

geordech
Membres-
Compteur de contenus
8 -
Inscription
-
Dernière visite
À propos de geordech
- Date de naissance 15/01/1943
Contact Methods
-
Website URL
http://www.clocherstors.org
-
ICQ
0
Profile Information
-
Localisation
Belgique
geordech's Achievements

Junior Member (3/12)
0
Réputation sur la communauté
-
Merci de me fournir qqs remarques sur cette analyse. Logfile of HijackThis v1.99.1 Scan saved at 14:48:38, on 28/10/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: H:\WINDOWS\System32\smss.exe H:\WINDOWS\SYSTEM32\winlogon.exe H:\WINDOWS\system32\services.exe H:\WINDOWS\system32\lsass.exe H:\WINDOWS\system32\Ati2evxx.exe H:\WINDOWS\system32\svchost.exe H:\Program Files\Windows Defender\MsMpEng.exe H:\WINDOWS\System32\svchost.exe H:\WINDOWS\system32\svchost.exe H:\WINDOWS\Explorer.EXE H:\WINDOWS\system32\ctfmon.exe H:\WINDOWS\system32\spoolsv.exe H:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe H:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe H:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe H:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe H:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE H:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe H:\WINDOWS\system32\CTsvcCDA.exe H:\Program Files\FolderSize\FolderSizeSvc.exe H:\WINDOWS\System32\svchost.exe H:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb07.exe H:\Program Files\InkSaver\InkSaver.exe H:\Program Files\Logitech\Easy Synchronization\servicestub.exe H:\Program Files\FastUse_V6\FastUse.exe H:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe H:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE H:\Program Files\Pando Networks\Pando\Pando.exe H:\Program Files\Logitech\MouseWare\system\em_exec.exe H:\WINDOWS\system32\pctspk.exe H:\Program Files\Picasa2\PicasaMediaDetector.exe H:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe H:\Program Files\Java\jre1.6.0_03\bin\jusched.exe H:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxMediaDB.exe H:\Program Files\DynAdvance\DynAdvance Notifier\MailNotifier.Exe H:\PROGRA~1\Nero\NEROPH~1\data\Xtras\mssysmgr.exe H:\Program Files\Creative\MediaSource\Detector\CTDetect.exe H:\Program Files\Photodex\ProShowGold\ScsiAccess.exe H:\Program Files\Executive Software\Sitekeeper\Sitekeeper Server\SKeeper.exe H:\Program Files\Spyware Terminator\sp_rsser.exe h:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe H:\WINDOWS\System32\svchost.exe H:\Program Files\HHVcdV6Sys\VC6SecS.exe H:\WINDOWS\System32\vssvc.exe H:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe H:\Program Files\Invisible Browsing\InvisibleBrowsing.exe H:\Program Files\Mozilla Firefox\firefox.exe C:\APPLICATIONS neuves\HIJACK this\hijackthis_hijackthis_1.99.1_anglais_17891.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = H:\WINDOWS\PCHealth\HelpCtr\System\panels\blank.htm R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = SOS Connexion - Le web en toute simplicite R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 127.0.0.1:8080 R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = local R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - H:\DOCUME~1\Georges\APPLIC~1\EoRezo\EoAdv\EoRezobho.dll (file missing) O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - H:\Program Files\Adobe\Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: ClickCatcher MSIE handler - {16664845-0E00-11D2-8059-000000000000} - H:\Program Files\Fichiers communs\ReGet Shared\Catcher.dll O2 - BHO: (no name) - {259F616C-A300-44F5-B04A-ED001A26C85C} - (no file) O2 - BHO: Flashget Catch Url Class - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - H:\Program Files\FlashGet\jccatch.dll O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - H:\Program Files\GetRight\xx2gr.dll O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file) O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - H:\DOCUME~1\Georges\APPLIC~1\EoRezo\EoAdv\EoRezobho.dll (file missing) O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - H:\Program Files\Java\jre1.6.0_03\bin\ssv.dll O2 - BHO: BHO pour Compagnon Web Encarta - {955BE0B8-BC85-4CAF-856E-8E0D8B610560} - H:\Program Files\Fichiers communs\Microsoft Shared\Encarta Web Companion\ENCWCBAR.DLL O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - (no file) O2 - BHO: gFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - H:\Program Files\FlashGet\getflash.dll O4 - HKLM\..\Run: [HPDJ Taskbar Utility] H:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb07.exe O4 - HKLM\..\Run: [inkSaver] H:\Program Files\InkSaver\InkSaver.exe hide O4 - HKLM\..\Run: [Path] "H:\Program Files\FastUse_V6\FastUse.exe" O4 - HKLM\..\Run: [iSUSPM Startup] "H:\Program Files\Fichiers communs\InstallShield\UpdateService\ISUSPM.exe" -startup O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe O4 - HKLM\..\Run: [HGTXPEI] H:\WINDOWS\system32\FirstReboot.exe O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [TkBellExe] "H:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [Pando] "H:\Program Files\Pando Networks\Pando\Pando.exe" /Minimized O4 - HKLM\..\Run: [NeroFilterCheck] H:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe O4 - HKLM\..\Run: [Picasa Media Detector] H:\Program Files\Picasa2\PicasaMediaDetector.exe O4 - HKLM\..\Run: [spywareTerminator] "H:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "H:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" O4 - HKLM\..\Run: [avgnt] "H:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [invisibleBrowsing] H:\Program Files\Invisible Browsing\InvisibleBrowsing.exe O4 - HKCU\..\Run: [DynAdvance Notifier] "H:\Program Files\DynAdvance\DynAdvance Notifier\MailNotifier.Exe" O4 - HKCU\..\Run: [Nero PhotoShow Media Manager] H:\PROGRA~1\Nero\NEROPH~1\data\Xtras\mssysmgr.exe O4 - HKCU\..\Run: [Creative Detector] "H:\Program Files\Creative\MediaSource\Detector\CTDetect.exe" /R O4 - HKCU\..\Run: [Pando] "H:\Program Files\Pando Networks\Pando\pando.exe" /Minimized O4 - HKCU\..\Run: [ctfmon.exe] H:\WINDOWS\system32\ctfmon.