Aller au contenu

capsverso

Membres
  • Compteur de contenus

    11
  • Inscription

  • Dernière visite

Autres informations

  • Mes langues
    français espagnol

capsverso's Achievements

Junior Member

Junior Member (3/12)

0

Réputation sur la communauté

  1. donc que voilà il parait que j'ai chopé des virus, pour tant j'utilise bitdefender 9 profesionel plus. Je comprend pas.Pendant que je fesais l'annalyse il me prevennais pour les virus en me disant que le virus etait bloqué et que mon systeme etait protegée. KASPERSKY ON-LINE SCANNER REPORT Friday, October 27, 2006 12:49:06 AM Système d'exploitation : Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600) Kaspersky On-line Scanner version : 5.0.83.0 Dernière mise à jour de la base antivirus Kaspersky : 27/10/2006 Enregistrements dans la base antivirus Kaspersky : 221840 Paramètres d'analyse Analyser avec la base antivirus suivante standard Analyser les archives vrai Analyser les bases de messagerie vrai Cible de l'analyse Poste de travail A:\ C:\ D:\ E:\ F:\ G:\ H:\ I:\ J:\ Statistiques de l'analyse Total d'objets analysés 101778 Nombre de virus trouvés 1 Nombre d'objets infectés 4 / 0 Nombre d'objets suspects 0 Durée de l'analyse 01:08:41 Nom de l'objet infecté Nom du virus Dernière action C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat L'objet est verrouillé ignoré C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat L'objet est verrouillé ignoré C:\Documents and Settings\Isal\Cookies\index.dat L'objet est verrouillé ignoré C:\Documents and Settings\Isal\Local Settings\Application Data\Identities\{AA4467E6-F8AC-4AE6-903E-37EEABC87E6D}\Microsoft\Outlook Express\Éléments supprimés.dbx/[From "Sanches" ][Date Thu, 22 Dec 2005 18:15:44 +0100]/UNNAMED/Susanna.zip/DFC00027.exe Infecté : Trojan-Downloader.Win32.Bagle.l ignoré C:\Documents and Settings\Isal\Local Settings\Application Data\Identities\{AA4467E6-F8AC-4AE6-903E-37EEABC87E6D}\Microsoft\Outlook Express\Éléments supprimés.dbx/[From "Sanches" ][Date Thu, 22 Dec 2005 18:15:44 +0100]/UNNAMED/Susanna.zip Infecté : Trojan-Downloader.Win32.Bagle.l ignoré C:\Documents and Settings\Isal\Local Settings\Application Data\Identities\{AA4467E6-F8AC-4AE6-903E-37EEABC87E6D}\Microsoft\Outlook Express\Éléments supprimés.dbx/[From "Sanches" ][Date Thu, 22 Dec 2005 18:15:44 +0100]/UNNAMED Infecté : Trojan-Downloader.Win32.Bagle.l ignoré C:\Documents and Settings\Isal\Local Settings\Application Data\Identities\{AA4467E6-F8AC-4AE6-903E-37EEABC87E6D}\Microsoft\Outlook Express\Éléments supprimés.dbx Mail MS Outlook 5: infecté - 3 ignoré C:\Documents and Settings\Isal\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré C:\Documents and Settings\Isal\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré C:\Documents and Settings\Isal\Local Settings\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\Cache\32062957d01 L'objet est verrouillé ignoré C:\Documents and Settings\Isal\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré C:\Documents and Settings\Isal\Local Settings\Temp\fmi10ee1.exe L'objet est verrouillé ignoré C:\Documents and Settings\Isal\Local Settings\Temp\nsr6A.tmp\YazzleBundle-1220.exe L'objet est verrouillé ignoré C:\Documents and Settings\Isal\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré C:\Documents and Settings\Isal\ntuser.dat L'objet est verrouillé ignoré C:\Documents and Settings\Isal\ntuser.dat.LOG L'objet est verrouillé ignoré C:\Documents and Settings\LocalService\Cookies\index.dat L'objet est verrouillé ignoré C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré C:\Documents and Settings\LocalService\NTUSER.DAT L'objet est verrouillé ignoré C:\Documents and Settings\LocalService\ntuser.dat.LOG L'objet est verrouillé ignoré C:\Documents and Settings\NetworkService\Cookies\index.dat L'objet est verrouillé ignoré C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat L'objet est verrouillé ignoré C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG L'objet est verrouillé ignoré C:\Documents and Settings\NetworkService\Local Settings\Historique\History.IE5\index.dat L'objet est verrouillé ignoré C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\index.dat L'objet est verrouillé ignoré C:\Documents and Settings\NetworkService\NTUSER.DAT L'objet est verrouillé ignoré C:\Documents and Settings\NetworkService\ntuser.dat.LOG L'objet est verrouillé ignoré C:\Program Files\Softwin\BitDefender9\asdict.dat L'objet est verrouillé ignoré C:\Program Files\Softwin\BitDefender9\aspdict.dat L'objet est verrouillé ignoré C:\System Volume Information\MountPointManagerRemoteDatabase L'objet est verrouillé ignoré C:\System Volume Information\_restore{4CB1D558-D11D-4C16-874B-96910B0CF6C4}\RP228\change.log L'objet est verrouillé ignoré C:\WINDOWS\Debug\PASSWD.LOG L'objet est verrouillé ignoré C:\WINDOWS\SchedLgU.Txt L'objet est verrouillé ignoré C:\WINDOWS\SoftwareDistribution\ReportingEvents.log L'objet est verrouillé ignoré C:\WINDOWS\Sti_Trace.log L'objet est verrouillé ignoré C:\WINDOWS\system32\CatRoot2\edb.log L'objet est verrouillé ignoré C:\WINDOWS\system32\CatRoot2\tmp.edb L'objet est verrouillé ignoré C:\WINDOWS\system32\config\AppEvent.Evt L'objet est verrouillé ignoré C:\WINDOWS\system32\config\default L'objet est verrouillé ignoré C:\WINDOWS\system32\config\default.LOG L'objet est verrouillé ignoré C:\WINDOWS\system32\config\SAM L'objet est verrouillé ignoré C:\WINDOWS\system32\config\SAM.LOG L'objet est verrouillé ignoré C:\WINDOWS\system32\config\SecEvent.Evt L'objet est verrouillé ignoré C:\WINDOWS\system32\config\SECURITY