Aller au contenu

S-P-Q-R

Membres
  • Compteur de contenus

    14
  • Inscription

  • Dernière visite

Profile Information

  • Sexe
    Male
  • Localisation
    provence

Autres informations

  • Mes langues
    francais

S-P-Q-R's Achievements

Junior Member

Junior Member (3/12)

0

Réputation sur la communauté

  1. bonjour, tout est rentré dans l'ordre. mille merci
  2. voici ce que la recherche a trouvé : --------------------\\ Lop S&D 4.2.5-0 XP/Vista Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3 X86-based PC ( Uniprocessor Free : AMD Athlon 64 Processor 3700+ ) BIOS : BIOS Date: 09/06/05 17:29:38 Ver: 08.00.12 USER : ROBERT ( Administrator ) BOOT : Normal boot Antivirus : AntiVirus Firewall 6.15 6.15 (Activated) Firewall : Norton Internet Security 2005 (Not Activated) C:\ (Local Disk) - NTFS - Total:29 Go (Free:17 Go) D:\ (Local Disk) - NTFS - Total:195 Go (Free:102 Go) E:\ (CD or DVD) F:\ (USB) G:\ (USB) H:\ (USB) I:\ (USB) J:\ (USB) - FAT - Total:1919 Mo (Free:1 Go) "C:\Lop SD" ( MAJ : 19-12-2008|23:40 ) Option : [1] ( 31/07/2009|18:37 ) --------------------\\ Listing des dossiers dans APPLIC~1 [16/04/2009|19:43] D:\DOCUME~1\ALLUSE~1\APPLIC~1\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F} [02/01/2009|10:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\2131C [28/07/2009|08:24] D:\DOCUME~1\ALLUSE~1\APPLIC~1\2E1A5 [01/02/2009|20:43] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe [01/02/2007|02:19] D:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL [28/01/2009|20:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\BCB [28/01/2006|21:06] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Ciel [29/07/2009|08:58] D:\DOCUME~1\ALLUSE~1\APPLIC~1\city about store file [08/02/2007|10:25] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink [29/07/2009|17:53] D:\DOCUME~1\ALLUSE~1\APPLIC~1\F-Secure [29/07/2009|18:48] D:\DOCUME~1\ALLUSE~1\APPLIC~1\fssg [28/07/2009|22:21] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Google [12/02/2006|20:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\HP [25/11/2008|19:44] D:\DOCUME~1\ALLUSE~1\APPLIC~1\HP Product Assistant [26/09/2008|07:54] D:\DOCUME~1\ALLUSE~1\APPLIC~1\IM [26/09/2008|07:53] D:\DOCUME~1\ALLUSE~1\APPLIC~1\IncrediMail [27/05/2008|20:35] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft [23/01/2009|10:52] D:\DOCUME~1\ALLUSE~1\APPLIC~1\LogiShrd [12/05/2008|19:58] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Logitech [21/05/2009|16:07] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes [07/06/2007|22:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus! [05/03/2009|12:20] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft [24/11/2005|17:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2 [17/03/2006|22:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime [24/11/2005|17:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI [29/07/2009|19:40] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Simply Super Software [08/07/2008|19:48] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Skyline [26/10/2008|19:59] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype [12/02/2006|20:03] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic [31/07/2009|18:34] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy [29/09/2008|18:15] D:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com [24/11/2005|17:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec [31/07/2009|18:34] D:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP [27/01/2008|20:35] D:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software [24/11/2005|17:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems [24/11/2005|17:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint [29/12/2006|23:14] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage [09/02/2007|10:12] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar [26/12/2007|14:56] D:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller [24/11/2005|17:23] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities [01/03/2008|08:29] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia [24/11/2005|17:23] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft [24/11/2005|17:23] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Real [03/11/2005|05:50] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec [24/11/2005|17:23] D:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver [23/08/2008|20:03] D:\DOCUME~1\joya\APPLIC~1\Adobe [23/08/2008|20:01] D:\DOCUME~1\joya\APPLIC~1\F-Secure [23/08/2008|20:36] D:\DOCUME~1\joya\APPLIC~1\Google [24/11/2005|17:23] D:\DOCUME~1\joya\APPLIC~1\Identities [23/08/2008|20:00] D:\DOCUME~1\joya\APPLIC~1\ispnews [01/03/2008|08:29] D:\DOCUME~1\joya\APPLIC~1\Macromedia [23/08/2008|20:04] D:\DOCUME~1\joya\APPLIC~1\Microsoft [24/11/2005|17:23] D:\DOCUME~1\joya\APPLIC~1\Real [03/11/2005|05:50] D:\DOCUME~1\joya\APPLIC~1\Symantec [24/11/2005|17:23] D:\DOCUME~1\joya\APPLIC~1\You've Got Pictures Screensaver [12/02/2006|20:09] D:\DOCUME~1\LOCALS~1\APPLIC~1\HP [24/11/2005|17:23] D:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft [24/11/2005|17:23] D:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Microsoft [11/07/2007|02:37] D:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft [24/11/2005|17:23] D:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\Microsoft [09/04/2006|20:57] D:\DOCUME~1\ROBERT\APPLIC~1\ABBYY [01/02/2007|20:39] D:\DOCUME~1\ROBERT\APPLIC~1\Adobe [01/02/2007|20:42] D:\DOCUME~1\ROBERT\APPLIC~1\AdobeUM [31/10/2007|06:38] D:\DOCUME~1\ROBERT\APPLIC~1\ArcSoft [23/07/2007|09:20] D:\DOCUME~1\ROBERT\APPLIC~1\CamfrogWEB [29/01/2006|00:56] D:\DOCUME~1\ROBERT\APPLIC~1\CyberLink [27/08/2007|18:01] D:\DOCUME~1\ROBERT\APPLIC~1\DIMAGE [29/12/2006|23:54] D:\DOCUME~1\ROBERT\APPLIC~1\DivX [20/02/2007|01:04] D:\DOCUME~1\ROBERT\APPLIC~1\EoRezo [29/07/2009|08:58] D:\DOCUME~1\ROBERT\APPLIC~1\FOR16BYTE [04/01/2007|19:43] D:\DOCUME~1\ROBERT\APPLIC~1\F-Secure [30/01/2007|20:37] D:\DOCUME~1\ROBERT\APPLIC~1\Google [30/01/2006|19:54] D:\DOCUME~1\ROBERT\APPLIC~1\Help [30/07/2009|19:47] D:\DOCUME~1\ROBERT\APPLIC~1\HouseCall 6.6 [13/03/2006|10:32] D:\DOCUME~1\ROBERT\APPLIC~1\HP [16/04/2009|19:12] D:\DOCUME~1\ROBERT\APPLIC~1\Icone [07/01/2007|14:27] D:\DOCUME~1\ROBERT\APPLIC~1\Identities [15/03/2006|20:12] D:\DOCUME~1\ROBERT\APPLIC~1\InterTrust [04/01/2007|18:39] D:\DOCUME~1\ROBERT\APPLIC~1\ispnews [27/05/2008|20:32] D:\DOCUME~1\ROBERT\APPLIC~1\Lavasoft [29/01/2006|00:50] D:\DOCUME~1\ROBERT\APPLIC~1\Leadertech [24/11/2005|17:23] D:\DOCUME~1\ROBERT\APPLIC~1\Macromedia [21/05/2009|16:07] D:\DOCUME~1\ROBERT\APPLIC~1\Malwarebytes [29/12/2006|23:48] D:\DOCUME~1\ROBERT\APPLIC~1\Media Player Classic [05/11/2008|14:32] D:\DOCUME~1\ROBERT\APPLIC~1\Microsoft [29/12/2006|19:49] D:\DOCUME~1\ROBERT\APPLIC~1\MSNInstaller [30/01/2006|08:17] D:\DOCUME~1\ROBERT\APPLIC~1\OD2 [28/01/2006|21:04] D:\DOCUME~1\ROBERT\APPLIC~1\OFFICE One v6 [27/01/2008|17:47] D:\DOCUME~1\ROBERT\APPLIC~1\PC Tools [04/01/2007|19:25] D:\DOCUME~1\ROBERT\APPLIC~1\PEX [24/11/2005|17:23] D:\DOCUME~1\ROBERT\APPLIC~1\Real [12/11/2008|23:14] D:\DOCUME~1\ROBERT\APPLIC~1\Screenshot Sender [28/07/2009|08:49] D:\DOCUME~1\ROBERT\APPLIC~1\Shareaza [29/07/2009|19:40] D:\DOCUME~1\ROBERT\APPLIC~1\Simply Super Software [04/01/2007|19:36] D:\DOCUME~1\ROBERT\APPLIC~1\Skype [29/01/2006|00:54] D:\DOCUME~1\ROBERT\APPLIC~1\Sonic [10/01/2007|20:16] D:\DOCUME~1\ROBERT\APPLIC~1\Sun [29/09/2008|18:15] D:\DOCUME~1\ROBERT\APPLIC~1\SUPERAntiSpyware.com [05/02/2006|10:13] D:\DOCUME~1\ROBERT\APPLIC~1\Symantec [27/01/2008|20:36] D:\DOCUME~1\ROBERT\APPLIC~1\TuneUp Software [26/02/2006|20:31] D:\DOCUME~1\ROBERT\APPLIC~1\Ulead Systems [18/01/2008|15:53] D:\DOCUME~1\ROBERT\APPLIC~1\Viewpoint [24/11/2005|17:23] D:\DOCUME~1\ROBERT\APPLIC~1\You've Got Pictures Screensaver --------------------\\ Tâches planifiées dans C:\WINDOWS\tasks [31/07/2009 18:00][--ah-----] C:\WINDOWS\tasks\B55F3CE29184A89E.job [31/07/2009 09:59][--a------] C:\WINDOWS\tasks\Scheduled scanning task.job [30/07/2009 19:59][--a------] C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job [31/07/2009 17:27][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job [28/01/2006 20:52][--a------] C:\WINDOWS\tasks\Rappel d'enregistrement 3.job [31/07/2009 09:57][--ah-----] C:\WINDOWS\tasks\SA.DAT [05/08/2004 15:00][-rah-----] C:\WINDOWS\tasks\desktop.ini ( B55F3CE29184A89E.job )=( d:\docume~1\robert\applic~1\for16b~1\RemoteFreeMfcd.exe ) --------------------\\ Listing des dossiers dans C:\Program Files [10/02/2007|19:20] C:\Program Files\7-Zip [09/04/2006|21:04] C:\Program Files\ABBYY FineReader 8.0 Professional Edition [01/02/2009|20:42] C:\Program Files\Adobe [07/06/2007|22:30] C:\Program Files\Adverts [24/11/2005|17:18] C:\Program Files\AMD [28/07/2009|12:50] C:\Program Files\AntivirusFirewall [16/04/2009|19:46] C:\Program Files\AOL 9.0 [24/11/2005|17:18] C:\Program Files\AOL Compagnon [20/12/2006|20:10] C:\Program Files\ArcSoft [29/07/2009|19:15] C:\Program Files\Ask Search Assistant [21/05/2009|15:43] C:\Program Files\CCleaner [23/07/2007|09:20] C:\Program Files\CFWebAdvancedU [28/01/2006|21:04] C:\Program Files\Ciel [21/05/2009|19:21] C:\Program Files\Circle Developement [24/11/2005|17:18] C:\Program Files\ComPlus Applications [24/11/2005|17:18] C:\Program Files\CyberLink [16/04/2009|19:53] C:\Program Files\Dial-Messenger [27/08/2007|17:56] C:\Program Files\DiMAGE Viewer [28/07/2009|22:20] C:\Program Files\DivX [07/02/2007|20:04] C:\Program Files\eMule [28/07/2009|20:00] C:\Program Files\Fichiers communs [12/05/2008|23:38] C:\Program Files\Flat Panel Adjust [29/07/2009|08:58] C:\Program Files\FOR16BYTE [24/11/2005|17:18] C:\Program Files\GMixon [28/07/2009|22:19] C:\Program Files\Google [24/10/2008|20:33] C:\Program Files\HP [06/02/2009|18:21] C:\Program Files\IncrediMail [01/09/2007|21:40] C:\Program Files\InstallShield Installation Information [11/05/2008|09:37] C:\Program Files\InterActual [29/07/2009|15:44] C:\Program Files\Internet Explorer [31/01/2007|08:44] C:\Program Files\Inventel [28/01/2006|21:05] C:\Program Files\ISSENDIS [31/03/2009|20:31] C:\Program Files\Java [23/02/2006|20:25] C:\Program Files\Kapitol [29/12/2006|23:48] C:\Program Files\K-Lite Codec Pack [16/04/2009|19:42] C:\Program Files\Lavasoft [24/11/2005|17:18] C:\Program Files\Learn2.com [28/07/2009|22:21] C:\Program Files\LimeWire [23/01/2009|10:52] C:\Program Files\Logitech [28/07/2009|22:20] C:\Program Files\Malwarebytes' Anti-Malware [16/04/2009|20:12] C:\Program Files\Messenger [11/07/2009|19:23] C:\Program Files\Messenger Plus! Live [14/05/2007|00:02] C:\Program Files\Microsoft CAPICOM 2.1.0.2 [24/11/2005|17:18] C:\Program Files\microsoft frontpage [17/01/2007|09:28] C:\Program Files\Microsoft Money 2005 [04/01/2007|19:43] C:\Program Files\Microsoft Office [22/07/2009|12:48] C:\Program Files\Microsoft Silverlight [26/12/2007|15:03] C:\Program Files\Microsoft SQL Server Compact Edition [11/05/2008|09:16] C:\Program Files\Movie Maker [30/08/2006|02:02] C:\Program Files\MSN [24/11/2005|17:18] C:\Program Files\MSN Gaming Zone [29/12/2006|21:26] C:\Program Files\MSXML 4.0 [11/05/2008|09:14] C:\Program Files\NetMeeting [03/01/2007|19:42] C:\Program Files\Norton Internet Security [28/01/2006|21:05] C:\Program Files\OFFICE One6.5 [24/11/2005|17:20] C:\Program Files\Online Services [11/05/2008|09:14] C:\Program Files\Outlook Express [20/10/2008|17:43] C:\Program Files\Picasa2 [16/04/2009|20:12] C:\Program Files\Readiris Pro 8 [14/01/2008|20:23] C:\Program Files\Securitoo [24/11/2005|17:21] C:\Program Files\Services en ligne [11/05/2008|07:45] C:\Program Files\Shareaza [21/05/2009|19:05] C:\Program Files\Shareaza Applications [16/12/2008|14:59] C:\Program Files\Skyline [24/11/2005|17:18] C:\Program Files\Sonic [10/04/2009|19:42] C:\Program Files\Spybot - Search & Destroy [31/07/2009|10:28] C:\Program Files\Spyware Doctor [06/03/2009|17:00] C:\Program Files\SUPERAntiSpyware [29/07/2009|17:58] C:\Program Files\Symantec [29/12/2006|20:56] C:\Program Files\SymNetDrv [29/07/2009|19:40] C:\Program Files\Trojan Remover [21/05/2009|16:20] C:\Program Files\TuneUp Utilities 2008 [24/11/2005|17:18] C:\Program Files\Ulead Systems [24/11/2005|17:18] C:\Program Files\Uninstall Information [24/11/2005|17:18] C:\Program Files\Viewpoint [31/07/2009|14:41] C:\Program Files\Wanadoo [04/02/2006|22:00] C:\Program Files\WIDCOMM [28/02/2008|01:40] C:\Program Files\Windows Live [24/11/2005|17:18] C:\Program Files\Windows Media Components [16/04/2009|19:45] C:\Program Files\Windows Media Connect 2 [29/06/2008|23:36] C:\Program Files\Windows Media Player [11/05/2008|09:14] C:\Program Files\Windows NT [24/11/2005|17:18] C:\Program Files\WindowsUpdate [12/01/2007|20:19] C:\Program Files\WinRAR [24/11/2005|17:18] C:\Program Files\xerox [29/07/2009|19:31] C:\Program Files\ZebHelpProcess --------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs [01/02/2009|20:42] C:\Program Files\Fichiers communs\Adobe [24/11/2005|17:19] C:\Program Files\Fichiers communs\AOL [24/11/2005|17:19] C:\Program Files\Fichiers communs\aolshare [28/01/2006|21:04] C:\Program Files\Fichiers communs\Borland Shared [28/07/2009|22:20] C:\Program Files\Fichiers communs\DivX Shared [12/02/2006|20:00] C:\Program Files\Fichiers communs\Hewlett-Packard [12/02/2006|20:03] C:\Program Files\Fichiers communs\HP [04/02/2007|18:30] C:\Program Files\Fichiers communs\InstallShield [24/11/2005|17:18] C:\Program Files\Fichiers communs\Java [23/01/2009|10:54] C:\Program Files\Fichiers communs\LogiShrd [15/09/2008|12:26] C:\Program Files\Fichiers communs\Logitech [05/03/2009|12:20] C:\Program Files\Fichiers communs\Microsoft Shared [24/11/2005|17:18] C:\Program Files\Fichiers communs\MSSoap [24/11/2005|17:18] C:\Program Files\Fichiers communs\Nullsoft [24/11/2005|17:18] C:\Program Files\Fichiers communs\ODBC [24/11/2005|17:18] C:\Program Files\Fichiers communs\Real [24/11/2005|17:19] C:\Program Files\Fichiers communs\Services [24/11/2005|17:19] C:\Program Files\Fichiers communs\Sonic Shared [24/11/2005|17:18] C:\Program Files\Fichiers communs\SpeechEngines [26/08/2008|15:36] C:\Program Files\Fichiers communs\SureThing Shared [04/01/2007|18:16] C:\Program Files\Fichiers communs\Symantec Shared [11/05/2008|09:14] C:\Program Files\Fichiers communs\System [21/11/2007|15:04] C:\Program Files\Fichiers communs\Teleca Shared [24/11/2005|17:18] C:\Program Files\Fichiers communs\Ulead Systems [26/12/2007|14:58] C:\Program Files\Fichiers communs\WindowsLiveInstaller [16/04/2009|19:42] C:\Program Files\Fichiers communs\Wise Installation Wizard [24/11/2005|17:18] C:\Program Files\Fichiers communs\xing shared --------------------\\ Process ( 80 Processes ) IEXPLORE.EXE ~ [PID:3492] IEXPLORE.EXE ~ [PID:4032] --------------------\\ Recherche avec S_Lop Aucun fichier / dossier Lop trouvé ! --------------------\\ Recherche de Fichiers / Dossiers Lop D:\DOCUME~1\ALLUSE~1\APPLIC~1\city about store file D:\DOCUME~1\ALLUSE~1\APPLIC~1\city about store file\bleh team.dat D:\DOCUME~1\ALLUSE~1\APPLIC~1\city about store file\bleh team.exe D:\DOCUME~1\ALLUSE~1\APPLIC~1\city about store file\Clock Axis.dat D:\DOCUME~1\ALLUSE~1\APPLIC~1\city about store file\mpeg flag.dat D:\DOCUME~1\ROBERT\APPLIC~1\for16b~1 D:\DOCUME~1\ROBERT\APPLIC~1\for16b~1\Creative Coal.exe D:\DOCUME~1\ROBERT\APPLIC~1\for16b~1\fdbpjoqu.exe D:\DOCUME~1\ROBERT\APPLIC~1\for16b~1\kraufach.exe D:\DOCUME~1\ROBERT\APPLIC~1\for16b~1\LinkMeetJugsDale.exe D:\DOCUME~1\ROBERT\APPLIC~1\for16b~1\RemoteFreeMfcd.exe C:\Program Files\for16b~1 D:\DOCUME~1\ROBERT\LOCALS~1\Temp\msgpl_02b1.tmp D:\DOCUME~1\ROBERT\LOCALS~1\Temp\nsb11.tmp D:\DOCUME~1\ROBERT\LOCALS~1\Temp\sta4.exe D:\DOCUME~1\ROBERT\LOCALS~1\Temp\sta8.exe C:\Program Files\Adverts C:\Program Files\Circle Developement D:\DOCUME~1\ROBERT\Cookies\robert@cotedazurpalace[2].txt D:\DOCUME~1\ROBERT\Cookies\[email protected][2].txt D:\DOCUME~1\ROBERT\Cookies\[email protected][2].txt C:\WINDOWS\Tasks\B55F3CE29184A89E.job --------------------\\ Verification du Registre [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Cakehold"="D:\\DOCUME~1\\ROBERT\\APPLIC~1\\FOR16B~1\\Creative Coal.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] --------------------\\ Verification du fichier Hosts Fichier Hosts PROPRE --------------------\\ Recherche de fichiers avec Catchme catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-07-31 18:38:57 Windows 5.1.2600 Service Pack 3 NTFS scanning hidden processes ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden files: 0 --------------------\\ Recherche d'autres infections Aucune autre infection trouvée ! [F:149][D:11]-> D:\DOCUME~1\ROBERT\LOCALS~1\Temp [F:129][D:0]-> D:\DOCUME~1\ROBERT\Cookies [F:4510][D:9]-> D:\DOCUME~1\ROBERT\LOCALS~1\TEMPOR~1\content.IE5 1 - "C:\Lop SD\LopR_1.txt" - 31/07/2009|18:39 - Option : [1] --------------------\\ Fin du rapport a 18:39:47 et voici le rapport apres desinfection : --------------------\\ Lop S&D 4.2.5-0 XP/Vista Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3 X86-based PC ( Uniprocessor Free : AMD Athlon 64 Processor 3700+ ) BIOS : BIOS Date: 09/06/05 17:29:38 Ver: 08.00.12 USER : ROBERT ( Administrator ) BOOT : Normal boot Antivirus : AntiVirus Firewall 6.15 6.15 (Activated) Firewall : Norton Internet Security 2005 (Not Activated) C:\ (Local Disk) - NTFS - Total:29 Go (Free:17 Go) D:\ (Local Disk) - NTFS - Total:195 Go (Free:102 Go) E:\ (CD or DVD) F:\ (USB) G:\ (USB) H:\ (USB) I:\ (USB) J:\ (USB) - FAT - Total:1919 Mo (Free:1 Go) "C:\Lop SD" ( MAJ : 19-12-2008|23:40 ) Option : [2] ( 31/07/2009|18:43 ) \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION Supprime! - D:\DOCUME~1\ALLUSE~1\APPLIC~1\city about store file\bleh team.dat Supprime! - D:\DOCUME~1\ALLUSE~1\APPLIC~1\city about store file\bleh team.exe Supprime! - D:\DOCUME~1\ALLUSE~1\APPLIC~1\city about store file\Clock Axis.dat Supprime! - D:\DOCUME~1\ALLUSE~1\APPLIC~1\city about store file\mpeg flag.dat Supprime! - D:\DOCUME~1\ROBERT\APPLIC~1\for16b~1\Creative Coal.exe Supprime! - D:\DOCUME~1\ROBERT\APPLIC~1\for16b~1\fdbpjoqu.exe Supprime! - D:\DOCUME~1\ROBERT\APPLIC~1\for16b~1\kraufach.exe Supprime! - D:\DOCUME~1\ROBERT\APPLIC~1\for16b~1\LinkMeetJugsDale.exe Supprime! - D:\DOCUME~1\ROBERT\APPLIC~1\for16b~1\RemoteFreeMfcd.exe Supprime! - D:\DOCUME~1\ROBERT\LOCALS~1\Temp\msgpl_02b1.tmp Supprime! - D:\DOCUME~1\ROBERT\LOCALS~1\Temp\nsb11.tmp Supprime! - D:\DOCUME~1\ROBERT\LOCALS~1\Temp\sta4.exe Supprime! - D:\DOCUME~1\ROBERT\LOCALS~1\Temp\sta8.exe Supprime! - D:\DOCUME~1\ROBERT\Cookies\robert@cotedazurpalace[2].txt Supprime! - D:\DOCUME~1\ROBERT\Cookies\[email protected][2].txt Supprime! - D:\DOCUME~1\ROBERT\Cookies\[email protected][2].txt Supprime! - C:\WINDOWS\Tasks\B55F3CE29184A89E.job Supprime! - D:\DOCUME~1\ALLUSE~1\APPLIC~1\city about store file Supprime! - D:\DOCUME~1\ROBERT\APPLIC~1\for16b~1 Supprime! - C:\Program Files\for16b~1 Supprime! - C:\Program Files\Adverts Supprime! - C:\Program Files\Circle Developement - [ Fichier Hosts ] .. Restaure! \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ Supprime! - C:\Program Files\Viewpoint Supprime! - D:\DOCUME~1\ROBERT\APPLIC~1\Viewpoint Supprime! - D:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ --------------------\\ Listing des dossiers dans APPLIC~1 [16/04/2009|19:43] D:\DOCUME~1\ALLUSE~1\APPLIC~1\{7972B2E5-3E09-4E5E-81B7-FE5819D6772F} [02/01/2009|10:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\2131C [28/07/2009|08:24] D:\DOCUME~1\ALLUSE~1\APPLIC~1\2E1A5 [01/02/2009|20:43] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe [01/02/2007|02:19] D:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL [28/01/2009|20:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\BCB [28/01/2006|21:06] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Ciel [08/02/2007|10:25] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink [29/07/2009|17:53] D:\DOCUME~1\ALLUSE~1\APPLIC~1\F-Secure [29/07/2009|18:48] D:\DOCUME~1\ALLUSE~1\APPLIC~1\fssg [28/07/2009|22:21] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Google [12/02/2006|20:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\HP [25/11/2008|19:44] D:\DOCUME~1\ALLUSE~1\APPLIC~1\HP Product Assistant [26/09/2008|07:54] D:\DOCUME~1\ALLUSE~1\APPLIC~1\IM [26/09/2008|07:53] D:\DOCUME~1\ALLUSE~1\APPLIC~1\IncrediMail [27/05/2008|20:35] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft [23/01/2009|10:52] D:\DOCUME~1\ALLUSE~1\APPLIC~1\LogiShrd [12/05/2008|19:58] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Logitech [21/05/2009|16:07] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes [07/06/2007|22:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus! [05/03/2009|12:20] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft [24/11/2005|17:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2 [17/03/2006|22:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime [24/11/2005|17:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI [29/07/2009|19:40] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Simply Super Software [08/07/2008|19:48] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Skyline [26/10/2008|19:59] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype [12/02/2006|20:03] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Sonic [31/07/2009|18:34] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy [29/09/2008|18:15] D:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com [24/11/2005|17:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec [31/07/2009|18:34] D:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP [27/01/2008|20:35] D:\DOCUME~1\ALLUSE~1\APPLIC~1\TuneUp Software [24/11/2005|17:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems [29/12/2006|23:14] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage [09/02/2007|10:12] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar [26/12/2007|14:56] D:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller [24/11/2005|17:23] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities [01/03/2008|08:29] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia [24/11/2005|17:23] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft [24/11/2005|17:23] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Real [03/11/2005|05:50] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec [24/11/2005|17:23] D:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver [23/08/2008|20:03] D:\DOCUME~1\joya\APPLIC~1\Adobe [23/08/2008|20:01] D:\DOCUME~1\joya\APPLIC~1\F-Secure [23/08/2008|20:36] D:\DOCUME~1\joya\APPLIC~1\Google [24/11/2005|17:23] D:\DOCUME~1\joya\APPLIC~1\Identities [23/08/2008|20:00] D:\DOCUME~1\joya\APPLIC~1\ispnews [01/03/2008|08:29] D:\DOCUME~1\joya\APPLIC~1\Macromedia [23/08/2008|20:04] D:\DOCUME~1\joya\APPLIC~1\Microsoft [24/11/2005|17:23] D:\DOCUME~1\joya\APPLIC~1\Real [03/11/2005|05:50] D:\DOCUME~1\joya\APPLIC~1\Symantec [24/11/2005|17:23] D:\DOCUME~1\joya\APPLIC~1\You've Got Pictures Screensaver [12/02/2006|20:09] D:\DOCUME~1\LOCALS~1\APPLIC~1\HP [24/11/2005|17:23] D:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft [24/11/2005|17:23] D:\DOCUME~1\LOCALS~1.AUT\APPLIC~1\Microsoft [11/07/2007|02:37] D:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft [24/11/2005|17:23] D:\DOCUME~1\NETWOR~1.AUT\APPLIC~1\Microsoft [09/04/2006|20:57] D:\DOCUME~1\ROBERT\APPLIC~1\ABBYY [01/02/2007|20:39] D:\DOCUME~1\ROBERT\APPLIC~1\Adobe [01/02/2007|20:42] D:\DOCUME~1\ROBERT\APPLIC~1\AdobeUM [31/10/2007|06:38] D:\DOCUME~1\ROBERT\APPLIC~1\ArcSoft [23/07/2007|09:20] D:\DOCUME~1\ROBERT\APPLIC~1\CamfrogWEB [29/01/2006|00:56] D:\DOCUME~1\ROBERT\APPLIC~1\CyberLink [27/08/2007|18:01] D:\DOCUME~1\ROBERT\APPLIC~1\DIMAGE [29/12/2006|23:54] D:\DOCUME~1\ROBERT\APPLIC~1\DivX [20/02/2007|01:04] D:\DOCUME~1\ROBERT\APPLIC~1\EoRezo [04/01/2007|19:43] D:\DOCUME~1\ROBERT\APPLIC~1\F-Secure [30/01/2007|20:37] D:\DOCUME~1\ROBERT\APPLIC~1\Google [30/01/2006|19:54] D:\DOCUME~1\ROBERT\APPLIC~1\Help [30/07/2009|19:47] D:\DOCUME~1\ROBERT\APPLIC~1\HouseCall 6.6 [13/03/2006|10:32] D:\DOCUME~1\ROBERT\APPLIC~1\HP [16/04/2009|19:12] D:\DOCUME~1\ROBERT\APPLIC~1\Icone [07/01/2007|14:27] D:\DOCUME~1\ROBERT\APPLIC~1\Identities [15/03/2006|20:12] D:\DOCUME~1\ROBERT\APPLIC~1\InterTrust [04/01/2007|18:39] D:\DOCUME~1\ROBERT\APPLIC~1\ispnews [27/05/2008|20:32] D:\DOCUME~1\ROBERT\APPLIC~1\Lavasoft [29/01/2006|00:50] D:\DOCUME~1\ROBERT\APPLIC~1\Leadertech [24/11/2005|17:23] D:\DOCUME~1\ROBERT\APPLIC~1\Macromedia [21/05/2009|16:07] D:\DOCUME~1\ROBERT\APPLIC~1\Malwarebytes [29/12/2006|23:48] D:\DOCUME~1\ROBERT\APPLIC~1\Media Player Classic [05/11/2008|14:32] D:\DOCUME~1\ROBERT\APPLIC~1\Microsoft [29/12/2006|19:49] D:\DOCUME~1\ROBERT\APPLIC~1\MSNInstaller [30/01/2006|08:17] D:\DOCUME~1\ROBERT\APPLIC~1\OD2 [28/01/2006|21:04] D:\DOCUME~1\ROBERT\APPLIC~1\OFFICE One v6 [27/01/2008|17:47] D:\DOCUME~1\ROBERT\APPLIC~1\PC Tools [04/01/2007|19:25] D:\DOCUME~1\ROBERT\APPLIC~1\PEX [24/11/2005|17:23] D:\DOCUME~1\ROBERT\APPLIC~1\Real [12/11/2008|23:14] D:\DOCUME~1\ROBERT\APPLIC~1\Screenshot Sender [28/07/2009|08:49] D:\DOCUME~1\ROBERT\APPLIC~1\Shareaza [29/07/2009|19:40] D:\DOCUME~1\ROBERT\APPLIC~1\Simply Super Software [04/01/2007|19:36] D:\DOCUME~1\ROBERT\APPLIC~1\Skype [29/01/2006|00:54] D:\DOCUME~1\ROBERT\APPLIC~1\Sonic [10/01/2007|20:16] D:\DOCUME~1\ROBERT\APPLIC~1\Sun [29/09/2008|18:15] D:\DOCUME~1\ROBERT\APPLIC~1\SUPERAntiSpyware.com [05/02/2006|10:13] D:\DOCUME~1\ROBERT\APPLIC~1\Symantec [27/01/2008|20:36] D:\DOCUME~1\ROBERT\APPLIC~1\TuneUp Software [26/02/2006|20:31] D:\DOCUME~1\ROBERT\APPLIC~1\Ulead Systems [24/11/2005|17:23] D:\DOCUME~1\ROBERT\APPLIC~1\You've Got Pictures Screensaver --------------------\\ Tâches planifiées dans C:\WINDOWS\tasks [31/07/2009 09:59][--a------] C:\WINDOWS\tasks\Scheduled scanning task.job [30/07/2009 