Aller au contenu

loanesol

Membres
  • Compteur de contenus

    21
  • Inscription

  • Dernière visite

loanesol's Achievements

Member

Member (4/12)

0

Réputation sur la communauté

  1. bonsoir, hier soir j'ai voulu mettre a jour avec xp3, le pb c'est que l'installe n'a pas réussi et que depuis je ne peut plus démarrer mon pc meme en mode sans echec, ou derniere config qui marche Quand je le lance j'ai le windows xp qui s'affiche en gros et puis après écran noir, il ne reste plus que mon curseur de souris Je pense que la je suis tres mal barré Y a til quelqu'un qui pourrait me débloquer Merci
  2. c'est bon ca remarche merci
  3. bonjour; j'ai un gros souci, j'ai installé le mois dernier un multifonction hp sur mon routeur , tout marchait bien , j'ai désinstaller récemment les logiciel qui sont fournis avec, que je n'utilise pas, depuis je ne peut plus me servir de l'imprimante, j'ai essayer de restaurer mon pc il ne veut pas me dit "les modifications apportées au lecteur J : après ce point ne peuvent etre annulées car le lecteur a soit été exclu de l'analyse de restauration ou a été mis hors tension ou retiré" Le J c'est mon disque externe, je l'ai rebranché mis sous tension ca ne marche pas mieux J'ai essayer de reinstaller l'imprimante xp ne la retrouve pas Que faire
  4. non il ne tient pas c'est tout il disparait
  5. j'ai essayer de le coller dans le bureau il ne reste pas j'ai aussi essayer de le coller dans mon message mais je ne peux pas
  6. non toujours pas de zip sur le bureau
  7. de nouveau ComboFix 08-08-25.01 - Benoit 2008-08-26 21:57:03.2 - NTFSx86 Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.635 [GMT 2:00] Endroit: C:\Documents and Settings\Benoit\Bureau\ComboFix.exe Command switches used :: C:\Documents and Settings\Benoit\Bureau\CFScript.txt * Création d'un nouveau point de restauration * Resident AV is active AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !! . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . C:\Documents and Settings\Benoit\Application Data\rhcll2j0era1 C:\Documents and Settings\Benoit\Cookies\benoit@2o7[2].txt C:\Documents and Settings\Benoit\Cookies\benoit@edt02[1].txt C:\Documents and Settings\Benoit\Cookies\benoit@effiliation[1].txt C:\Documents and Settings\Benoit\Cookies\benoit@fnac[2].txt C:\Documents and Settings\Benoit\Cookies\[email protected][2].txt C:\Documents and Settings\Benoit\Cookies\[email protected][2].txt C:\Documents and Settings\Benoit\Cookies\[email protected][1].txt C:\Documents and Settings\Benoit\Menu Démarrer\Programmes\WebMediaPlayer C:\Documents and Settings\Benoit\Menu Démarrer\Programmes\WebMediaPlayer\WebMediaPlayer.lnk C:\Documents and Settings\Benoit\Menu Démarrer\Programmes\WebMediaPlayer\Website.lnk C:\WINDOWS\system32\drivers\npf.sys C:\WINDOWS\system32\KzLib.dll C:\WINDOWS\system32\msikguc.dat C:\WINDOWS\system32\msikguc_navps.dat C:\WINDOWS\system32\packet.dll C:\WINDOWS\system32\pthreadVC.dll C:\WINDOWS\system32\wanpacket.dll C:\WINDOWS\system32\wpcap.dll . ((((((((((((((((((((((((((((((((((((((( Drivers/Services ))))))))))))))))))))))))))))))))))))))))))))))))) . -------\Legacy_NPF -------\Service_NPF ((((((((((((((((((((((((((((( Fichiers cr‚‚s 2008-07-26 to 2008-08-26 )))))))))))))))))))))))))))))))))))) . 2008-08-25 12:33 . 2008-08-25 12:33 <REP> d-------- C:\WINDOWS\ERUNT 2008-08-25 12:27 . 2008-08-25 12:27 <REP> d-------- C:\sdfix 2008-08-24 19:29 . 2008-08-24 19:29 <REP> d-------- C:\Program Files\Malwarebytes' Anti-Malware 2008-08-24 19:29 . 2008-08-24 19:29 <REP> d-------- C:\Documents and Settings\Benoit\Application Data\Malwarebytes 2008-08-24 19:29 . 2008-08-24 19:29 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes 2008-08-24 19:29 . 