Aller au contenu

antoineL

Membres
  • Compteur de contenus

    11
  • Inscription

  • Dernière visite

antoineL's Achievements

Junior Member

Junior Member (3/12)

0

Réputation sur la communauté

  1. Bonjour, Excusez-moi de ma réponse très tardive, mais j'ai été énormément occupé. J'ai pu trouver un pc ayant accès à internet, ainsi j'ai pu lancer SDFix, supprimer avast, et installer antivir. Malheureusement, pour antivir, j'arrive à effectuer tous les settings avant de lancer le scan, mais je n'arrive pas à simplement lancer le scan. Etant donné que je travaille seulement sur le mode sans échec, car sinon le pc ne répond pas, les fenêtres des applications n'ont pas la place de s'afficher entièrement, elles s'affichent avec une taille trop importante. Je vous envois néanmoins le rapport donné par SDFix après le redémarrage du pc SDFix: Version 1.201 Run by Lortie on 03/07/2008 at 16:46 Microsoft Windows XP [version 5.1.2600] Running From: C:\SDFix Checking Services : Restoring Default Security Values Restoring Default Hosts File Rebooting Checking Files : Trojan Files Found: C:\Documents and Settings\Lortie\real.txt - Deleted Removing Temp Files ADS Check : Final Check : catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-07-03 16:59:08 Windows 5.1.2600 Service Pack 2 NTFS scanning hidden processes ... scanning hidden services & system hive ... scanning hidden registry entries ... scanning hidden files ... C:\Documents and Settings\Lortie\Local Settings\Application Data\Microsoft\Windows\GameExplorer\{DFEF49D9-FC95-4301-99B9-2FB91C6ABA06}\PlayTasks\1\Les Sims™ 2 : [email protected] 1087 bytes hidden from API scan completed successfully hidden processes: 0 hidden services: 0 hidden files: 1 Remaining Services : Authorized Application Key Export: [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" "C:\\Program Files\\Microsoft Games\\Age of Empires III\\age3x.exe"="C:\\Program Files\\Microsoft Games\\Age of Empires III\\age3x.exe:*:Enabled:Age of Empires III - The WarChiefs" "C:\\Program Files\\Messenger\\msmsgs.exe"="C:\\Program Files\\Messenger\\msmsgs.exe:*:Enabled:Windows Messenger" [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] "%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019" Remaining Files : File Backups: - C:\SDFix\backups\backups.zip Files with Hidden Attributes : Mon 28 Jan 2008 1,404,240 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SDUpdate.exe" Mon 28 Jan 2008 5,146,448 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" Mon 28 Jan 2008 2,097,488 A.SHR --- "C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe" Sat 29 Mar 2008 4,348 A.SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak" Sun 16 Mar 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp" Wed 7 May 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\71fa8e4b1f1c72b0e3a5d30a0a049f55\BIT1.tmp" Fri 17 Aug 2007 38,912 A..H. --- "C:\Documents and Settings\Lortie\Mes documents\ANDRE\enfants\~WRL2307.tmp" Sun 16 Sep 2007 21,504 A..H. --- "C:\Documents and Settings\Lortie\Mes documents\ANDRE\enfants\~WRL2635.tmp" Mon 17 Mar 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\302e1056006644b6630bcb41e5969ade\download\BIT37.tmp" Mon 17 Mar 2008 0 A..H. --- "C:\WINDOWS\SoftwareDistribution\Download\c8f95ed251aedea843abb9ea5b1a52d3\download\BIT30.tmp" Finished! Merci beaucoup de l'aide que vous m'apportez, et dites moi simplement où se trouve la fenêtre pour lancer le sc
  2. Bonjour, J'ai un problème depuis plus d'une semaine : lorsque je lance XP, après avoir ouvert ma session, l'ordinateur ne répond plus, comme s'il était super lent. Au début, j'ai pu faire un scan avec avast, sui n'a rien donné. Et maintenant, je ne peux plus rien faire, ne serait-ce ouvrir le menu démarrer après avoir ouvert la session. Je suis donc passé par le mode sans échec pour effectuer une analyse HiJack que je vous transmets donc. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 15:56:52, on 30/06/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16674) Boot mode: Safe mode Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens F2 - REG:system.ini: Shell= O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKLM\..\Run: [LOGGING_EPCP] "C:\Program Files\Parental Filter\LoggingEPCP.exe" start O4 - HKLM\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O18 - Protocol: x-mem1n - {2AB77CF2-76FF-475C-9AB8-0332478CBDEB} - C:\Program Files\Parental Filter\wowctl.net.dll O18 - Protocol: x-mem3n - {0F4413E7-5D3B-4B1A-8AA2-E2307F06B228} - C:\Program Files\Parental Filter\eztoolslib.net.dll O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Parental Filter (ServiceEPCP) - Unknown owner - C:\Program Files\Parental Filter\ServiceEPCP.exe -- End of file - 6049 bytes Si quelqu'un pouvait m'aider en analysant ce rapport, ce serait très gentil de sa part. Merci. Antoine