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: &Point&&Go - H:\Program Files\Fichiers communs\Expert System\PGPlatform\PGPlatform.htm O8 - Extra context menu item: &Tout tйlйcharger avec FlashGet - H:\Program Files\FlashGet\jc_all.htm O8 - Extra context menu item: &Tйlйcharger avec FlashGet - H:\Program Files\FlashGet\jc_link.htm O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://H:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 O8 - Extra context menu item: Ouvrir avec GetRight - H:\Program Files\GetRight\GRbrowse.htm O8 - Extra context menu item: Traduire cette page - H:\WINDOWS\WEB\powertoy.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\Program Files\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra button: (no name) - {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra 'Tools' menuitem: Translate - {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra button: (no name) - {7A2EFD41-E6B3-11D2-89E3-00E0292EE575} - H:\Program Files\Xi\NetXfer\Help\eng\Options.htm (file missing) O9 - Extra 'Tools' menuitem: Customize translation options - {7A2EFD41-E6B3-11D2-89E3-00E0292EE575} - H:\Program Files\Xi\NetXfer\Help\eng\Options.htm (file missing) O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - H:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - H:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - H:\PROGRA~1\FlashGet\flashget.exe O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - H:\PROGRA~1\FlashGet\flashget.exe O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing) O9 - Extra button: Flash2X Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra 'Tools' menuitem: &Launch Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra button: Traduction - {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra 'Tools' menuitem: Traduire - {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra button: (no name) - {7A2EFD41-E6B3-11D2-89E3-00E0292EE575} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra 'Tools' menuitem: Personnaliser les options de traduction - {7A2EFD41-E6B3-11D2-89E3-00E0292EE575} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative.com/su/ocx/15030/CTSUEng.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative.com/su/ocx/15030/CTPID.cab O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - H:\Program Files\Fichiers communs\Microsoft Shared\Help\hxds.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - H:\PROGRA~1\FICHIE~1\Skype\Skype4COM.dll O20 - Winlogon Notify: PixVue - H:\WINDOWS\ O20 - Winlogon Notify: WgaLogon - H:\WINDOWS\SYSTEM32\WgaLogon.dll O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing) O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - H:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Acronis Scheduler2 Service (AcrSch2Svc) - Acronis - H:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe O23 - Service: Adobe LM Service - Adobe Systems - H:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Adobe Active File Monitor V4 (AdobeActiveFileMonitor4.0) - Unknown owner - H:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - H:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - H:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Ati HotKey Poller - Unknown owner - H:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - H:\WINDOWS\system32\ati2sgag.exe O23 - Service: C-DillaSrv - C-Dilla Ltd - H:\WINDOWS\system32\DRIVERS\CDANTSRV.EXE O23 - Service: Capture Device Service - InterVideo Inc. - H:\Program Files\Fichiers communs\InterVideo\DeviceService\DevSvc.exe O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - H:\WINDOWS\system32\CTsvcCDA.exe O23 - Service: Firebird Server - MAGIX Instance (FirebirdServerMAGIXInstance) - MAGIX® - H:\MAGIX\Common\Database\bin\fbserver.exe O23 - Service: Folder Size (FolderSize) - Brio - H:\Program Files\FolderSize\FolderSizeSvc.exe O23 - Service: Google Updater Service (gusvc) - Google - H:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: IBService - Unknown owner - H:\Program Files\Invisible Browsing\servers\IBService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - H:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - H:\Program Files\iPod\bin\iPodService.exe O23 - Service: LEC TranslateDotNet Server - Language Engineering Corporation, LLC - H:\Program Files\Power Translator\LogoMedia TranslateDotNet Server.exe O23 - Service: Logitech Easy Synchronization - Unknown owner - H:\Program Files\Logitech\Easy Synchronization\servicestub.exe O23 - Service: SQL Server (SQLEXPRESS) (MSSQL$SQLEXPRESS) - Unknown owner - h:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe" -sSQLEXPRESS (file missing) O23 - Service: NBService - Unknown owner - H:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe (file missing) O23 - Service: NMIndexingService - Unknown owner - H:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe (file missing) O23 - Service: NsEngine - Unknown owner - (no file) O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - H:\WINDOWS\system32\pctspk.exe O23 - Service: LiveShare P2P Server (RoxLiveShare) - Sonic Solutions - H:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxLiveShare.exe O23 - Service: RoxMediaDB - Sonic Solutions - H:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxMediaDB.exe O23 - Service: RoxUpnpRenderer - Sonic Solutions - H:\Program Files\Fichiers communs\Roxio Shared\SharedCom\RoxUpnpRenderer.exe O23 - Service: RoxUpnpServer - Sonic Solutions - H:\Program Files\Roxio\Easy Media Creator 8\Digital Home\RoxUpnpServer.exe O23 - Service: Roxio Hard Drive Watcher (RoxWatch) - Sonic Solutions - H:\Program Files\Fichiers communs\Roxio Shared\SharedCOM8\RoxWatch.exe O23 - Service: ScsiAccess - Unknown owner - H:\Program Files\Photodex\ProShowGold\ScsiAccess.exe O23 - Service: Sitekeeper Server - Executive Software International, Inc. - H:\Program Files\Executive Software\Sitekeeper\Sitekeeper Server\SKeeper.exe O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - H:\Program Files\Spyware Terminator\sp_rsser.exe O23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) - TuneUp Software GmbH - H:\Program Files\TuneUp Utilities 2006\WinStylerThemeSvc.exe O23 - Service: Virtual CD v6 Management Service (VC6SecS) - H+H Software GmbH - H:\Program Files\HHVcdV6Sys\VC6SecS.exe
-
Problème résolu : merci.
