Aller au contenu

delphine05

Membres
  • Compteur de contenus

    185
  • Inscription

  • Dernière visite

Tout ce qui a été posté par delphine05

  1. attention a tous j'arrive bientot avec les problemes de l'ordinateur du reste de ma famille
  2. Mega il me semble que j;ai deja le yahoo mail checker... On m'a conseille de desinstaller FF et le re installer sans modification qu'e pense tu ?
  3. Bonjour Megataupe, J'espere que tu as passes un bon Noel et que le Pere Noel n;a pas oublie ton petit soulier . Pour en revenir a mon histoire de pieces jointes, j'ai essaye d'ouvrir ma boite mail depuis IE et je n'ai eu aucun probleme a attacher une piece jointe (une photo de 320 ko).... Cela m'est pas contre impossible lorsque je fais la meme operation en ouvrant yahoo depuis FF. J;ai surement du faire une boulette en faisnt la configuration de Firefox. Vois tu ou j'aurrai pu cocher ou decocher la mauvaise case ??? PS : j;ai essaye aussi d'ouvrir un autre compte comme tu me l'avais dit mais cela ne fonctionne pas non plus sous Firefox Merci de ton (votre) aide
  4. A mon tour de souhaiter a toute l'equipe de Zebulon et a nous pauvres neophites de l'informatique de Tres Joyeuses Fetes de fin d'Annee... Je vous envois pleins de bisous remplis de soleil Libanais pour vous rechauffer les pieds Bonne Annee 2006 Delphine
  5. Bonsoir Tornado, Médicus33 et Sacles et tous les autres... , Tu as raisin Tornado uand je parle "d'attachements" c'est effectivement de pieces jointes qu'il sagit. Lorsque j'attache un document ou une photo (120k) sur Yahoo en passant par IE ce message apparait : "allow sub-frames to navigate accross different domains" si je clic sur OK alors je peux joindre un fichier sans probleme a mon mail. Si je fais la meme operation mais sous FF alors rine ne se passe !!! Je veux bien desactiver adblock et noscript..... mais je ne sais pas se que c'est et j'en est honte LOL. Pourriez vous m'aider
  6. Bonjour, Suivant les conseils de Super Megataupe qui m'a enormement aider a nettoyer mon PC, j;ai installer Firefox. Mais depuis il m'est impossible d'attacher un document ou autres dossiers a mes mails (ni sur yahoo, ni sur hotmail) j;ai d'abord pense que c'etait un probleme de connection mais apres verification, tout va bien dans la connection. Aujourd'hui mon petit cerveau de Blonde a penser a verfier si cela passait sous IE et voila.... Ca passe sans probleme ... Donc pouriez vous me dire OU j;ai fait une boulette dans la configuration de Firefox SVP... Merci D'avance et Joyeux Noel. Delphine
  7. Bonjour a tous, En fait j'utilise hotmail.com et yahoo.com et aucun attachement ne passe sur les 2 !!! C'est pour ca que je me demandais si je n'avais pas pu bloquer quelque chose en faisant les reglages de l'ordinateur et en le nettoyant de ses malwares !!!! A moins que cela soit que Firefox bloque l'acces !!! ou encore es ce possible que cela vienne de ma connection.... En tout cas je suis bien embetee Merci d'avance de votre aide
  8. Non Car a ce que j;ai vu c'est un programme bloquant les messages indesirables et je n'en est pas LOL !!!
  9. Bonsoir Megataupe, J'ai un probleme IMPORTANT pour moi ! Il m'est impossible d'attacher de s documents ecrits ou photos a mes mails depuis que nous avons fait les manips.... Aurrai-je fait une betise en cochant une case quelque part qui bloquerai les attachements ??? J e ne sais pas mais la c'est une urgence sinon pas de cartes de voeux LOL !!!! Es ce que tu peux encore m'aider ?