2008-08-17 15:01 38,472 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys 2008-08-24 19:29 . 2008-08-17 15:01 17,144 --a------ C:\WINDOWS\system32\drivers\mbam.sys 2008-08-23 21:45 . 2008-08-23 21:45 110,592 --a------ C:\WINDOWS\system32\slavsnif.exe 2008-08-23 20:44 . 2008-08-23 20:44 110,592 --a------ C:\WINDOWS\system32\bwdotgra.exe 2008-08-23 19:02 . 2008-08-23 19:02 <REP> d-------- C:\Program Files\MSN Apps 2008-08-23 18:21 . 2008-08-23 19:02 <REP> d-------- C:\Documents and Settings\Administrateur\ModŠles 2008-08-23 18:21 . 2008-08-23 19:02 <REP> d-------- C:\Documents and Settings\Administrateur\Favoris 2008-08-23 18:21 . 2008-08-23 19:02 <REP> d---s---- C:\Documents and Settings\Administrateur 2008-08-22 23:14 . 2008-08-22 23:14 <REP> d-------- C:\Program Files\qjmwlhf 2008-08-22 23:13 . 2008-08-22 23:13 <REP> d-------- C:\Documents and Settings\All Users\Application Data\otwfcxot 2008-08-22 23:13 . 2008-08-22 23:13 86,016 --a------ C:\WINDOWS\system32\ihitqjsp.exe 2008-08-21 22:53 . 2008-08-21 22:53 221 --a------ C:\WINDOWS\NCLogConfig.ini 2008-08-14 20:53 . 2008-08-14 20:53 288,984 --a------ C:\WINDOWS\system32\msikguc_nav.dat.bd.ren 2008-08-14 20:53 . 2008-08-14 20:53 286,720 --a------ C:\WINDOWS\system32\msikguc.exe.bd.ren 2008-08-14 20:53 . 2008-08-23 17:39 10,985 --a------ C:\WINDOWS\system32\msikguc.dat.bd.ren 2008-08-14 20:53 . 2008-08-23 17:40 898 --a------ C:\WINDOWS\system32\msikguc_navps.dat.bd.ren 2008-08-06 18:30 . 2008-08-26 21:54 121 --a------ C:\WINDOWS\bdagent.INI 2008-08-06 18:24 . 2008-08-26 22:05 81,984 --a------ C:\WINDOWS\system32\bdod.bin 2008-08-06 18:20 . 2008-08-06 18:20 <REP> d-------- C:\Documents and Settings\Benoit\Application Data\Bitdefender 2008-08-06 18:19 . 2008-08-06 18:19 <REP> d-------- C:\Program Files\BitDefender 2008-08-06 18:19 . 2008-08-06 18:19 <REP> d-------- C:\Documents and Settings\All Users\Application Data\BitDefender 2008-08-06 18:18 . 2008-08-06 18:20 <REP> d-------- C:\Program Files\Fichiers communs\BitDefender 2008-07-29 19:42 . 2008-08-21 22:53 <REP> d-------- C:\Documents and Settings\Benoit\Application Data\HP 2008-07-29 19:39 . 2008-07-29 19:39 <REP> d-------- C:\Documents and Settings\All Users\Application Data\HP 2008-07-29 19:33 . 2008-07-29 19:33 <REP> d-------- C:\bin 2008-07-29 19:32 . 2008-07-29 19:32 <REP> d-------- C:\Program Files\Fichiers communs\Sonic Shared 2008-07-29 19:32 . 2008-07-29 19:32 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Sonic 2008-07-29 19:30 . 2008-07-29 19:31 <REP> d-------- C:\Program Files\Fichiers communs\HP 2008-07-29 19:27 . 2008-07-29 19:28 <REP> d-------- C:\Program Files\Hewlett-Packard 2008-07-29 19:26 . 2008-07-29 19:26 <REP> d-------- C:\Program Files\Fichiers communs\Hewlett-Packard 2008-07-29 19:25 . 2006-01-04 11:12 77,824 -ra------ C:\WINDOWS\system32\HPZIDS01.dll 2008-07-29 19:25 . 2006-04-10 14:03 38,400 --a------ C:\WINDOWS\system32\hpz3l054.dll 2008-07-29 19:24 . 2006-04-13 02:02 827,392 -ra------ C:\WINDOWS\system32\hpotiop2.dll 2008-07-29 19:24 . 2006-04-13 02:02 659,456 -ra------ C:\WINDOWS\system32\hpowiax2.dll 2008-07-29 19:24 . 2006-04-13 02:02 254,026 -ra------ C:\WINDOWS\system32\hpovst09.dll 2008-07-29 19:24 . 2008-07-29 19:24 160 --a------ C:\WINDOWS\system32\AddPort.ini 2008-07-29 19:23 . 2008-07-29 19:32 <REP> d-------- C:\TEMP 2008-07-29 19:23 . 2008-07-29 19:24 810 --a------ C:\WINDOWS\hpntwksetup.ini 2008-07-29 19:22 . 2006-03-03 21:03 282,680 --a------ C:\WINDOWS\system32\HPZidr12.dll 2008-07-29 19:22 . 2006-03-03 21:02 204,800 --a------ C:\WINDOWS\system32\HPZipr12.dll 2008-07-29 19:22 . 2006-03-03 21:02 94,208 --a------ C:\WINDOWS\system32\HPZipt12.dll 2008-07-29 19:22 . 