-
Merci à toi COOLMAN. Je suis tes conseils et je reviens te dire quoi.
-
Je fonctionne avec la versio MAJ 6.6.0.6 de Nero. Elle fonctionne assez bien mais j'ai un problème qui ne date pas de la MAJ. Lorsque j'utilise Cover Designer et Nero Sound Trax, j'obtiens le message suivant : "L'instruction à"0x02b51643" emploie l'adresse mémoire "0x00000000" La mémoire ne peut pas être READ. Cliquez sur OK pour terminer le programme" Qu'ai-je fait? Que manque-t-il au programme? Que se passe-t-il? Merci de votre aide.
-
Merci DID : je suis ton conseil et je reviens avec mon log. Voila tout ce que tu proposais a été fait et je l'espère bien fait! Sauf pour l'antivirus de SECUSER qui n'a jamais voulu démarrer... Voici ce que cela donne : Logfile of HijackThis v1.99.0 Scan saved at 23:24:24, on 24/01/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: H:\WINDOWS\System32\smss.exe H:\WINDOWS\system32\winlogon.exe H:\WINDOWS\system32\services.exe H:\WINDOWS\system32\lsass.exe H:\WINDOWS\system32\Ati2evxx.exe H:\WINDOWS\system32\svchost.exe H:\WINDOWS\System32\svchost.exe H:\WINDOWS\system32\spoolsv.exe H:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb07.exe H:\Program Files\Panda Software\Panda Antivirus Titanium\APVXDWIN.EXE H:\Program Files\Logitech\iTouch\iTouch.exe H:\Program Files\InkSaver\InkSaver.exe H:\Program Files\Skype\Phone\Skype.exe H:\Program Files\Druide\Antidote\Antidote\Gestionnaire Antidote.exe H:\Program Files\OO Software\DriveLED\oodled.exe H:\Program Files\SuperCopier\SuperCopier.exe H:\WINDOWS\system32\ctfmon.exe H:\Program Files\Logitech\iTouch\kbdtray.exe H:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe H:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsFileAgent.exe H:\WINDOWS\System32\GEARSec.exe H:\Program Files\Logitech\Easy Synchronization\servicestub.exe H:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe H:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE H:\WINDOWS\System32\oodag.exe H:\Program Files\Panda Software\Panda Antivirus Titanium\Pavsrv51.exe H:\WINDOWS\system32\pctspk.exe H:\Program Files\Panda Software\Panda Antivirus Titanium\AVENGINE.EXE H:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsDeviceConnect.exe H:\Program Files\Photodex\ProShowGold\ScsiAccess.exe H:\Program Files\Executive Software\Sitekeeper\Sitekeeper Server\SKeeper.exe H:\WINDOWS\System32\svchost.exe H:\Program Files\HHVcdV6Sys\VC6SecS.exe H:\Program Files\Panda Software\Panda Antivirus Titanium\pavProxy.exe H:\WINDOWS\explorer.exe H:\Program Files\Free Download Manager\fdm.exe H:\PROGRA~1\Systran\4_0\Premium\SYSTRA~1.EXE H:\DOCUME~1\Georges\LOCALS~1\Temp\Rar$EX00.672\HijackThis.exe H:\DOCUME~1\Georges\LOCALS~1\Temp\Rar$EX00.406\HijackThis.exe H:\DOCUME~1\Georges\LOCALS~1\Temp\Rar$EX00.313\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - Default URLSearchHook is missing O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - H:\Program Files\TechSmith\SnagIt 7\SnagItBHO.dll O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - H:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - H:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - H:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: LostGoggles plug-in (web site preview snapshots - www.lostgoggles.com) - {6291957C-8CE9-4c90-BEFF-12D9E68CFF30} - H:\Program Files\LostGoggles\LGoggles.dll O2 - BHO: Google Desktop Search Capture - {7c1ce531-09e9-4fc5-9803-1c2956615786} - H:\Program Files\Google\Google Desktop Search\GoogleDesktopIE.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - h:\program files\google\googletoolbar1.dll O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - H:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - H:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - h:\program files\google\googletoolbar1.dll O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - H:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll O3 - Toolbar: Systran40premi.IEPlugIn - {CFB25594-4D5F-11D6-AB7B-00B0D094B576} - H:\Program Files\Systran\4_0\Premium\IEPlugIn.dll O3 - Toolbar: &Translator Internet - {8E4AA109-7239-4B85-8196-7377A53DDEFF} - H:\PROGRA~1\Antadis\TRANSL~1\DELPHI~1.DLL O3 - Toolbar: Furl Toolbar - {74E677D9-0F37-4654-85E9-02F36AA295EB} - H:\Program Files\Furl Toolbar\toolbar.dll O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - H:\Program Files\TechSmith\SnagIt 7\SnagItIEAddin.dll O4 - HKLM\..\Run: [HPDJ Taskbar Utility] H:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb07.exe O4 - HKLM\..\Run: [APVXDWIN] "H:\Program Files\Panda Software\Panda Antivirus Titanium\APVXDWIN.EXE" /s O4 - HKLM\..\Run: [zBrowser Launcher] H:\Program Files\Logitech\iTouch\iTouch.exe O4 - HKLM\..\Run: [NeroFilterCheck] H:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [inkSaver] H:\Program Files\InkSaver\InkSaver.exe hide O4 - HKCU\..\Run: [skype] "H:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKCU\..\Run: [Gestionnaire Antidote.exe] H:\Program Files\Druide\Antidote\Antidote\Gestionnaire Antidote.exe O4 - HKCU\..\Run: [DriveLED] H:\Program Files\OO Software\DriveLED\oodled.exe O4 - HKCU\..\Run: [superCopier.exe] H:\Program Files\SuperCopier\SuperCopier.exe O4 - HKCU\..\Run: [ctfmon.exe] H:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Free Download Manager] H:\Program Files\Free Download Manager\fdm.exe -autorun O4 - Global Startup: Adobe Gamma Loader.lnk = H:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: hpoddt01.exe.lnk = ? O8 - Extra context menu item: Download all by Free Download Manager - file://H:\Program Files\Free Download Manager\dlall.htm O8 - Extra context menu item: Download by Free Download Manager - file://H:\Program Files\Free Download Manager\dllink.htm O8 - Extra context menu item: Download selected by Free Download Manager - file://H:\Program Files\Free Download Manager\dlselected.htm O8 - Extra context menu item: Download web site by Free Download Manager - file://H:\Program Files\Free Download Manager\dlpage.