

david11
Membres-
Compteur de contenus
33 -
Inscription
-
Dernière visite
Type de contenu
Profils
Forums
Blogs
Tout ce qui a été posté par david11
-
Probleme de connexion internet
david11 a répondu à un(e) sujet de david11 dans Analyses et éradication malwares
y a plus personne ? -
Bonjour et merci de ta reponse je fais comment pour reinitialiser IE.
-
Bonjour a tous, j'ai un probleme depuis quelque jour avec internet explorer , quand je tente d'aller sur un site internet ca me met souvant "internet explorer ne peu pas ouvrir cette page web" et je suis obliger de le faire plusieur fois pour me connecter. Quelqu'un pourrait - il m'aider Merci d'avance.
-
Probleme de connexion internet
david11 a répondu à un(e) sujet de david11 dans Analyses et éradication malwares
Bonjour, Ca y est j'ai reussi a mettre a jour acrobat. -
Probleme de connexion internet
david11 a répondu à un(e) sujet de david11 dans Analyses et éradication malwares
Bonjour,et merci pour ta reponce. je n'ai pas reussi a mettre a jour acrobat car internet explorer ne veut pas se connecter mais voici le dernier rapport que tu ma demandé. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 19:02, on 2010-02-02 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe C:\WINDOWS\SOUNDMAN.EXE C:\Acer\Empowering Technology\eRecovery\Monitor.exe C:\Program Files\BroadJump\Client Foundation\CFD.exe C:\Program Files\Logitech\Video\LogiTray.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\PROGRA~1\MICROS~4\wcescomm.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe C:\WINDOWS\system32\sistray.exe C:\Program Files\Club-Internet\Lanceur\lanceur.exe C:\PROGRA~1\MICROS~4\rapimgr.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\WINDOWS\system32\LVComS.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\david\Bureau\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.club-internet.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O4 - HKLM\..\Run: [LaunchApp] Alaunch O4 - HKLM\..\Run: [ntiMUI] C:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [siSPower] Rundll32.exe SiSPower.dll,ModeAgent O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe O4 - HKLM\..\Run: [bJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [symantec PIF AlertEng] "C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\RunServices: [DJSNetCN] C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\PROGRA~1\MICROS~4\wcescomm.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" O4 - Startup: Club Internet.lnk = C:\Program Files\Club-Internet\Lanceur\lanceur.exe O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe O4 - Global Startup: Docteur Club Internet.lnk = C:\Program Files\Club-Internet\Dr Club Internet\bin\matcli.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?c26964d197b1462190f40fda78675b26 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?c26964d197b1462190f40fda78675b26 O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe O9 - Extra button: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe (file missing) O9 - Extra 'Tools' menuitem: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe (file missing) O9 - Extra button: PacificPoker4 - {94EDF7B4-4272-4af3-8F8B-4E2F68E225B7} - C:\PROGRA~1\PACIFI~1\pacificpoker.exe O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204 O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\ccPwdSvc.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Norton Internet Security\comHost.exe O23 - Service: Symantec Licensing Detect Internet Connection (DJSNETCN) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe O23 - Service: Service Google Update (gupdate1ca7fdb40e89952) (gupdate1ca7fdb40e89952) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O24 - Desktop Component 0: (no name) - http://gfx1.hotmail.com/mail/uxp/w3/m3/pr07/h/strip_bing.png -- End of file - 13232 bytes -
Probleme de connexion internet
david11 a répondu à un(e) sujet de david11 dans Analyses et éradication malwares
-
Bonjour a tous, j'ai un probleme depuis quelque jour avec internet explorer , quand je tente d'aller sur un site internet ca me met souvant "internet explorer ne peu pas ouvrir cette page web" et je suis obliger de le faire plusieur fois pour me connecter. Voici le rapport hijackthis de mon PC . Quelqu'un pourrait - il m'aider Merci d'avance. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 18:05, on 2010-02-02 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v8.00 (8.00.6001.18702) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe C:\Program Files\ewido anti-spyware 4.0\guard.exe C:\Program Files\Java\jre6\bin\jqs.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe C:\WINDOWS\SOUNDMAN.EXE C:\Acer\Empowering Technology\eRecovery\Monitor.exe C:\Program Files\BroadJump\Client Foundation\CFD.exe C:\Program Files\Logitech\Video\LogiTray.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\PROGRA~1\MICROS~4\wcescomm.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe C:\WINDOWS\system32\sistray.exe C:\Program Files\Club-Internet\Lanceur\lanceur.exe C:\PROGRA~1\MICROS~4\rapimgr.exe C:\WINDOWS\system32\wbem\wmiapsrv.exe C:\WINDOWS\system32\LVComS.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\david\Bureau\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.club-internet.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll O4 - HKLM\..\Run: [LaunchApp] Alaunch O4 - HKLM\..\Run: [ntiMUI] C:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [siSPower] Rundll32.exe SiSPower.dll,ModeAgent O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe O4 - HKLM\..\Run: [bJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [symantec PIF AlertEng] "C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\RunServices: [DJSNetCN] C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\PROGRA~1\MICROS~4\wcescomm.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files\TomTom HOME 2\TomTomHOMERunner.exe" O4 - Startup: Club Internet.lnk = C:\Program Files\Club-Internet\Lanceur\lanceur.exe O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe O4 - Global Startup: Docteur Club Internet.lnk = C:\Program Files\Club-Internet\Dr Club Internet\bin\matcli.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?c26964d197b1462190f40fda78675b26 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?c26964d197b1462190f40fda78675b26 O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe O9 - Extra button: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe (file missing) O9 - Extra 'Tools' menuitem: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe (file missing) O9 - Extra button: PacificPoker4 - {94EDF7B4-4272-4af3-8F8B-4E2F68E225B7} - C:\PROGRA~1\PACIFI~1\pacificpoker.exe O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204 O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\ccPwdSvc.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Norton Internet Security\comHost.exe O23 - Service: Symantec Licensing Detect Internet Connection (DJSNETCN) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe O23 - Service: Service Google Update (gupdate1ca7fdb40e89952) (gupdate1ca7fdb40e89952) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: TomTomHOMEService - TomTom - C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe O24 - Desktop Component 0: (no name) - http://gfx1.hotmail.com/mail/uxp/w3/m3/pr07/h/strip_bing.png -- End of file - 13412 bytes
-
[Résolu]publicité intempéstive
david11 a répondu à un(e) sujet de david11 dans Analyses et éradication malwares
Tous me semble OK. Je te remerci pour ton aide. Bonne journée. Merci encore. -
[Résolu]publicité intempéstive
david11 a répondu à un(e) sujet de david11 dans Analyses et éradication malwares
Salut Apollo, voici le rapport de TCliner. [ Rapport ToolsCleaner version 2.3.5 (par A.Rothstein & dj QUIOU) ] --> Recherche: C:\TB.txt: trouvé ! C:\_OtMoveIt: trouvé ! C:\Toolbar SD: trouvé ! C:\Documents and Settings\david\Bureau\HijackThis.exe: trouvé ! C:\Documents and Settings\david\Bureau\ToolBarSD.exe: trouvé ! C:\Documents and Settings\david\Bureau\hijackthis.log: trouvé ! C:\Documents and Settings\david\Bureau\OTMoveIt3.exe: trouvé ! --------------------------------- --> Suppression: C:\Documents and Settings\david\Bureau\HijackThis.exe: supprimé ! C:\Documents and Settings\david\Bureau\ToolBarSD.exe: supprimé ! C:\TB.txt: supprimé ! C:\Documents and Settings\david\Bureau\hijackthis.log: supprimé ! C:\Documents and Settings\david\Bureau\OTMoveIt3.exe: supprimé ! C:\_OtMoveIt: supprimé ! C:\Toolbar SD: supprimé ! -