L'objet est verrouillé ignoré C:\WINDOWS\system32\config\SECURITY.LOG L'objet est verrouillé ignoré C:\WINDOWS\system32\config\software L'objet est verrouillé ignoré C:\WINDOWS\system32\config\software.LOG L'objet est verrouillé ignoré C:\WINDOWS\system32\config\SysEvent.Evt L'objet est verrouillé ignoré C:\WINDOWS\system32\config\system L'objet est verrouillé ignoré C:\WINDOWS\system32\config\system.LOG L'objet est verrouillé ignoré C:\WINDOWS\system32\h323log.txt L'objet est verrouillé ignoré C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR L'objet est verrouillé ignoré C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP L'objet est verrouillé ignoré C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER L'objet est verrouillé ignoré C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP L'objet est verrouillé ignoré C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP L'objet est verrouillé ignoré C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA L'objet est verrouillé ignoré C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP L'objet est verrouillé ignoré C:\WINDOWS\Temp\tmp00006140\tmp00000000 L'objet est verrouillé ignoré C:\WINDOWS\wiadebug.log L'objet est verrouillé ignoré C:\WINDOWS\wiaservc.log L'objet est verrouillé ignoré C:\WINDOWS\WindowsUpdate.log L'objet est verrouillé ignoré Analyse terminée.
  2. Bonjour, et encore merci. depuis que j'ai supprimé les fichiers j'ai plus des fenêtre su EI c genial. HijackThis v1.99.1 Scan saved at 23:25:23, on 26/10/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\WINDOWS\system32\HPZipm12.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Inventel\Gateway\wlancfg.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\svchost.exe C:\progra~1\softwin\bitdef~1\bdnagent.exe C:\progra~1\softwin\bitdef~1\bdswitch.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe C:\Program Files\Softwin\BitDefender9\vsserv.exe c:\progra~1\softwin\bitdef~1\bdmcon.exe C:\Program Files\Wanadoo\EspaceWanadoo.exe C:\Program Files\Wanadoo\ComComp.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\Program Files\Wanadoo\Watch.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Hijackthis Version Française\capsverso.EXE R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://home.fr.netscape.com/fr/home/winsearch.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.fr.netscape.com/fr/home/winsearch200.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://home.fr.netscape.com/fr/home/winsearch.html R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.fr.netscape.com/fr/ R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O4 - HKLM\..\Run: [bDMCon] c:\progra~1\softwin\bitdef~1\bdmcon.exe O4 - HKLM\..\Run: [bDNewsAgent] "c:\progra~1\softwin\bitdef~1\bdnagent.exe" O4 - HKLM\..\Run: [bDSwitchAgent] "c:\progra~1\softwin\bitdef~1\bdswitch.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?fba2f887cce34f5d9232b9a470bde721 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?fba2f887cce34f5d9232b9a470bde721 O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU) O14 - IERESET.INF: START_PAGE_URL=http://www.wanadoo.fr O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://isaldina.spaces.msn.com//PhotoUpload/MsnPUpld.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {FD40EC41-D860-4579-8BA4-52671A45C71C} (AxHtChat Class) - http://images.goa.com/it/Woo2/fr/chat/nPaxChat.cab O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing) O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing) O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner - C:\NORMAN\Nvc\BIN\nipsvc.exe (file missing) O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender9\vsserv.exe" /service (file missing) O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing)
  3. Logfile of HijackThis v1.99.1 Scan saved at 23:25:55, on 25/10/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\WINDOWS\system32\HPZipm12.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Inventel\Gateway\wlancfg.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\progra~1\softwin\bitdef~1\bdnagent.exe C:\progra~1\softwin\bitdef~1\bdswitch.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Mozilla Firefox 2 Beta 1\firefox.exe C:\Program Files\eMule\emule.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe C:\Program Files\Softwin\BitDefender9\vsserv.exe c:\progra~1\softwin\bitdef~1\bdmcon.exe C:\Program Files\Wanadoo\EspaceWanadoo.exe C:\Program Files\Wanadoo\ComComp.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\Program Files\Wanadoo\Watch.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Hijackthis Version Française\capsverso.EXE R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://home.fr.netscape.com/fr/home/winsearch.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.fr.netscape.com/fr/home/winsearch200.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://home.fr.netscape.com/fr/home/winsearch.html R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.fr.netscape.com/fr/ R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O4 - HKLM\..\Run: [jtwubvp] c:\windows\system32\jtwubvp.exe jtwubvp O4 - HKLM\..\Run: [bDMCon] c:\progra~1\softwin\bitdef~1\bdmcon.exe O4 - HKLM\..\Run: [bDNewsAgent] "c:\progra~1\softwin\bitdef~1\bdnagent.exe" O4 - HKLM\..\Run: [bDSwitchAgent] "c:\progra~1\softwin\bitdef~1\bdswitch.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?fba2f887cce34f5d9232b9a470bde721 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?fba2f887cce34f5d9232b9a470bde721 O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU) O14 - IERESET.INF: START_PAGE_URL=http://www.wanadoo.fr O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://isaldina.spaces.msn.com//PhotoUpload/MsnPUpld.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {FD40EC41-D860-4579-8BA4-52671A45C71C} (AxHtChat Class) - http://images.goa.com/it/Woo2/fr/chat/nPaxChat.cab O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing) O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing) O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner - C:\NORMAN\Nvc\BIN\nipsvc.exe (file missing) O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender9\vsserv.exe" /service (file missing) O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing)
