

flechou31
Membres-
Compteur de contenus
5 -
Inscription
-
Dernière visite
Type de contenu
Profils
Forums
Blogs
Tout ce qui a été posté par flechou31
-
[resolu]Probleme CiD pub intempestive
flechou31 a répondu à un(e) sujet de flechou31 dans Analyses et éradication malwares
Ok merci Beaucoup pour tes services , A plus tard peut être. Et merci a Zebulon.fr parce que le service a était rapide. -
[resolu]Probleme CiD pub intempestive
flechou31 a répondu à un(e) sujet de flechou31 dans Analyses et éradication malwares
Voici le rapport Hijackthis, Pour le P2P je l'utilise que très rarement, mais je vais quand même le désinstaller, Y-t-il des logiciel P2P ou les problèmes sont moindres? Merci Beaucoup. Rapport Hijackthis : Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 12:15:54, on 22/05/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16640) Boot mode: Normal Running processes: C:\WINDOWS\Explorer.EXE C:\WINDOWS\RTHDCPL.EXE C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Fichiers communs\Nero\Lib\NMBgMonitor.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe C:\Program Files\Logitech\SetPoint\SetPoint.exe C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe C:\Program Files\Fichiers communs\Logitech\KhalShared\KHALMNPR.EXE C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe C:\Documents and Settings\bastien\Bureau\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Nero\Lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [skype] "C:\Documents and Settings\bastien\Local Settings\Application Data\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Default user') O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownlo.../sysreqlab2.cab O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\DOCUME~1\bastien\LOCALS~1\APPLIC~1\Skype\Shared\SKYPE4~1.DLL O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe O24 - Desktop Component 0: (no name) - http://www.glatozen.org/wallimages/windows/xp005.jpg -- End of file - 6437 bytes -
[resolu]Probleme CiD pub intempestive
flechou31 a répondu à un(e) sujet de flechou31 dans Analyses et éradication malwares
Voici le résultat : -----------------------[ Lop S&D 4.2.0-9 XP/Vista ]--------------------- [ Windows XP (NT 5.1) Build 2600, Service Pack 2 ] [ USER : bruno ] [ "C:\Lop SD" ] [ Selection : 2 ] [ 21/05/2008 | 21:24:06,21 ] [ PC : ANTEC-2008 ] [ MAJ : 16-05-2008 | 23:35 ] \\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION ///////////////////////////// Supprimé! - C:\DOCUME~1\bruno\APPLIC~1\onceda~1\Bleh Bash 1 Five.exe Supprimé! - C:\DOCUME~1\bruno\APPLIC~1\onceda~1\ford meow the.exe Supprimé! - C:\DOCUME~1\bruno\APPLIC~1\onceda~1\qddcxunr.exe Supprimé! - C:\DOCUME~1\bruno\APPLIC~1\onceda~1\Team ref multi.exe Supprimé! - C:\WINDOWS\Tasks\A72FC99991F07B55.job Supprimé! - C:\DOCUME~1\bruno\APPLIC~1\onceda~1 Supprimé! - C:\Program Files\onceda~1 Supprimé! - C:\Program Files\Bitdownload Restauré! - Fichier Hosts //////////////////////////////////////-\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ -------------[ Listing des dossiers dans Application Data ]------------ [23/03/2008|20:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\ACD Systems [23/03/2008|20:06] C:\DOCUME~1\ADMINI~1\APPLIC~1\Adobe [05/03/2008|18:45] C:\DOCUME~1\ADMINI~1\APPLIC~1\desktop.ini [19/03/2008|16:54] C:\DOCUME~1\ADMINI~1\APPLIC~1\Macromedia [23/03/2008|20:10] C:\DOCUME~1\ADMINI~1\APPLIC~1\Microsoft [23/03/2008|20:18] C:\DOCUME~1\ADMINI~1\APPLIC~1\Nero [23/03/2008|20:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ACD Systems [05/03/2008|19:20] C:\DOCUME~1\ALLUSE~1\APPLIC~1\addr_file.html [11/04/2008|15:38] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe [11/04/2008|15:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe Systems [05/03/2008|19:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Avira [06/05/2008|19:40] C:\DOCUME~1\ALLUSE~1\APPLIC~1\comp two long internet [05/03/2008|18:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\desktop.ini [15/04/2008|11:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ezsid.dat [12/03/2008|20:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\LogiShrd [12/03/2008|20:15] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Logitech [17/05/2008|13:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus! [08/03/2008|16:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft [16/03/2008|17:02] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero [05/03/2008|20:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles [15/04/2008|11:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype [18/03/2008|22:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy [25/04/2008|18:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TrackMania [05/03/2008|19:29] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage [16/03/2008|12:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller [08/05/2008|16:59] C:\DOCUME~1\bastien\APPLIC~1\ACD Systems [30/04/2008|14:48] C:\DOCUME~1\bastien\APPLIC~1\Adobe [19/04/2008|13:12] C:\DOCUME~1\bastien\APPLIC~1\Any Video Converter [05/03/2008|18:45] C:\DOCUME~1\bastien\APPLIC~1\desktop.ini [16/04/2008|19:55] C:\DOCUME~1\bastien\APPLIC~1\DivX [05/03/2008|22:44] C:\DOCUME~1\bastien\APPLIC~1\Identities [18/03/2008|22:18] C:\DOCUME~1\bastien\APPLIC~1\InstallShield [08/05/2008|16:53] C:\DOCUME~1\bastien\APPLIC~1\LimeWire [12/03/2008|20:18] C:\DOCUME~1\bastien\APPLIC~1\Logitech [05/03/2008|22:54] C:\DOCUME~1\bastien\APPLIC~1\Macromedia [11/05/2008|20:10] C:\DOCUME~1\bastien\APPLIC~1\Microsoft [11/04/2008|16:48] C:\DOCUME~1\bastien\APPLIC~1\Mozilla [02/01/2002|02:53] C:\DOCUME~1\bastien\APPLIC~1\Nero [02/03/2008|20:48] C:\DOCUME~1\bastien\APPLIC~1\Notepad++ [27/04/2008|20:39] C:\DOCUME~1\bastien\APPLIC~1\Opera [08/03/2008|20:04] C:\DOCUME~1\bastien\APPLIC~1\SecuROM [21/05/2008|19:28] C:\DOCUME~1\bastien\APPLIC~1\Skype [21/05/2008|19:28] C:\DOCUME~1\bastien\APPLIC~1\skypePM [11/04/2008|16:48] C:\DOCUME~1\bastien\APPLIC~1\Talkback [01/04/2008|18:46] C:\DOCUME~1\bastien\APPLIC~1\teamspeak2 [14/04/2008|18:29] C:\DOCUME~1\bastien\APPLIC~1\vlc [11/05/2008|22:22] C:\DOCUME~1\bastien\APPLIC~1\Winamp [11/04/2008|15:59] C:\DOCUME~1\bruno\APPLIC~1\Adobe [14/05/2008|18:43] C:\DOCUME~1\bruno\APPLIC~1\Any Video Converter [05/03/2008|18:45] C:\DOCUME~1\bruno\APPLIC~1\desktop.ini [05/03/2008|18:18] C:\DOCUME~1\bruno\APPLIC~1\Identities [17/04/2008|01:52] C:\DOCUME~1\bruno\APPLIC~1\InstallShield [19/04/2008|09:18] C:\DOCUME~1\bruno\APPLIC~1\LimeWire [12/03/2008|21:36] C:\DOCUME~1\bruno\APPLIC~1\Logitech [05/03/2008|20:58] C:\DOCUME~1\bruno\APPLIC~1\Macromedia [09/03/2008|22:27] C:\DOCUME~1\bruno\APPLIC~1\Microsoft [11/04/2008|16:43] C:\DOCUME~1\bruno\APPLIC~1\Mozilla [16/03/2008|17:04] C:\DOCUME~1\bruno\APPLIC~1\Nero [16/03/2008|18:21] C:\DOCUME~1\bruno\APPLIC~1\Notepad++ [06/03/2008|21:52] C:\DOCUME~1\bruno\APPLIC~1\PnkBstrK.sys [06/03/2008|21:58] C:\DOCUME~1\bruno\APPLIC~1\SecuROM [11/04/2008|16:44] C:\DOCUME~1\bruno\APPLIC~1\Talkback [27/03/2008|22:28] C:\DOCUME~1\bruno\APPLIC~1\teamspeak2 [29/03/2008|19:00] C:\DOCUME~1\bruno\APPLIC~1\vlc [16/04/2008|22:53] C:\DOCUME~1\bruno\APPLIC~1\Winamp [26/03/2008|18:46] C:\DOCUME~1\carole\APPLIC~1\Adobe [05/03/2008|18:45] C:\DOCUME~1\carole\APPLIC~1\desktop.ini [06/03/2008|18:36] C:\DOCUME~1\carole\APPLIC~1\Identities [24/03/2008|20:03] C:\DOCUME~1\carole\APPLIC~1\Logitech [06/03/2008|18:38] C:\DOCUME~1\carole\APPLIC~1\Macromedia [01/04/2008|13:53] C:\DOCUME~1\carole\APPLIC~1\Microsoft [05/03/2008|18:45] C:\DOCUME~1\DEFAUL~1\APPLIC~1\desktop.ini [05/03/2008|18:11] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft [09/03/2008|16:20] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe [05/03/2008|18:45] C:\DOCUME~1\INVIT~1\APPLIC~1\desktop.ini [09/03/2008|16:08] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities [09/03/2008|16:20] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia [09/03/2008|20:41] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft [05/03/2008|18:11] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft [23/03/2008|20:38] C:\DOCUME~1\maxime\APPLIC~1\ACD Systems [24/03/2008|15:50] C:\DOCUME~1\maxime\APPLIC~1\Adobe [05/03/2008|18:45] C:\DOCUME~1\maxime\APPLIC~1\desktop.ini [06/03/2008|20:19] C:\DOCUME~1\maxime\APPLIC~1\Identities [01/01/2002|21:24] C:\DOCUME~1\maxime\APPLIC~1\Logitech [01/01/2002|21:25] C:\DOCUME~1\maxime\APPLIC~1\Macromedia [18/05/2008|15:18] C:\DOCUME~1\maxime\APPLIC~1\Microsoft [20/04/2008|12:48] C:\DOCUME~1\maxime\APPLIC~1\Mozilla [01/01/2002|21:24] C:\DOCUME~1\maxime\APPLIC~1\Nero [20/04/2008|12:48] C:\DOCUME~1\maxime\APPLIC~1\Talkback [18/05/2008|15:23] C:\DOCUME~1\maxime\APPLIC~1\vlc [29/03/2008|13:45] C:\DOCUME~1\maxime\APPLIC~1\Winamp [05/03/2008|18:45] C:\DOCUME~1\morgane\APPLIC~1\desktop.ini [06/04/2008|01:14] C:\DOCUME~1\morgane\APPLIC~1\Identities [06/04/2008|01:14] C:\DOCUME~1\morgane\APPLIC~1\Logitech [06/04/2008|01:14] C:\DOCUME~1\morgane\APPLIC~1\Microsoft [05/03/2008|18:11] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft ----------------[ Tâches planifiées dans C:\WINDOWS\tasks ]--------------- [21/05/2008 21:16][--ah-----] C:\WINDOWS\tasks\SA.DAT [05/08/2004 14:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini ---------------[ Listing des dossiers dans C:\Program Files ]-------------- [16/03/2008|16:49] C:\Program Files\7-Zip [23/03/2008|20:10] C:\Program Files\ACD Systems [11/04/2008|15:49] C:\Program Files\Adobe [05/03/2008|19:00] C:\Program Files\Attansic [05/03/2008|19:18] C:\Program Files\Avira [16/04/2008|19:53] C:\Program Files\AviSynth 2.5 [19/04/2008|10:15] C:\Program Files\CamStudio [05/03/2008|22:25] C:\Program Files\CCleaner [05/03/2008|18:08] C:\Program Files\ComPlus Applications [06/03/2008|21:38] C:\Program Files\Electronic Arts [18/04/2008|20:51] C:\Program Files\Fichiers communs [06/03/2008|21:54] C:\Program Files\GameSpy [16/04/2008|20:01] C:\Program Files\GPL MPEG Decoder [18/04/2008|00:06] C:\Program Files\InstallShield Installation Information [05/03/2008|18:44] C:\Program Files\Intel [19/04/2008|09:57] C:\Program Files\Internet Explorer [18/04/2008|20:52] C:\Program Files\Java [29/03/2008|18:58] C:\Program Files\K-Lite Codec Pack [29/04/2008|21:57] C:\Program Files\LimeWire [12/03/2008|20:17] C:\Program Files\Logitech [29/04/2008|21:57] C:\Program Files\Messenger [17/05/2008|13:56] C:\Program Files\Messenger Plus! Live [05/03/2008|18:11] C:\Program Files\microsoft frontpage [05/03/2008|22:38] C:\Program Files\Microsoft Office [10/03/2008|21:48] C:\Program Files\Movie Maker [21/05/2008|21:18] C:\Program Files\Mozilla Firefox [05/03/2008|18:07] C:\Program Files\MSN [05/03/2008|18:08] C:\Program Files\MSN Gaming Zone [18/03/2008|10:00] C:\Program Files\MSXML 4.0 [16/03/2008|17:02] C:\Program Files\Nero [05/03/2008|18:10] C:\Program Files\NetMeeting [16/03/2008|18:12] C:\Program Files\Notepad++ [05/03/2008|18:08] C:\Program Files\Online Services [10/03/2008|21:48] C:\Program Files\Outlook Express [20/05/2008|22:55] C:\Program Files\Panda Security [05/03/2008|18:57] C:\Program Files\Realtek [05/03/2008|18:10] C:\Program Files\Services en ligne [18/03/2008|22:36] C:\Program Files\Sierra [24/03/2008|12:15] C:\Program Files\SpeedFan [18/03/2008|22:21] C:\Program Files\Spybot - Search & Destroy [05/03/2008|20:33] C:\Program Files\SystemRequirementsLab [22/04/2008|21:22] C:\Program Files\TmNationsForever [05/03/2008|18:18] C:\Program Files\Uninstall Information [07/03/2008|18:58] C:\Program Files\Valve [29/03/2008|18:59] C:\Program Files\VideoLAN [11/05/2008|22:28] C:\Program Files\WarRock [09/03/2008|22:03] C:\Program Files\Winamp [30/04/2008|23:38] C:\Program Files\WinAVI MP4 Converter [16/03/2008|12:33] C:\Program Files\Windows Live [21/05/2008|21:10] C:\Program Files\Windows Media Connect 2 [21/05/2008|21:10] C:\Program Files\Windows Media Player [05/03/2008|18:08] C:\Program Files\Windows NT [05/03/2008|18:10] C:\Program Files\WindowsUpdate [05/03/2008|18:11] C:\Program Files\xerox [10/03/2008|21:54] C:\Program Files\Y'z Shadow ------[ Listing des dossiers dans C:\Program Files\Fichiers communs ]------ [23/03/2008|20:10] C:\Program Files\Fichiers communs\ACD Systems [11/04/2008|15:48] C:\Program Files\Fichiers communs\Adobe [11/04/2008|15:39] C:\Program Files\Fichiers communs\Adobe Systems Shared [05/03/2008|22:38] C:\Program Files\Fichiers communs\DESIGNER [05/03/2008|18:57] C:\Program Files\Fichiers communs\InstallShield [18/04/2008|20:51] C:\Program Files\Fichiers communs\Java [12/03/2008|20:18] C:\Program Files\Fichiers communs\LogiShared [12/03/2008|20:16] C:\Program Files\Fichiers communs\Logitech [08/03/2008|16:09] C:\Program Files\Fichiers communs\Microsoft Shared [05/03/2008|18:09] C:\Program Files\Fichiers communs\MSSoap [16/03/2008|17:04] C:\Program Files\Fichiers communs\Nero [05/03/2008|18:46] C:\Program Files\Fichiers communs\ODBC [05/03/2008|18:10] C:\Program Files\Fichiers communs\Services [05/03/2008|18:46] C:\Program Files\Fichiers communs\SpeechEngines [05/03/2008|19:53] C:\Program Files\Fichiers communs\System [08/03/2008|16:09] C:\Program Files\Fichiers communs\WindowsLiveInstaller ---------------------------[ Process ]-------------------------- ... 32 ... OK ! ----------------------[ Recherche avec S_Lop ]--------------------- Aucun fichier / dossier Lop trouvé ! -----------------[ Recherche de Fichiers / Dossiers Lop ]----------------- Aucun fichier / dossier Lop trouvé ! ----------------------[ Verification du Registre ]---------------------- ..... OK ! --------------------[ Verification du fichier Hosts ]--------------------- Fichier Hosts PROPRE ----------------[ Recherche de fichiers avec Catchme ]----------------- catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-05-21 21:24:43 Windows 5.1.2600 Service Pack 2 NTFS scanning hidden processes ... scanning hidden files ... scan completed successfully hidden processes: 0 hidden files: 0 --------------------[ Recherche d'autres infections ]--------------------- => C:\Documents and Settings\bruno\Local Settings\Temp\R‚pertoire temporaire 1 pour Adobe Cs3 Design Premium Keygen - Photoshop Illustrator Indesign Dreamweaver Flash.zip => C:\Documents and Settings\bruno\Local Settings\Temp\R‚pertoire temporaire 3 pour Adobe Cs3 Design Premium Keygen - Photoshop Illustrator Indesign Dreamweaver Flash.zip => C:\Documents and Settings\bruno\Local Settings\Temp\R‚pertoire temporaire 1 pour Adobe Cs3 Design Premium Keygen - Photoshop Illustrator Indesign Dreamweaver Flash.zip\Adobe CS3 DESIGN Premium Keygen - Photoshop_Illustrator_InDesign_Dreamweaver_Flash => C:\Documents and Settings\bruno\Local Settings\Temp\R‚pertoire temporaire 1 pour Adobe Cs3 Design Premium Keygen - Photoshop Illustrator Indesign Dreamweaver Flash.zip\Adobe CS3 DESIGN Premium Keygen - Photoshop_Illustrator_InDesign_Dreamweaver_Flash\files => C:\Documents and Settings\bruno\Local Settings\Temp\R‚pertoire temporaire 1 pour Adobe Cs3 Design Premium Keygen - Photoshop Illustrator