[Résolu]publicité intempéstive
david11 a répondu à un(e) sujet de david11 dans Analyses et éradication malwares
Voici le rapport. Le PC se comporte beaucoup mieu il n'y a plus de pub qui apparait. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 23:15, on 2009-05-19 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16827) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe C:\Program Files\ewido anti-spyware 4.0\guard.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\WINDOWS\system32\svchost.exe C:\Acer\Empowering Technology\eRecovery\Monitor.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\BroadJump\Client Foundation\CFD.exe C:\Program Files\Logitech\Video\LogiTray.exe C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\PROGRA~1\MICROS~4\wcescomm.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\system32\sistray.exe C:\Program Files\Club-Internet\Lanceur\lanceur.exe C:\PROGRA~1\MICROS~4\rapimgr.exe C:\WINDOWS\system32\LVComS.exe C:\Program Files\Club-Internet\Dr Club Internet\bin\mpbtn.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\internet explorer\iexplore.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE C:\Documents and Settings\david\Bureau\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.club-internet.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [LaunchApp] Alaunch O4 - HKLM\..\Run: [ntiMUI] C:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [siSPower] Rundll32.exe SiSPower.dll,ModeAgent O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe O4 - HKLM\..\Run: [bJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [symantec PIF AlertEng] "C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll" O4 - HKLM\..\RunServices: [DJSNetCN] C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\PROGRA~1\MICROS~4\wcescomm.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - Startup: Club Internet.lnk = C:\Program Files\Club-Internet\Lanceur\lanceur.exe O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe O4 - Global Startup: Docteur Club Internet.lnk = C:\Program Files\Club-Internet\Dr Club Internet\bin\matcli.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?c26964d197b1462190f40fda78675b26 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?c26964d197b1462190f40fda78675b26 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe O9 - Extra button: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe (file missing) O9 - Extra 'Tools' menuitem: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe (file missing) O9 - Extra button: PacificPoker4 - {94EDF7B4-4272-4af3-8F8B-4E2F68E225B7} - C:\PROGRA~1\PACIFI~1\pacificpoker.exe O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204 O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\ccPwdSvc.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Norton Internet Security\comHost.exe O23 - Service: Symantec Licensing Detect Internet Connection (DJSNETCN) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe -- End of file - 12176 bytes @+ -
[Résolu]publicité intempéstive
david11 a répondu à un(e) sujet de david11 dans Analyses et éradication malwares
Voici le rapport de Malwarebytes que tu ma demandé. Malwarebytes' Anti-Malware 1.36 Version de la base de données: 2155 Windows 5.1.2600 Service Pack 3 2009-05-19 23:04:44 mbam-log-2009-05-19 (23-04-44).txt Type de recherche: Examen complet (C:\|D:\|) Eléments examinés: 155951 Temps écoulé: 30 minute(s), 58 second(s) Processus mémoire infecté(s): 0 Module(s) mémoire infecté(s): 0 Clé(s) du Registre infectée(s): 28 Valeur(s) du Registre infectée(s): 0 Elément(s) de données du Registre infecté(s): 1 Dossier(s) infecté(s): 0 Fichier(s) infecté(s): 21 Processus mémoire infecté(s): (Aucun élément nuisible détecté) Module(s) mémoire infecté(s): (Aucun élément nuisible détecté) Clé(s) du Registre infectée(s): HKEY_CLASSES_ROOT\optimizer.adssite2 (Adware.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\optimizer.adssite2.1 (Adware.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{48dc6ffb-64d7-42e8-949d-8ef2641eb73a} (Adware.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{b4094603-dda9-4caf-9b13-0ad1034c9c53} (Adware.BHO) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{50ccd00a-66b6-4d95-aaef-8ee959498f92} (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{31a59636-0fa3-4a56-954d-db7ad02840d8} (Adware.Hotbar) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3fa917b9-df69-477f-9e4f-b60d929de79f} (Adware.Hotbar) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{8c875948-9c60-4381-9248-0df180542d53} (Adware.Hotbar) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1962c5bc-e475-465b-823b-133e711bceb9} (Adware.Starware) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{53e0b6e8-a51d-448b-b692-40b67b285543} (Adware.180Solutions) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6fd31ed6-7c94-4bbc-8e95-f927f4d3a949} (Adware.180Solutions) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{f31a5d11-bf0b-4a4e-90af-274f2090aaa6} (Adware.180Solutions) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{1962c5bc-e475-465b-823b-133e711bceb9} (Adware.Starware) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{e550dc77-ef3b-474f-b59c-b3e2aa1fa6a5} (Adware.Starware) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\rimsjogmvtw (Trojan.Agent) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3ab0ef71-cd03-4e30-9133-c97015b2d555} (Adware.BHO) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\20aaee4f-4c36-f158-ee0f-d45864a61fa3 (Adware.Adrotator) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\adssite (Adware.Agent) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\adssite (Adware.Agent) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\rightonadz (Adware.BHO) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\HID_Layer (Malware.Trace) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\affri (Malware.Trace) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\affri (Malware.Trace) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\stfngdvw.1 (Trojan.FakeAlert) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\EoRezo (Rogue.Eorezo) -> Quarantined and deleted successfully. Valeur(s) du Registre infectée(s): (Aucun élément nuisible détecté) Elément(s) de données du Registre infecté(s): HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully. Dossier(s) infecté(s): (Aucun élément nuisible détecté) Fichier(s) infecté(s): C:\WINDOWS\system32\rimsjogmvtw.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\WINDOWS\system32\djlisorlwffvzkgf.dll-uninst.exe (Adware.BHO) -> Quarantined and deleted successfully. C:\WINDOWS\system32\20aaee4f-4c36-f158-ee0f-d45864a61fa3.exe (Adware.Adrotator) -> Quarantined and deleted successfully. C:\WINDOWS\system32\MSINET.oca (Rogue.Trace) -> Quarantined and deleted successfully. C:\WINDOWS\system32\WhoisCL.exe (Adware.BHO) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP861\A0090439.exe (Adware.BHO) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP862\A0090442.exe (Adware.BHO) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP862\A0090468.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP875\A0090991.exe (Trojan.Agent) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP881\A0091150.exe (Adware.BHO) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP882\A0091154.exe (Adware.BHO) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP820\A0088215.exe (Adware.BHO) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP821\A0088221.exe (Adware.BHO) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP827\A0089549.exe (Adware.MySideSearch) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP849\A0090200.exe (Adware.BHO) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP850\A0090227.exe (Adware.Adrotator) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP831\A0089628.exe (Adware.SnappyAds) -> Quarantined and deleted successfully. C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP863\A0090533.exe (Adware.Adrotator) -> Quarantined and deleted successfully. C:\Program Files\Mozilla Firefox\components\66708f2c-d276-f81f-df4d-14fe9cc6e35e.dll (Adware.Yoog) -> Quarantined and deleted successfully. C:\WINDOWS\BM313e2b3d.txt (Trojan.Vundo) -> Quarantined and deleted successfully. C:\Program Files\Mozilla Firefox\components\nsBrowserOpt.dll (Adware.Adrotator) -> Quarantined and deleted successfully. @++ -