19:59][--a------] C:\WINDOWS\tasks\Ad-Aware Update (Weekly).job [31/07/2009 17:27][--a------] C:\WINDOWS\tasks\Maintenance en 1 clic.job [28/01/2006 20:52][--a------] C:\WINDOWS\tasks\Rappel d'enregistrement 3.job [31/07/2009 09:57][--ah-----] C:\WINDOWS\tasks\SA.DAT [05/08/2004 15:00][-rah-----] C:\WINDOWS\tasks\desktop.ini --------------------\\ Listing des dossiers dans C:\Program Files [10/02/2007|19:20] C:\Program Files\7-Zip [09/04/2006|21:04] C:\Program Files\ABBYY FineReader 8.0 Professional Edition [01/02/2009|20:42] C:\Program Files\Adobe [24/11/2005|17:18] C:\Program Files\AMD [28/07/2009|12:50] C:\Program Files\AntivirusFirewall [16/04/2009|19:46] C:\Program Files\AOL 9.0 [24/11/2005|17:18] C:\Program Files\AOL Compagnon [20/12/2006|20:10] C:\Program Files\ArcSoft [29/07/2009|19:15] C:\Program Files\Ask Search Assistant [21/05/2009|15:43] C:\Program Files\CCleaner [23/07/2007|09:20] C:\Program Files\CFWebAdvancedU [28/01/2006|21:04] C:\Program Files\Ciel [24/11/2005|17:18] C:\Program Files\ComPlus Applications [24/11/2005|17:18] C:\Program Files\CyberLink [16/04/2009|19:53] C:\Program Files\Dial-Messenger [27/08/2007|17:56] C:\Program Files\DiMAGE Viewer [28/07/2009|22:20] C:\Program Files\DivX [07/02/2007|20:04] C:\Program Files\eMule [28/07/2009|20:00] C:\Program Files\Fichiers communs [12/05/2008|23:38] C:\Program Files\Flat Panel Adjust [24/11/2005|17:18] C:\Program Files\GMixon [28/07/2009|22:19] C:\Program Files\Google [24/10/2008|20:33] C:\Program Files\HP [06/02/2009|18:21] C:\Program Files\IncrediMail [01/09/2007|21:40] C:\Program Files\InstallShield Installation Information [11/05/2008|09:37] C:\Program Files\InterActual [29/07/2009|15:44] C:\Program Files\Internet Explorer [31/01/2007|08:44] C:\Program Files\Inventel [28/01/2006|21:05] C:\Program Files\ISSENDIS [31/03/2009|20:31] C:\Program Files\Java [23/02/2006|20:25] C:\Program Files\Kapitol [29/12/2006|23:48] C:\Program Files\K-Lite Codec Pack [16/04/2009|19:42] C:\Program Files\Lavasoft [24/11/2005|17:18] C:\Program Files\Learn2.com [28/07/2009|22:21] C:\Program Files\LimeWire [23/01/2009|10:52] C:\Program Files\Logitech [28/07/2009|22:20] C:\Program Files\Malwarebytes' Anti-Malware [16/04/2009|20:12] C:\Program Files\Messenger [11/07/2009|19:23] C:\Program Files\Messenger Plus! Live [14/05/2007|00:02] C:\Program Files\Microsoft CAPICOM 2.1.0.2 [24/11/2005|17:18] C:\Program Files\microsoft frontpage [17/01/2007|09:28] C:\Program Files\Microsoft Money 2005 [04/01/2007|19:43] C:\Program Files\Microsoft Office [22/07/2009|12:48] C:\Program Files\Microsoft Silverlight [26/12/2007|15:03] C:\Program Files\Microsoft SQL Server Compact Edition [11/05/2008|09:16] C:\Program Files\Movie Maker [30/08/2006|02:02] C:\Program Files\MSN [24/11/2005|17:18] C:\Program Files\MSN Gaming Zone [29/12/2006|21:26] C:\Program Files\MSXML 4.0 [11/05/2008|09:14] C:\Program Files\NetMeeting [03/01/2007|19:42] C:\Program Files\Norton Internet Security [28/01/2006|21:05] C:\Program Files\OFFICE One6.5 [24/11/2005|17:20] C:\Program Files\Online Services [11/05/2008|09:14] C:\Program Files\Outlook Express [20/10/2008|17:43] C:\Program Files\Picasa2 [16/04/2009|20:12] C:\Program Files\Readiris Pro 8 [14/01/2008|20:23] C:\Program Files\Securitoo [24/11/2005|17:21] C:\Program Files\Services en ligne [11/05/2008|07:45] C:\Program Files\Shareaza [21/05/2009|19:05] C:\Program Files\Shareaza Applications [16/12/2008|14:59] C:\Program Files\Skyline [24/11/2005|17:18] C:\Program Files\Sonic [10/04/2009|19:42] C:\Program Files\Spybot - Search & Destroy [31/07/2009|10:28] C:\Program Files\Spyware Doctor [06/03/2009|17:00] C:\Program Files\SUPERAntiSpyware [29/07/2009|17:58] C:\Program Files\Symantec [29/12/2006|20:56] C:\Program Files\SymNetDrv [29/07/2009|19:40] C:\Program Files\Trojan Remover [21/05/2009|16:20] C:\Program Files\TuneUp Utilities 2008 [24/11/2005|17:18] C:\Program Files\Ulead Systems [24/11/2005|17:18] C:\Program Files\Uninstall Information [31/07/2009|14:41] C:\Program Files\Wanadoo [04/02/2006|22:00] C:\Program Files\WIDCOMM [28/02/2008|01:40] C:\Program Files\Windows Live [24/11/2005|17:18] C:\Program Files\Windows Media Components [16/04/2009|19:45] C:\Program Files\Windows Media Connect 2 [29/06/2008|23:36] C:\Program Files\Windows Media Player [11/05/2008|09:14] C:\Program Files\Windows NT [24/11/2005|17:18] C:\Program Files\WindowsUpdate [12/01/2007|20:19] C:\Program Files\WinRAR [24/11/2005|17:18] C:\Program Files\xerox [29/07/2009|19:31] C:\Program Files\ZebHelpProcess --------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs [01/02/2009|20:42] C:\Program Files\Fichiers communs\Adobe [24/11/2005|17:19] C:\Program Files\Fichiers communs\AOL [24/11/2005|17:19] C:\Program Files\Fichiers communs\aolshare [28/01/2006|21:04] C:\Program Files\Fichiers communs\Borland Shared [28/07/2009|22:20] C:\Program Files\Fichiers communs\DivX Shared [12/02/2006|20:00] C:\Program Files\Fichiers communs\Hewlett-Packard [12/02/2006|20:03] C:\Program Files\Fichiers communs\HP [04/02/2007|18:30] C:\Program Files\Fichiers communs\InstallShield [24/11/2005|17:18] C:\Program Files\Fichiers communs\Java [23/01/2009|10:54] C:\Program Files\Fichiers communs\LogiShrd [15/09/2008|12:26] C:\Program Files\Fichiers communs\Logitech [05/03/2009|12:20] C:\Program Files\Fichiers communs\Microsoft Shared [24/11/2005|17:18] C:\Program Files\Fichiers communs\MSSoap [24/11/2005|17:18] C:\Program Files\Fichiers communs\Nullsoft [24/11/2005|17:18] C:\Program Files\Fichiers communs\ODBC [24/11/2005|17:18] C:\Program Files\Fichiers communs\Real [24/11/2005|17:19] C:\Program Files\Fichiers communs\Services [24/11/2005|17:19] C:\Program Files\Fichiers communs\Sonic Shared [24/11/2005|17:18] C:\Program Files\Fichiers communs\SpeechEngines [26/08/2008|15:36] C:\Program Files\Fichiers communs\SureThing Shared [04/01/2007|18:16] C:\Program Files\Fichiers communs\Symantec Shared [11/05/2008|09:14] C:\Program Files\Fichiers communs\System [21/11/2007|15:04] C:\Program Files\Fichiers communs\Teleca Shared [24/11/2005|17:18] C:\Program Files\Fichiers communs\Ulead Systems [26/12/2007|14:58] C:\Program Files\Fichiers communs\WindowsLiveInstaller [16/04/2009|19:42] C:\Program Files\Fichiers communs\Wise Installation Wizard [24/11/2005|17:18] C:\Program Files\Fichiers communs\xing shared --------------------\\ Process ( 77 Processes ) ... OK ! --------------------\\ Recherche avec S_Lop Aucun fichier / dossier Lop trouvé ! --------------------\\ Recherche de Fichiers / Dossiers Lop Aucun fichier / dossier Lop trouvé ! --------------------\\ Verification du Registre ..... OK ! --------------------\\ Verification du fichier Hosts Fichier Hosts PROPRE --------------------\\ Recherche de fichiers avec Catchme catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2009-07-31 18:44:32 Windows 5.1.2600 Service Pack 3 NTFS scanning hidden processes ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden files: 0 --------------------\\ Recherche d'autres infections Aucune autre infection trouvée ! [F:145][D:11]-> D:\DOCUME~1\ROBERT\LOCALS~1\Temp [F:126][D:0]-> D:\DOCUME~1\ROBERT\Cookies [F:4510][D:9]-> D:\DOCUME~1\ROBERT\LOCALS~1\TEMPOR~1\content.IE5 1 - "C:\Lop SD\LopR_1.txt" - 31/07/2009|18:39 - Option : [1] 2 - "C:\Lop SD\LopR_2.txt" - 31/07/2009|18:45 - Option : [2] --------------------\\ Fin du rapport a 18:45:11
