Aller au contenu

DD11

Membres
  • Compteur de contenus

    487
  • Inscription

  • Dernière visite

Tout ce qui a été posté par DD11

  1. Hello! Me revoilà ! Non, j'étais pas parti au resto, mais le scan de M.A.M a duré + d'une demi-heure ! Voici donc dans l'ordre, les rapports de M.AM : Malwarebytes' Anti-Malware 1.30 Version de la base de données: 1400 Windows 5.1.2600 Service Pack 3 15/11/2008 19:24:32 mbam-log-2008-11-15 (19-24-32).txt Type de recherche: Examen complet (G:\|H:\|) Eléments examinés: 120081 Temps écoulé: 34 minute(s), 24 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 3 Valeur(s) du Registre infectée(s): 2 Elément(s) de données du Registre infecté(s): 0 Dossier(s) infecté(s): 12 Fichier(s) infecté(s): 91 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{b69a9db4-d0a1-4722-b56b-f20757a29cdf} (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Live_TV (Adware.Agent) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Live_TV (Adware.Agent) -> Quarantined and deleted successfully. Valeur(s) du Registre infectée(s): HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{b69a9db4-d0a1-4722-b56b-f20757a29cdf} (Adware.Agent) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\ShellBrowser\{b69a9db4-d0a1-4722-b56b-f20757a29cdf} (Adware.Agent) -> Quarantined and deleted successfully. Elément(s) de données du Registre infecté(s): (Aucun élément nuisible détecté) Dossier(s) infecté(s): H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\RadioPlayer (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\rss (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\RadioPlayer (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\rss (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\CacheIcons (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\CacheIcons (Adware.Agent) -> Files: 1941 -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\RadioPlayer (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss (Adware.Agent) -> Quarantined and deleted successfully. Fichier(s) infecté(s): H:\Documents and Settings\André\Mes documents\Nero 8\Ahead.Nero.v8.3.2.1.Incl.Keymaker-EMBRACE\Ahead.Nero.v8.3.2.1.Incl.Keymaker-EMBRACE\keygen.exe (Trojan.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\LanguagePack.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\LocalSettings.txt (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\ThirdPartyComponents.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\update.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_63_136_CT1360763_Images_1256613422_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_-1611650343_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_-1616510062_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1256574750_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1256594985_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_1477248454_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633211004690737500_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323304820925000_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323304996393750_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323305088425000_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633323305474518750_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633341279781868750_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633403616553356250_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_633463264160275000_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_735535110_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_999644891_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_Email-04orange_gif-Colorized-633323306911237500_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___storage_conduit_com_65_64_CT649865_Images_PopUpBlocker-21_gif-comic02-633323306370612500_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_bankimages_commandcomps_block_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_BankImages_CommandComps_highlighter_dis_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_BankImages_CommandComps_highlighter_icon_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_ClientImages_radio_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16green_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16red_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss01x16_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_rssImages_rrs16Images_rss03x16blue_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_images_search_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_news_search_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_site_search_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\CacheIcons\http___www_conduit_com_Images_SearchEngines_weather_search_gif.gif (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\RadioPlayer\Predefined_Media_List.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_history.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_structured.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_history.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_structured.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss_history.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss_structured.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\Administrateur\Local Settings\Application Data\Live_TV\rss\loc=1&sabfmts=2&saprclo=150&sascs=2&saprchi=550&saaff=afepn&ftrv=8&fbfmt=1&ftrt=1&fcl=3&ft=1&frpp=50&customid=&nojspr=y&satitle=new&afmp=&sacat=293&saslop=1&fss=0.