  3. J'ai donc essayé les mises à jours, le téléchargement de drivers pour cette carte réseau, le changement de pilote pour le port PCMCIA; et toujours le même problème. Je me suis entretenu avec un conseiller en chat direct sur le site de linksys et il n'a pas réussi à m'aider, m'a suggéré d'essayer avec une autre carte réseau. Néanmoins je ne pense pas que le problème vienne du pc, car sur les différents forums dans lesquels j'ai navigué, plusieurs personnes ont eu le même problème avec des compaq ou toshiba (ayant essayé avec une autre carte réseau qui elle marchait très bien) et soit les résolutions étaient très personnelles et ne s'appliquaient pas à mon problème, soit elles n'avaient pas eu de réponse. Je n'ai pas non plus réussi à trouver un pilote spécifique permettant la compatibilité entre mon contrôleur CardBus Texas Instrument et la carte réseau WPC54G (Edit : cf A adapter selon ta carte) Merci beaucoup pour l'aide que vous m'apportez. Antoine
  4. Bonjour, J'ai un probléme avec l'installation de ma carte réseau sans fil. Lorsque j'essaye de l'installer, tout mon PC plante. Je m'explique : dès que je rentre la carte réseau dans son emplacement, que j'ai installé ou non le logiciel fourni par LINKSYS avant, l'ordinateur ne répond plus. Le clavier, ainsi que la souris ne répondent plus, même la commande ctrl+alt+sup. Je suis dons obligé d'éteindre manuellment mon PC. Et lorsque je l'allume avec la carte déjà insérée dans l'emplacement, le PC reste bloqué au moment du lancement de XP. Je vous donne les informations qui peuvent vous être utiles pour m'aider: J'ai reformaté mon PC hier. C'est un compaq N1020v. La carte réseau est : wireless-G, 2,4GHz , 802.11g ; modèle : WPC54G ; versin :3.1 Merci d'avance. Antoine
  5. Merci beaucoup, ça a été super gentil de ta part. Premiere fois que je m'inscris sur un forum d'informatique Ca donne envie de mieux comprendre l'informatique pour pouvoir aider les autres. A +
  6. Oups, desole pour le teatimer, je pensais qu'en desactivant spybot ce serait suffisant, mais j'ai certainement du refuser la modification du registre, croyant qu'il s'agissait d'une intrusion. Voilà les rapports Rapport KasperSky KASPERSKY ONLINE SCANNER REPORT Monday, April 07, 2008 7:33:49 PM Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600) Kaspersky Online Scanner version: 5.0.98.0 Kaspersky Anti-Virus database last update: 7/04/2008 Kaspersky Anti-Virus database records: 688340 Scan Settings Scan using the following antivirus database extended Scan Archives true Scan Mail Bases true Scan Target My Computer A:\ C:\ D:\ E:\ F:\ Scan Statistics Total number of scanned objects 59435 Number of viruses found 1 Number of infected objects 3 Number of suspicious objects 0 Duration of the scan process 01:56:32 Infected Object Name Virus Name Last Action C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped C:\Documents and Settings\Lortie\Bureau\catchme.zip/%%0e+000xe Infected: Trojan.Win32.DNSChanger.buu skipped C:\Documents and Settings\Lortie\Bureau\catchme.zip ZIP: infected - 1 skipped C:\Documents and Settings\Lortie\Cookies\index.dat Object is locked skipped C:\Documents and Settings\Lortie\Local Settings\Application Data\ApplicationHistory\LoggingEPCP.exe.fe47fcfc.ini.inuse Object is locked skipped C:\Documents and Settings\Lortie\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat Object is locked skipped C:\Documents and Settings\Lortie\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\Lortie\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\Lortie\Local Settings\Historique\History.IE5\index.dat Object is locked skipped C:\Documents and Settings\Lortie\Local Settings\Historique\History.IE5\MSHist012008040720080408\index.dat Object is locked skipped C:\Documents and Settings\Lortie\Local Settings\Temporary Internet Files\AntiPhishing\B3BB5BBA-E7D5-40AB-A041-A5B1C0B26C8F.dat Object is locked skipped C:\Documents and Settings\Lortie\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped C:\Documents and Settings\Lortie\NTUSER.DAT Object is locked skipped C:\Documents and Settings\Lortie\NtUser.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\integ\avast.int Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped C:\Program Files\Parental Filter\PSData\Stlst\StatListDb.dat Object is locked skipped C:\Program Files\Parental Filter\PSData\Stlst\StatListDb.idx Object is locked skipped C:\Program Files\Parental Filter\PSData\urlcache\domainNames.dat Object is locked skipped C:\Program Files\Parental Filter\PSData\urlcache\domainNames.idx Object is locked skipped C:\Program Files\Parental Filter\PSData\urlcache\domainNameTokens.dat Object is locked skipped C:\Program Files\Parental Filter\PSData\urlcache\domainNameTokens.idx Object is locked skipped C:\Program Files\Parental Filter\PSData\urlcache\namesRefCount.dat Object is locked skipped C:\Program Files\Parental