2007-08-09 09:27 73,728 --a------ C:\WINDOWS\system32\HPZipm12.exe 2008-07-29 19:22 . 2006-03-03 21:03 65,536 --a------ C:\WINDOWS\system32\HPZinw12.exe 2008-07-29 19:22 . 2006-03-03 21:02 57,344 --a------ C:\WINDOWS\system32\HPZisn12.dll 2008-07-29 19:21 . 2008-07-29 19:28 <REP> d-------- C:\Program Files\HP 2008-07-29 19:19 . 2008-07-29 19:43 128,557 --a------ C:\WINDOWS\hpoins11.dat . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2008-08-23 18:01 --------- d-----w C:\Program Files\Spybot - Search & Destroy 2008-08-22 18:25 76,640 -c--a-w C:\Documents and Settings\Benoit\Application Data\GDIPFONTCACHEV1.DAT 2008-08-14 18:53 41,694 ----a-w C:\WINDOWS\Prefetch\MSIKGUC.EXE-2B950A2F.pf.bd.ren 2008-08-12 16:02 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy 2008-08-06 16:13 --------- d-----w C:\Documents and Settings\All Users\Application Data\McAfee 2008-08-06 16:12 --------- d-----w C:\Program Files\McAfee 2008-08-06 16:09 --------- d-----w C:\Documents and Settings\All Users\Application Data\SiteAdvisor 2008-08-05 20:38 --------- d-----w C:\Documents and Settings\Benoit\Application Data\Temporary 2008-08-01 17:16 --------- d-----w C:\Program Files\eMule 2008-07-29 19:34 --------- d--h--w C:\Program Files\InstallShield Installation Information 2008-07-29 19:34 --------- d-----w C:\Program Files\Escntl 2008-07-29 18:28 --------- d-----w C:\Program Files\EPSON 2008-07-21 10:18 --------- d-----w C:\Program Files\Kamzy FTP 2008-07-07 20:31 253,952 ----a-w C:\WINDOWS\system32\es.dll 2008-06-24 16:23 74,240 ----a-w C:\WINDOWS\system32\mscms.dll 2008-06-23 16:28 826,368 ----a-w C:\WINDOWS\system32\wininet.dll 2008-06-20 17:41 247,808 ----a-w C:\WINDOWS\system32\mswsock.dll 2005-12-22 17:55 3,082 -c--a-w C:\Program Files\uninstal.log 2003-04-15 19:49 32 --sha-w C:\WINDOWS\{45D894C8-C0E8-4B4C-A7EE-158321A4149B}.dat 2003-04-14 17:09 32 --sha-w C:\WINDOWS\{8FED4A7C-0442-4710-9629-5A68C63FE997}.dat 2003-04-15 19:49 32 --sha-w C:\WINDOWS\system32\{FB7A93E7-D0AF-43B8-8DA0-174EF2552FC6}.dat 2003-04-14 17:09 32 --sha-w C:\WINDOWS\system32\{FC1B39D0-83E2-442D-9635-9EB802233242}.dat . ------- Sigcheck ------- 2002-08-30 14:00 12800 333a4db8410d8e24db06d6aebecdc7c2 C:\WINDOWS\$NtServicePackUninstall$\svchost.exe 2004-08-20 01:10 14336 2979b03d5382a602623c0535b16ab9c0 C:\WINDOWS\ServicePackFiles\i386\svchost.exe md5deep: C:\WINDOWS\system32\svchost.exe: error at offset 0: Permission denied 2002-08-30 14:00 101888 fc0691097471ee374907e1024edcbd43 C:\WINDOWS\$NtServicePackUninstall$\services.exe 2004-08-20 01:10 108544 63dcde1a0d86eeb8924d6738ff616ead C:\WINDOWS\ServicePackFiles\i386\services.exe md5deep: C:\WINDOWS\system32\services.exe: error at offset 0: Permission denied . ((((((((((((((((((((((((((((( snapshot@2008-08-26_21.12.02.07 ))))))))))))))))))))))))))))))))))))))))) . + 2005-10-20 18:02:28 163,328 ----a-w C:\WINDOWS\erdnt\subs\ERDNT.EXE . ((((((((((((((((((((((((((((((((( Point de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les ‚l‚ments vides & les ‚l‚ments initiaux l‚gitimes ne sont pas list‚s REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-20 01:09 15360] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" [2007-07-12 04:00 132496] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-20 01:09 15360] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] "gAlbccQf"= {80ADC34A-2A07-69E0-716C-C6B489ECE477} - C:\WINDOWS\system32\rp.dll [2007-04-16 17:53 32768] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "vidc.iv50"= C:\WINDOWS\ir50_32.dll "vidc.xvid"= xvid.dll "vidc.mpg4"= C:\WINDOWS\mpg4c32.dll "vidc.mpg2"= C:\WINDOWS\mpg4c32.dll "vidc.mpg3"= C:\WINDOWS\mpg4c32.dll "vidc.GEOX"= C:\WINDOWS\system32\v8120\GeoCodec.dll "vidc.MJPG"= C:\WINDOWS\m3jpeg32.dll "vidc.dmb1"= C:\WINDOWS\m3jpeg32.dll "vidc.GM20"= C:\WINDOWS\system32\GXGM20.dll "vidc.GEOV"= C:\WINDOWS\system32\GeoCodec.dll "vidc.GMP4"= C:\WINDOWS\system32\v8120\GXAMP4.dll "vidc.GM40"= C:\WINDOWS\system32\GXAMP4.dll "vidc.G264"= C:\WINDOWS\system32\v8120\GX264.dll "msacm.geoadpcm"= C:\WINDOWS\system32\v8100\GeoADPCM.acm "vidc.GM4H"= C:\WINDOWS\system32\v8120\GXAMP4D.dll "vidc.GM4S"= C:\WINDOWS\system32\v8120\GXAMP4D.dll [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] SecurityProviders msapsspc.dllschannel.dlldigest.dllmsnsspc.dll [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader] -ra------ 2008-04-01 13:21 61440 C:\Program Files\Adobe\Adobe Photoshop Lightroom 1.4\apdproxy.exe [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "C:\\WINDOWS\\system32\\sessmgr.exe"= "C:\\Program Files\\eMule\\emule.exe"= "C:\\Program Files\\Messenger\\msmsgs.exe"= "C:\\Program Files\\v8010\\DMMultiView\\MultiView.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"= "C:\\Program Files\\MSN Messenger\\livecall.exe"= "C:\\Program Files\\Real\\RealPlayer\\realplay.exe"= "C:\\WINDOWS\\system32\\spoolsv.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"= "C:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqPhUnl.exe"= "C:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqDIA.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "42456:TCP"= 42456:TCP:PORT_42456 "57446:TCP"= 57446:TCP:PORT_57446 "22403:TCP"= 22403:TCP:PORT_22403 "13086:TCP"= 13086:TCP:PORT_13086 "35676:TCP"= 35676:TCP:PORT_35676 "41321:TCP"= 41321:TCP:PORT_41321 "23264:TCP"= 23264:TCP:PORT_23264 "18116:TCP"= 18116:TCP:PORT_18116 "61537:TCP"= 61537:TCP:PORT_61537 "42013:TCP"= 42013:TCP:PORT_42013 "29381:TCP"= 29381:TCP:PORT_29381 "9307:TCP"= 9307:TCP:PORT_9307 "45790:TCP"= 45790:TCP:PORT_45790 "63130:TCP"= 63130:TCP:PORT_63130 "55588:TCP"= 55588:TCP:PORT_55588 "46947:TCP"= 46947:TCP:PORT_46947 "9810:TCP"= 9810:TCP:PORT_9810 "64341:TCP"= 64341:TCP:PORT_64341 "49586:TCP"= 49586:TCP:PORT_49586 "41298:TCP"= 41298:TCP:PORT_41298 "42555:TCP"= 42555:TCP:PORT_42555 "15375:TCP"= 15375:TCP:PORT_15375 "42395:TCP"= 42395:TCP:PORT_42395 "32091:TCP"= 32091:TCP:PORT_32091 "45055:TCP"= 45055:TCP:PORT_45055 "41005:TCP"= 41005:TCP:PORT_41005 "23854:TCP"= 23854:TCP:PORT_23854 "31948:TCP"= 31948:TCP:PORT_31948 "54136:TCP"= 54136:TCP:PORT_54136 "15450:TCP"= 15450:TCP:PORT_15450 "33916:TCP"= 33916:TCP:PORT_33916 "35610:TCP"= 35610:TCP:PORT_35610 "35670:TCP"= 35670:TCP:PORT_35670 "33944:TCP"= 33944:TCP:PORT_33944 "65050:TCP"= 65050:TCP:PORT_65050 "44995:TCP"= 44995:TCP:PORT_44995 "29739:TCP"= 29739:TCP:PORT_29739 "29981:TCP"= 29981:TCP:PORT_29981 "35075:TCP"= 35075:TCP:PORT_35075 "55127:TCP"= 55127:TCP:PORT_55127 "45441:TCP"= 45441:TCP:PORT_45441 "53895:TCP"= 53895:TCP:PORT_53895 "15955:TCP"= 15955:TCP:PORT_15955 "56724:TCP"= 56724:TCP:PORT_56724 "20002:TCP"= 20002:TCP:PORT_20002 "56970:TCP"= 56970:TCP:PORT_56970 "30778:TCP"= 30778:TCP:PORT_30778 "64001:TCP"= 64001:TCP:PORT_64001 "16321:TCP"= 16321:TCP:PORT_16321 "55716:TCP"= 55716:TCP:PORT_55716 "16989:TCP"= 16989:TCP:PORT_16989 "13587:TCP"= 13587:TCP:PORT_13587 "34705:TCP"= 34705:TCP:PORT_34705 "44575:TCP"= 44575:TCP:PORT_44575 "5363:TCP"= 5363:TCP:PORT_5363 "57540:TCP"= 57540:TCP:PORT_57540 "54731:TCP"= 54731:TCP:PORT_54731 "63626:TCP"= 63626:TCP:PORT_63626 "39859:TCP"= 39859:TCP:PORT_39859 "47156:TCP"= 47156:TCP:PORT_47156 "28758:TCP"= 28758:TCP:PORT_28758 "35403:TCP"= 35403:TCP:PORT_35403 "11495:TCP"= 11495:TCP:PORT_11495 "39281:TCP"= 39281:TCP:PORT_39281 "18727:TCP"= 18727:TCP:PORT_18727 "15540:TCP"= 15540:TCP:PORT_15540 "23130:TCP"= 23130:TCP:PORT_23130 "29540:TCP"= 29540:TCP:PORT_29540 "28903:TCP"= 28903:TCP:PORT_28903 "56869:TCP"= 56869:TCP:PORT_56869 "9295:TCP"= 9295:TCP:PORT_9295 "38712:TCP"= 38712:TCP:PORT_38712 "25247:TCP"= 25247:TCP:PORT_25247 "35028:TCP"= 35028:TCP:PORT_35028 "16732:TCP"= 16732:TCP:PORT_16732 "5669:TCP"= 5669:TCP:PORT_5669 "22689:TCP"= 22689:TCP:PORT_22689 "15052:TCP"= 15052:TCP:PORT_15052 "53211:TCP"= 53211:TCP:PORT_53211 "46563:TCP"= 46563:TCP:PORT_46563 "22597:TCP"= 22597:TCP:PORT_22597 "22959:TCP"= 22959:TCP:PORT_22959 "40481:TCP"= 40481:TCP:PORT_40481 "41594:TCP"= 41594:TCP:PORT_41594 "8662:TCP"= 8662:TCP:PORT_8662 "19673:TCP"= 19673:TCP:PORT_19673 "17961:TCP"= 17961:TCP:PORT_17961 R0 BsStor;InCD Storage Helper Driver;C:\WINDOWS\system32\DRIVERS\bsstor.sys [2002-06-05 18:07] R2 BsUDF;InCD UDF Driver;C:\WINDOWS\system32\drivers\BsUDF.sys [2002-09-25 21:47] R2 ppsio2;PPDevice;C:\WINDOWS\system32\drivers\ppsio2.sys [1998-07-30 14:44] R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;C:\WINDOWS\system32\DRIVERS\bdfndisf.sys [2008-06-02 16:16] S3 cvspydr2;ColorVision Spyder 2;C:\WINDOWS\system32\DRIVERS\cvspydr2.sys [2002-04-02 17:30] S3 epcfw2k;Pilote CF du port parallèle SCM;C:\WINDOWS\system32\DRIVERS\epcfw2k.sys [2001-08-17 21:50] S3 PL2302;Sitecom USB to USB Network cable CN-101v2;C:\WINDOWS\system32\DRIVERS\PL2302.sys [2003-05-07 10:32] S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM);C:\WINDOWS\system32\DRIVERS\ss_bus.sys [2005-08-30 18:57] S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter;C:\WINDOWS\system32\DRIVERS\ss_mdfl.sys [2005-08-30 18:58] S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers;C:\WINDOWS\system32\DRIVERS\ss_mdm.sys [2005-08-30 18:59] S3 V90drv;v90drv;C:\WINDOWS\system32\DRIVERS\v90drv.sys [2001-11-29 17:10] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] bdx REG_MULTI_SZ scan [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d5481b7e-cc0c-11dc-a8f4-0020ed53e8f9}] \Shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL MoniteurJET1OEIL\MoniteurJET1OEIL.exe . Contenu du dossier 'Scheduled Tasks/Tƒches planifi‚es' . ************************************************************************** catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-08-26 22:07:32 Windows 5.1.2600 Service Pack 2 NTFS Balayage processus cach‚s ... Balayage cach‚ autostart entries ... Balayage des fichiers cach‚s ... Scan termin‚ avec succŠs Les fichiers cach‚s: 0 ************************************************************************** . --------------------- DLLs a charg‚ sous des processus courants --------------------- PROCESS: C:\WINDOWS\explorer.exe -> C:\Program Files\Logitech\SetPoint\lgscroll.dll . ------------------------ Other Running Processes ------------------------ . C:\WINDOWS\system32\ati2evxx.exe C:\WINDOWS\system32\ati2evxx.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe C:\Program Files\Microsoft Office\Office\OSA.EXE C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files\Logitech\SetPoint\KEM.exe C:\Program Files\Logitech\SetPoint\KHALMNPR.exe C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe C:\Program Files\HP\Digital Imaging\bin\hpqste08.exe C:\WINDOWS\system32\HPZinw12.exe C:\WINDOWS\system32\verclsid.exe . ************************************************************************** . Temps d'accomplissement: 2008-08-26 22:19:51 - machine was rebooted ComboFix-quarantined-files.txt 2008-08-26 20:19:34 Pre-Run: 42,663,632,896 octets libres Post-Run: 42,578,477,056 octets libres 330 --- E O F --- 2008-08-23 12:00:40
  8. ca ne me dis rien,je ne pense pas