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\INSTALL.LOG (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\LanguagePack.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\LocalSettings.txt (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\tbLive.dll (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\ThirdPartyComponents.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\toolbar.cfg (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\UNWISE.EXE (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\update.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\RadioPlayer\Predefined_Media_List.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\RadioPlayer\User_Media_List.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_history.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_structured.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\rss\http___tinyurl_com_27xlm8.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\rss\http___tinyurl_com_27xlm8_history.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\rss\http___tinyurl_com_27xlm8_structured.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_history.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_structured.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\rss\http___youtube_com_rss_global_top_rated_rss.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Program Files\Live_TV\rss\http___youtube_com_rss_global_top_rated_rss_structured.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\LanguagePack.xml (Adware.Agent) -> Delete on reboot. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\LocalSettings.txt (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\ThirdPartyComponents.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\update.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\RadioPlayer\Predefined_Media_List.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\RadioPlayer\Recent_Media_List.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\RadioPlayer\User_Media_List.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_history.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___feeds_feedburner_com_metacafe_TYps_structured.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___tinyurl_com_27xlm8.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___tinyurl_com_27xlm8_history.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___tinyurl_com_27xlm8_structured.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___tinyurl_com_2u3tzj.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_history.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___video_google_com_videofeed_type=top100new&num=20&output=rss_structured.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_rated_rss.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_rated_rss_history.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_rated_rss_structured.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss_history.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\http___youtube_com_rss_global_top_viewed_today_rss_structured.xml (Adware.Agent) -> Quarantined and deleted successfully. H:\Documents and Settings\André\Local Settings\Application Data\Live_TV\rss\saslc=0&floc=1&sabfmts=2&saprclo=150&sascs=2&saprchi=550&saaff=afepn&ftrv=8&fbfmt=1&ftrt=1&fcl=3&ft=1&frpp=50&customid=&nojspr=y&satitle=new&afmp=&sacat=293&saslop=1&fss=0.xml (Adware.Agent) -> Quarantined and deleted successfully. Et de HJT : Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 19:30:41, on 15/11/2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16735) Boot mode: Normal Running processes: H:\WINDOWS\System32\smss.exe H:\WINDOWS\system32\winlogon.exe H:\WINDOWS\system32\services.exe H:\WINDOWS\system32\lsass.exe H:\WINDOWS\system32\svchost.exe H:\WINDOWS\System32\svchost.exe H:\Program Files\Lavasoft\Ad-Aware\aawservice.exe H:\WINDOWS\system32\spoolsv.exe H:\WINDOWS\Explorer.EXE H:\WINDOWS\system32\carpserv.exe H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAHE.EXE H:\Program Files\Java\jre1.6.0_07\bin\jusched.exe H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe H:\Program Files\COMODO\SafeSurf\cssurf.exe H:\Program Files\COMODO\Firewall\cfp.exe H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe H:\PROGRA~1\Comodo\CBOClean\BOC427.exe H:\Program Files\COMODO\Firewall\cmdagent.exe H:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe H:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe H:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe H:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe H:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe H:\Program Files\EPSON\EPSON SMART PANEL for Scanner\ESPmain.exe H:\WINDOWS\system32\svchost.exe H:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe H:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe H:\WINDOWS\system32\wuauclt.exe H:\Documents and Settings\Administrateur\Bureau\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - H:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - H:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - H:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - H:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - h:\program files\google\googletoolbar2.