[Résolu]publicité intempéstive
david11 a répondu à un(e) sujet de david11 dans Analyses et éradication malwares
Voici le deuxieme rapport toolbar S&D -----------\\ ToolBar S&D 1.2.8 XP/Vista Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3 X86-based PC ( Multiprocessor Free : Intel® Celeron® CPU 2.80GHz ) BIOS : Phoenix - AwardBIOS v6.00PG USER : david ( Administrator ) BOOT : Normal boot Antivirus : Norton Internet Security 2006 (Activated) Firewall : Norton Internet Security 2006 (Activated) C:\ (Local Disk) - FAT32 - Total:72 Go (Free:38 Go) D:\ (Local Disk) - FAT32 - Total:72 Go (Free:72 Go) E:\ (CD or DVD) F:\ (USB) G:\ (USB) H:\ (USB) I:\ (USB) "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 ) Option : [2] ( 2009-05-19|21:40 ) -----------\\ SUPPRESSION Supprime! - C:\DOCUME~1\david\MENUDÉ~1\PROGRA~1\Adssite Games Collection Supprime! - C:\DOCUME~1\david\Cookies\david@cfg.crawler[2].txt Supprime! - C:\DOCUME~1\david\Cookies\david@gwmovies.powered-by.seekmo[2].txt Supprime! - C:\DOCUME~1\david\Cookies\david@h.starware[2].txt Supprime! - C:\DOCUME~1\david\Cookies\david@h.starware[1].txt Supprime! - C:\DOCUME~1\david\Cookies\david@try.starware[1].txt Supprime! - C:\DOCUME~1\david\Cookies\david@starware[2].txt Supprime! - C:\DOCUME~1\david\Cookies\david@h.starware[4].txt Supprime! - C:\DOCUME~1\david\Cookies\david@hosted.zango[1].txt -----------\\ Recherche de Fichiers / Dossiers ... -----------\\ Extensions (david) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar -----------\\ [..\Internet Explorer\Main] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Local Page"="C:\\WINDOWS\\system32\\blank.htm" "Start Page"="http://www.club-internet.fr" "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch" "SearchMigratedDefaultURL"="http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"'>http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home" --------------------\\ Recherche d'autres infections --------------------\\ Cracks & Keygens .. C:\DOCUME~1\david\Cookies\david@likecrack[2].txt 1 - "C:\ToolBar SD\TB_1.txt" - 2009-05-19|21:29 - Option : [1] 2 - "C:\ToolBar SD\TB_2.txt" - 2009-05-19|21:42 - Option : [2] -----------\\ Fin du rapport a 21:42:20.71 Et le rapport HijachThis que tu ma demandé Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:46, on 2009-05-19 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16827) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe C:\Program Files\ewido anti-spyware 4.0\guard.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\WINDOWS\SOUNDMAN.EXE C:\Acer\Empowering Technology\eRecovery\Monitor.exe C:\Program Files\BroadJump\Client Foundation\CFD.exe C:\Program Files\Logitech\Video\LogiTray.exe C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\Program Files\QuickTime\qttask.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\PROGRA~1\MICROS~4\wcescomm.exe C:\WINDOWS\system32\sistray.exe C:\Program Files\Club-Internet\Lanceur\lanceur.exe C:\PROGRA~1\MICROS~4\rapimgr.exe C:\Program Files\Club-Internet\Dr Club Internet\bin\mpbtn.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\LVComS.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe C:\Program Files\internet explorer\iexplore.exe C:\Documents and Settings\david\Bureau\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.club-internet.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R3 - Default URLSearchHook is missing O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [LaunchApp] Alaunch O4 - HKLM\..\Run: [ntiMUI] C:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [siSPower] Rundll32.exe SiSPower.dll,ModeAgent O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe O4 - HKLM\..\Run: [bJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [symantec PIF AlertEng] "C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll" O4 - HKLM\..\Run: [softwareHelper] C:\Documents and Settings\david\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe O4 - HKLM\..\RunServices: [DJSNetCN] C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\PROGRA~1\MICROS~4\wcescomm.exe" O4 - Startup: Club Internet.lnk = C:\Program Files\Club-Internet\Lanceur\lanceur.exe O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe O4 - Global Startup: Docteur Club Internet.lnk = C:\Program Files\Club-Internet\Dr Club Internet\bin\matcli.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?c26964d197b1462190f40fda78675b26 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?c26964d197b1462190f40fda78675b26 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe O9 - Extra button: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe (file missing) O9 - Extra 'Tools' menuitem: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe (file missing) O9 - Extra button: PacificPoker4 - {94EDF7B4-4272-4af3-8F8B-4E2F68E225B7} - C:\PROGRA~1\PACIFI~1\pacificpoker.exe O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204 O16 - DPF: {2472DCCC-68CE-49DA-AA81-E7E6D83C1DFA} (PackageHTML) - http://www.easypackhtml.com/PackageHtmlCab.CAB O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\ccPwdSvc.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Norton Internet Security\comHost.exe O23 - Service: Symantec Licensing Detect Internet Connection (DJSNETCN) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe -- End of file - 12712 bytes @+ -
[Résolu]publicité intempéstive
david11 a répondu à un(e) sujet de david11 dans Analyses et éradication malwares
Voici le rapport de toolbar S&D -----------\\ ToolBar S&D 1.2.8 XP/Vista Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3 X86-based PC ( Multiprocessor Free : Intel® Celeron® CPU 2.80GHz ) BIOS : Phoenix - AwardBIOS v6.00PG USER : david ( Administrator ) BOOT : Normal boot Antivirus : Norton Internet Security 2006 (Activated) Firewall : Norton Internet Security 2006 (Activated) C:\ (Local Disk) - FAT32 - Total:72 Go (Free:38 Go) D:\ (Local Disk) - FAT32 - Total:72 Go (Free:72 Go) E:\ (CD or DVD) F:\ (USB) G:\ (USB) H:\ (USB) I:\ (USB) "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 ) Option : [1] ( 2009-05-19|21:27 ) -----------\\ Recherche de Fichiers / Dossiers ... C:\DOCUME~1\david\MENUDÉ~1\PROGRA~1\Adssite Games Collection C:\DOCUME~1\david\Cookies\david@cfg.crawler[2].txt C:\DOCUME~1\david\Cookies\david@gwmovies.powered-by.seekmo[2].txt C:\DOCUME~1\david\Cookies\david@h.starware[2].txt C:\DOCUME~1\david\Cookies\david@h.starware[1].txt C:\DOCUME~1\david\Cookies\david@try.starware[1].txt C:\DOCUME~1\david\Cookies\david@starware[2].txt C:\DOCUME~1\david\Cookies\david@h.starware[4].txt C:\DOCUME~1\david\Cookies\david@hosted.zango[1].txt -----------\\ Extensions (david) - {3112ca9c-de6d-4884-a869-9855de68056c} => google-toolbar -----------\\ [..\Internet Explorer\Main] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Local Page"="C:\\WINDOWS\\system32\\blank.htm" "Start Page"="http://www.club-internet.fr" "Search Page"="http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch" "SearchMigratedDefaultURL"="http://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"'>http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://www.microsoft.com/isapi/redir.dll?prd={SUB_PRD}&clcid={SUB_CLSID}&pver={SUB_PVER}&ar=home" --------------------\\ Recherche d'autres infections --------------------\\ Cracks & Keygens .. C:\DOCUME~1\david\Cookies\david@likecrack[2].txt 1 - "C:\ToolBar SD\TB_1.txt" - 2009-05-19|21:29 - Option : [1] -----------\\ Fin du rapport a 21:29:44.70 @++ -
[Résolu]publicité intempéstive
david11 a répondu à un(e) sujet de david11 dans Analyses et éradication malwares