Filter\PSData\urlcache\namesRefCount.idx Object is locked skipped C:\Program Files\Parental Filter\PSData\urlcache\tokensRefCount.dat Object is locked skipped C:\Program Files\Parental Filter\PSData\urlcache\tokensRefCount.idx Object is locked skipped C:\Program Files\Parental Filter\PSData\urlcache\urlCacheDb.dat Object is locked skipped C:\Program Files\Parental Filter\PSData\urlcache\urlCacheDb.idx Object is locked skipped C:\Program Files\Parental Filter\restrictedUrls.bin Object is locked skipped C:\Program Files\Parental Filter\validUrls.bin Object is locked skipped C:\SDFix\%%2e-314xe Infected: Trojan.Win32.DNSChanger.buu skipped C:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped C:\System Volume Information\_restore{44B63651-9145-4859-923F-E6819C3D1836}\RP49\change.log Object is locked skipped C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped C:\WINDOWS\SchedLgU.Txt Object is locked skipped C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\default Object is locked skipped C:\WINDOWS\system32\config\DEFAULT.LOG Object is locked skipped C:\WINDOWS\system32\config\Internet.evt Object is locked skipped C:\WINDOWS\system32\config\sam Object is locked skipped C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\security Object is locked skipped C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped C:\WINDOWS\system32\config\software Object is locked skipped C:\WINDOWS\system32\config\SOFTWARE.LOG Object is locked skipped C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped C:\WINDOWS\system32\config\system Object is locked skipped C:\WINDOWS\system32\config\SYSTEM.LOG Object is locked skipped C:\WINDOWS\system32\h323log.txt Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped C:\WINDOWS\Temp\Perflib_Perfdata_6c4.dat Object is locked skipped C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped C:\WINDOWS\WindowsUpdate.log Object is locked skipped F:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped Scan process completed. ------------------------------------------------------------------------------------------------------------------- Nouveau rapport HiJack Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 19:39:35, on 07/04/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16608) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\Parental Filter\ServiceEPCP.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Parental Filter\LoggingEPCP.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\WINDOWS\system32\ctfmon.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\WINDOWS\system32\drwtsn32.exe C:\WINDOWS\system32\drwtsn32.exe C:\WINDOWS\explorer.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens F2 - REG:system.ini: Shell= O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t O4 - HKLM\..\Run: [LOGGING_EPCP] "C:\Program Files\Parental Filter\LoggingEPCP.exe" start O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/d...can_unicode.cab O18 - Protocol: x-mem3n - {0F4413E7-5D3B-4B1A-8AA2-E2307F06B228} - C:\Program Files\Parental Filter\eztoolslib.net.dll O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Parental Filter (ServiceEPCP) - - C:\Program Files\Parental Filter\ServiceEPCP.exe -- End of file - 6565 bytes ------------------------------------------------------------- Par contre durant le scan de Kaspersky mais apres avoir télécharger ActiveX.... Ma connexion Wifi a buggé, sans arrêter le scan neanmoins.
  7. Bonjour Je souhaite transférer tous les mails envoyés et reçus ainsi que mon carnet d'adresse d'outlook d'un ordinateur portable 1 vers outlook express d'un ordinateur portable 2. Si possible sans passer par un réseau. Merci d'avance. Antoine
  8. J'ai donc tout fait. Neanmoins, apres avoir autorisé MSNFix à supprimer une infection trouvée, je suis parti manger durant 15-20 min et à mon retour, une fenetre type microsoft windows m'indiquait un probleme avec le fichier uploadé \system32\%%%%%% et s'excusant de la gene occasionnée. J'ai hésité à refaire un scan MSNFix, que je n'ai pas fait finalement, doutant de l'utilité d'en refaire un. Je t'envois tous les rapports ----------------------------------------------------------------------------------------------------- Rapport OTMoveIt2 < C:\WINDOWS\system32\%%%%%.exe > File/Folder C:\WINDOWS\system32\%%%%%.exe not found. < EmptyTemp > File delete failed. C:\WINDOWS\temp\Perflib_Perfdata_6a8.dat scheduled to be deleted on reboot. Temp folders emptied. IE temp folders emptied. OTMoveIt2 by OldTimer - Version 1.0.4.0 log created on 04062008_213055 Files moved on Reboot... File move failed. C:\WINDOWS\temp\Perflib_Perfdata_6a8.dat scheduled to be moved on reboot. ----------------------------------------------------------------------------------------------- Rapoort MSNFix MSNFix 1.700 C:\Documents and Settings\Lortie\Bureau\MSNFix Fix exécuté le 06/04/2008 - 20:47:01,15 By Lortie mode normal ************************ Recherche les fichiers présents ... C:\WINDOWS\system32\%%%%%.exe ... C:\WINDOWS\system32\%%%%%.exe ************************ Recherche les dossiers présents Aucun dossier trouvé ************************ Suppression des fichiers .. OK ... C:\WINDOWS\system32\%%.exe /!