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\WINDOWS\System32\msjava.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\WINDOWS\System32\msjava.dll O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra 'Tools' menuitem: Remplir &$ - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra 'Tools' menuitem: Enregistrer &[ - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra button: Barre RF - {724d43aa-0d85-11d4-9908-00400523e39a} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra 'Tools' menuitem: Barre RF &2 - {724d43aa-0d85-11d4-9908-00400523e39a} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra button: Traduction - {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} - (no file) O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - H:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Organise-notes - {9455301C-CF6B-11D3-A266-00C04F689C50} - H:\Program Files\Fichiers communs\Microsoft Shared\Encarta Researcher\EROPROJ.DLL O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - H:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe O9 - Extra button: Flash2X Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra 'Tools' menuitem: &Launch Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra button: Traduction - {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra 'Tools' menuitem: Traduire - {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra button: (no name) - {7A2EFD41-E6B3-11D2-89E3-00E0292EE575} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra 'Tools' menuitem: Personnaliser les options de traduction - {7A2EFD41-E6B3-11D2-89E3-00E0292EE575} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra button: Correcteur - {F7C8E5F6-B6D1-45db-8D91-2BCFA5DF11A9} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote K - IE 6.htm (HKCU) O9 - Extra button: Dictionnaire - {FB4AE6A3-EE20-442c-9189-251885352358} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote D - IE 6.htm (HKCU) O9 - Extra button: Synonymes - {FDD637F8-2693-49ce-817E-1AD59574900C} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote S - IE 6.htm (HKCU) O9 - Extra button: Conjugueur - {FF229BEC-9E1F-48c1-99A6-AF34ABEFAB0A} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote C - IE 6.htm (HKCU) O9 - Extra button: Grammaire - {FFB5EE7F-726F-423e-83C2-572FE7CEB3F0} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote G - IE 6.htm (HKCU) O17 - HKLM\System\CCS\Services\Tcpip\..\{693ABF77-EC68-4E1C-B23E-91C75CF90394}: NameServer = 62.235.14.4 62.235.13.199 O23 - Service: Acronis Scheduler2 Service - Acronis - H:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe O23 - Service: Adobe LM Service - Unknown - H:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Adobe Active File Monitor - Unknown - H:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsFileAgent.exe O23 - Service: Ati HotKey Poller - Unknown - H:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown - H:\WINDOWS\system32\ati2sgag.exe O23 - Service: Service d'administration du Gestionnaire de disque logique - Unknown - H:\WINDOWS\System32\dmadmin.exe O23 - Service: Journal des événements - Unknown - H:\WINDOWS\system32\services.exe O23 - Service: GEARSecurity - GEAR Software - H:\WINDOWS\System32\GEARSec.exe O23 - Service: iPod Service - Apple Computer, Inc. - H:\Program Files\iPod\bin\iPodService.exe O23 - Service: Logitech Easy Synchronization - Unknown - H:\Program Files\Logitech\Easy Synchronization\servicestub.exe O23 - Service: Partage de Bureau à distance NetMeeting - Unknown - H:\WINDOWS\System32\mnmsrvc.exe O23 - Service: O&O Defrag - O&O Software GmbH - H:\WINDOWS\System32\oodag.exe O23 - Service: Panda anti-virus service - Unknown - H:\Program Files\Panda Software\Panda Antivirus Titanium\Pavsrv51.exe O23 - Service: PCTEL Speaker Phone - Unknown - H:\WINDOWS\system32\pctspk.exe O23 - Service: Photoshop Elements Device Connect - Unknown - H:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsDeviceConnect.exe O23 - Service: Plug-and-Play - Unknown - H:\WINDOWS\system32\services.exe O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance - Unknown - H:\WINDOWS\system32\sessmgr.exe O23 - Service: Sandra Data Service - SiSoftware - H:\Program Files\SiSoftware\SiSoftware Sandra Professionnel 2005\RpcDataSrv.exe O23 - Service: Sandra Service - SiSoftware - H:\Program Files\SiSoftware\SiSoftware Sandra Professionnel 2005\RpcSandraSrv.exe O23 - Service: Carte à puce - Unknown - H:\WINDOWS\System32\SCardSvr.exe O23 - Service: ScsiAccess - Unknown - H:\Program Files\Photodex\ProShowGold\ScsiAccess.exe O23 - Service: Sitekeeper Server - Executive Software International, Inc. - H:\Program Files\Executive Software\Sitekeeper\Sitekeeper Server\SKeeper.exe O23 - Service: Journaux et alertes de performance - Unknown - H:\WINDOWS\system32\smlogsvc.exe O23 - Service: TuneUp WinStyler Theme Service - TuneUp Software GmbH - H:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe O23 - Service: Virtual CD v6 Management Service - H+H Software GmbH - H:\Program Files\HHVcdV6Sys\VC6SecS.exe O23 - Service: Cliché instantané de volume - Unknown - H:\WINDOWS\System32\vssvc.exe O23 - Service: Carte de performance WMI - Unknown - H:\WINDOWS\System32\wbem\wmiapsrv.exe Encore merci pour l'aide. Amicalement.