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - H:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - H:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - H:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [CARPService] carpserv.exe O4 - HKLM\..\Run: [EPSON Stylus Photo R240 Series] H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAHE.EXE /P30 "EPSON Stylus Photo R240 Series" /O6 "USB001" /M "Stylus Photo R240" O4 - HKLM\..\Run: [sunJavaUpdateSched] "H:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" O4 - HKLM\..\Run: [AVP] "H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe" O4 - HKLM\..\Run: [COMODO SafeSurf] "H:\Program Files\COMODO\SafeSurf\cssurf.exe" -s O4 - HKLM\..\Run: [COMODO Firewall Pro] "H:\Program Files\COMODO\Firewall\cfp.exe" -h O4 - HKLM\..\Run: [COMODO Internet Security] "H:\Program Files\COMODO\Firewall\cfp.exe" -h O4 - HKLM\..\Run: [bOC-427] H:\PROGRA~1\Comodo\CBOClean\BOC427.exe O4 - HKCU\..\Run: [LightScribe Control Panel] H:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe -hidden O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "H:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [AnyDVD] H:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] H:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [Picasa Media Detector] H:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'Default user') O4 - Global Startup: EPSON SMART PANEL for Scanner.lnk = H:\Program Files\EPSON\EPSON SMART PANEL for Scanner\ESPmain.exe O8 - Extra context menu item: &Windows Live Search - res://H:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://H:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - H:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - H:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - H:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU) O20 - AppInit_DLLs: H:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,H:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll H:\WINDOWS\system32\guard32.dll H:\WINDOWS\system32\cssdll32.dll O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - H:\Program Files\Lavasoft\Ad-Aware\aawservice.exe O23 - Service: Kaspersky Anti-Virus (avp) - Kaspersky Lab - H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe O23 - Service: COMODO Firewall Pro Helper Service (cmdAgent) - Unknown owner - H:\Program Files\COMODO\Firewall\cmdagent.exe O23 - Service: Diskeeper - Diskeeper Corporation - H:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe O23 - Service: Google Updater Service (gusvc) - Google - H:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - H:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe O23 - Service: NBService - Nero AG - H:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - H:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - H:\WINDOWS\System32\TuneUpDefragService.exe -- End of file - 8648 bytes Encore Merci de ta patience et de ton opiniâtreté !
  2. Ok merci: je fais tout ça, mais ça va prendre un certain temps... D'autant que je travaille en alternance avec un portable (connexions successives de l'un puis de l'autre). Switch ethernet naze, pas de Wifi sur ma Freebox...
  3. Sorry ! Nouveau lancement de S&D (option 2) -> Redémarrage XP en Admin -> Nouveau rapport HJT ci-dessous: Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 17:05:36, on 15/11/2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16735) Boot mode: Normal Running processes: H:\WINDOWS\System32\smss.exe H:\WINDOWS\system32\winlogon.exe H:\WINDOWS\system32\services.exe H:\WINDOWS\system32\lsass.exe H:\WINDOWS\system32\svchost.exe H:\WINDOWS\System32\svchost.exe H:\Program Files\Lavasoft\Ad-Aware\aawservice.exe H:\WINDOWS\system32\spoolsv.exe H:\WINDOWS\Explorer.EXE H:\WINDOWS\system32\carpserv.exe H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAHE.EXE H:\Program Files\Java\jre1.6.0_07\bin\jusched.exe H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe H:\Program Files\COMODO\SafeSurf\cssurf.exe H:\Program Files\COMODO\Firewall\cfp.exe H:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe H:\PROGRA~1\Comodo\CBOClean\BOC427.exe H:\Program Files\COMODO\Firewall\cmdagent.exe H:\WINDOWS\system32\ctfmon.exe H:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe H:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe H:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe H:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe H:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe H:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe H:\Program Files\EPSON\EPSON SMART PANEL for Scanner\ESPmain.exe H:\WINDOWS\system32\svchost.exe H:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe H:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe H:\WINDOWS\system32\wuauclt.exe H:\Documents and Settings\Administrateur\Bureau\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - H:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - H:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - H:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - H:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - h:\program files\google\googletoolbar2.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - H:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll O2 - BHO: Live TV Toolbar - {b69a9db4-d0a1-4722-b56b-f20757a29cdf} - H:\Program Files\Live_TV\tbLiv1.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - H:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - H:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Live TV Toolbar - {b69a9db4-d0a1-4722-b56b-f20757a29cdf} - H:\Program Files\Live_TV\tbLiv1.