Voici le rapport que j'ai obtenu. @+ ========== PROCESSES ========== Process explorer.exe killed successfully. ========== FILES ========== Folder move failed. c:\program files\EoRezo\EoAdv scheduled to be moved on reboot. Folder move failed. c:\program files\EoRezo scheduled to be moved on reboot. File/Folder c:\documents and settings\david\application data\eorezo not found. File/Folder c:\windows\system32\djlisorlwffvzkgf.dll not found. File/Folder c:\windows\system32\qqunwgsmbuvub.dll not found. File/Folder c:\windows\system32\nsbe.dll not found. ========== REGISTRY ========== Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0A9B4917-75DE-DC18-8E51-6886B312543E}\\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{0A9B4917-75DE-DC18-8E51-6886B312543E}\\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4ECEFBFE-CB17-6086-5D4E-AA5DC37A06A9}\\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4ECEFBFE-CB17-6086-5D4E-AA5DC37A06A9}\\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8caf2803-f273-e790-8f3f-91f042e44ce0}\\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8caf2803-f273-e790-8f3f-91f042e44ce0}\\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C7B76B90-3455-4AE6-A752-EAC4D19689E5}\\ not found. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C7B76B90-3455-4AE6-A752-EAC4D19689E5}\\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\EoEngine not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\SoftwareHelper deleted successfully. ========== COMMANDS ========== File delete failed. C:\DOCUME~1\david\LOCALS~1\Temp\WCESLog.log scheduled to be deleted on reboot. User's Temp folder emptied. User's Internet Explorer cache folder emptied. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\Z5TP7ZXI\;net=dn4845;sz=1x1;ord=1242651421795[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\Z5TP7ZXI\primescratch_form_FR[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\TNSXVAH2\td[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\J0W5XU54\index1[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\WNBTZMVP\su-iphone-slstar[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\WNBTZMVP\prep_ctr[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\I2AOKO6F\publicite-intempestive-t163292[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\FX4US39C\blank[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\FX4US39C\404[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\FX4US39C\hp[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\FX4US39C\cultures[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\7ODFPHYD\ads[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\7ODFPHYD\ads[5].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\7ODFPHYD\loisirs[1].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\7ODFPHYD\iframe[2].htm scheduled to be deleted on reboot. File delete failed. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot. User's Temporary Internet Files folder emptied. Local Service Temp folder emptied. File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot. Local Service Temporary Internet Files folder emptied. Network Service Temp folder emptied. Network Service Temporary Internet Files folder emptied. Windows Temp folder emptied. Java cache emptied. FireFox cache emptied. Temp folders emptied. Explorer started successfully OTMoveIt3 by OldTimer - Version 1.0.11.0 log created on 05192009_210009 Files moved on Reboot... c:\program files\EoRezo\EoAdv moved successfully. c:\program files\EoRezo moved successfully. C:\DOCUME~1\david\LOCALS~1\Temp\WCESLog.log moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\Z5TP7ZXI\;net=dn4845;sz=1x1;ord=1242651421795[1].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\Z5TP7ZXI\primescratch_form_FR[1].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\TNSXVAH2\td[1].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\J0W5XU54\index1[1].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\WNBTZMVP\su-iphone-slstar[1].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\WNBTZMVP\prep_ctr[1].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\I2AOKO6F\publicite-intempestive-t163292[1].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\FX4US39C\blank[1].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\FX4US39C\404[1].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\FX4US39C\hp[1].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\FX4US39C\cultures[1].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\7ODFPHYD\ads[1].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\7ODFPHYD\ads[5].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\7ODFPHYD\loisirs[1].htm moved successfully. C:\Documents and Settings\david\Local Settings\Temporary Internet Files\Content.IE5\7ODFPHYD\iframe[2].htm moved successfully. -
Bonjour, J'ai de la publicité intempestive sur mon PC et il est de plus en plus lent. j'ai fait un rapport HijackThis mais je n'y connait rien , y a t'il quelqu'un pour me donner un coup de main Merci d'avance. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 19:41, on 2009-05-19 Platform: Windows XP SP3 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16827) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe C:\Program Files\ewido anti-spyware 4.0\guard.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\SOUNDMAN.EXE C:\Acer\Empowering Technology\eRecovery\Monitor.exe C:\Program Files\BroadJump\Client Foundation\CFD.exe C:\Program Files\Logitech\Video\LogiTray.exe C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\Program Files\QuickTime\qttask.exe C:\Program Files\EoRezo\EoEngine.exe C:\Documents and Settings\david\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe C:\WINDOWS\System32\regsvr32.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\PROGRA~1\MICROS~4\wcescomm.exe C:\WINDOWS\system32\sistray.exe C:\Program Files\Club-Internet\Lanceur\lanceur.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\PROGRA~1\MICROS~4\rapimgr.exe C:\WINDOWS\system32\LVComS.exe C:\Program Files\Club-Internet\Dr Club Internet\bin\mpbtn.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe C:\Program Files\internet explorer\iexplore.exe C:\Documents and Settings\david\Bureau\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.club-internet.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://y.lo.st O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: mysidesearch search enhancer - {0A9B4917-75DE-DC18-8E51-6886B312543E} - C:\WINDOWS\system32\djlisorlwffvzkgf.dll O2 - BHO: snappyads browser enhancer - {4ECEFBFE-CB17-6086-5D4E-AA5DC37A06A9} - C:\WINDOWS\system32\qqunwgsmbuvub.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: snappyads - {8caf2803-f273-e790-8f3f-91f042e44ce0} - C:\WINDOWS\system32\nsbE.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O2 - BHO: EoBHO - {C7B76B90-3455-4AE6-A752-EAC4D19689E5} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O4 - HKLM\..\Run: [LaunchApp] Alaunch O4 - HKLM\..\Run: [ntiMUI] C:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [siSPower] Rundll32.exe SiSPower.dll,ModeAgent O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe O4 - HKLM\..\Run: [bJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [symantec PIF AlertEng] "C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll" O4 - HKLM\..\Run: [EoEngine] "C:\Program Files\EoRezo\EoEngine.exe" O4 - HKLM\..\Run: [softwareHelper] C:\Documents and Settings\david\Application Data\eoRezo\SoftwareUpdate\SoftwareUpdateHP.exe O4 - HKLM\..\Run: [jugvgxpgtow] C:\WINDOWS\System32\regsvr32.exe /s "C:\WINDOWS\system32\qqunwgsmbuvub.dll" O4 - HKLM\..\RunServices: [DJSNetCN] C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\PROGRA~1\MICROS~4\wcescomm.exe" O4 - Startup: Club Internet.lnk = C:\Program Files\Club-Internet\Lanceur\lanceur.exe O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe O4 - Global Startup: Docteur Club Internet.lnk = C:\Program Files\Club-Internet\Dr Club Internet\bin\matcli.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?c26964d197b1462190f40fda78675b26 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?c26964d197b1462190f40fda78675b26 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe O9 - Extra button: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe (file missing) O9 - Extra 'Tools' menuitem: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe (file missing) O9 - Extra button: PacificPoker4 - {94EDF7B4-4272-4af3-8F8B-4E2F68E225B7} - C:\PROGRA~1\PACIFI~1\pacificpoker.exe O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204 O16 - DPF: {2472DCCC-68CE-49DA-AA81-E7E6D83C1DFA} (PackageHTML) - http://www.easypackhtml.com/PackageHtmlCab.CAB O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\ccPwdSvc.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Norton Internet Security\comHost.exe O23 - Service: Symantec Licensing Detect Internet Connection (DJSNETCN) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe -- End of file - 13777 bytes