  10. Et mon rapport Megataupe, il est bon ou pas ??? tu ne veux donc pas me le dire J'ai un autre petit souci .. je n'arrive plus a attacher des photos a mes mails. et je voudrais mettre le firefox en anglais.... comment puis je faire ? bisous bisous
  11. Bonjour Jack, Je suis au Liban.... Quand a mon fournisseur d'acces internet il est... libanais par cable ! et au liban tout n'est pas tres net !!! je ne sais donc pas ou il prend sa source LOL Et ceci est mon pc perso MEGATAUPE, je suis entrain de faire ZEBprotect
  12. VOILA JE VOUS ENVOIS UN PEU DE SOLEIL... vu que apparement ca caille en france Logfile of HijackThis v1.99.1 Scan saved at 10:21:37, on 15/12/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe C:\Program Files\Symantec AntiVirus\DefWatch.exe C:\Program Files\ewido\security suite\ewidoctrl.exe C:\Program Files\Analog Devices\SoundMAX\Smtray.exe C:\Program Files\Intel\Intel® Active Monitor\imontray.exe C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE C:\PROGRA~1\INTERN~2\MEDIAKEY.EXE C:\WINDOWS\system32\carpserv.exe C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe C:\WINDOWS\VM_STI.EXE C:\Program Files\Common Files\Symantec Shared\ccApp.exe C:\PROGRA~1\SYMANT~1\VPTray.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Yahoo!\Messenger\ypager.exe C:\PROGRA~1\INTERN~2\KBOSDCtl.EXE C:\PROGRA~1\INTERN~2\KCodeMsg.EXE C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE C:\WINDOWS\System32\svchost.exe C:\Program Files\Symantec AntiVirus\Rtvscan.exe C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\Program Files\Intel\Intel® Active Monitor\imonnt.exe C:\WINDOWS\system32\wscntfy.exe C:\ViaVoice\Bin\engine.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\WINDOWS\system32\NOTEPAD.EXE C:\Documents and Settings\Delphine\My Documents\DELPHINE\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.fastnetonline.com:8080 O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\Adobe\Acrobat Reader 5\Reader\ActiveX\AcroIEHelper.ocx O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll O4 - HKLM\..\Run: [smapp] C:\Program Files\Analog Devices\SoundMAX\Smtray.exe O4 - HKLM\..\Run: [iMONTRAY] C:\Program Files\Intel\Intel® Active Monitor\imontray.exe O4 - HKLM\..\Run: [MediaKey] C:\PROGRA~1\INTERN~2\MEDIAKEY.EXE O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [CARPService] carpserv.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [bigDogPath] C:\WINDOWS\VM_STI.EXE USB PC Camera 301P O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\YAHOO!\MESSEN~1\YPAGER.EXE O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\YAHOO!\MESSEN~1\YPAGER.EXE O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1133664264154 O17 - HKLM\System\CCS\Services\Tcpip\..\{25CD001B-45BD-44F3-9683-9B606019D49F}: NameServer = 190.102.1.1 O17 - HKLM\System\CCS\Services\Tcpip\..\{5F443BDA-896E-4564-98C0-FCD928390CAB}: NameServer = 82.198.15.242 82.198.15.242 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe O23 - Service: Intel® Active Monitor (imonNT) - Intel Corp. - C:\Program Files\Intel\Intel® Active Monitor\imonnt.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
  13. bonjour me revoilou....sorry probleme de mere... enfants malades etc qui m'a empechee de m'occuper du pc !! lol quand on vieilli les priorites changent . donc voici le rapport au momen t du ip conflict Rapport Cports au moment du IP conflict alg.exe 1788 TCP 3002 127.0.0.1 0.0.0.0 Listening C:\WINDOWS\System32\alg.exe Microsoft® Windows® Operating System Application Layer Gateway Service 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:28:00 PM ALG ccApp.exe 216 TCP 3010 127.0.0.1 0.0.0.0 Listening C:\Program Files\Common Files\Symantec Shared\ccApp.exe Common Client Common Client User Session 2.2.0.577 Symantec Corporation 12/7/2005 7:28:05 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 3118 0.0.0.0 0.0.0.0 Listening C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 4275 0.0.0.0 0.0.0.0 Listening C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 4636 0.0.0.0 0.0.0.0 Listening C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 4690 0.0.0.0 0.0.0.0 Listening C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 4755 0.0.0.0 0.0.0.0 Listening C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 4756 0.0.0.0 0.0.0.0 Listening C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 4275 10.100.204.212 80 http 84.53.142.9 Established