  9. ca y est j'ai fait le combofix par contre je n'ai aucun fichier zip qui c'est crée sur mon bureau voici le rapport ComboFix 08-08-25.01 - Benoit 2008-08-26 20:58:55.1 - NTFSx86 Microsoft Windows XP Édition familiale 5.1.2600.2.1252.1.1036.18.565 [GMT 2:00] Endroit: C:\Documents and Settings\Benoit\Bureau\ComboFix.exe Command switches used :: C:\Documents and Settings\Benoit\Bureau\CFScript.txt * Création d'un nouveau point de restauration * Resident AV is active AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !! . - FONCTIONNALITES REDUITES - . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . C:\Program Files\webmediaplayer C:\Program Files\webmediaplayer\resources\languages.xml C:\Program Files\webmediaplayer\resources\webmedias C:\Program Files\webmediaplayer\skins\classic.skn C:\Program Files\webmediaplayer\sqlite3.dll C:\Program Files\webmediaplayer\uninst.exe C:\Program Files\webmediaplayer\updates\webmediasDB.upd C:\Program Files\webmediaplayer\WebMediaPlayer.url C:\WINDOWS\Downloaded Program Files\setup.inf C:\WINDOWS\pack.epk C:\WINDOWS\system32\MSINET.oca C:\WINDOWS\system32\smp C:\WINDOWS\system32\smp\msrc.exe . ((((((((((((((((((((((((((((( Fichiers créés 2008-07-26 to 2008-08-26 )))))))))))))))))))))))))))))))))))) . 2008-08-25 12:33 . 2008-08-25 12:33 <REP> d-------- C:\WINDOWS\ERUNT 2008-08-25 12:27 . 2008-08-25 12:27 <REP> d-------- C:\sdfix 2008-08-24 19:29 . 2008-08-24 19:29 <REP> d-------- C:\Program Files\Malwarebytes' Anti-Malware 2008-08-24 19:29 . 2008-08-24 19:29 <REP> d-------- C:\Documents and Settings\Benoit\Application Data\Malwarebytes 2008-08-24 19:29 . 2008-08-24 19:29 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes 2008-08-24 19:29 . 2008-08-17 15:01 38,472 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys 2008-08-24 19:29 . 2008-08-17 15:01 17,144 --a------ C:\WINDOWS\system32\drivers\mbam.sys 2008-08-23 21:45 . 2008-08-23 21:45 110,592 --a------ C:\WINDOWS\system32\slavsnif.exe 2008-08-23 20:44 . 2008-08-23 20:44 110,592 --a------ C:\WINDOWS\system32\bwdotgra.exe 2008-08-23 19:02 . 2008-08-23 19:02 <REP> d-------- C:\Program Files\MSN Apps 2008-08-23 18:21 . 2008-08-23 19:02 <REP> d-------- C:\Documents and Settings\Administrateur\Modèles 2008-08-23 18:21 . 2008-08-23 19:02 <REP> d-------- C:\Documents and Settings\Administrateur\Favoris 2008-08-23 18:21 . 2008-08-23 19:02 <REP> d---s---- C:\Documents and Settings\Administrateur 2008-08-23 17:40 . 2008-08-23 17:40 10,985 --a------ C:\WINDOWS\system32\msikguc.dat 2008-08-23 17:40 . 2008-08-23 17:41 898 --a------ C:\WINDOWS\system32\msikguc_navps.dat 2008-08-23 13:44 . 2008-08-23 13:44 <REP> d-------- C:\Documents and Settings\Benoit\Application Data\rhcll2j0era1 2008-08-22 23:14 . 2008-08-22 23:14 <REP> d-------- C:\Program Files\qjmwlhf 2008-08-22 23:13 . 2008-08-22 23:13 <REP> d-------- C:\Documents and Settings\All Users\Application Data\otwfcxot 2008-08-22 23:13 . 2008-08-22 23:13 86,016 --a------ C:\WINDOWS\system32\ihitqjsp.exe 2008-08-21 22:53 . 2008-08-21 22:53 221 --a------ C:\WINDOWS\NCLogConfig.ini 2008-08-14 20:53 . 2008-08-14 20:53 288,984 --a------ C:\WINDOWS\system32\msikguc_nav.dat.bd.ren 2008-08-14 20:53 . 2008-08-14 20:53 286,720 --a------ C:\WINDOWS\system32\msikguc.exe.bd.ren 2008-08-14 20:53 . 2008-08-23 17:39 10,985 --a------ C:\WINDOWS\system32\msikguc.dat.bd.ren 2008-08-14 20:53 . 2008-08-23 17:40 898 --a------ C:\WINDOWS\system32\msikguc_navps.dat.bd.ren 2008-08-06 18:30 . 2008-08-26 21:04 121 --a------ C:\WINDOWS\bdagent.INI 2008-08-06 18:24 . 2008-08-26 21:07 81,984 --a------ C:\WINDOWS\system32\bdod.bin 2008-08-06 18:20 . 2008-08-06 18:20 <REP> d-------- C:\Documents and Settings\Benoit\Application Data\Bitdefender 2008-08-06 18:19 . 2008-08-06 18:19 <REP> d-------- C:\Program Files\BitDefender 2008-08-06 18:19 . 2008-08-06 18:19 <REP> d-------- C:\Documents and Settings\All Users\Application Data\BitDefender 2008-08-06 18:18 . 