\CyberLink\QuickPlay\IEPG moved successfully.
C:\ProgramData\CyberLink\QuickPlay\Extension moved successfully.
C:\ProgramData\CyberLink\QuickPlay moved successfully.
C:\ProgramData\CyberLink\CLREG\MACHINE\SOFTWARE\Cyberlink\VirtualDevice moved successfully.
C:\ProgramData\CyberLink\CLREG\MACHINE\SOFTWARE\Cyberlink\INSTMAP2\00000002_Folder moved successfully.
C:\ProgramData\CyberLink\CLREG\MACHINE\SOFTWARE\Cyberlink\INSTMAP2\00000001_Folder moved successfully.
C:\ProgramData\CyberLink\CLREG\MACHINE\SOFTWARE\Cyberlink\INSTMAP2 moved successfully.
C:\ProgramData\CyberLink\CLREG\MACHINE\SOFTWARE\Cyberlink moved successfully.
C:\ProgramData\CyberLink\CLREG\MACHINE\SOFTWARE moved successfully.
C:\ProgramData\CyberLink\CLREG\MACHINE moved successfully.
C:\ProgramData\CyberLink\CLREG moved successfully.
Folder move failed. C:\ProgramData\CyberLink scheduled to be moved on reboot.
C:\ProgramData\Bureau moved successfully.
C:\ProgramData\Application Data moved successfully.
C:\ProgramData\Adobe Systems\Product licenses moved successfully.
C:\ProgramData\Adobe Systems moved successfully.
C:\ProgramData\Adobe\Updater5 moved successfully.
C:\ProgramData\Adobe\Updater\Certs moved successfully.
C:\ProgramData\Adobe\Updater moved successfully.
C:\ProgramData\Adobe\StartupScripts moved successfully.
C:\ProgramData\Adobe\Acrobat\8.0\Replicate\Security moved successfully.
C:\ProgramData\Adobe\Acrobat\8.0\Replicate moved successfully.
C:\ProgramData\Adobe\Acrobat\8.0 moved successfully.
C:\ProgramData\Adobe\Acrobat moved successfully.
C:\ProgramData\Adobe moved successfully.
Folder move failed. C:\ProgramData scheduled to be moved on reboot.

OTMoveIt2 v1.0.20 log created on 02232008_145531
Image
Avatar de l’utilisateur
Younes_lp
Libellulien Junior
Libellulien Junior
 
Messages: 159
Inscription: 22 Fév 2008 22:02

Re: Pages publicitaires

Messagepar Falkra » 23 Fév 2008 15:14

Attends, c'est ton program files ce dossier ??? :shock: :shock: :shock:

On peut restaurer.

Relance OtMoveIT.
Clique sur le bouton "restore".
Il te demande de chercher un fichier avec l'extension .res (qyui se trouve dans C:\_OTMoveIt\MovedFiles que la boiyte de dialogue ouvre automatiquement). Sélectionne ce fichier et valide.

Une liste apparaît, coche tout et clique sur RestoreIT.
Valide.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: Pages publicitaires

Messagepar Younes_lp » 23 Fév 2008 15:17

ya pas moyen de selectionner tout en meme temps? la liste est trop longue :?
Image
Avatar de l’utilisateur
Younes_lp
Libellulien Junior
Libellulien Junior
 
Messages: 159
Inscription: 22 Fév 2008 22:02

Re: Pages publicitaires

Messagepar Falkra » 23 Fév 2008 15:19

Je n'ai pas trouvé d'option pour le faire. :(
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: Pages publicitaires

Messagepar Younes_lp » 23 Fév 2008 15:22

ou alors j peux couper le dossier tout simplement et le coller dans c:/ ?
Image
Avatar de l’utilisateur
Younes_lp
Libellulien Junior
Libellulien Junior
 
Messages: 159
Inscription: 22 Fév 2008 22:02

Re: Pages publicitaires

Messagepar Falkra » 23 Fév 2008 15:24

Il vaut mieux restaurer avec l'autre méthode.
Avatar de l’utilisateur
Falkra
Admin libellules.ch
Admin libellules.ch
 
Messages: 24424
Inscription: 30 Jan 2005 13:44
Localisation: 127.0.0.1

Re: Pages publicitaires

Messagepar Younes_lp » 23 Fév 2008 15:26

voila j ai tout restauré


mais

j'ai eu sur la liste ( plusieur restored ! mais aussi plusieurs Failed to restore et aussi plusieurs Source File doesn't exist! )
Image
Avatar de l’utilisateur
Younes_lp
Libellulien Junior
Libellulien Junior
 
Messages: 159
Inscription: 22 Fév 2008 22:02

Suivante

Retourner vers Désinfections et demandes d'analyse

Qui est en ligne

Utilisateurs parcourant ce forum: Aucun utilisateur enregistré et 6 invités
cron