C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 4636 10.100.204.212 80 http 84.53.142.9 Established C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 4690 10.100.204.212 80 http 84.53.142.9 Established C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 4755 10.100.204.212 80 http 195.154.195.181 fradvip2.doubleclick.net Established C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 4756 10.100.204.212 80 http 62.23.26.6 host.6.26.23.62.rev.coltfrance.com Last Ack C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 3117 127.0.0.1 0.0.0.0 Listening C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 3117 127.0.0.1 3118 127.0.0.1 localhost Established C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 3118 127.0.0.1 3117 127.0.0.1 localhost Established C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A lsass.exe 576 UDP 500 isakmp 0.0.0.0 C:\WINDOWS\system32\lsass.exe Microsoft® Windows® Operating System LSA Shell (Export Version) 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:48 PM NT AUTHORITY\SYSTEM PolicyAgent, ProtectedStorage, SamSs MsnMsgr.Exe 960 UDP 1027 127.0.0.1 C:\Program Files\MSN Messenger\MsnMsgr.Exe MSN Messenger MSN Messenger 7.5.0311 Microsoft Corporation 12/7/2005 7:28:17 PM PENTIUM4\Delphine A svchost.exe 740 TCP 135 epmap 0.0.0.0 0.0.0.0 Listening C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM RpcSs svchost.exe 792 TCP 1025 0.0.0.0 0.0.0.0 Listening C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 980 TCP 5000 0.0.0.0 0.0.0.0 Listening C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM LmHosts, RemoteRegistry, SSDPSRV, WebClient svchost.exe 792 TCP 3003 127.0.0.1 0.0.0.0 Listening C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 792 TCP 3004 127.0.0.1 0.0.0.0 Listening C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 740 UDP 135 epmap 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM RpcSs svchost.exe 792 UDP 1026 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 892 UDP 1028 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 1030 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 3001 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 3160 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 3161 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 3162 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 3163 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 3164 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 792 UDP 123 ntp 10.100.204.212 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 980 UDP 1900 10.100.204.212 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM LmHosts, RemoteRegistry, SSDPSRV, WebClient svchost.exe 792 UDP 2234 10.100.204.212 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 792 UDP 123 ntp 127.0.0.1 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 980 UDP 1900 127.0.0.1 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM LmHosts, RemoteRegistry, SSDPSRV, WebClient svchost.exe 792 UDP 2234 127.0.0.1 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 792 UDP 3008 127.0.0.1 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 792 UDP 123 ntp 192.168.0.112 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 980 UDP 1900 192.168.0.112 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM LmHosts, RemoteRegistry, SSDPSRV, WebClient System 4 TCP 445 microsoft-ds 0.0.0.0 0.0.0.0 Listening N/A System 4 TCP 1029 0.0.0.0 0.0.0.0 Listening N/A System 4 TCP 139 netbios-ssn 192.168.0.112 0.0.0.0 Listening N/A System 4 UDP 445 microsoft-ds 0.0.0.0 N/A System 4 UDP 137 netbios-ns 192.168.0.112 N/A System 4 UDP 138 netbios-dgm 192.168.0.112 N/A Unknown 0 TCP 4753 10.100.204.212 80 http 195.154.195.181 fradvip2.doubleclick.net Time Wait N/A Unknown 0 TCP 4758 10.100.204.212 80 http 12.130.12.31 Time Wait N/A Unknown 0 TCP 4759 10.100.204.212 80 http 62.23.26.6 host.6.26.23.62.rev.coltfrance.com Time Wait N/A ypager.exe 1032 TCP 3171 0.0.0.0 0.0.0.0 Listening C:\Program Files\Yahoo!\Messenger\ypager.exe 12/7/2005 8:19:32 PM PENTIUM4\Delphine A ypager.exe 1032 TCP 3179 0.0.0.0 0.0.0.0 Listening C:\Program Files\Yahoo!\Messenger\ypager.exe 12/7/2005 8:19:32 PM PENTIUM4\Delphine A ypager.exe 1032 TCP 5101 0.0.0.0 0.0.0.0 Listening C:\Program Files\Yahoo!\Messenger\ypager.exe 12/7/2005 8:19:32 PM PENTIUM4\Delphine A ypager.exe 1032 TCP 3171 10.100.204.212 5050 216.155.193.181 cs54.msg.dcn.yahoo.com Established C:\Program Files\Yahoo!\Messenger\ypager.exe 12/7/2005 8:19:32 PM PENTIUM4\Delphine A ypager.exe 1032 TCP 3179 10.100.204.212 443 https 68.142.233.161 sip16.voice.re2.yahoo.com Established C:\Program Files\Yahoo!\Messenger\ypager.exe 12/7/2005 8:19:32 PM PENTIUM4\Delphine A je vais maintenant lancer un rapport hijackthis et je te l'enverrai @ plus