  4. AVG Anti-Spyware - Rapport d'analyse --------------------------------------------------------- + Créé à: 23:02:01 22/10/2006 + Résultat de l'analyse: C:\System Volume Information\_restore{4CB1D558-D11D-4C16-874B-96910B0CF6C4}\RP225\A0084192.exe -> Adware.NewDotNet : Nettoyé. C:\System Volume Information\_restore{4CB1D558-D11D-4C16-874B-96910B0CF6C4}\RP227\A0085488.exe -> Adware.NewDotNet : Nettoyé. C:\Documents and Settings\Isal\Mes documents\sanches\BookwormFRSetup-dm.exe -> Adware.Trymedia : Nettoyé. C:\System Volume Information\_restore{4CB1D558-D11D-4C16-874B-96910B0CF6C4}\RP215\A0071092.dll -> Adware.Ucmore : Nettoyé. C:\System Volume Information\_restore{4CB1D558-D11D-4C16-874B-96910B0CF6C4}\RP215\A0071093.dll -> Adware.Ucmore : Nettoyé. :mozilla.275:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé. :mozilla.276:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé. :mozilla.29:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé. :mozilla.30:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé. :mozilla.31:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé. :mozilla.32:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé. C:\Documents and Settings\Invité\Cookies\invité@247realmedia[1].txt -> TrackingCookie.247realmedia : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\sanches@247realmedia[2].txt -> TrackingCookie.247realmedia : Nettoyé. :mozilla.406:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé. :mozilla.545:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé. :mozilla.65:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé. :mozilla.67:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.2o7 : Nettoyé. C:\Documents and Settings\Invité\Cookies\invité@2o7[1].txt -> TrackingCookie.2o7 : Nettoyé. C:\Documents and Settings\Isal\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\sanches@2o7[1].txt -> TrackingCookie.2o7 : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Nettoyé. :mozilla.197:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé. :mozilla.200:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé. :mozilla.174:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé. :mozilla.175:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé. :mozilla.78:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé. :mozilla.79:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé. :mozilla.80:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé. :mozilla.81:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé. :mozilla.82:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Adtech : Nettoyé. C:\Documents and Settings\Isal\Cookies\isal@adtech[2].txt -> TrackingCookie.Adtech : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\sanches@adtech[2].txt -> TrackingCookie.Adtech : Nettoyé. :mozilla.133:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé. :mozilla.134:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé. :mozilla.135:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé. :mozilla.136:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé. :mozilla.137:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé. :mozilla.137:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé. :mozilla.138:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé. :mozilla.139:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé. :mozilla.140:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé. C:\Documents and Settings\Isal\Cookies\isal@advertising[1].txt -> TrackingCookie.Advertising : Nettoyé. :mozilla.211:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyé. :mozilla.49:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Atdmt : Nettoyé. C:\Documents and Settings\Invité\Cookies\invité@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyé. C:\Documents and Settings\Isal\Cookies\isal@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyé. :mozilla.28:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé. :mozilla.393:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé. :mozilla.40:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé. :mozilla.519:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé. C:\Documents and Settings\Isal\Cookies\isal@bluestreak[1].txt -> TrackingCookie.Bluestreak : Nettoyé. C:\Documents and Settings\Isal\Cookies\[email protected][1].txt -> TrackingCookie.Bluestreak : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\sanches@bluestreak[1].txt -> TrackingCookie.Bluestreak : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\[email protected][2].txt -> TrackingCookie.Bpath : Nettoyé. :mozilla.322:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Burstnet : Nettoyé. :mozilla.323:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Burstnet : Nettoyé. :mozilla.324:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Burstnet : Nettoyé. :mozilla.102:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé. :mozilla.103:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé. :mozilla.104:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé. :mozilla.106:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé. :mozilla.107:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé. :mozilla.108:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé. :mozilla.253:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé. :mozilla.254:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé. :mozilla.255:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé. :mozilla.256:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé. :mozilla.257:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé. :mozilla.258:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Casalemedia : Nettoyé. C:\Documents and Settings\Isal\Cookies\isal@casinopays[1].txt -> TrackingCookie.Casinopays : Nettoyé. C:\Documents and Settings\Isal\Cookies\[email protected][2].txt -> TrackingCookie.Casinopays : Nettoyé. C:\Documents and Settings\Isal\Cookies\isal@casinotropez[1].txt -> TrackingCookie.Casinotropez : Nettoyé. :mozilla.216:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Clickbank : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\sanches@com[1].txt -> TrackingCookie.Com : Nettoyé. :mozilla.367:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé. :mozilla.368:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé. :mozilla.369:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\[email protected][2].txt -> TrackingCookie.Comclick : Nettoyé. :mozilla.590:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Coremetrics : Nettoyé. :mozilla.24:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé. :mozilla.48:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé. :mozilla.57:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé. C:\Documents and Settings\Invité\Cookies\invité@doubleclick[1].txt -> TrackingCookie.Doubleclick : Nettoyé. C:\Documents and Settings\Isal\Cookies\isal@doubleclick[1].txt -> TrackingCookie.Doubleclick : Nettoyé. :mozilla.489:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Enhance : Nettoyé. :mozilla.11:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Estat : Nettoyé. :mozilla.285:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Estat : Nettoyé. C:\Documents and Settings\Invité\Cookies\invité@estat[1].txt -> TrackingCookie.Estat : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\sanches@estat[1].txt -> TrackingCookie.Estat : Nettoyé. :mozilla.155:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.156:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.157:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.158:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.208:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.209:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.210:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.211:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.212:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.292:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.293:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.294:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.295:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.296:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé. C:\Documents and Settings\Isal\Cookies\[email protected][2].txt -> TrackingCookie.Falkag : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\[email protected][2].txt -> TrackingCookie.Falkag : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\[email protected][2].txt -> TrackingCookie.Falkag : Nettoyé. :mozilla.105:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé. :mozilla.164:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé. :mozilla.165:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé. :mozilla.151:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.182:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.238:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.249:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.267:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.274:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.298:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.366:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.411:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.424:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.425:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.426:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.462:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.584:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Googleadservices : Nettoyé. :mozilla.196:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Hotlog : Nettoyé. :mozilla.50:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Ivwbox : Nettoyé. C:\Documents and Settings\Isal\Cookies\[email protected][2].txt -> TrackingCookie.Liveperson : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\[email protected][1].txt -> TrackingCookie.Liveperson : Nettoyé. :mozilla.101:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé. :mozilla.68:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé. C:\Documents and Settings\Isal\Cookies\isal@mediaplex[1].txt -> TrackingCookie.Mediaplex : Nettoyé. :mozilla.119:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Overture : Nettoyé. :mozilla.259:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Planetactive : Nettoyé. :mozilla.390:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Planetactive : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\[email protected][2].txt -> TrackingCookie.Planetactive : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\[email protected][2].txt -> TrackingCookie.Pointroll : Nettoyé. :mozilla.341:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Qksrv : Nettoyé. :mozilla.342:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Qksrv : Nettoyé. :mozilla.12:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Questionmarket : Nettoyé. :mozilla.13:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Questionmarket : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\sanches@questionmarket[2].txt -> TrackingCookie.Questionmarket : Nettoyé. :mozilla.146:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé. :mozilla.147:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé. :mozilla.148:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé. :mozilla.149:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé. :mozilla.150:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé. C:\Documents and Settings\Isal\Cookies\[email protected][2].txt -> TrackingCookie.Reliablestats : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\[email protected][2].txt -> TrackingCookie.Reliablestats : Nettoyé. :mozilla.18:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.19:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.20:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.21:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.22:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.23:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.41:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.42:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.43:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.44:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.45:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé. C:\Documents and Settings\Isal\Cookies\[email protected][1].txt -> TrackingCookie.Serving-sys : Nettoyé. C:\Documents and Settings\Isal\Cookies\isal@serving-sys[2].txt -> TrackingCookie.Serving-sys : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\sanches@serving-sys[1].txt -> TrackingCookie.Serving-sys : Nettoyé. :mozilla.577:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Sitestat : Nettoyé. :mozilla.578:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Sitestat : Nettoyé. :mozilla.579:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Sitestat : Nettoyé. :mozilla.134:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé. :mozilla.135:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé. :mozilla.136:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé. :mozilla.14:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé. :mozilla.15:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé. :mozilla.16:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé. :mozilla.17:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé. C:\Documents and Settings\Invité\Cookies\invité@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Nettoyé. C:\Documents and Settings\Isal\Cookies\[email protected][1].txt -> TrackingCookie.Smartadserver : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\sanches@smartadserver[1].txt -> TrackingCookie.Smartadserver : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\[email protected][2].txt -> TrackingCookie.Smartadserver : Nettoyé. :mozilla.101:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé. :mozilla.102:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé. :mozilla.103:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé. :mozilla.95:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé. :mozilla.96:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé. :mozilla.97:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé. :mozilla.98:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Statcounter : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\sanches@statcounter[2].txt -> TrackingCookie.Statcounter : Nettoyé. :mozilla.232:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Tacoda : Nettoyé. :mozilla.233:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Tacoda : Nettoyé. :mozilla.25:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé. :mozilla.26:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé. :mozilla.28:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé. :mozilla.29:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé. :mozilla.69:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé. :mozilla.71:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé. :mozilla.72:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé. :mozilla.73:C:\Documents and Settings\Isal\Application Data\Mozilla\Firefox\Profiles\gyns91a1.default\cookies.txt -> TrackingCookie.Tradedoubler : Nettoyé. C:\Documents and Settings\Isal\Cookies\isal@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\sanches@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Nettoyé. :mozilla.85:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Tribalfusion : Nettoyé. :mozilla.87:C:\Documents and Settings\SANCHES\Application Data\Mozilla\Firefox\Profiles\77dlguv0.default\cookies.txt -> TrackingCookie.Tribalfusion : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\[email protected][1].txt -> TrackingCookie.Tribalfusion : Nettoyé. C:\Documents and Settings\SANCHES\Cookies\sanches@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Nettoyé. C:\Documents and Settings\Isal\Cookies\[email protected][2].txt -> TrackingCookie.Valuead : Nettoyé.