  3. Scan saved at 11:51:13, on 30/07/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16876) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Norton Internet Security\ISSVC.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\svchost.exe C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe C:\PROGRA~1\ANTIVI~1\backweb\6588780\Program\SERVIC~1.EXE C:\WINDOWS\system32\svchost.exe C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe C:\Program Files\AntivirusFirewall\Anti-Virus\fsgk32st.exe C:\Program Files\AntivirusFirewall\Anti-Virus\FSGK32.EXE C:\Program Files\AntivirusFirewall\backweb\6588780\program\fsbwsys.exe C:\Program Files\AntivirusFirewall\Common\FSMA32.EXE C:\Program Files\AntivirusFirewall\Anti-Virus\fssm32.exe C:\Program Files\AntivirusFirewall\Common\FSMB32.EXE C:\WINDOWS\System32\FTRTSVC.exe c:\APPS\HIDSERVICE\HIDSERVICE.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\AntivirusFirewall\Common\FCH32.EXE C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe C:\WINDOWS\system32\HPZipm12.exe C:\Program Files\AntivirusFirewall\Anti-Virus\fsqh.exe C:\Program Files\AntivirusFirewall\Common\FAMEH32.EXE C:\Program Files\AntivirusFirewall\Anti-Virus\fsrw.exe C:\Program Files\Spyware Doctor\pctsAuxs.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe c:\APPS\Powercinema\Kernel\TV\CLSched.exe C:\Program Files\AntivirusFirewall\Anti-Virus\fsav32.exe C:\Program Files\AntivirusFirewall\FWES\Program\fsdfwd.exe C:\WINDOWS\system32\wbem\unsecapp.exe C:\WINDOWS\system32\wbem\wmiprvse.exe C:\Program Files\AntivirusFirewall\FSGUI\ispnews.exe C:\WINDOWS\System32\alg.exe C:\Program Files\AntivirusFirewall\Common\FSM32.EXE C:\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\PROGRA~1\ANTIVI~1\ANTI-S~1\fsaw.exe C:\apps\ABoard\ABoard.exe C:\Program Files\HP\HP Software Update\HPWuSchd2.exe C:\PROGRA~1\Wanadoo\TaskBarIcon.exe C:\apps\ABoard\AOSD.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\Logitech\QuickCam\Quickcam.exe C:\Program Files\Spyware Doctor\pctsSvc.exe C:\Program Files\AntivirusFirewall\FSGUI\fsguidll.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe C:\Program Files\Spyware Doctor\pctsTray.exe C:\Program Files\OFFICE One6.5\OFFICE One Clock\ooneclockv65.exe C:\Program Files\Fichiers communs\Logishrd\LQCVFX\COCIManager.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\PROGRA~1\Wanadoo\GestionnaireInternet.exe C:\PROGRA~1\Wanadoo\ComComp.exe C:\PROGRA~1\Wanadoo\Toaster.exe C:\PROGRA~1\Wanadoo\Inactivity.exe C:\PROGRA~1\Wanadoo\PollingModule.exe C:\WINDOWS\System32\ALERTM~1\ALERTM~1.EXE C:\PROGRA~1\Wanadoo\Watch.exe C:\Program Files\Internet Explorer\iexplore.exe C:\WINDOWS\system32\wuauclt.exe D:\Documents and Settings\ROBERT\Bureau\HiJackThis.exe C:\WINDOWS\system32\wbem\wmiprvse.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.msn.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr.msn.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/ R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [News Service] "C:\Program Files\AntivirusFirewall\FSGUI\ispnews.exe" O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\AntivirusFirewall\TNB\TNBUtil.exe" /CHECKALL /WAITFORSW O4 - HKLM\..\Run: [F-Secure Startup Wizard] "C:\Program Files\AntivirusFirewall\FSGUI\FSSW.EXE" /reboot O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\AntivirusFirewall\Common\FSM32.EXE" /splash O4 - HKLM\..\Run: [ATIPTA] "C:\ATI Technologies\ATI Control Panel\atiptaxx.exe" O4 - HKLM\..\Run: [ACTIVBOARD] c:\apps\ABoard\ABoard.exe O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [bOOT] C:\Program Files\ISSENDIS\ISSENDIS WebUpdate v6\issendiswebupdatev6.exe /BOOT O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe O4 - HKLM\..\Run: [iSTray] "C:\Program Files\Spyware Doctor\pctsTray.exe" O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe /boot O4 - HKCU\..\Run: [Cakehold] D:\DOCUME~1\ROBERT\APPLIC~1\FOR16B~1\Creative Coal.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-19\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O4 - Startup: Logitech . Enregistrement du produit.lnk = C:\Program Files\Logitech\QuickCam\eReg.exe O4 - Global Startup: Antivirus Firewall.lnk = C:\Program Files\AntivirusFirewall\backweb\6588780\Program\fspex.exe O4 - Global Startup: OFFICE One Clock v6.5.lnk = C:\Program Files\OFFICE One6.5\OFFICE One Clock\ooneclockv65.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: &Bloquer cette fenêtre publicitaire - C:\Program Files\AntivirusFirewall\Anti-Spyware\blockpopups.htm O8 - Extra context menu item: Download with &Shareaza - res://C:\Program Files\Shareaza\Plugins\RazaWebHook.dll/3000 O8 - Extra context menu item: Envoyer à &Bluetooth - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie_ctx.htm O9 - Extra button: Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - -{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra button: Protection Internet Explorer - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\AntivirusFirewall\Anti-Spyware\ieshield.dll O9 - Extra 'Tools' menuitem: Protection Internet Explorer... - {300DB664-75B5-47c0-8B45-A44ACCF73C00} - C:\Program Files\AntivirusFirewall\Anti-Spyware\ieshield.dll O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Logiciel Bluetooth\btsendto_ie.htm O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.orange.fr (file missing) (HKCU) O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) - http://ushousecall02.trendmicro.com/housec...ivex/hcImpl.cab O16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/radio/ampx/ampx2.6.1.11_fr_dl.