-
Merci DID : j'effectue ce que tu me conseilles et je reviens dire quoi. Encore merci pour l'aide. J'ai effectivement suivi tes conseils et il me semble que je suis sorti d'épaisseur. (ou presque) Voici mon log HiJack actuel : H:\Program Files\InkSaver\InkSaver.exe H:\Program Files\Skype\Phone\Skype.exe H:\Program Files\Druide\Antidote\Antidote\Gestionnaire Antidote.exe H:\Program Files\OO Software\DriveLED\oodled.exe H:\Program Files\SuperCopier\SuperCopier.exe H:\WINDOWS\system32\ctfmon.exe H:\Program Files\Logitech\iTouch\kbdtray.exe H:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe H:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsFileAgent.exe H:\WINDOWS\System32\GEARSec.exe H:\Program Files\Logitech\Easy Synchronization\servicestub.exe H:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe H:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE H:\WINDOWS\System32\oodag.exe H:\Program Files\Panda Software\Panda Antivirus Titanium\Pavsrv51.exe H:\WINDOWS\system32\pctspk.exe H:\Program Files\Panda Software\Panda Antivirus Titanium\AVENGINE.EXE H:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsDeviceConnect.exe H:\Program Files\Photodex\ProShowGold\ScsiAccess.exe H:\Program Files\Executive Software\Sitekeeper\Sitekeeper Server\SKeeper.exe H:\WINDOWS\System32\svchost.exe H:\Program Files\HHVcdV6Sys\VC6SecS.exe H:\Program Files\Panda Software\Panda Antivirus Titanium\pavProxy.exe H:\DOCUME~1\Georges\LOCALS~1\Temp\Rar$EX01.172\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - Default URLSearchHook is missing O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - H:\Program Files\TechSmith\SnagIt 7\SnagItBHO.dll O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - H:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - H:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - H:\Program Files\Spybot - Search & Destroy\SDHelper.dll O2 - BHO: LostGoggles plug-in (web site preview snapshots - www.lostgoggles.com) - {6291957C-8CE9-4c90-BEFF-12D9E68CFF30} - H:\Program Files\LostGoggles\LGoggles.dll O2 - BHO: Google Desktop Search Capture - {7c1ce531-09e9-4fc5-9803-1c2956615786} - H:\Program Files\Google\Google Desktop Search\GoogleDesktopIE.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - h:\program files\google\googletoolbar1.dll O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - H:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - H:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - h:\program files\google\googletoolbar1.dll O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - H:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll O3 - Toolbar: Systran40premi.IEPlugIn - {CFB25594-4D5F-11D6-AB7B-00B0D094B576} - H:\Program Files\Systran\4_0\Premium\IEPlugIn.dll O3 - Toolbar: &Translator Internet - {8E4AA109-7239-4B85-8196-7377A53DDEFF} - H:\PROGRA~1\Antadis\TRANSL~1\DELPHI~1.DLL O3 - Toolbar: Furl Toolbar - {74E677D9-0F37-4654-85E9-02F36AA295EB} - H:\Program Files\Furl Toolbar\toolbar.dll O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - H:\Program Files\TechSmith\SnagIt 7\SnagItIEAddin.dll O4 - HKLM\..\Run: [HPDJ Taskbar Utility] H:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb07.exe O4 - HKLM\..\Run: [APVXDWIN] "H:\Program Files\Panda Software\Panda Antivirus Titanium\APVXDWIN.EXE" /s O4 - HKLM\..\Run: [zBrowser Launcher] H:\Program Files\Logitech\iTouch\iTouch.exe O4 - HKLM\..\Run: [NeroFilterCheck] H:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [inkSaver] H:\Program Files\InkSaver\InkSaver.exe hide O4 - HKCU\..\Run: [skype] "H:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKCU\..\Run: [Gestionnaire Antidote.exe] H:\Program Files\Druide\Antidote\Antidote\Gestionnaire Antidote.exe O4 - HKCU\..\Run: [DriveLED] H:\Program Files\OO Software\DriveLED\oodled.exe O4 - HKCU\..\Run: [superCopier.exe] H:\Program Files\SuperCopier\SuperCopier.exe O4 - HKCU\..\Run: [ctfmon.exe] H:\WINDOWS\system32\ctfmon.exe O4 - Global Startup: Adobe Gamma Loader.lnk = H:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: hpoddt01.exe.lnk = ? O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\WINDOWS\System32\msjava.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\WINDOWS\System32\msjava.dll O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra 'Tools' menuitem: Remplir &$ - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra 'Tools' menuitem: Enregistrer &[ - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra button: Barre RF - {724d43aa-0d85-11d4-9908-00400523e39a} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra 'Tools' menuitem: Barre RF &2 - {724d43aa-0d85-11d4-9908-00400523e39a} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra button: Traduction - {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} - (no file) O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - H:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Organise-notes - {9455301C-CF6B-11D3-A266-00C04F689C50} - H:\Program Files\Fichiers communs\Microsoft Shared\Encarta Researcher\EROPROJ.DLL O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - H:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe O9 - Extra button: Flash2X Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra 'Tools' menuitem: &Launch Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra button: Traduction - {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra 'Tools' menuitem: Traduire - {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra button: (no name) - {7A2EFD41-E6B3-11D2-89E3-00E0292EE575} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra 'Tools' menuitem: Personnaliser les options de traduction - {7A2EFD41-E6B3-11D2-89E3-00E0292EE575} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra button: Correcteur - {F7C8E5F6-B6D1-45db-8D91-2BCFA5DF11A9} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote K - IE 6.htm (HKCU) O9 - Extra button: Dictionnaire - {FB4AE6A3-EE20-442c-9189-251885352358} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote D - IE 6.htm (HKCU) O9 - Extra button: Synonymes - {FDD637F8-2693-49ce-817E-1AD59574900C} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote S - IE 6.htm (HKCU) O9 - Extra button: Conjugueur - {FF229BEC-9E1F-48c1-99A6-AF34ABEFAB0A} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote C - IE 6.htm (HKCU) O9 - Extra button: Grammaire - {FFB5EE7F-726F-423e-83C2-572FE7CEB3F0} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote G - IE 6.htm (HKCU) O17 - HKLM\System\CCS\Services\Tcpip\..\{693ABF77-EC68-4E1C-B23E-91C75CF90394}: NameServer = 62.235.14.4 62.235.13.199 O23 - Service: Acronis Scheduler2 Service - Acronis - H:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe O23 - Service: Adobe LM Service - Unknown - H:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Adobe Active File Monitor - Unknown - H:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsFileAgent.exe O23 - Service: Ati HotKey Poller - Unknown - H:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown - H:\WINDOWS\system32\ati2sgag.exe O23 - Service: Service d'administration du Gestionnaire de disque logique - Unknown - H:\WINDOWS\System32\dmadmin.exe O23 - Service: Journal des événements - Unknown - H:\WINDOWS\system32\services.exe O23 - Service: GEARSecurity - GEAR Software - H:\WINDOWS\System32\GEARSec.exe O23 - Service: iPod Service - Apple Computer, Inc. - H:\Program Files\iPod\bin\iPodService.exe O23 - Service: Logitech Easy Synchronization - Unknown - H:\Program Files\Logitech\Easy Synchronization\servicestub.exe O23 - Service: Partage de Bureau à distance NetMeeting - Unknown - H:\WINDOWS\System32\mnmsrvc.exe O23 - Service: O&O Defrag - O&O Software GmbH - H:\WINDOWS\System32\oodag.exe O23 - Service: Panda anti-virus service - Unknown - H:\Program Files\Panda Software\Panda Antivirus Titanium\Pavsrv51.exe O23 - Service: PCTEL Speaker Phone - Unknown - H:\WINDOWS\system32\pctspk.exe O23 - Service: Photoshop Elements Device Connect - Unknown - H:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsDeviceConnect.exe O23 - Service: Plug-and-Play - Unknown - H:\WINDOWS\system32\services.exe O23 - Service: Ql1sramrts_g - Sonic Solutions - (no file) O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance - Unknown - H:\WINDOWS\system32\sessmgr.exe O23 - Service: Sandra Data Service - SiSoftware - H:\Program Files\SiSoftware\SiSoftware Sandra Professionnel 2005\RpcDataSrv.exe O23 - Service: Sandra Service - SiSoftware - H:\Program Files\SiSoftware\SiSoftware Sandra Professionnel 2005\RpcSandraSrv.exe O23 - Service: Carte à puce - Unknown - H:\WINDOWS\System32\SCardSvr.exe O23 - Service: ScsiAccess - Unknown - H:\Program Files\Photodex\ProShowGold\ScsiAccess.exe O23 - Service: Sitekeeper Server - Executive Software International, Inc. - H:\Program Files\Executive Software\Sitekeeper\Sitekeeper Server\SKeeper.exe O23 - Service: Journaux et alertes de performance - Unknown - H:\WINDOWS\system32\smlogsvc.exe O23 - Service: TuneUp WinStyler Theme Service - TuneUp Software GmbH - H:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe O23 - Service: Virtual CD v6 Management Service - H+H Software GmbH - H:\Program Files\HHVcdV6Sys\VC6SecS.exe O23 - Service: Cliché instantané de volume - Unknown - H:\WINDOWS\System32\vssvc.exe O23 - Service: Carte de performance WMI - Unknown - H:\WINDOWS\System32\wbem\wmiapsrv.exe Merci pour l'aide. Amicalement.
-
Merci. J'ai avancé de quelques pas. J'ai TL Spybot Search and Destroy mais je suis un peu agacé : en effet après son scan, le programme tue certaines saloperies mais lorsqu'il me demande de supprimer les dernières, il propose de créer un point de restauration et là le programme se plante. Après plusieurs minutes d'attente, je suis obligé de faire CTRL-ALT-DEL. Est-ce normal ou fais-je qqchose de travers. Merci pour votre aide.