  5. Voilà je tout fait mais c:\WINDOWS\system32\jtwubvp_nav.dat je ne l'ai pas trouvé. j'ai vu c:\WINDOWS\system32\jtwubvp.dat je l'ai pas supprime et je suivi tout le reste et voilà le raport d'AVG Je vois encore le fichier que je devais supprimer 10/22/06 18:33:52 [info]: BlackLight Engine 1.0.47 initialized 10/22/06 18:33:52 [info]: OS: 5.1 build 2600 (Service Pack 2) 10/22/06 18:33:52 [Note]: 7019 4 10/22/06 18:33:52 [Note]: 7005 0 10/22/06 18:33:57 [Note]: 7006 0 10/22/06 18:33:57 [Note]: 7011 348 10/22/06 18:33:57 [Note]: 7026 0 10/22/06 18:33:57 [Note]: 7026 0 10/22/06 18:33:57 [Note]: 7024 3 10/22/06 18:33:57 [info]: Hidden process: C:\windows\system32\jtwubvp.exe 10/22/06 18:33:57 [Note]: FSRAW library version 1.7.1020 10/22/06 18:40:12 [info]: Hidden file: c:\WINDOWS\Prefetch\JTWUBVP.EXE-0B22B5EA.pf 10/22/06 18:40:12 [Note]: 10002 1 10/22/06 18:40:54 [info]: Hidden file: c:\WINDOWS\system32\jtwubvp.dat 10/22/06 18:40:54 [Note]: 10002 1 10/22/06 18:40:54 [info]: Hidden file: C:\windows\system32\jtwubvp.exe 10/22/06 18:40:55 [Note]: 10002 1 10/22/06 18:40:56 [info]: Hidden file: c:\WINDOWS\system32\jtwubvp_nav.dat 10/22/06 18:40:56 [Note]: 10002 1 10/22/06 18:40:56 [info]: Hidden file: c:\WINDOWS\system32\jtwubvp_navps.dat 10/22/06 18:40:56 [Note]: 10002 1 10/22/06 18:48:32 [Note]: 7007 0
  6. voilà 10/22/06 18:33:52 [info]: BlackLight Engine 1.0.47 initialized 10/22/06 18:33:52 [info]: OS: 5.1 build 2600 (Service Pack 2) 10/22/06 18:33:52 [Note]: 7019 4 10/22/06 18:33:52 [Note]: 7005 0 10/22/06 18:33:57 [Note]: 7006 0 10/22/06 18:33:57 [Note]: 7011 348 10/22/06 18:33:57 [Note]: 7026 0 10/22/06 18:33:57 [Note]: 7026 0 10/22/06 18:33:57 [Note]: 7024 3 10/22/06 18:33:57 [info]: Hidden process: C:\windows\system32\jtwubvp.exe 10/22/06 18:33:57 [Note]: FSRAW library version 1.7.1020 10/22/06 18:40:12 [info]: Hidden file: c:\WINDOWS\Prefetch\JTWUBVP.EXE-0B22B5EA.pf 10/22/06 18:40:12 [Note]: 10002 1 10/22/06 18:40:54 [info]: Hidden file: c:\WINDOWS\system32\jtwubvp.dat 10/22/06 18:40:54 [Note]: 10002 1 10/22/06 18:40:54 [info]: Hidden file: C:\windows\system32\jtwubvp.exe 10/22/06 18:40:55 [Note]: 10002 1 10/22/06 18:40:56 [info]: Hidden file: c:\WINDOWS\system32\jtwubvp_nav.dat 10/22/06 18:40:56 [Note]: 10002 1 10/22/06 18:40:56 [info]: Hidden file: c:\WINDOWS\system32\jtwubvp_navps.dat 10/22/06 18:40:56 [Note]: 10002 1
  7. et la ça va? je debute avec tout ça Logfile of HijackThis v1.99.1 Scan saved at 18:18:49, on 22/10/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\HPZipm12.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Inventel\Gateway\wlancfg.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\progra~1\softwin\bitdef~1\bdnagent.exe C:\progra~1\softwin\bitdef~1\bdswitch.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe C:\Program Files\Softwin\BitDefender9\vsserv.exe c:\progra~1\softwin\bitdef~1\bdmcon.exe C:\Program Files\Wanadoo\EspaceWanadoo.exe C:\Program Files\Wanadoo\ComComp.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\Program Files\Wanadoo\Watch.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Hijackthis Version Française\capsverso.EXE R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://home.fr.netscape.com/fr/home/winsearch.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.fr.netscape.com/fr/home/winsearch200.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://home.fr.netscape.com/fr/home/winsearch.html R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.fr.netscape.com/fr/ R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O4 - HKLM\..\Run: [bDMCon] c:\progra~1\softwin\bitdef~1\bdmcon.exe O4 - HKLM\..\Run: [bDNewsAgent] "c:\progra~1\softwin\bitdef~1\bdnagent.exe" O4 - HKLM\..\Run: [bDSwitchAgent] "c:\progra~1\softwin\bitdef~1\bdswitch.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?fba2f887cce34f5d9232b9a470bde721 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?fba2f887cce34f5d9232b9a470bde721 O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU) O14 - IERESET.INF: START_PAGE_URL=http://www.wanadoo.fr O16 - DPF: {09C21411-B9A2-4DE6-8416-4E3B58577BE0} (France Telecom MDM ActiveX Control) - http://minitelweb.minitel.com/imin_data/ocx/MDM.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://isaldina.spaces.msn.com//PhotoUpload/MsnPUpld.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game04.zylom.com/activex/zylomgamesplayer.cab O16 - DPF: {CC05BC12-2AA2-4AC7-AC81-0E40F83B1ADF} (Live365Player Class) - http://www.live365.com/players/play365.cab O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/a...zylomloader.cab O16 - DPF: {FD40EC41-D860-4579-8BA4-52671A45C71C} (AxHtChat Class) - http://images.goa.com/it/Woo2/fr/chat/nPaxChat.cab O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing) O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing) O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner - C:\NORMAN\Nvc\BIN\nipsvc.exe (file missing) O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender9\vsserv.exe" /service (file missing) O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing) merci d'avoir repondu si vite!!