Indesign Dreamweaver Flash.zip\Adobe CS3 DESIGN Premium Keygen - Photoshop_Illustrator_InDesign_Dreamweaver_Flash\files\files => C:\Documents and Settings\bruno\Local Settings\Temp\R‚pertoire temporaire 3 pour Adobe Cs3 Design Premium Keygen - Photoshop Illustrator Indesign Dreamweaver Flash.zip\Adobe CS3 DESIGN Premium Keygen - Photoshop_Illustrator_InDesign_Dreamweaver_Flash => C:\Documents and Settings\bruno\Local Settings\Temp\R‚pertoire temporaire 3 pour Adobe Cs3 Design Premium Keygen - Photoshop Illustrator Indesign Dreamweaver Flash.zip\Adobe CS3 DESIGN Premium Keygen - Photoshop_Illustrator_InDesign_Dreamweaver_Flash\files => C:\Documents and Settings\bruno\Local Settings\Temp\R‚pertoire temporaire 3 pour Adobe Cs3 Design Premium Keygen - Photoshop Illustrator Indesign Dreamweaver Flash.zip\Adobe CS3 DESIGN Premium Keygen - Photoshop_Illustrator_InDesign_Dreamweaver_Flash\files\files [F:5][D:10]-> C:\DOCUME~1\bruno\LOCALS~1\Temp [F:2][D:0]-> C:\DOCUME~1\bruno\Cookies [F:6][D:4]-> C:\DOCUME~1\bruno\LOCALS~1\TEMPOR~1\content.IE5 --------------------[ Fin du rapport a 21:24:53,87 ]---------------------- -
[resolu]Probleme CiD pub intempestive
flechou31 a répondu à un(e) sujet de flechou31 dans Analyses et éradication malwares
Okkk je test ça et j'envoie les réponses merci. -
[resolu]Probleme CiD pub intempestive
flechou31 a posté un sujet dans Analyses et éradication malwares
Bonjours, J'ai un Problème de pub intempestive, j'ai déjà eu ce problème lors de l'installation de msn plus que j'ai réussi a régler.MAis les pub sont toujours là, j'ai fait un rapport Hijackthis que voici : Merci de bien vouloir m'aider, Je vous en remerci d'avance. Rapport Hijackthis : Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 15:06:04, on 21/05/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16640) Boot mode: Normal Running processes: C:\WINDOWS\Explorer.EXE C:\WINDOWS\RTHDCPL.EXE C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Fichiers communs\Nero\Lib\NMBgMonitor.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\Internet Explorer\IEXPLORE.EXE C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe C:\Program Files\Logitech\SetPoint\SetPoint.exe C:\Program Files\Fichiers communs\Nero\Lib\NMIndexStoreSvr.exe C:\Program Files\Fichiers communs\Logitech\KhalShared\KHALMNPR.EXE C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Documents and Settings\bastien\Bureau\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE O4 - HKLM\..\Run: [JMB36X IDE Setup] C:\WINDOWS\RaidTool\xInsIDE.exe O4 - HKLM\..\Run: [36X Raid Configurer] C:\WINDOWS\system32\xRaidSetup.exe boot O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe" O4 - HKLM\..\Run: [Long Internet Team Stupid] C:\Documents and Settings\All Users\Application Data\comp two long internet\load upload.exe O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [bgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Nero\Lib\NMBgMonitor.exe" O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [skype] "C:\Documents and Settings\bastien\Local Settings\Application Data\Skype\Phone\Skype.exe" /nosplash /minimized O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe (User 'Default user') O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000 O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O16 - DPF: {67A5F8DC-1A4B-4D66-9F24-A704AD929EEE} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownlo.../sysreqlab2.cab O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\DOCUME~1\bastien\LOCALS~1\APPLIC~1\Skype\Shared\SKYPE4~1.DLL O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe O24 - Desktop Component 0: (no name) - http://www.glatozen.org/wallimages/windows/xp005.jpg -- End of file - 6352 bytes A bientôt.