  14. Mon tres cher Megataupe, Avant de te facher tout rouge contre moi LOL je dois te dire que (en bonne blonde que je suis !!) je t'ai mis le rapport hijakthis fait avant la mise a jour de windows..... j;i honte vraiment honte.... donc je pense que qu'il me faut donc fermer ma cession et te remettre le dernier rapport.. je ferais ca demain il est tard au Liban et ma famille me prie de lacher mon pc LOL A demain donc, si cela ne te derange pas. Bonne soiree
  15. bonsoir Jack et bonsoir Megataupe, voici donc le rapport Currports : alg.exe 1788 TCP 3002 127.0.0.1 0.0.0.0 Listening C:\WINDOWS\System32\alg.exe Microsoft® Windows® Operating System Application Layer Gateway Service 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:28:00 PM ALG ccApp.exe 216 TCP 3010 127.0.0.1 0.0.0.0 Listening C:\Program Files\Common Files\Symantec Shared\ccApp.exe Common Client Common Client User Session 2.2.0.577 Symantec Corporation 12/7/2005 7:28:05 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 3118 0.0.0.0 0.0.0.0 Listening C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 3168 0.0.0.0 0.0.0.0 Listening C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 3168 10.100.204.212 80 http 64.233.163.99 Established C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 3117 127.0.0.1 0.0.0.0 Listening C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 3117 127.0.0.1 3118 127.0.0.1 localhost Established C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A firefox.exe 3732 TCP 3118 127.0.0.1 3117 127.0.0.1 localhost Established C:\Program Files\Mozilla Firefox\firefox.exe Firefox Firefox 1.8: 2005111116 Mozilla Corporation 12/7/2005 8:13:09 PM PENTIUM4\Delphine A lsass.exe 576 UDP 500 isakmp 0.0.0.0 C:\WINDOWS\system32\lsass.exe Microsoft® Windows® Operating System LSA Shell (Export Version) 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:48 PM NT AUTHORITY\SYSTEM PolicyAgent, ProtectedStorage, SamSs MsnMsgr.Exe 960 TCP 3173 0.0.0.0 0.0.0.0 Listening C:\Program Files\MSN Messenger\MsnMsgr.Exe MSN Messenger MSN Messenger 7.5.0311 Microsoft Corporation 12/7/2005 7:28:17 PM PENTIUM4\Delphine A MsnMsgr.Exe 960 TCP 3176 0.0.0.0 0.0.0.0 Listening C:\Program Files\MSN Messenger\MsnMsgr.Exe MSN Messenger MSN Messenger 7.5.0311 Microsoft Corporation 12/7/2005 7:28:17 PM PENTIUM4\Delphine A MsnMsgr.Exe 960 TCP 3173 10.100.204.212 1863 207.46.6.93 baym-cs301.msgr.hotmail.com Established C:\Program Files\MSN Messenger\MsnMsgr.Exe MSN Messenger MSN Messenger 7.5.0311 Microsoft Corporation 12/7/2005 7:28:17 PM PENTIUM4\Delphine A MsnMsgr.Exe 960 TCP 3176 10.100.204.212 8080 82.198.15.242 proxy.fastnetonline.com Established C:\Program Files\MSN Messenger\MsnMsgr.Exe MSN Messenger MSN Messenger 7.5.0311 Microsoft Corporation 12/7/2005 7:28:17 PM PENTIUM4\Delphine A MsnMsgr.Exe 960 UDP 1027 127.0.0.1 C:\Program Files\MSN Messenger\MsnMsgr.Exe MSN Messenger MSN Messenger 7.5.0311 Microsoft Corporation 12/7/2005 7:28:17 PM PENTIUM4\Delphine A svchost.exe 740 TCP 135 epmap 0.0.0.0 0.0.0.0 Listening C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM RpcSs svchost.exe 792 TCP 1025 0.0.0.0 0.0.0.0 Listening C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 980 TCP 5000 0.0.0.0 0.0.0.0 Listening C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM LmHosts, RemoteRegistry, SSDPSRV, WebClient svchost.exe 792 TCP 3003 127.0.0.1 0.0.0.0 Listening C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 792 TCP 3004 127.0.0.1 0.0.0.0 Listening C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 740 TCP 135 epmap 192.168.0.112 1281 192.168.0.106 Established C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM RpcSs svchost.exe 740 UDP 135 epmap 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM RpcSs svchost.exe 792 UDP 1026 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 892 UDP 1028 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 1030 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 3001 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 3160 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 3161 