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [CARPService] carpserv.exe O4 - HKLM\..\Run: [EPSON Stylus Photo R240 Series] H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAHE.EXE /P30 "EPSON Stylus Photo R240 Series" /O6 "USB001" /M "Stylus Photo R240" O4 - HKLM\..\Run: [NeroFilterCheck] H:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "H:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" O4 - HKLM\..\Run: [AVP] "H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe" O4 - HKLM\..\Run: [COMODO SafeSurf] "H:\Program Files\COMODO\SafeSurf\cssurf.exe" -s O4 - HKLM\..\Run: [COMODO Firewall Pro] "H:\Program Files\COMODO\Firewall\cfp.exe" -h O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "H:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [COMODO Internet Security] "H:\Program Files\COMODO\Firewall\cfp.exe" -h O4 - HKLM\..\Run: [bOC-427] H:\PROGRA~1\Comodo\CBOClean\BOC427.exe O4 - HKCU\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [LightScribe Control Panel] H:\Program Files\Fichiers communs\LightScribe\LightScribeControlPanel.exe -hidden O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "H:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [swg] H:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [AnyDVD] H:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Global Startup: EPSON SMART PANEL for Scanner.lnk = H:\Program Files\EPSON\EPSON SMART PANEL for Scanner\ESPmain.exe O8 - Extra context menu item: &Windows Live Search - res://H:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://H:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - H:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - H:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - H:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU) O20 - AppInit_DLLs: H:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,H:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll H:\WINDOWS\system32\guard32.dll H:\WINDOWS\system32\cssdll32.dll O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - H:\Program Files\Lavasoft\Ad-Aware\aawservice.exe O23 - Service: Kaspersky Anti-Virus (avp) - Kaspersky Lab - H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe O23 - Service: COMODO Firewall Pro Helper Service (cmdAgent) - Unknown owner - H:\Program Files\COMODO\Firewall\cmdagent.exe O23 - Service: Diskeeper - Diskeeper Corporation - H:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe O23 - Service: Google Updater Service (gusvc) - Google - H:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - H:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe O23 - Service: NBService - Nero AG - H:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - H:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - H:\WINDOWS\System32\TuneUpDefragService.exe -- End of file - 9843 bytes
  4. Ok Merci de ton aide. J'ai fait le test après avoir basculé en mode Admin (mais je suis sous XP Pro, pas Vista !) En voici le contenu : -----------\\ ToolBar S&D 1.2.4 XP/Vista Microsoft Windows XP Professionnel ( v5.1.2600 ) Service Pack 3 X86-based PC ( Uniprocessor Free : AMD Athlon 64 Processor 3200+ ) BIOS : Rev 1.03 USER : Administrateur ( Administrator ) BOOT : Normal boot Antivirus : Kaspersky Anti-Virus 8.0.0.454 (Activated) Firewall : COMODO Firewall 3.5 (Activated) A:\ (USB) D:\ (CD or DVD) E:\ (CD or DVD) G:\ (Local Disk) - NTFS - Total:23 Go (Free:16 Go) H:\ (Local Disk) - NTFS - Total:209 Go (Free:174 Go) I:\ (USB) J:\ (USB) "H:\ToolBar SD" ( MAJ : 27-10-2008|09:25 ) Option : [1] ( 15/11/2008|14:17 ) -----------\\ Recherche de Fichiers / Dossiers ... H:\Program Files\AskSBar H:\Program Files\AskSBar\bar H:\Program Files\Mozilla Firefox\plugins\NPAskSBr.dll -----------\\ Extensions (Andr‚) - {75493B06-1504-4976-9A55-B6FE240FF0BF} => barreconf -----------\\ [..\Internet Explorer\Main] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"'>http://go.microsoft.com/fwlink/?LinkId=54896"'>http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"'>http://go.microsoft.com/fwlink/?LinkId=69157"'>http://go.microsoft.com/fwlink/?LinkId=69157" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" --------------------\\ Recherche d'autres infections Aucune autre infection trouvée ! 1 - "H:\ToolBar SD\TB_1.txt" - 15/11/2008|14:12 - Option : [1] 2 - "H:\ToolBar SD\TB_2.txt" - 15/11/2008|14:19 - Option : [1] -----------\\ Fin du rapport a 14:19:11,35
  5. Bonjour à tous. Si un "pro" a quelques minutes à me consacrer, voici plus bas une copie de mon dernier rapport HJT... Je tiens à préciser qu'il m'est impossible d'utiliser l'outil développé par Coolman : il s'installe à peu près normalement, puis lorsque je veux le lancer, j'ai droit à la classique fenêtre de Windows "Windows a rencontré un problème et doit fermer, bla, bla... veuillez nous excuser pour ce désagrément" et fermeture ! Je tiens à préciser que mon disque système n'est pas C: Est-ce là l'explication ? Je soumets donc mon Rapport à la sagacité d'un expert, que je remercie par avance ! O.S : XP Pro/SP3 à jour. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 12:24:07, on 15/11/2008 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16735) Boot mode: Normal Running processes: H:\WINDOWS\Explorer.EXE H:\WINDOWS\system32\carpserv.exe H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAHE.EXE H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe H:\Program Files\COMODO\SafeSurf\cssurf.exe H:\Program Files\COMODO\Firewall\cfp.exe H:\PROGRA~1\Comodo\CBOClean\BOC427.exe H:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe H:\WINDOWS\system32\ctfmon.exe H:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe H:\Program Files\Spybot - Search & Destroy\TeaTimer.exe H:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe H:\Program Files\EPSON\EPSON SMART PANEL for Scanner\ESPmain.exe H:\Program Files\OpenOffice.org 3\program\soffice.exe H:\Program Files\OpenOffice.org 3\program\soffice.bin H:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe H:\Documents and Settings\André\Mes documents\HijackThis\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://windowsupdate.microsoft.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Live TV Toolbar - {b69a9db4-d0a1-4722-b56b-f20757a29cdf} - H:\Program Files\Live_TV\tbLiv1.dll O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - H:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - H:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\ievkbd.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - H:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - H:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - h:\program files\google\googletoolbar2.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - H:\Program Files\Google\GoogleToolbarNotifier\3.1.807.1746\swg.dll O2 - BHO: Live TV Toolbar - {b69a9db4-d0a1-4722-b56b-f20757a29cdf} - H:\Program Files\Live_TV\tbLiv1.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - H:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O2 - BHO: Ask Toolbar BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - H:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - H:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Live TV Toolbar - {b69a9db4-d0a1-4722-b56b-f20757a29cdf} - H:\Program Files\Live_TV\tbLiv1.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - H:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - h:\program files\google\googletoolbar2.dll O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - H:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL O4 - HKLM\..\Run: [CARPService] carpserv.exe O4 - HKLM\..\Run: [EPSON Stylus Photo R240 Series] H:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAHE.EXE /P30 "EPSON Stylus Photo R240 Series" /O6 "USB001" /M "Stylus Photo R240" O4 - HKLM\..\Run: [NeroFilterCheck] H:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "H:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" O4 - HKLM\..\Run: [AVP] "H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe" O4 - HKLM\..\Run: [COMODO SafeSurf] "H:\Program Files\COMODO\SafeSurf\cssurf.exe" -s O4 - HKLM\..\Run: [COMODO Firewall Pro] "H:\Program Files\COMODO\Firewall\cfp.exe" -h O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "H:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [COMODO Internet Security] "H:\Program Files\COMODO\Firewall\cfp.exe" -h O4 - HKLM\..\Run: [bOC-427] H:\PROGRA~1\Comodo\CBOClean\BOC427.exe O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "H:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [ctfmon.exe] H:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [swg] H:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [spybotSD TeaTimer] H:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKCU\..\Run: [AnyDVD] H:\Program Files\SlySoft\AnyDVD\AnyDVDtray.exe O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\S-1-5-18\..\Run: [Picasa Media Detector] H:\Program Files\Picasa2\PicasaMediaDetector.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] H:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Startup: OpenOffice.org 3.0.lnk = H:\Program Files\OpenOffice.org 3\program\quickstart.exe O4 - Global Startup: EPSON SMART PANEL for Scanner.lnk = H:\Program Files\EPSON\EPSON SMART PANEL for Scanner\ESPmain.exe O8 - Extra context menu item: &Windows Live Search - res://H:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://H:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\SCIEPlgn.dll O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - H:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - H:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - H:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - H:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - H:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe O20 - AppInit_DLLs: H:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,H:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll H:\WINDOWS\system32\guard32.dll H:\WINDOWS\system32\cssdll32.dll O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - H:\Program Files\Lavasoft\Ad-Aware\aawservice.exe O23 - Service: Kaspersky Anti-Virus (avp) - Kaspersky Lab - H:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus 2009\avp.exe O23 - Service: COMODO Firewall Pro Helper Service (cmdAgent) - Unknown owner - H:\Program Files\COMODO\Firewall\cmdagent.exe O23 - Service: Diskeeper - Diskeeper Corporation - H:\Program Files\Diskeeper Corporation\Diskeeper\DkService.exe O23 - Service: Google Updater Service (gusvc) - Google - H:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - H:\Program Files\Fichiers communs\LightScribe\LSSrvc.exe O23 - Service: NBService - Nero AG - H:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - H:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - H:\WINDOWS\System32\TuneUpDefragService.exe -- End of file - 9543 bytes
  6. DD11