-
Bonjour, Ok, je ne me ferai plus avoir . Un grand merci pour tout et bon courrage.
-
Bonsoir, Ya t'il encore quelque chose a faire?
-
bonsoir, Voici le rapport de Toolscleaner2 -->- Recherche: C:\SDFIX: trouvé ! C:\Combofix: trouvé ! C:\Lop SD: trouvé ! C:\Qoobox: trouvé ! C:\Documents and Settings\david\Menu Démarrer\Programmes\Lop S&D: trouvé ! C:\Documents and Settings\david\Recent\HijackThis.lnk: trouvé ! C:\Documents and Settings\david\Bureau\SdFix.exe: trouvé ! C:\Documents and Settings\david\Bureau\Lop S&D.lnk: trouvé ! C:\Documents and Settings\david\Bureau\LopSD.exe: trouvé ! C:\Documents and Settings\david\Bureau\ComboFix.exe: trouvé ! C:\Documents and Settings\david\Bureau\HijackThis.exe: trouvé ! C:\Documents and Settings\david\Bureau\sdfix david\SDFIX: trouvé ! C:\Lop SD\Lop S&D.lnk: trouvé !
-
Bonsoir, Voici le rapport de Nod32 # version=4 # OnlineScanner.ocx=1.0.0.635 # OnlineScannerDLLA.dll=1, 0, 0, 79 # OnlineScannerDLLW.dll=1, 0, 0, 78 # OnlineScannerUninstaller.exe=1, 0, 0, 49 # vers_standard_module=2995 (20080402) # vers_arch_module=1.064 (20080214) # vers_adv_heur_module=1.064 (20070717) # EOSSerial=f23b4bb42a392f488573a9b824d7c5a2 # end=finished # remove_checked=false # unwanted_checked=false # utc_time=2008-04-02 04:45:18 # local_time=2008-04-02 06:45:18 (+0100, Paris, Madrid) # country="France" # osver=5.1.2600 NT Service Pack 2 # scanned=333283 # found=49 # scan_time=4637 C:\Documents and Settings\david\Local Settings\Temp\Av-test.txt Eicar test file 1195B64D237F57E6289D3CD105228D93 C:\Documents and Settings\david\Bureau\sdfix david\SDFix\backups\backups.zip multiple infiltrations 540EA64A3F3DFFC434BA7CAE04345BB5 C:\Documents and Settings\david\Bureau\sdfix david\SDFix\backups\backups.zip »ZIP »backups/mrofinu1188.exe Win32/TrojanDownloader.Agent.BLS trojan 00000000000000000000000000000000 C:\Documents and Settings\david\Bureau\sdfix david\SDFix\backups\backups.zip »ZIP »backups/svchost.exe probably a variant of Win32/Genetik trojan 00000000000000000000000000000000 C:\Documents and Settings\david\Bureau\sdfix david\SDFix\backups\backups.zip »ZIP »backups/winlogon.exe probably a variant of Win32/Genetik trojan 00000000000000000000000000000000 C:\Program Files\Mozilla Firefox\components\nsBrowserOpt.dll Win32/BHO.NDA trojan 0CEA62B48299CDFF294C1C18DACDBA53 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP517\A0054657.dll Win32/BHO.NCZ trojan 1727958C8B8CE26C21DA459FE766D228 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP517\A0054658.dll Win32/BHO.NDA trojan 0CEA62B48299CDFF294C1C18DACDBA53 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP518\A0055740.dll Win32/BHO.NCZ trojan 1727958C8B8CE26C21DA459FE766D228 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP518\A0055741.dll Win32/BHO.NDA trojan 0CEA62B48299CDFF294C1C18DACDBA53 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP519\A0055794.dll Win32/BHO.NCZ trojan 1727958C8B8CE26C21DA459FE766D228 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP519\A0055795.dll Win32/BHO.NDA trojan 0CEA62B48299CDFF294C1C18DACDBA53 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP521\A0055821.dll Win32/BHO.NCZ trojan 1727958C8B8CE26C21DA459FE766D228 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP521\A0055822.dll Win32/BHO.NDA trojan 0CEA62B48299CDFF294C1C18DACDBA53 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP522\A0055862.dll Win32/BHO.NCZ trojan 1727958C8B8CE26C21DA459FE766D228 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP522\A0055863.dll Win32/BHO.NDA trojan 0CEA62B48299CDFF294C1C18DACDBA53 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP522\A0055890.dll Win32/BHO.NCZ trojan 1727958C8B8CE26C21DA459FE766D228 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP522\A0055891.dll Win32/BHO.NDA trojan 0CEA62B48299CDFF294C1C18DACDBA53 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP523\A0055930.dll Win32/BHO.NCZ trojan 1727958C8B8CE26C21DA459FE766D228 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP523\A0055931.dll Win32/BHO.NDA trojan 0CEA62B48299CDFF294C1C18DACDBA53 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP524\A0055962.dll Win32/BHO.NCZ trojan 1727958C8B8CE26C21DA459FE766D228 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP524\A0055963.dll Win32/BHO.NDA trojan 0CEA62B48299CDFF294C1C18DACDBA53 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP526\A0056991.dll Win32/BHO.NCZ trojan 1727958C8B8CE26C21DA459FE766D228 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP526\A0056992.dll Win32/BHO.NDA trojan 0CEA62B48299CDFF294C1C18DACDBA53 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP536\A0057508.dll Win32/Adware.Virtumonde application C7E047AFB36E7A726409865D60327ED4 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP536\A0057567.exe Win32/TrojanDownloader.Agent.BLS trojan 9CB9C37743FE81247BFB2D829126C340 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP536\A0057568.exe probably a variant of Win32/Genetik trojan 6F5F56C29516BF466D33AEE4339E4F2C C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP536\A0057569.EXE probably a variant of Win32/Genetik trojan 6F5F56C29516BF466D33AEE4339E4F2C C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP536\A0057577.exe Win32/TrojanDownloader.Agent.BLS trojan 9CB9C37743FE81247BFB2D829126C340 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP536\A0057578.exe probably a variant of Win32/Genetik trojan 6F5F56C29516BF466D33AEE4339E4F2C C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP536\A0057579.exe probably a variant of Win32/Genetik trojan 6F5F56C29516BF466D33AEE4339E4F2C C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP537\A0057660.dll Win32/BHO.NCZ trojan 1727958C8B8CE26C21DA459FE766D228 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP537\A0057661.dll Win32/BHO.NDF trojan C92B0FC02492CFFF0D46ADA328CC00BA C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP537\A0057663.dll Win32/BHO.NDF trojan 89A018558698C20D520B4634C1138C5A C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP537\A0057664.DLL Win32/Adware.AdMedia application 07A000FACD13BEA3D1C693D223D8B105 C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP537\A0057667.dll Win32/Adware.Comet application 1AEC69858C40A40E0E257E98C1913D6E C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP538\A0057933.exe Win32/Obfuscated.A1 trojan D9C6EC2C800A5F7456D0F46F3233AE5C C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP538\A0057934.exe Win32/Obfuscated.A1 trojan D9C6EC2C800A5F7456D0F46F3233AE5C C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP538\A0057935.exe Win32/Obfuscated.A1 trojan D9C6EC2C800A5F7456D0F46F3233AE5C C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP538\A0057936.exe Win32/Obfuscated.A1 trojan D9C6EC2C800A5F7456D0F46F3233AE5C C:\System Volume Information\_restore{EADA2B13-36AE-4518-A8C2-3D8B7D759571}\RP538\A0057937.exe Win32/Obfuscated.A1 trojan AF093801E470A3DB669FD15B461FEAE4 C:\QooBox\Quarantine\C\Program Files\Starware354\bin\Starware354.dll.vir Win32/Adware.Comet application 1AEC69858C40A40E0E257E98C1913D6E C:\QooBox\Quarantine\C\WINDOWS\system32\nss3D.dll.vir Win32/BHO.NCZ trojan 1727958C8B8CE26C21DA459FE766D228 C:\QooBox\Quarantine\C\WINDOWS\system32\ulcjccqi.dll.vir Win32/BHO.NDF trojan 89A018558698C20D520B4634C1138C5A C:\Lop SD\Backup-Lop\F\lvvocvkn.exe Win32/Obfuscated.A1 trojan D9C6EC2C800A5F7456D0F46F3233AE5C C:\Lop SD\Backup-Lop\F\hivkvlrn.exe Win32/Obfuscated.A1 trojan D9C6EC2C800A5F7456D0F46F3233AE5C C:\Lop SD\Backup-Lop\F\grid dart.exe Win32/Obfuscated.A1 trojan D9C6EC2C800A5F7456D0F46F3233AE5C C:\Lop SD\Backup-Lop\F\tool soft.exe Win32/Obfuscated.A1 trojan D9C6EC2C800A5F7456D0F46F3233AE5C C:\Lop SD\Backup-Lop\F\uninst.exe Win32/Obfuscated.A1 trojan AF093801E470A3DB669FD15B461FEAE4
-
Bonjour, Oui c'est nettement mieux plus de pubs En revenche je ne peux pas m'enregistrer sur panda car il me dit que le format de mon adresse E-mail et incorrect
-