\ ... C:\WINDOWS\system32\%%%%%.exe /!\ ... C:\WINDOWS\system32\%%%%%.exe /!\ ... C:\WINDOWS\system32\%%%%%.exe /!\ ... C:\WINDOWS\system32\%%%%%.exe ************************ Nettoyage du registre Les fichiers encore présents seront supprimés au prochain redémarrage ************************ Suppression des fichiers .. OK ... C:\WINDOWS\system32\real.txt .. OK ... C:\WINDOWS\system32\%%.exe ************************ Fichiers suspects Aucun Fichier trouvé Les fichiers et clés de registre supprimés ont été sauvegardés dans le fichier 06042008_21132370.zip ************************ HKLM\...\Winlogon\Userinit Userinit = C:\WINDOWS\system32\userinit.exe, ------------------------------------------------------------------------ Auteur : !aur3n7 Contact: http://changelog.fr ------------------------------------------------------------------------ --------------------------------------------- END --------------------------------------------- ----------------------------------------------------------------------------------------------------------------- Rapport HIJACK Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:45:08, on 06/04/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16608) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\Parental Filter\ServiceEPCP.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Parental Filter\LoggingEPCP.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens F2 - REG:system.ini: Shell= F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\%%%%%.exe O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t O4 - HKLM\..\Run: [LOGGING_EPCP] "C:\Program Files\Parental Filter\LoggingEPCP.exe" start O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O18 - Protocol: x-mem3n - {0F4413E7-5D3B-4B1A-8AA2-E2307F06B228} - C:\Program Files\Parental Filter\eztoolslib.net.dll O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Parental Filter (ServiceEPCP) - - C:\Program Files\Parental Filter\ServiceEPCP.exe -- End of file - 6396 bytes Voila. Desole de la lenteur de ma reponse.
  9. Bonjour, J'ai attrapé un virus il y a 3 jours maintenants, en cliquant sur un lien envoyé via un faux message sur windows mesdsenger, et je n'arrive toujours pas a le supprimer. Au debut, il essayait de rentrer ds la base de donnée et de modifier surtout userlnit. J'ai essayé SDFix (mode sans echec), puis scan ccleaner et avg... Et je ne sais pas maintenant si mon PC est infecté, meme si avast detecte parfois des chevals de troie. Je vous envois donc le rapport HiJack, en espèrant que vous pourrez m'indiquer une solution. ------------------------------------------------------------------------------------ Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 17:00:59, on 06/04/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16608) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe C:\WINDOWS\Explorer.EXE C:\Program Files\Alwil Software\Avast4\ashServ.exe C:\WINDOWS\system32\spoolsv.exe C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe C:\Program Files\Parental Filter\LoggingEPCP.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\Parental Filter\ServiceEPCP.exe C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe C:\Program Files\Alwil Software\Avast4\ashWebSv.exe C:\WINDOWS\system32\wuauclt.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE C:\Program Files\Internet Explorer\IEXPLORE.EXE R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=74005 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens F2 - REG:system.ini: Shell= F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\WINDOWS\system32\%%%%%.exe O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [DWQueuedReporting] "C:\PROGRA~1\FICHIE~1\MICROS~1\DW\dwtrig20.exe" -t O4 - HKLM\..\Run: [LOGGING_EPCP] "C:\Program Files\Parental Filter\LoggingEPCP.exe" start O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [spybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user') O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing) O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O10 - Unknown file in Winsock LSP: c:\program files\parental filter\hooklib.dll O18 - Protocol: x-mem3n - {0F4413E7-5D3B-4B1A-8AA2-E2307F06B228} - C:\Program Files\Parental Filter\eztoolslib.net.dll O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: Parental Filter (ServiceEPCP) - - C:\Program Files\Parental Filter\ServiceEPCP.exe -- End of file - 6420 bytes --------------------------------------------------------------------------------------------------------------------- Merci d'avance. Antoine
×
×
  • Créer...