    Windows Média Player 11 en grève !

    Merci à Rebo 25 pour ce player que je ne connaissais pas : super !
  7. DD11

    Windows Média Player 11 en grève !

    Impossible de le désinstaller ! En fait Ccleaner a viré les fichiers de désinstall (lu sur "l'aide" en ligne de Microsoft, en anglais ...) Sauf à le virer manuellement, mais au risque de rendre le système instable, voire le planter complètement !
  8. DD11

    Windows Média Player 11 en grève !

    Merci de ta réponse : j'ai déjà VLC, mais il ne lit pas les .avi Je vais essayer K-lite, mais étant têtu de nature, WMP DOIT fonctionner... ou je vais demander à Bilou de me rembourser ma licence ! Plus sérieusement, il fonctionnait il y a quelques temps, et fonctionne sur le PC de ma fille (même config que le mien !): je ne comprends pas ce qui "coince" et refuse par principe de mourir idiot .
  9. Bonjour à tous et à toutes. Depuis 2 mois environ il m'est impossible de lancer Windows Média Player 11 . Ni par clic droit sur un fichier .wmv (ou autre format censé être lu par WMP), ni même manuellement ! J'ai essayé sans succès de le désinstaller (rien à faire), de le réinstaller pour "écraser" la version précédente : sans succès non-plus. J'ai même dl la version 10 et essayé de l'installer à la place de la V.11, mais elle est incompatible avec le SP3 ! Je suis sous XP pro /SP3 légal et à jour; je n'ai modifié aucun composant logiciel ou matériel ... Si quelqu'un a une idée, elle sera la bienvenue . D'avance, merci.
  10. DD11

    Mon pc NEUF s'eteint tout seul

    Salut ! Ton alim est naze ou pas assez puissante, vu ta config : dans 1 cas comme dans l'autre, suis les conseils de GURU MEDITATION et fais marcher le SAV .
  11. Lors du démarrage du PC appuyer sur la touche "Suppression" (c'est la plus communément utilisée) pour rentrer dans le menu de configuration du BIOS . Définir le niveau de sécurité sur "System" et insérer un mot de passe (le taper 2 fois). Valider les changements (en général) par la touche F10. Taper "y" et Entrée pour valider les changements. Désormais, lors du démarrage du PC, celui-ci demandera systématiquement le mot de passe et n'ira pas plus loin tant que ce dernier n'aura pas été correctement entré. Attention toutefois: un "Clear Cmos" invalidera ce sésame... Mais faut déjà quelqu'un d'initié... Désolé d'être aussi vague, mais si je connaissais l'éditeur et la version de ton BIOS, ce serait plus simple ! Par exemple "Award 5.xx" ou "Phoenix x.x"
  12. Salut ! Tout simplement en définissant un mot de passe au niveau du BIOS. C'est pas le top, mais ça dissuade la plupart des profanes !
  13. DD11

    rien au demarrage

    Bonsoir Compte les "beep" (longs ou courts) et suivant la version de ton BIOS tu auras la signification du code d'erreur. Dans tous les cas c'est un pb hardware
  14. DD11

    DSO Exploit

    Salut queruak ! Power Scan apparait dans la liste des programmes lancés au démarrage, mais le dossier est vide ! En revanche, il n'apparaît pas dans la liste des programmes installés du panneau de config (Ajout/ Suppression), pas plus que dans C:\Programfiles : donc, je ne peux pas le désinstaller ! EasyCleaner ne le trouve pas non plus !
  15. DD11