Et voici le deuxieme. -----------------------[ Lop S&D 4.1.0-5 XP/Vista ]--------------------- [ Windows XP (NT 5.1) Build 2600, Service Pack 2 ] [ USER : david ] [ "C:\Lop SD" ] [ 2008-04-02 | 15:14:35.42 ] [ PC : ACER-FE8B363750 ] [ MAJ : 01-03-2008 | 22:16 ] \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION ///////////////////////////// Supprimé! - C:\DOCUME~1\david\APPLIC~1\ELSE PLUS\lvvocvkn.exe Supprimé! - C:\DOCUME~1\david\APPLIC~1\ELSE PLUS\hivkvlrn.exe Supprimé! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\filmtimeupcurb\grid dart.exe Supprimé! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\filmtimeupcurb\tool soft.exe Supprimé! - C:\Program Files\Adverts\uninst.exe Supprimé! - C:\WINDOWS\Tasks\B95F67D39035109F.job Supprimé! - C:\DOCUME~1\david\APPLIC~1\ELSE PLUS Supprimé! - C:\Program Files\ELSE PLUS Supprimé! - C:\DOCUME~1\ALLUSE~1\APPLIC~1\filmtimeupcurb Supprimé! - C:\Program Files\Adverts //////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ -------------[ Listing des dossiers dans Application Data ]------------ [2006-05-24|16:21] C:\DOCUME~1\DEFAUL~1\APPLIC~1\. [2006-05-24|16:21] C:\DOCUME~1\DEFAUL~1\APPLIC~1\.. [2005-11-02|15:47] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini [2005-11-02|16:01] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities [2005-11-02|15:47] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft [2005-11-02|16:09] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec [2006-05-24|16:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\. [2006-05-24|16:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\.. [2007-01-13|13:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe [2006-08-16|14:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink [2005-11-02|15:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini [2006-09-12|21:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google [2006-09-17|20:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus! [2005-11-02|15:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft [2006-07-28|19:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Motive [2006-08-02|11:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MotiveSysIDs [2006-09-21|16:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NtiDvdCopy [2005-11-02|16:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec [2006-07-26|19:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL [2006-11-12|16:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems [2006-09-04|21:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage [2006-08-13|11:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar [2006-05-24|16:21] C:\DOCUME~1\NETWOR~1\APPLIC~1\. [2006-05-24|16:21] C:\DOCUME~1\NETWOR~1\APPLIC~1\.. [2005-11-02|15:47] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft [2006-08-23|16:51] C:\DOCUME~1\NETWOR~1\APPLIC~1\Symantec [2006-05-24|16:21] C:\DOCUME~1\LOCALS~1\APPLIC~1\. [2006-05-24|16:21] C:\DOCUME~1\LOCALS~1\APPLIC~1\.. [2007-12-12|17:02] C:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe [2005-11-02|15:47] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft [2007-06-16|15:17] C:\DOCUME~1\david\APPLIC~1\$_hpcst$.hpc [2006-07-20|22:08] C:\DOCUME~1\david\APPLIC~1\. [2006-07-20|22:08] C:\DOCUME~1\david\APPLIC~1\.. [2006-08-02|16:49] C:\DOCUME~1\david\APPLIC~1\Adobe [2006-08-31|10:18] C:\DOCUME~1\david\APPLIC~1\AdobeUM [2006-08-25|14:37] C:\DOCUME~1\david\APPLIC~1\CyberLink [2005-11-02|15:47] C:\DOCUME~1\david\APPLIC~1\desktop.ini [2006-12-26|18:16] C:\DOCUME~1\david\APPLIC~1\DivX [2006-08-08|13:49] C:\DOCUME~1\david\APPLIC~1\EPSON [2006-09-07|17:42] C:\DOCUME~1\david\APPLIC~1\Google [2006-08-16|14:40] C:\DOCUME~1\david\APPLIC~1\Help [2005-11-02|16:01] C:\DOCUME~1\david\APPLIC~1\Identities [2008-01-08|19:31] C:\DOCUME~1\david\APPLIC~1\LimeWire [2006-08-02|11:54] C:\DOCUME~1\david\APPLIC~1\Macromedia [2005-11-02|15:47] C:\DOCUME~1\david\APPLIC~1\Microsoft [2006-08-14|23:31] C:\DOCUME~1\david\APPLIC~1\Microsoft Web Folders [2006-08-29|11:35] C:\DOCUME~1\david\APPLIC~1\Mozilla [2006-08-02|13:36] C:\DOCUME~1\david\APPLIC~1\MSNInstaller [2007-03-27|18:24] C:\DOCUME~1\david\APPLIC~1\Screenshot Sender [2006-09-07|17:36] C:\DOCUME~1\david\APPLIC~1\Sun [2005-11-02|16:09] C:\DOCUME~1\david\APPLIC~1\Symantec [2006-11-12|16:45] C:\DOCUME~1\david\APPLIC~1\Ulead Systems ----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]--------------- [2008-04-01 21:35][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job [2008-03-29 00:37][--a------] C:\WINDOWS\tasks\Norton AntiVirus - Effectuer une analyse complŠte du systŠme - david.job [2008-04-02 14:35][--ah-----] C:\WINDOWS\tasks\SA.DAT [2004-08-05 05:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini ---------------[ Listing des dossiers dans C:\Program Files ]-------------- [2006-05-24|16:21] C:\Program Files\. [2006-05-24|16:21] C:\Program Files\.. [2005-11-02|16:04] C:\Program Files\Adobe [2006-07-22|15:53] C:\Program Files\Atari [2006-09-17|22:02] C:\Program Files\BitComet [2006-07-28|19:25] C:\Program Files\BroadJump [2006-07-28|19:27] C:\Program Files\Club-Internet [2006-07-28|19:28] C:\Program Files\Common Files [2005-11-02|15:51] C:\Program Files\ComPlus Applications [2005-11-02|16:07] C:\Program Files\CyberLink [2006-08-31|21:57] C:\Program Files\david10.exe [2006-08-24|15:39] C:\Program Files\directx [2006-08-29|11:34] C:\Program Files\DivX [2006-07-22|09:46] C:\Program Files\Eidos Interactive [2006-09-19|16:50] C:\Program Files\eMule [2006-07-26|19:21] C:\Program Files\epson [2006-09-03|21:28] C:\Program Files\ewido anti-spyware 4.0 [2005-11-02|15:47] C:\Program Files\Fichiers communs [2006-07-22|16:02] C:\Program Files\GameSpy Arcade [2006-08-29|11:35] C:\Program Files\Google [2005-11-02|16:00] C:\Program Files\InstallShield Installation Information [2006-07-26|20:53] C:\Program Files\Intel [2005-11-02|15:52] C:\Program Files\Internet Explorer [2006-09-07|17:41] C:\Program Files\Java [2008-01-08|19:30] C:\Program Files\LimeWire [2006-07-22|15:43] C:\Program Files\Logitech [2006-09-30|13:58] C:\Program Files\Masta [2005-11-02|15:51] C:\Program Files\Messenger [2006-08-22|16:18] C:\Program Files\Messenger Plus! Live [2006-09-04|21:40] C:\Program Files\MessengerPlus! 3 [2006-11-12|15:43] C:\Program Files\Micro Application [2006-08-24|15:34] C:\Program Files\Microids [2007-06-16|15:15] C:\Program Files\Microsoft ActiveSync [2007-05-11|03:02] C:\Program Files\Microsoft CAPICOM 2.1.0.2 [2005-11-02|15:53] C:\Program Files\microsoft frontpage [2006-08-14|23:31] C:\Program Files\Microsoft Office [2006-08-16|18:43] C:\Program Files\Microsoft Visual Studio [2006-07-28|19:27] C:\Program Files\Motive [2005-11-02|15:52] C:\Program Files\Movie Maker [2006-08-29|11:35] C:\Program Files\Mozilla Firefox [2005-11-02|15:51] C:\Program Files\MSN [2005-11-02|15:51] C:\Program Files\MSN Gaming Zone [2006-08-13|11:50] C:\Program Files\MSN Messenger [2006-11-15|22:58] C:\Program Files\MSXML 4.0 [2005-11-02|15:52] C:\Program Files\NetMeeting [2005-11-02|16:07] C:\Program Files\NewTech Infosystems [2006-11-15|14:55] C:\Program Files\Norton Internet Security [2005-11-02|15:51] C:\Program Files\Online Services [2005-11-02|15:52] C:\Program Files\Outlook Express [2007-11-05|09:31] C:\Program Files\PacificPoker4 [2007-11-25|21:15] C:\Program Files\PokerStars [2005-11-02|16:02] C:\Program Files\Realtek AC97 [2005-11-02|15:52] C:\Program Files\Services en ligne [2006-07-20|22:09] C:\Program Files\SiS VGA Utilities V3.68 [2005-11-02|16:00] C:\Program Files\sisagp [2006-07-20|21:50] C:\Program Files\SiSLan [2005-11-02|16:09] C:\Program Files\Symantec [2007-01-30|10:25] C:\Program Files\Ulead Systems [2005-11-02|16:01] C:\Program Files\Uninstall Information [2006-07-26|20:50] C:\Program Files\Waywardxs [2006-10-15|15:50] C:\Program Files\Windows Journal Viewer [2007-10-02|16:59] C:\Program Files\Windows Live [2006-08-13|11:52] C:\Program Files\Windows Live Toolbar [2007-02-08|15:28] C:\Program Files\Windows Media Connect 2 [2005-11-02|15:51] C:\Program Files\Windows Media Player [2005-11-02|15:51] C:\Program Files\Windows NT [2005-11-02|15:52] C:\Program Files\WindowsUpdate [2005-11-02|15:53] C:\Program Files\xerox [2006-08-20|22:54] C:\Program Files\Yahoo! ------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------ [2006-05-24|16:21] C:\Program Files\Fichiers communs\. [2006-05-24|16:21] C:\Program Files\Fichiers communs\.. [2007-01-13|13:23] C:\Program Files\Fichiers communs\Adobe [2006-08-14|23:34] C:\Program Files\Fichiers communs\Designer [2005-11-02|16:00] C:\Program Files\Fichiers communs\InstallShield [2006-09-07|17:40] C:\Program Files\Fichiers communs\Java [2006-08-19|15:52] C:\Program Files\Fichiers