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 3162 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 3163 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 892 UDP 3164 0.0.0.0 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM Dnscache svchost.exe 792 UDP 123 ntp 10.100.204.212 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 980 UDP 1900 10.100.204.212 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM LmHosts, RemoteRegistry, SSDPSRV, WebClient svchost.exe 792 UDP 2234 10.100.204.212 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 792 UDP 123 ntp 127.0.0.1 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 980 UDP 1900 127.0.0.1 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM LmHosts, RemoteRegistry, SSDPSRV, WebClient svchost.exe 792 UDP 2234 127.0.0.1 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 792 UDP 3008 127.0.0.1 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 792 UDP 123 ntp 192.168.0.112 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:50 PM NT AUTHORITY\SYSTEM AudioSrv, Browser, CryptSvc, Dhcp, dmserver, ERSvc, EventSystem, FastUserSwitchingCompatibility, helpsvc, lanmanserver, lanmanworkstation, Messenger, Netman, Nla, RasAuto svchost.exe 980 UDP 1900 192.168.0.112 C:\WINDOWS\system32\svchost.exe Microsoft® Windows® Operating System Generic Host Process for Win32 Services 5.1.2600.0 (xpclient.010817-1148) Microsoft Corporation 12/7/2005 7:27:51 PM LmHosts, RemoteRegistry, SSDPSRV, WebClient System 4 TCP 445 microsoft-ds 0.0.0.0 0.0.0.0 Listening N/A System 4 TCP 1029 0.0.0.0 0.0.0.0 Listening N/A System 4 TCP 139 netbios-ssn 192.168.0.112 0.0.0.0 Listening N/A System 4 UDP 445 microsoft-ds 0.0.0.0 N/A System 4 UDP 137 netbios-ns 192.168.0.112 N/A System 4 UDP 138 netbios-dgm 192.168.0.112 N/A ypager.exe 1032 TCP 3171 0.0.0.0 0.0.0.0 Listening C:\Program Files\Yahoo!\Messenger\ypager.exe 12/7/2005 8:19:32 PM PENTIUM4\Delphine A ypager.exe 1032 TCP 5101 0.0.0.0 0.0.0.0 Listening C:\Program Files\Yahoo!\Messenger\ypager.exe 12/7/2005 8:19:32 PM PENTIUM4\Delphine A ypager.exe 1032 TCP 3171 10.100.204.212 5050 216.155.193.181 cs54.msg.dcn.yahoo.com Established C:\Program Files\Yahoo!\Messenger\ypager.exe 12/7/2005 8:19:32 PM PENTIUM4\Delphine A ypager.exe 1032 UDP 3175 0.0.0.0 C:\Program Files\Yahoo!\Messenger\ypager.exe 12/7/2005 8:19:32 PM PENTIUM4\Delphine A ainsi que le rapport Hijakthis : Logfile of HijackThis v1.99.1 Scan saved at 19:26:02, on 07/12/2005 Platform: Windows XP (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\userinit.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpSvc.exe C:\Documents and Settings\Delphine\My Documents\DELPHINE\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.fastnetonline.com:8080 O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\Adobe\Acrobat Reader 5\Reader\ActiveX\AcroIEHelper.ocx O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll O4 - HKLM\..\Run: [smapp] C:\Program Files\Analog Devices\SoundMAX\Smtray.exe O4 - HKLM\..\Run: [iMONTRAY] C:\Program Files\Intel\Intel® Active Monitor\imontray.exe O4 - HKLM\..\Run: [MediaKey] C:\PROGRA~1\INTERN~2\MEDIAKEY.EXE O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [CARPService] carpserv.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe O4 - HKLM\..\Run: [bigDogPath] C:\WINDOWS\VM_STI.EXE USB PC Camera 301P O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\YAHOO!\MESSEN~1\YPAGER.EXE O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\YAHOO!\MESSEN~1\YPAGER.EXE O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1133664264154 O17 - HKLM\System\CCS\Services\Tcpip\..\{25CD001B-45BD-44F3-9683-9B606019D49F}: NameServer = 190.102.1.1 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe O23 - Service: Intel® Active Monitor (imonNT) - Intel Corp. - C:\Program Files\Intel\Intel® Active Monitor\imonnt.exe O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe merci beaucoup
  16. Pas des malwares mais des spywares (coockies ) sorry Nouveau Probleme.... un message de window disant que j;ai un conflit avec une autre adresse IP ????? Au secours PS : une question : si en ouvrant yahoo messenger on a un message comme quoi on est deja connecte sur un autre PC et que la secion va etre faermer... es ce que cela veut dire que la connection est Hijacked ??? car c'es ce qui arrive a mon pere en france (et lui ne connait absolunent rine en informatique !!! encore moins que moi....)