  8. salut je comprend rien, j'espere que cet fois ça va. Merci de ton aide Logfile of HijackThis v1.99.1 Scan saved at 17:37:30, on 22/10/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\HPZipm12.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Inventel\Gateway\wlancfg.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\progra~1\softwin\bitdef~1\bdnagent.exe C:\progra~1\softwin\bitdef~1\bdswitch.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe C:\Program Files\Softwin\BitDefender9\vsserv.exe c:\progra~1\softwin\bitdef~1\bdmcon.exe C:\Program Files\Wanadoo\EspaceWanadoo.exe C:\Program Files\Wanadoo\ComComp.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\Program Files\Wanadoo\Watch.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\WinRAR\WinRAR.exe C:\DOCUME~1\Isal\LOCALS~1\Temp\Rar$EX06.594\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://home.fr.netscape.com/fr/home/winsearch.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.fr.netscape.com/fr/home/winsearch200.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://home.fr.netscape.com/fr/home/winsearch.html R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.fr.netscape.com/fr/ R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O4 - HKLM\..\Run: [bDMCon] c:\progra~1\softwin\bitdef~1\bdmcon.exe O4 - HKLM\..\Run: [bDNewsAgent] "c:\progra~1\softwin\bitdef~1\bdnagent.exe" O4 - HKLM\..\Run: [bDSwitchAgent] "c:\progra~1\softwin\bitdef~1\bdswitch.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?fba2f887cce34f5d9232b9a470bde721 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?fba2f887cce34f5d9232b9a470bde721 O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU) O14 - IERESET.INF: START_PAGE_URL=http://www.wanadoo.fr O16 - DPF: {09C21411-B9A2-4DE6-8416-4E3B58577BE0} (France Telecom MDM ActiveX Control) - http://minitelweb.minitel.com/imin_data/ocx/MDM.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://isaldina.spaces.msn.com//PhotoUpload/MsnPUpld.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game04.zylom.com/activex/zylomgamesplayer.cab O16 - DPF: {CC05BC12-2AA2-4AC7-AC81-0E40F83B1ADF} (Live365Player Class) - http://www.live365.com/players/play365.cab O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/a...zylomloader.cab O16 - DPF: {FD40EC41-D860-4579-8BA4-52671A45C71C} (AxHtChat Class) - http://images.goa.com/it/Woo2/fr/chat/nPaxChat.cab O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing) O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing) O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner - C:\NORMAN\Nvc\BIN\nipsvc.exe (file missing) O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender9\vsserv.exe" /service (file missing) O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing)
  9. ça y est! j'espereLogfile of HijackThis v1.99.1 Scan saved at 21:34:10, on 20/10/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\HPZipm12.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Inventel\Gateway\wlancfg.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\progra~1\softwin\bitdef~1\bdnagent.exe C:\progra~1\softwin\bitdef~1\bdswitch.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe C:\Program Files\Softwin\BitDefender9\vsserv.exe c:\progra~1\softwin\bitdef~1\bdmcon.exe C:\Program Files\Wanadoo\EspaceWanadoo.exe C:\Program Files\Wanadoo\ComComp.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\Program Files\Wanadoo\Watch.exe C:\Program Files\WinRAR\WinRAR.exe C:\DOCUME~1\Isal\LOCALS~1\Temp\Rar$EX00.516\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://home.fr.netscape.com/fr/home/winsearch.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.fr.netscape.com/fr/home/winsearch200.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://home.fr.netscape.com/fr/home/winsearch.html R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.fr.netscape.com/fr/ R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O4 - HKLM\..\Run: [bDMCon] c:\progra~1\softwin\bitdef~1\bdmcon.exe O4 - HKLM\..\Run: [bDNewsAgent] "c:\progra~1\softwin\bitdef~1\bdnagent.exe" O4 - HKLM\..\Run: [bDSwitchAgent] "c:\progra~1\softwin\bitdef~1\bdswitch.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?fba2f887cce34f5d9232b9a470bde721 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?fba2f887cce34f5d9232b9a470bde721 O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU) O14 - IERESET.INF: START_PAGE_URL=http://www.wanadoo.fr O16 - DPF: {09C21411-B9A2-4DE6-8416-4E3B58577BE0} (France Telecom MDM ActiveX Control) - http://minitelweb.minitel.com/imin_data/ocx/MDM.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://isaldina.spaces.msn.com//PhotoUpload/MsnPUpld.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game04.zylom.com/activex/zylomgamesplayer.cab O16 - DPF: {CC05BC12-2AA2-4AC7-AC81-0E40F83B1ADF} (Live365Player Class) - http://www.live365.com/players/play365.cab O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/a...zylomloader.cab O16 - DPF: {FD40EC41-D860-4579-8BA4-52671A45C71C} (AxHtChat Class) - http://images.goa.com/it/Woo2/fr/chat/nPaxChat.cab O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing) O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing) O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner - C:\NORMAN\Nvc\BIN\nipsvc.exe (file missing) O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender9\vsserv.exe" /service (file missing) O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing) que ça va aller