-
Merci de m'aider à décoder cette analyse faite avec HiJACK : Logfile of HijackThis v1.99.0 Scan saved at 12:49:41, on 23/01/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: H:\WINDOWS\System32\smss.exe H:\WINDOWS\system32\winlogon.exe H:\WINDOWS\system32\services.exe H:\WINDOWS\system32\lsass.exe H:\WINDOWS\system32\Ati2evxx.exe H:\WINDOWS\system32\svchost.exe H:\WINDOWS\System32\svchost.exe H:\WINDOWS\system32\spoolsv.exe H:\WINDOWS\Explorer.EXE H:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe H:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsFileAgent.exe H:\WINDOWS\System32\GEARSec.exe H:\WINDOWS\system32\drivers\KodakCCS.exe H:\Program Files\Logitech\Easy Synchronization\servicestub.exe H:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe H:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE H:\WINDOWS\System32\oodag.exe H:\Program Files\Panda Software\Panda Antivirus Titanium\Pavsrv51.exe H:\WINDOWS\system32\pctspk.exe H:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsDeviceConnect.exe H:\Program Files\Panda Software\Panda Antivirus Titanium\AVENGINE.EXE H:\Program Files\Photodex\ProShowGold\ScsiAccess.exe H:\Program Files\Executive Software\Sitekeeper\Sitekeeper Server\SKeeper.exe H:\WINDOWS\System32\svchost.exe H:\Program Files\HHVcdV6Sys\VC6SecS.exe H:\Program Files\Panda Software\Panda Antivirus Titanium\apvxdwin.exe H:\Program Files\Panda Software\Panda Antivirus Titanium\pavProxy.exe H:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb07.exe H:\Program Files\Logitech\iTouch\iTouch.exe H:\Program Files\InkSaver\InkSaver.exe H:\WINDOWS\xhngxg.exe H:\program files\180solutions\sais.exe H:\WINDOWS\system32\SahAgent.exe H:\Program Files\ISTsvc\istsvc.exe H:\Program Files\Skype\Phone\Skype.exe H:\Program Files\Druide\Antidote\Antidote\Gestionnaire Antidote.exe H:\Program Files\OO Software\DriveLED\oodled.exe H:\Program Files\Logitech\iTouch\kbdtray.exe H:\Program Files\SuperCopier\SuperCopier.exe H:\WINDOWS\system32\ctfmon.exe H:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe H:\Program Files\Mozilla Thunderbird\thunderbird.exe H:\PROGRA~1\MOZILL~1\FIREFOX.EXE H:\DOCUME~1\Georges\LOCALS~1\Temp\Rar$EX00.984\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = H:\WINDOWS\about.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - Default URLSearchHook is missing O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - H:\Program Files\TechSmith\SnagIt 7\SnagItBHO.dll O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - H:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - H:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - H:\PROGRA~1\SPYWAR~2\tools\iesdsg.dll (file missing) O2 - BHO: LostGoggles plug-in (web site preview snapshots - www.lostgoggles.com) - {6291957C-8CE9-4c90-BEFF-12D9E68CFF30} - H:\Program Files\LostGoggles\LGoggles.dll O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - (no file) O2 - BHO: Google Desktop Search Capture - {7c1ce531-09e9-4fc5-9803-1c2956615786} - H:\Program Files\Google\Google Desktop Search\GoogleDesktopIE.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - h:\program files\google\googletoolbar1.dll O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - H:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - H:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - h:\program files\google\googletoolbar1.dll O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - H:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_19_0.dll O3 - Toolbar: (no name) - {724d43a0-0d85-11d4-9908-00400523e39a} - (no file) O3 - Toolbar: (no name) - {FF284F5C-7CF9-4682-8701-D467C1DBB99F} - (no file) O3 - Toolbar: Systran40premi.IEPlugIn - {CFB25594-4D5F-11D6-AB7B-00B0D094B576} - H:\Program Files\Systran\4_0\Premium\IEPlugIn.dll O3 - Toolbar: &Translator Internet - {8E4AA109-7239-4B85-8196-7377A53DDEFF} - H:\PROGRA~1\Antadis\TRANSL~1\DELPHI~1.DLL O3 - Toolbar: Furl Toolbar - {74E677D9-0F37-4654-85E9-02F36AA295EB} - H:\Program Files\Furl Toolbar\toolbar.dll O3 - Toolbar: SnagIt - {8FF5E183-ABDE-46EB-B09E-D2AAB95CABE3} - H:\Program Files\TechSmith\SnagIt 7\SnagItIEAddin.dll O3 - Toolbar: (no name) - {5F1ABCDB-A875-46c1-8345-B72A4567E486} - (no file) O4 - HKLM\..\Run: [HPDJ Taskbar Utility] H:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb07.exe O4 - HKLM\..\Run: [APVXDWIN] "H:\Program Files\Panda Software\Panda Antivirus Titanium\APVXDWIN.EXE" /s O4 - HKLM\..\Run: [zBrowser Launcher] H:\Program Files\Logitech\iTouch\iTouch.exe O4 - HKLM\..\Run: [NeroFilterCheck] H:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [inkSaver] H:\Program Files\InkSaver\InkSaver.exe hide O4 - HKLM\..\Run: [XqFKigGR] H:\WINDOWS\xhngxg.exe O4 - HKLM\..\Run: [sais] h:\program files\180solutions\sais.exe O4 - HKLM\..\Run: [nab] H:\WINDOWS\nab.exe O4 - HKLM\..\Run: [sAHAgent] H:\WINDOWS\system32\SahAgent.exe O4 - HKLM\..\Run: [iST Service] H:\Program Files\ISTsvc\istsvc.exe O4 - HKLM\..\Run: [WebRebates0] "H:\Program Files\Web_Rebates\WebRebates0.exe" O4 - HKCU\..\Run: [skype] "H:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKCU\..\Run: [Gestionnaire Antidote.exe] H:\Program Files\Druide\Antidote\Antidote\Gestionnaire Antidote.exe O4 - HKCU\..\Run: [DriveLED] H:\Program Files\OO Software\DriveLED\oodled.exe O4 - HKCU\..\Run: [superCopier.exe] H:\Program Files\SuperCopier\SuperCopier.exe O4 - HKCU\..\Run: [ctfmon.exe] H:\WINDOWS\system32\ctfmon.exe O4 - Global Startup: Adobe Gamma Loader.lnk = H:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: hpoddt01.exe.lnk = ? O4 - Global Startup: InterVideo WinCinema Manager.lnk = H:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe O8 - Extra context menu item: Web Rebates - file://H:\Program Files\Web_Rebates\Sy1150\Tp1150\scri1150a.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\WINDOWS\System32\msjava.