communs\Labtec [2006-07-22|15:43] C:\Program Files\Fichiers communs\Logitech [2006-11-12|15:43] C:\Program Files\Fichiers communs\Micro Application Shared [2005-11-02|15:47] C:\Program Files\Fichiers communs\Microsoft Shared [2006-07-28|19:28] C:\Program Files\Fichiers communs\Motive [2005-11-02|15:52] C:\Program Files\Fichiers communs\MSSoap [2005-11-02|16:07] C:\Program Files\Fichiers communs\muvee Technologies [2005-11-02|16:07] C:\Program Files\Fichiers communs\NewTech Infosystems [2005-11-02|15:47] C:\Program Files\Fichiers communs\ODBC [2005-11-02|15:52] C:\Program Files\Fichiers communs\Services [2005-11-02|15:47] C:\Program Files\Fichiers communs\SpeechEngines [2005-11-02|16:09] C:\Program Files\Fichiers communs\Symantec Shared [2005-11-02|15:52] C:\Program Files\Fichiers communs\System [2007-01-30|10:24] C:\Program Files\Fichiers communs\Ulead Systems ----------------------[ Recherche avec S_Lop ]--------------------- Aucun fichier / dossier Lop trouvé ! -----------------[ Recherche de Fichiers / Dossiers Lop ]----------------- Aucun fichier / dossier Lop trouvé ! ----------------------[ Verification du Registre ]---------------------- ..... OK ! --------------------[ Verification du fichier Hosts ]--------------------- Fichier Hosts PROPRE ----------------[ Recherche de fichiers avec Catchme ]----------------- catchme 0.3.1262 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-04-02 15:16:28 Windows 5.1.2600 Service Pack 2 FAT NTAPI scanning hidden files ... scan completed successfully hidden files: 0 --------------------[ Recherche d'autres infections ]--------------------- Aucune autre infection trouvée ! /!\ [Fich:6][Doss:2] C:\DOCUME~1\david\LOCALS~1\Temp /!\ [Fich:2949][Doss:0] C:\DOCUME~1\david\Cookies /!\ [Fich:381][Doss:20] C:\DOCUME~1\david\LOCALS~1\TEMPOR~1\content.IE5 --------------------[ Fin du rapport a 15:16:35.29 ]----------------------
-
Bonjour, Voici le premier rapport. -----------------------[ Lop S&D 4.1.0-5 XP/Vista ]--------------------- [ Windows XP (NT 5.1) Build 2600, Service Pack 2 ] [ USER : david ] [ "C:\Lop SD" ] [ 2008-04-02 | 15:07:52.18 ] [ PC : ACER-FE8B363750 ] [ MAJ : 01-03-2008 | 22:16 ] -------------[ Listing des dossiers dans Application Data ]------------ [2006-05-24|16:21] C:\DOCUME~1\DEFAUL~1\APPLIC~1\. [2006-05-24|16:21] C:\DOCUME~1\DEFAUL~1\APPLIC~1\.. [2005-11-02|15:47] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini [2005-11-02|16:01] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities [2005-11-02|15:47] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft [2005-11-02|16:09] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec [2006-05-24|16:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\. [2006-05-24|16:21] C:\DOCUME~1\ALLUSE~1\APPLIC~1\.. [2007-01-13|13:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe [2006-08-16|14:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink [2005-11-02|15:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini [2007-03-27|18:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\filmtimeupcurb [2006-09-12|21:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google [2006-09-17|20:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus! [2005-11-02|15:47] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft [2006-07-28|19:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Motive [2006-08-02|11:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\MotiveSysIDs [2006-09-21|16:49] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NtiDvdCopy [2005-11-02|16:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec [2006-07-26|19:24] C:\DOCUME~1\ALLUSE~1\APPLIC~1\UDL [2006-11-12|16:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ulead Systems [2006-09-04|21:07] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage [2006-08-13|11:52] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar [2006-05-24|16:21] C:\DOCUME~1\NETWOR~1\APPLIC~1\. [2006-05-24|16:21] C:\DOCUME~1\NETWOR~1\APPLIC~1\.. [2005-11-02|15:47] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft [2006-08-23|16:51] C:\DOCUME~1\NETWOR~1\APPLIC~1\Symantec [2006-05-24|16:21] C:\DOCUME~1\LOCALS~1\APPLIC~1\. [2006-05-24|16:21] C:\DOCUME~1\LOCALS~1\APPLIC~1\.. [2007-12-12|17:02] C:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe [2005-11-02|15:47] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft [2007-06-16|15:17] C:\DOCUME~1\david\APPLIC~1\$_hpcst$.hpc [2006-07-20|22:08] C:\DOCUME~1\david\APPLIC~1\. [2006-07-20|22:08] C:\DOCUME~1\david\APPLIC~1\.. [2006-08-02|16:49] C:\DOCUME~1\david\APPLIC~1\Adobe [2006-08-31|10:18] C:\DOCUME~1\david\APPLIC~1\AdobeUM [2006-08-25|14:37] C:\DOCUME~1\david\APPLIC~1\CyberLink [2005-11-02|15:47] C:\DOCUME~1\david\APPLIC~1\desktop.ini [2006-12-26|18:16] C:\DOCUME~1\david\APPLIC~1\DivX [2007-03-27|18:24] C:\DOCUME~1\david\APPLIC~1\Else plus [2006-08-08|13:49] C:\DOCUME~1\david\APPLIC~1\EPSON [2006-09-07|17:42] C:\DOCUME~1\david\APPLIC~1\Google [2006-08-16|14:40] C:\DOCUME~1\david\APPLIC~1\Help [2005-11-02|16:01] C:\DOCUME~1\david\APPLIC~1\Identities [2008-01-08|19:31] C:\DOCUME~1\david\APPLIC~1\LimeWire [2006-08-02|11:54] C:\DOCUME~1\david\APPLIC~1\Macromedia [2005-11-02|15:47] C:\DOCUME~1\david\APPLIC~1\Microsoft [2006-08-14|23:31] C:\DOCUME~1\david\APPLIC~1\Microsoft Web Folders [2006-08-29|11:35] C:\DOCUME~1\david\APPLIC~1\Mozilla [2006-08-02|13:36] C:\DOCUME~1\david\APPLIC~1\MSNInstaller [2007-03-27|18:24] C:\DOCUME~1\david\APPLIC~1\Screenshot Sender [2006-09-07|17:36] C:\DOCUME~1\david\APPLIC~1\Sun [2005-11-02|16:09] C:\DOCUME~1\david\APPLIC~1\Symantec [2006-11-12|16:45] C:\DOCUME~1\david\APPLIC~1\Ulead Systems ----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]--------------- [2008-04-01 21:35][--a------] C:\WINDOWS\tasks\V‚rifier les mises … jour de Windows Live Toolbar.job [2008-04-02 15:00][--ah-----] C:\WINDOWS\tasks\B95F67D39035109F.job [2008-03-29 00:37][--a------] C:\WINDOWS\tasks\Norton AntiVirus - Effectuer une analyse complŠte du systŠme - david.job [2008-04-02 14:35][--ah-----] C:\WINDOWS\tasks\SA.DAT [2004-08-05 05:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini ---------------[ Listing des dossiers dans C:\Program Files ]-------------- [2006-05-24|16:21] C:\Program Files\. [2006-05-24|16:21] C:\Program Files\.. [2005-11-02|16:04] C:\Program Files\Adobe [2007-03-27|18:24] C:\Program Files\Adverts [2006-07-22|15:53] C:\Program Files\Atari [2006-09-17|22:02] C:\Program Files\BitComet [2006-07-28|19:25] C:\Program Files\BroadJump [2006-07-28|19:27] C:\Program Files\Club-Internet [2006-07-28|19:28] C:\Program Files\Common Files [2005-11-02|15:51] C:\Program Files\ComPlus Applications [2005-11-02|16:07] C:\Program Files\CyberLink [2006-08-31|21:57] C:\Program Files\david10.exe [2006-08-24|15:39] C:\Program Files\directx [2006-08-29|11:34] C:\Program Files\DivX [2006-07-22|09:46] C:\Program Files\Eidos Interactive [2007-04-01|18:17] C:\Program Files\Else plus [2006-09-19|16:50] C:\Program Files\eMule [2006-07-26|19:21] C:\Program Files\epson [2006-09-03|21:28] C:\Program Files\ewido anti-spyware 4.0 [2005-11-02|15:47] C:\Program Files\Fichiers communs [2006-07-22|16:02] C:\Program Files\GameSpy Arcade [2006-08-29|11:35] C:\Program Files\Google [2005-11-02|16:00] C:\Program Files\InstallShield Installation Information [2006-07-26|20:53] C:\Program Files\Intel [2005-11-02|15:52] C:\Program Files\Internet Explorer [2006-09-07|17:41] C:\Program Files\Java [2008-01-08|19:30] C:\Program Files\LimeWire [2006-07-22|15:43] C:\Program Files\Logitech [2006-09-30|13:58] C:\Program Files\Masta [2005-11-02|15:51] C:\Program Files\Messenger [2006-08-22|16:18] C:\Program Files\Messenger Plus! Live [2006-09-04|21:40] C:\Program Files\MessengerPlus! 