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O18 - Protocol: skyline - {3A4F9195-65A8-11D5-85C1-0001023952C1} - C:\Program Files\Skyline\TerraExplorer\TerraExplorerX.dll O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: Antivirus Firewall (BackWeb Plug-in - 6588780) - Securitoo Portal - C:\PROGRA~1\ANTIVI~1\backweb\6588780\Program\SERVIC~1.EXE O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Logiciel Bluetooth\bin\btwdins.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\AntivirusFirewall\Anti-Virus\fsgk32st.exe O23 - Service: fsbwsys - F-Secure Corp. - C:\Program Files\AntivirusFirewall\backweb\6588780\program\fsbwsys.exe O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\AntivirusFirewall\FWES\Program\fsdfwd.exe O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\AntivirusFirewall\Common\FSMA32.EXE O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom - C:\WINDOWS\System32\FTRTSVC.exe O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe O23 - Service: MysqlInventime - Unknown owner - C:\Apps\INVENT~1\mysql\bin\mysqld-nt.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe O24 - Desktop Component 0: (no name) - http://nl.netlogstatic.com/p/oo/041/699/41699325.jpg O24 - Desktop Component 1: (no name) - http://bl145w.blu145.mail.live.com/mail/Sa...cc881418eca22cc -- End of file - 15799 bytes
  4. bonjour à tous , depuis quelques jours des fenetres publicitaires s'affichent régulierement et mon antivirus et firewall sont bloqués,il m'est impossible de les désinstaler ( j'utilise l'antivirus payant proposé par télécom ) . j'ai fait une analyse avec malwarebyte et une autre avec hijackthis , j'ai analysé le second rapport avec zeb help process qui m'a trouvé des infections mais il m'est impossible de les supprimer . merci pour votre aide . ( j'utilise windows xp avec internet explorer 7 )
  5. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 20:33:35 , on 07/02/2009 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16762) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Google\Update\GoogleUpdate.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\TUProgSt.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\System32\TuneUpDefragService.exe C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\Windows Live\Contacts\wlcomm.exe C:\Program Files\IncrediMail\bin\IMApp.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://recherche.neuf.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-fr9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://recherche.neuf.fr/ie/default.html R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: (no name) - {BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL O2 - BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Messenger\wlchtc.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: Cooliris Plug-In for Internet Explorer - {EAEE5C74-6D0D-4aca-9232-0DA4A7B866BA} - C:\Program Files\PicLensIE\cooliris.dll O3 - Toolbar: &Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [HPHUPD05] c:\Program Files\Hewlett-Packard\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.e xe O4 - HKLM\..\Run: [start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Propriétaire\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c O4 - .DEFAULT User Startup: mod_sm.lnk = C:\hp\bin\cloaker.exe (User 'Default user') O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\Program Files\IncrediMail\bin\resources\WebMenuImg.htm O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200 O8 - Extra context menu item: Chercher avec Copernic Agent - res://C:\Program Files\Copernic Agent\CopernicAgentExt.rdl/INTEGRATION_MENU_SEARCHEXT O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE O9 - Extra 'Tools' menuitem: Démarrer Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Launch Cooliris - {3437D640-C91A-458f-89F5-B9095EA4C28B} - C:\Program Files\PicLensIE\cooliris.dll O9 - Extra button: Copernic Agent - {688DC797-DC11-46A7-9F1B-445F4F58CE6E} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O15 - Trusted Zone: http://www.secuser.com O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w2/resources/MSNPUpld.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - http://www.zebulon.fr/scan8/oscan8.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...ols/en/x86/clie nt/wuweb_site.cab?1196184990640 O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} (HpProductDetection Class) - http://h30155.www3.hp.com/ediags/gmn2/inst...ctDetection.cab O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftu...trols/en/x86/cl ient/muweb_site.cab?1197193791843 O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} (HP Download Manager) - https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111...trendmicro.com/ housecall/xscan53.cab O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://fichiers.touslesdrivers.com/fichier...ction/hardwared etection_3_0_3_1.cab O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0) - http://dl8-cdn-01.sun.com/s/ESD5/JSCDL/jre...tall-6u11-windo ws-i586-jc.cab?e=1231244984293&h=4f441247081f731c66a714d52691fc0d/&file name=jinstall-6u11-windows-i586-jc.cab O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) - http://www.sibelius.com/download/software/...tiveXPlugin.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...ent.cab56907.ca b O16 - DPF: {E8F628B5-259A-4734-97EE-BA914D7BE941} (Driver Agent ActiveX Control) - http://driveragent.com/files/driveragent.cab O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll O20 - Winlogon Notify: awtusttS - C:\WINDOWS\ O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software - C:\WINDOWS\System32\TuneUpDefragService.exe O23 - Service: TuneUp Program Statistics Service (TuneUp.ProgramStatisticsSvc) - TuneUp Software - C:\WINDOWS\System32\TUProgSt.exe -- End of file - 12551 bytes
  6. bonjour,j'ai analisé mon pc avec l'outil ZHP diag et il m'a trouvé plusieurs infections à la ligne 044 et le rapport du logiciel hijackthis ne contient que 023 lignes . comment faire pour les supprimer . merci d'avance
  7. bonjour à tous , j'ai acheté un portable vista et il m'est impossible de visualiser un diaporama en ecran de veille . un message d'erreur apparait en disant q'une erreur c'est produite pendant la lecture du diaporama . j'ai fait quelques recherches et j'ai constaté que cette erreur était frequente . est ce que quelqu'un pourrait m'aider merci d'avance
  8. S-P-Q-R