2008-08-06 18:20 <REP> d-------- C:\Program Files\Fichiers communs\BitDefender 2008-07-29 19:42 . 2008-08-21 22:53 <REP> d-------- C:\Documents and Settings\Benoit\Application Data\HP 2008-07-29 19:39 . 2008-07-29 19:39 <REP> d-------- C:\Documents and Settings\All Users\Application Data\HP 2008-07-29 19:33 . 2008-07-29 19:33 <REP> d-------- C:\bin 2008-07-29 19:32 . 2008-07-29 19:32 <REP> d-------- C:\Program Files\Fichiers communs\Sonic Shared 2008-07-29 19:32 . 2008-07-29 19:32 <REP> d-------- C:\Documents and Settings\All Users\Application Data\Sonic 2008-07-29 19:30 . 2008-07-29 19:31 <REP> d-------- C:\Program Files\Fichiers communs\HP 2008-07-29 19:27 . 2008-07-29 19:28 <REP> d-------- C:\Program Files\Hewlett-Packard 2008-07-29 19:26 . 2008-07-29 19:26 <REP> d-------- C:\Program Files\Fichiers communs\Hewlett-Packard 2008-07-29 19:25 . 2006-01-04 11:12 77,824 -ra------ C:\WINDOWS\system32\HPZIDS01.dll 2008-07-29 19:25 . 2006-04-10 14:03 38,400 --a------ C:\WINDOWS\system32\hpz3l054.dll 2008-07-29 19:24 . 2006-04-13 02:02 827,392 -ra------ C:\WINDOWS\system32\hpotiop2.dll 2008-07-29 19:24 . 2006-04-13 02:02 659,456 -ra------ C:\WINDOWS\system32\hpowiax2.dll 2008-07-29 19:24 . 2006-04-13 02:02 254,026 -ra------ C:\WINDOWS\system32\hpovst09.dll 2008-07-29 19:24 . 2008-07-29 19:24 160 --a------ C:\WINDOWS\system32\AddPort.ini 2008-07-29 19:23 . 2008-07-29 19:32 <REP> d-------- C:\TEMP 2008-07-29 19:23 . 2008-07-29 19:24 810 --a------ C:\WINDOWS\hpntwksetup.ini 2008-07-29 19:22 . 2006-03-03 21:03 282,680 --a------ C:\WINDOWS\system32\HPZidr12.dll 2008-07-29 19:22 . 2006-03-03 21:02 204,800 --a------ C:\WINDOWS\system32\HPZipr12.dll 2008-07-29 19:22 . 2006-03-03 21:02 94,208 --a------ C:\WINDOWS\system32\HPZipt12.dll 2008-07-29 19:22 . 2007-08-09 09:27 73,728 --a------ C:\WINDOWS\system32\HPZipm12.exe 2008-07-29 19:22 . 2006-03-03 21:03 65,536 --a------ C:\WINDOWS\system32\HPZinw12.exe 2008-07-29 19:22 . 2006-03-03 21:02 57,344 --a------ C:\WINDOWS\system32\HPZisn12.dll 2008-07-29 19:21 . 2008-07-29 19:28 <REP> d-------- C:\Program Files\HP 2008-07-29 19:19 . 2008-07-29 19:43 128,557 --a------ C:\WINDOWS\hpoins11.dat . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2008-08-23 18:01 --------- d-----w C:\Program Files\Spybot - Search & Destroy 2008-08-22 18:25 76,640 -c--a-w C:\Documents and Settings\Benoit\Application Data\GDIPFONTCACHEV1.DAT 2008-08-14 18:53 41,694 ----a-w C:\WINDOWS\Prefetch\MSIKGUC.EXE-2B950A2F.pf.bd.ren 2008-08-12 16:02 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy 2008-08-06 16:13 --------- d-----w C:\Documents and Settings\All Users\Application Data\McAfee 2008-08-06 16:12 --------- d-----w C:\Program Files\McAfee 2008-08-06 16:09 --------- d-----w C:\Documents and Settings\All Users\Application Data\SiteAdvisor 2008-08-05 20:38 --------- d-----w C:\Documents and Settings\Benoit\Application Data\Temporary 2008-08-01 17:16 --------- d-----w C:\Program Files\eMule 2008-07-29 19:34 --------- d--h--w C:\Program Files\InstallShield Installation Information 2008-07-29 19:34 --------- d-----w C:\Program Files\Escntl 2008-07-29 18:28 --------- d-----w C:\Program Files\EPSON 2008-07-21 10:18 --------- d-----w C:\Program Files\Kamzy FTP 2008-07-07 20:31 253,952 ----a-w C:\WINDOWS\system32\es.dll 2008-06-24 16:23 74,240 ----a-w C:\WINDOWS\system32\mscms.dll 2008-06-23 16:28 826,368 ----a-w C:\WINDOWS\system32\wininet.dll 2008-06-20 17:41 247,808 ----a-w C:\WINDOWS\system32\mswsock.dll 2005-12-22 17:55 3,082 -c--a-w C:\Program Files\uninstal.log 2003-04-15 19:49 32 --sha-w C:\WINDOWS\{45D894C8-C0E8-4B4C-A7EE-158321A4149B}.dat 2003-04-14 17:09 32 --sha-w C:\WINDOWS\{8FED4A7C-0442-4710-9629-5A68C63FE997}.dat 2003-04-15 19:49 32 --sha-w C:\WINDOWS\system32\{FB7A93E7-D0AF-43B8-8DA0-174EF2552FC6}.dat 