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - H:\WINDOWS\System32\msjava.dll O9 - Extra button: Remplir - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra 'Tools' menuitem: Remplir &$ - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra button: Enregistrer - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra 'Tools' menuitem: Enregistrer &[ - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra button: Barre RF - {724d43aa-0d85-11d4-9908-00400523e39a} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra 'Tools' menuitem: Barre RF &2 - {724d43aa-0d85-11d4-9908-00400523e39a} - H:\WINDOWS\System32\shdocvw.dll O9 - Extra button: Traduction - {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} - (no file) O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - H:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: Organise-notes - {9455301C-CF6B-11D3-A266-00C04F689C50} - H:\Program Files\Fichiers communs\Microsoft Shared\Encarta Researcher\EROPROJ.DLL O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - H:\Program Files\Fichiers communs\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - H:\Program Files\Messenger\msmsgs.exe O9 - Extra button: Flash2X Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra 'Tools' menuitem: &Launch Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra button: Traduction - {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra 'Tools' menuitem: Traduire - {7A2EFD41-E6B3-11D2-89E3-00E0292EE574} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra button: (no name) - {7A2EFD41-E6B3-11D2-89E3-00E0292EE575} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra 'Tools' menuitem: Personnaliser les options de traduction - {7A2EFD41-E6B3-11D2-89E3-00E0292EE575} - H:\WINDOWS\System32\shdocvw.dll (HKCU) O9 - Extra button: Correcteur - {F7C8E5F6-B6D1-45db-8D91-2BCFA5DF11A9} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote K - IE 6.htm (HKCU) O9 - Extra button: Dictionnaire - {FB4AE6A3-EE20-442c-9189-251885352358} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote D - IE 6.htm (HKCU) O9 - Extra button: Synonymes - {FDD637F8-2693-49ce-817E-1AD59574900C} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote S - IE 6.htm (HKCU) O9 - Extra button: Conjugueur - {FF229BEC-9E1F-48c1-99A6-AF34ABEFAB0A} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote C - IE 6.htm (HKCU) O9 - Extra button: Grammaire - {FFB5EE7F-726F-423e-83C2-572FE7CEB3F0} - H:\PROGRA~1\Druide\Antidote\Antidote\Internet Explorer\6\Antidote G - IE 6.htm (HKCU) O16 - DPF: {42F2D240-B23C-11D6-8C73-70A05DC10000} - http://www.oyunfabrikasi.com/be/2/060208be.exe O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://www.ofoto.fr/downloads/BUM/BUM_WIN_IE_1/axofupld.cab O17 - HKLM\System\CCS\Services\Tcpip\..\{693ABF77-EC68-4E1C-B23E-91C75CF90394}: NameServer = 62.235.14.4 62.235.13.199 O23 - Service: Acronis Scheduler2 Service - Acronis - H:\Program Files\Fichiers communs\Acronis\Schedule2\schedul2.exe O23 - Service: Adobe LM Service - Unknown - H:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Adobe Active File Monitor - Unknown - H:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsFileAgent.exe O23 - Service: Ati HotKey Poller - Unknown - H:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown - H:\WINDOWS\system32\ati2sgag.exe O23 - Service: Service d'administration du Gestionnaire de disque logique - Unknown - H:\WINDOWS\System32\dmadmin.exe O23 - Service: Journal des événements - Unknown - H:\WINDOWS\system32\services.exe O23 - Service: GEARSecurity - GEAR Software - H:\WINDOWS\System32\GEARSec.exe O23 - Service: iPod Service - Apple Computer, Inc. - H:\Program Files\iPod\bin\iPodService.exe O23 - Service: Kodak Camera Connection Software - Eastman Kodak Company - H:\WINDOWS\system32\drivers\KodakCCS.exe O23 - Service: Logitech Easy Synchronization - Unknown - H:\Program Files\Logitech\Easy Synchronization\servicestub.exe O23 - Service: Partage de Bureau à distance NetMeeting - Unknown - H:\WINDOWS\System32\mnmsrvc.exe O23 - Service: O&O Defrag - O&O Software GmbH - H:\WINDOWS\System32\oodag.exe O23 - Service: Panda Process Protection Service - Panda Software - (no file) O23 - Service: Panda anti-virus service - Unknown - H:\Program Files\Panda Software\Panda Antivirus Titanium\Pavsrv51.exe O23 - Service: PCTEL Speaker Phone - Unknown - H:\WINDOWS\system32\pctspk.exe O23 - Service: Photoshop Elements Device Connect - Unknown - H:\Program Files\Adobe\Photoshop Elements 3.0\PhotoshopElementsDeviceConnect.exe O23 - Service: Plug-and-Play - Unknown - H:\WINDOWS\system32\services.exe O23 - Service: Ql1sramrts_g - Sonic Solutions - (no file) O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance - Unknown - H:\WINDOWS\system32\sessmgr.exe O23 - Service: Sandra Data Service - SiSoftware - H:\Program Files\SiSoftware\SiSoftware Sandra Professionnel 2005\RpcDataSrv.exe O23 - Service: Sandra Service - SiSoftware - H:\Program Files\SiSoftware\SiSoftware Sandra Professionnel 2005\RpcSandraSrv.exe O23 - Service: Carte à puce - Unknown - H:\WINDOWS\System32\SCardSvr.exe O23 - Service: ScsiAccess - Unknown - H:\Program Files\Photodex\ProShowGold\ScsiAccess.exe O23 - Service: Sitekeeper Server - Executive Software International, Inc. - H:\Program Files\Executive Software\Sitekeeper\Sitekeeper Server\SKeeper.exe O23 - Service: Journaux et alertes de performance - Unknown - H:\WINDOWS\system32\smlogsvc.exe O23 - Service: TuneUp WinStyler Theme Service - TuneUp Software GmbH - H:\Program Files\TuneUp Utilities 2004\WinStylerThemeSvc.exe O23 - Service: Virtual CD v6 Management Service - H+H Software GmbH - H:\Program Files\HHVcdV6Sys\VC6SecS.exe O23 - Service: Cliché instantané de volume - Unknown - H:\WINDOWS\System32\vssvc.exe O23 - Service: Carte de performance WMI - Unknown - H:\WINDOWS\System32\wbem\wmiapsrv.exe Encore MERCI d'une aide que je sais, à l'avance précieuse.