3 [2006-11-12|15:43] C:\Program Files\Micro Application [2006-08-24|15:34] C:\Program Files\Microids [2007-06-16|15:15] C:\Program Files\Microsoft ActiveSync [2007-05-11|03:02] C:\Program Files\Microsoft CAPICOM 2.1.0.2 [2005-11-02|15:53] C:\Program Files\microsoft frontpage [2006-08-14|23:31] C:\Program Files\Microsoft Office [2006-08-16|18:43] C:\Program Files\Microsoft Visual Studio [2006-07-28|19:27] C:\Program Files\Motive [2005-11-02|15:52] C:\Program Files\Movie Maker [2006-08-29|11:35] C:\Program Files\Mozilla Firefox [2005-11-02|15:51] C:\Program Files\MSN [2005-11-02|15:51] C:\Program Files\MSN Gaming Zone [2006-08-13|11:50] C:\Program Files\MSN Messenger [2006-11-15|22:58] C:\Program Files\MSXML 4.0 [2005-11-02|15:52] C:\Program Files\NetMeeting [2005-11-02|16:07] C:\Program Files\NewTech Infosystems [2006-11-15|14:55] C:\Program Files\Norton Internet Security [2005-11-02|15:51] C:\Program Files\Online Services [2005-11-02|15:52] C:\Program Files\Outlook Express [2007-11-05|09:31] C:\Program Files\PacificPoker4 [2007-11-25|21:15] C:\Program Files\PokerStars [2005-11-02|16:02] C:\Program Files\Realtek AC97 [2005-11-02|15:52] C:\Program Files\Services en ligne [2006-07-20|22:09] C:\Program Files\SiS VGA Utilities V3.68 [2005-11-02|16:00] C:\Program Files\sisagp [2006-07-20|21:50] C:\Program Files\SiSLan [2005-11-02|16:09] C:\Program Files\Symantec [2007-01-30|10:25] C:\Program Files\Ulead Systems [2005-11-02|16:01] C:\Program Files\Uninstall Information [2006-07-26|20:50] C:\Program Files\Waywardxs [2006-10-15|15:50] C:\Program Files\Windows Journal Viewer [2007-10-02|16:59] C:\Program Files\Windows Live [2006-08-13|11:52] C:\Program Files\Windows Live Toolbar [2007-02-08|15:28] C:\Program Files\Windows Media Connect 2 [2005-11-02|15:51] C:\Program Files\Windows Media Player [2005-11-02|15:51] C:\Program Files\Windows NT [2005-11-02|15:52] C:\Program Files\WindowsUpdate [2005-11-02|15:53] C:\Program Files\xerox [2006-08-20|22:54] C:\Program Files\Yahoo! ------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------ [2006-05-24|16:21] C:\Program Files\Fichiers communs\. [2006-05-24|16:21] C:\Program Files\Fichiers communs\.. [2007-01-13|13:23] C:\Program Files\Fichiers communs\Adobe [2006-08-14|23:34] C:\Program Files\Fichiers communs\Designer [2005-11-02|16:00] C:\Program Files\Fichiers communs\InstallShield [2006-09-07|17:40] C:\Program Files\Fichiers communs\Java [2006-08-19|15:52] C:\Program Files\Fichiers communs\Labtec [2006-07-22|15:43] C:\Program Files\Fichiers communs\Logitech [2006-11-12|15:43] C:\Program Files\Fichiers communs\Micro Application Shared [2005-11-02|15:47] C:\Program Files\Fichiers communs\Microsoft Shared [2006-07-28|19:28] C:\Program Files\Fichiers communs\Motive [2005-11-02|15:52] C:\Program Files\Fichiers communs\MSSoap [2005-11-02|16:07] C:\Program Files\Fichiers communs\muvee Technologies [2005-11-02|16:07] C:\Program Files\Fichiers communs\NewTech Infosystems [2005-11-02|15:47] C:\Program Files\Fichiers communs\ODBC [2005-11-02|15:52] C:\Program Files\Fichiers communs\Services [2005-11-02|15:47] C:\Program Files\Fichiers communs\SpeechEngines [2005-11-02|16:09] C:\Program Files\Fichiers communs\Symantec Shared [2005-11-02|15:52] C:\Program Files\Fichiers communs\System [2007-01-30|10:24] C:\Program Files\Fichiers communs\Ulead Systems ----------------------[ Recherche avec S_Lop ]--------------------- Aucun fichier / dossier Lop trouvé ! -----------------[ Recherche de Fichiers / Dossiers Lop ]----------------- C:\DOCUME~1\david\APPLIC~1\ELSE PLUS C:\DOCUME~1\david\APPLIC~1\ELSE PLUS\lvvocvkn.exe C:\DOCUME~1\david\APPLIC~1\ELSE PLUS\hivkvlrn.exe C:\Program Files\ELSE PLUS C:\DOCUME~1\ALLUSE~1\APPLIC~1\filmtimeupcurb C:\DOCUME~1\ALLUSE~1\APPLIC~1\filmtimeupcurb\grid dart.exe C:\DOCUME~1\ALLUSE~1\APPLIC~1\filmtimeupcurb\tool soft.exe C:\Program Files\Adverts C:\Program Files\Adverts\uninst.exe C:\WINDOWS\Tasks\B95F67D39035109F.job ----------------------[ Verification du Registre ]---------------------- [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] ..... OK ! --------------------[ Verification du fichier Hosts ]--------------------- Fichier Hosts PROPRE ----------------[ Recherche de fichiers avec Catchme ]----------------- catchme 0.3.1262 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-04-02 15:09:43 Windows 5.1.2600 Service Pack 2 FAT NTAPI scanning hidden files ... scan completed successfully hidden files: 0 --------------------[ Recherche d'autres infections ]--------------------- Aucune autre infection trouvée ! /!\ [Fich:6][Doss:2] C:\DOCUME~1\david\LOCALS~1\Temp /!\ [Fich:2949][Doss:0] C:\DOCUME~1\david\Cookies /!\ [Fich:1032][Doss:20] C:\DOCUME~1\david\LOCALS~1\TEMPOR~1\content.IE5 --------------------[ Fin du rapport a 15:09:50.93 ]----------------------
-
En haut de la fenetre il y a ecrit CID:
-
Bonsoir, voici le rapport Hijackthis. le PC fonctionne beaucoup mieu l'accé a internet est beaucoup plus rapide et il n'y a plus de message par lequel il y a un virus .En revanche il y a toujours de la pub qui s'ouvre tous seul. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 20:28, on 2008-04-01 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16608) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe C:\Program Files\ewido anti-spyware 4.0\guard.exe C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\WINDOWS\SOUNDMAN.EXE C:\Acer\Empowering Technology\eRecovery\Monitor.exe C:\Program Files\BroadJump\Client Foundation\CFD.exe C:\Program Files\Logitech\Video\LogiTray.exe C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\MSN Messenger\MsnMsgr.Exe C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\PROGRA~1\MICROS~4\wcescomm.exe C:\WINDOWS\system32\sistray.exe C:\Program Files\Club-Internet\Lanceur\lanceur.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\PROGRA~1\MICROS~4\rapimgr.exe C:\Program Files\Club-Internet\Dr Club Internet\bin\mpbtn.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\LVComS.exe C:\WINDOWS\explorer.exe C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE C:\WINDOWS\system32\ctfmon.exe C:\Documents and Settings\david\Bureau\HiJackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.club-internet.fr R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Fichiers communs\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll O4 - HKLM\..\Run: [LaunchApp] Alaunch O4 - HKLM\..\Run: [ntiMUI] C:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe O4 - HKLM\..\Run: [iMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32 O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName O4 - HKLM\..\Run: [siSPower] Rundll32.exe SiSPower.dll,ModeAgent O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [eRecoveryService] C:\Acer\Empowering Technology\eRecovery\Monitor.exe O4 - HKLM\..\Run: [bJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [up curb skip two] C:\Documents and Settings\All Users\Application Data\filmtimeupcurb\tool soft.exe O4 - HKLM\..\RunServices: [DJSNetCN] C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9 O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\PROGRA~1\MICROS~4\wcescomm.exe" O4 - Startup: Club Internet.lnk = C:\Program Files\Club-Internet\Lanceur\lanceur.exe O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe O4 - Global Startup: Docteur Club Internet.lnk = C:\Program Files\Club-Internet\Dr Club Internet\bin\matcli.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?c26964d197b1462190f40fda78675b26 O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?c26964d197b1462190f40fda78675b26 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~4\INetRepl.dll O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe O9 - Extra button: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe O9 - Extra 'Tools' menuitem: Titan Poker - {49783ED4-258D-4f9f-BE11-137C18D3E543} - C:\Poker\Titan Poker\casino.exe O9 - Extra button: PacificPoker4 - {94EDF7B4-4272-4af3-8F8B-4E2F68E225B7} - C:\PROGRA~1\PACIFI~1\pacificpoker.exe O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://webscanner.kaspersky.fr/kavwebscan_unicode.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?LinkID=39204 O16 - DPF: {2472DCCC-68CE-49DA-AA81-E7E6D83C1DFA} (PackageHTML) - http://www.easypackhtml.com/PackageHtmlCab.CAB O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\ccPwdSvc.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccProxy.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Norton Internet Security\comHost.exe O23 - Service: Symantec Licensing Detect Internet Connection (DJSNETCN) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\DJSNETCN.exe O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: Service Norton AntiVirus Auto-Protect (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\Security Console\NSCSRVCE.EXE O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe -- End of file - 11618 bytes
-
exusez moi mais je vais dans qu'oi pour cocher les lignes et clic sur Fix checked