  17. Mon cher megataupe j'ai effectivement les onglets sauf : Fonctionnalite WEB qui est rem[lace par "contenu" et quand j'ouvre cet onglet, il n'y a pas ce donc tu me parle... Par contre, es ce normal que Firefox soit lent a ouvrir ? J;ai egalement toujours les 2 messages de norton pour infection par w32. explet et celui du spybot.... que fois faire. J;ai egalement refais un scan avec ewido qu m'a encore trouve 55 malwares .... es ce nornal ? dois je refaure un scan hijackthis ?
  18. Cher megataupe je n'ai pas de fonctionalite web !!!
  19. Impossible a telecharger aucun des 2, ils sont bloques par firefox !!!
  20. OUPS ps MSB mais MSN..... et peux tu egalement me dire comment changer la configuration de yahoo mail pour lancer firefox et pas ie quand je clic sur l'enveloppe Merci Megataupe
  21. Ben voila Megataupe.... je dring !!! Ce week end c'est bien passe ? es ce que tu peux me dire se que je dois faire comme configuration / sinon les pages sont assez lentes a ouvrir et surtout les images, icones ou autres smileys ... j;ai une overture egalement automatique de MSB aujourd'hui qui presente mes mails comme puis je faire pour que cela ne lance pas IE ... Merci
  22. ET VOILA Firefox telechrge et installer maintenant je vais aller voir si j'arrive a suivre les instructions de paparmetrage... par contre j;ai perdu mon robotform merci encore megataupe
  23. Ok j'ai lance l'update de windows (d'ailleur je ne savais absolument pas qu'il fallait effectue ume mise a jour !!! ) Dois-je m'inscire a la mise a jour automatique ? Sinon apparement tu preconises d'utiliser firefox !!! Es ce facile d'utilisation ? es ce que tu m'aideras pour faire le set up ? si oui je veux bien essayer car je ne suis pas trees calee en informatique comme tu l'as vu et l'inconnu me fait un peu peur
  24. Bonjour Bonjour es ce que Megataupe est leve ou es ce qu'il a bosse toute la nuit ??? C'est encore moi, j;ai de nouveau ce matin a l'ouverture de mon pc sans avoir encore ouvert la connection internet 2 messages d'infection, tojours avec les memes vers : Le w32.explet et Scan type: Auto-Protect Scan Event: Threat Found! Threat: W32.Spybot.Worm File: C:\WINDOWS\system32\f.exe Location: C:\WINDOWS\system32 Computer: PENTIUM4 User: SYSTEM Action taken: Clean failed : Quarantine failed : Delete succeeded : Access denied Date found: Saturday, December 03, 2005 9:21:39 AM Donc apres tout ce boulot d'hier ca continue.... arghhh ils sont solides ces trucs ! Sinon pour le truc TV ligne 17 es ce que tu veux que je contacte mon revrndeur inetrnet pour savoir ? Merci encore de ton aide Megataupe Je te paye un café virtuel ?
×
×
  • Créer...