  10. J'attends les experts... Moi je comprends rien. S'il vous plait
  11. salut je besoin d'aide depuis quelque temps j'ai des probleme avec EI, des foi il m'indique une erreur et quil doit fermer et envoyer un raport. En plus je suis vraiment embêté à couse des fenêtre qui s'ouvre seul evec des messages win antivirus pro 2006 ou autre sites, par example www.moDdplanet.cpm. J'ai un antivirus Bitdefender9 professional plus et windows xp sp2. j'ai fait hijacthis et j'ai ça: Tout aide serait le bien venue MERCI Logfile of HijackThis v1.99.1 Scan saved at 00:13:06, on 12/10/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\HPZipm12.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Inventel\Gateway\wlancfg.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\progra~1\softwin\bitdef~1\bdnagent.exe C:\WINDOWS\System32\svchost.exe C:\progra~1\softwin\bitdef~1\bdswitch.exe C:\Program Files\QuickTime\qttask.exe C:\WINDOWS\system32\ctfmon.exe C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe C:\PROGRA~1\Wanadoo\ComComp.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\PROGRA~1\Wanadoo\PollingModule.exe C:\PROGRA~1\Wanadoo\Watch.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\SANCHES\Local Settings\Temporary Internet Files\Content.IE5\ZZ5NJDWW\HijackThis[1].exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe C:\Program Files\Softwin\BitDefender9\vsserv.exe c:\progra~1\softwin\bitdef~1\bdmcon.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.wanadoo.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://home.fr.netscape.com/fr/home/winsearch.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.fr.netscape.com/fr/home/winsearch200.html R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://home.fr.netscape.com/fr/home/winsearch.html R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.fr.netscape.com/fr/ R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.fr/0SEFRFR/SAOS01?FORM=TOOLBR R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Barre d'outils MSN Search Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: Barre d'outils MSN Search - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O4 - HKLM\..\Run: [bDMCon] c:\progra~1\softwin\bitdef~1\bdmcon.exe O4 - HKLM\..\Run: [bDNewsAgent] "c:\progra~1\softwin\bitdef~1\bdnagent.exe" O4 - HKLM\..\Run: [bDSwitchAgent] "c:\progra~1\softwin\bitdef~1\bdswitch.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM= O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0000.1105\fr-fr\msntb.dll/search.htm O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/229?13cceb6946c0406cb581c5a2cb6b15b1 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\MSN Toolbar Suite\TAB\02.05.0000.1105\fr-fr\msntabres.dll/230?13cceb6946c0406cb581c5a2cb6b15b1 O14 - IERESET.INF: START_PAGE_URL=http://www.wanadoo.fr O16 - DPF: {09C21411-B9A2-4DE6-8416-4E3B58577BE0} (France Telecom MDM ActiveX Control) - http://minitelweb.minitel.com/imin_data/ocx/MDM.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/...nst20040510.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://isaldina.spaces.msn.com//PhotoUpload/MsnPUpld.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game04.zylom.com/activex/zylomgamesplayer.cab O16 - DPF: {CC05BC12-2AA2-4AC7-AC81-0E40F83B1ADF} (Live365Player Class) - http://www.live365.com/players/play365.cab O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/a...zylomloader.cab O16 - DPF: {FD40EC41-D860-4579-8BA4-52671A45C71C} (AxHtChat Class) - http://images.goa.com/it/Woo2/fr/chat/nPaxChat.cab O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe" /service (file missing) O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe O23 - Service: BitDefender Desktop Update Service (LIVESRV) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe" /service (file missing) O23 - Service: Norman API-hooking helper (NipSvc) - Unknown owner - C:\NORMAN\Nvc\BIN\nipsvc.exe (file missing) O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender9\vsserv.exe" /service (file missing) O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe O23 - Service: BitDefender Communicator (XCOMM) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe" /service (file missing)
×
×
  • Créer...