    DSO Exploit

    Merci de ta réponse ! Donc ça craint pas ?
  16. Bonjour à tous Je suis sur un PC sur lequel j'ai récemment installé XP Pro (version légale) Dès que l'intéressé a obtenu sa connexion ADSL et qu'il l'a utilisée, il a "ramassé" ce qu'il n'avait pas. J'ai connecté son disque dur (en slave) à mon PC après avoir fait toutes les MàJ: Kapersky 5, AdAware SE, A2, Spybot SD; puis lancé successivement tous les scans en mode sans échec. Beaucoup de cochonneries ont été éliminées, mais j'ai un problème récurrent avec DSO Exploit: Spybot S&D le fixe (toujours en mode sans échec); je relance, et ... il est toujours là ! Please, comment m'en débarrasser définitivement ? De temps à autre, je trouve aussi "PowerScan" ? C'est quoi ? (Spybot le marque en rouge également). Merci de vos réponses et bon dimanche à tous
  17. DD11

    Problème d'installation

    Bonsoir 1) Mise à jour anti virus (Norton ) 2) Installation et mise à jour de A2 et Spybot Search&Destroy (si ce n'est déjà fait) 3) Scans successifs des 3 susnommés en mode sans échec 4) Redémarrage en mode normal 5) Au moins tu sauras si ton PC est Clean 6) Installation et nettoyage du registre avec EasyCleaner (pas touche aux doublons !) 7) Retenter l'installation Si nouvel échec: se déconnecter d'internet, désactiver Norton et retenter l'installation 9) Si encore échec, trouver au plus vite un Exorciste !
  18. DD11

    PEUX PLUS GRAVER DE CD

    Salut! C'est quoi ton soft de gravure ? Puisque ton graveur lit sans pb, c'est pas un souci de lentille (à priori) Si ton soft est Nero, essaie simplement de le désinstaller, puis de le réinstaller (il arrive qu'il fasse des caprices suite à une installation matérielle ou logicielle qui lui plait pas...) Sinon essaie avec une autre marque de CD Dernier point, vérifie sur le site du constructeur s'il n'existe pas de mise à jour du Firmware: si oui, fais le en suivant scrupuleusement la procédure indiquée . Bon courage
  19. Salut ! As-tu essayé d'enregistrer ledit fichier dans un dossier -> lancer Nero -> aller le chercher avec Nero. Si ça marche, clic droit sur le fichier -> ouvrir avec -> Sélectionner Nero Cover -> Cocher "toujours ouvrir ce type de fichier avec" -> Valider Autre possibilité: ton anti-virus ne serait-il pas Norton ? En effet, les extensions .ncd existaient y a quelques temps pour Norton Commander, un composant de Norton Utilities (y a longtemps que j'ai zappé Norton )... faudrait pas qu'il y ait confusion Cordialement
  20. DD11

    Impossible de changer mon image.

    Salut ! L'image du menu démarrer ? Ne s'agirait-il pas plutôt de l'image de fond du bureau ? Cordiales salutations
  21. Salut! Soit tu rajoutes manuellement les polices manquantes (si tu sais lesquelles) depuis le CD de XP, soit (plus simple): tu bootes depuis le CD de XP et tu fais une réparation de Windows (touche "R") à un moment de la procédure: il te remettra les polices par défaut
  22. DD11

    PB Graveur Et Lecteur CD !!

    Re Tes lecteurs (et graveur) sont-ils reconnus dans le BIOS ?
  23. DD11

    RAM PQI PC3200

    Re Juste pour info: tu peux télécharger "Everest" sur ce forum... l'équivalent de Aida 32 en mieux !
  24. DD11

    PB Graveur Et Lecteur CD !!

    Re Un lecteur (ou graveur) n'a pas besoin de pilote pour fonctionner ! Vérifie tes branchements, notamment les jumpers maître/esclave des CD (le maître en bout de nappe IDE) Si rien ne change, essaie de restaurer Windows depuis le CD. Booter depuis le CD (s'il y en a un qui marche ) puis "réparer"
  25. DD11

    RAM PQI PC3200

    Bonjour Oui, c'est normal: 400 Mhz = 2 x 200 Mhz-> c'est de la DDR (2 canaux) C'est vrai que la dénomination de "400 Mhz" est quelque peu mensongère ...
×
×
  • Créer...