    deconnexion igoogle

    slt,quand on ouvre google on a le choix entre la page d'accueil ou une page personalisé avec des modules qui s'appele igoogle.il suffit de s'inscrire pour y avoir accés.depuis que j'ai installer internet explorer 7 je me déconnecte sans arret de ma page personalisée et j'ai la page d'accueil de google.je n'avais pas ce probleme avec l'ancienne version d'internet
  9. bonjour à tous,depuis que j'ai installer internet explorer 7 je me deconnecte régulierement d'igoogle.quelqu'un serait il capable de me dire pourquoi,merci
  10. salut , télécharge "zeb help process" et sa mise a jour sur le site de zébulon , c'est un analyseur de rapport en francais qui te diras ce qu'il faut enlever.
  11. télécharge hijackthis en francais et zeb help process qui est un analiseur de rapport pour hijackthis en francais lui aussi qui te diras ce que tu doit enlever ,tu peux les télécharger sur zébulon
  12. bonjour à tous,quelqu'un serait il capable de me dire si mon pc est infecté merci Scan saved at 17:45:57 , on 24/01/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16574) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Windows Defender\MsMpEng.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\windows\system\hpsysdrv.exe C:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe C:\WINDOWS\System32\hphmon05.exe C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE C:\WINDOWS\System32\svchost.exe C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe C:\Program Files\Multimedia Card Reader\shwicon2k.exe C:\WINDOWS\ALCXMNTR.EXE C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe C:\WINDOWS\system32\ElkCtrl.exe C:\HP\KBD\KBD.EXE C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexStoreSvr.exe C:\Program Files\Google\Google Updater\GoogleUpdater.exe C:\WINDOWS\System32\alg.exe C:\Program Files\Windows Live\Messenger\usnsvc.exe C:\PROGRA~1\Magentic\bin\MgApp.exe C:\Program Files\Logitech\Video\VideoEffectsWatcher.exe C:\Program Files\Logitech\Video\COCIManager.exe c:\program files\fichiers communs\logishrd\lvmvfm\LVPrcSrv.exe C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Adobe\Reader 8.0\Reader\AcroRd32.exe C:\PROGRA~1\INCRED~1\bin\IMApp.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\ZebHelpProcess 2\ZHP2.exe C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://fr9.hpwis.com/ R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-fr9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-fr9.hpwis.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens R3 - URLSearchHook: (no name) - {BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\swg.dll O3 - Toolbar: Vue HP - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpdtlk02.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\Hewlett-Packard\Digital Imaging\Unload\hpqcmon.exe O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe O4 - HKLM\..\Run: [storageGuard] "C:\Program Files\Fichiers communs\Sonic\Update Manager\sgtray.exe" /r O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe O4 - HKLM\..\Run: [sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" O4 - HKLM\..\Run: [devenv] C:\WINDOWS\system\smvss.exe /w O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Fichiers communs\LogiShrd\LComMgr\Communications_Helper.exe" O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: Outil de mise à jour Google.lnk = C:\Program Files\Google\Google Updater\GoogleUpdater.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: &Add animation to IncrediMail Style Box - C:\Program Files\IncrediMail\bin\resources\WebMenuImg.htm O8 - Extra context menu item: Chercher avec Copernic Agent - res://C:\Program Files\Copernic Agent\CopernicAgentExt.rdl/INTEGRATION_MENU_SEARCHEXT O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE O9 - Extra 'Tools' menuitem: Démarrer Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Copernic Agent - {688DC797-DC11-46A7-9F1B-445F4F58CE6E} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O11 - Options group: [iNTERNATIONAL] International* O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.hotmail.com/mail/w2/resources/MSNPUpld.cab O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - http://www.bitdefender.fr/scan_fr/scan8/oscan8.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windowsupd...ols/en/x86/clie nt/wuweb_site.cab?1196184990640 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftu...trols/en/x86/cl ient/muweb_site.cab?1197193791843 O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) - http://www.sibelius.com/download/software/...tiveXPlugin.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...ent.cab56907.ca b O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WINDOW~4\MESSEN~1\MSGRAP~1.DLL O18 - Protocol: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Program Files\Windows Live\Mail\mailcomm.dll O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing) O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing) O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVCOMSER\LVComSer.exe O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\LVMVFM\LVPrcSrv.exe O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Fichiers communs\LogiShrd\SrvLnch\SrvLnch.exe O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\svcntaux.exe O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\swdsvc.exe O23 - Service: TuneUp Drive Defrag Service (TuneUp.Defrag) - TuneUp Software GmbH - C:\WINDOWS\System32\TuneUpDefragService.exe
  13. telecharge hijakthis version francaise et l'analyseur de rapport zeb help process 2.23 tu sauras si tu as des infections
×
×
  • Créer...