2003-04-14 17:09 32 --sha-w C:\WINDOWS\system32\{FC1B39D0-83E2-442D-9635-9EB802233242}.dat . ------- Sigcheck ------- 2002-08-30 14:00 12800 333a4db8410d8e24db06d6aebecdc7c2 C:\WINDOWS\$NtServicePackUninstall$\svchost.exe 2004-08-20 01:10 14336 2979b03d5382a602623c0535b16ab9c0 C:\WINDOWS\ServicePackFiles\i386\svchost.exe md5deep: C:\WINDOWS\system32\svchost.exe: error at offset 0: Permission denied 2002-08-30 14:00 101888 fc0691097471ee374907e1024edcbd43 C:\WINDOWS\$NtServicePackUninstall$\services.exe 2004-08-20 01:10 108544 63dcde1a0d86eeb8924d6738ff616ead C:\WINDOWS\ServicePackFiles\i386\services.exe md5deep: C:\WINDOWS\system32\services.exe: error at offset 0: Permission denied . ((((((((((((((((((((((((((((((((( Point de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "MoneyAgent"="c:\Program Files\Microsoft Money\System\mnyexpr.exe" [2002-07-17 12:00 204863] "ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-20 01:09 15360] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ATIPTA"="C:\ati-cpanel\atiptaxx.exe" [2002-08-06 15:35 290816] "NeroCheck"="C:\WINDOWS\system32\NeroCheck.exe" [2001-07-09 12:50 155648] "InCD"="C:\Program Files\Ahead\InCD\InCD.exe" [2002-09-26 11:30 1114112] "Microsoft Works Update Detection"="C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe" [2002-07-18 18:36 28672] "QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2005-01-20 22:55 98304] "Vade Retro Outlook Express"="C:\PROGRA~1\GOTOSO~1\VADERE~1\Vaderetro_oe.exe" [2006-02-16 16:46 295936] "Vaderetro Outlook"="C:\PROGRA~1\GOTOSO~1\VADERE~1\VrMoRegister.exe" [2006-07-22 11:59 44544] "ATICCC"="C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" [2005-08-06 02:07 61440] "HydraVisionDesktopManager"="C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraDM.exe" [2003-09-15 22:00 270336] "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" [2007-07-12 04:00 132496] "TkBellExe"="C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" [2007-12-26 10:21 185896] "HP Software Update"="C:\Program Files\HP\HP Software Update\HPWuSchd2.exe" [2006-02-19 02:41 49152] "BitDefender Antiphishing Helper"="C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe" [2007-10-09 16:46 61440] "BDAgent"="C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe" [2008-05-23 19:16 368640] "SoundMan"="SOUNDMAN.EXE" [2002-10-16 18:24 47104 C:\WINDOWS\SOUNDMAN.EXE] "Logitech Utility"="Logi_MwX.Exe" [2003-11-07 11:50 19968 C:\WINDOWS\LOGI_MWX.EXE] "Logitech Hardware Abstraction Layer"="KHALMNPR.EXE" [2004-10-21 14:28 29696 C:\WINDOWS\KHALMNPR.Exe] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce] "GrpConv"="grpconv -o" [X] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [2004-08-20 01:09 15360] C:\Documents and Settings\All Users\Menu D‚marrer\Programmes\D‚marrage\ Adobe Gamma Loader.lnk - C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe [2006-11-25 16:18:16 110592] Barre d'‚tat systŠme d'ATI CATALYST.lnk - C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe [2005-08-06 02:07:30 61440] ColorVisionStartup.lnk - C:\Program Files\PANTONE COLORVISION\Utility\ColorVisionStartup.exe [2005-05-05 12:44:18 385024] D‚marrage d'Office.lnk - C:\Program Files\Microsoft Office\Office\OSA.EXE [1997-08-29 01:00:00 51984] D‚marrage rapide de HP Photosmart Premier.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe [2006-02-10 07:56:20 73728] HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2006-02-19 04:21:22 288472] InterVideo WinCinema Manager.lnk - C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe [2003-01-26 15:51:15 98304] Lancement rapide d'Adobe Reader.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [2008-04-23 03:38:16 29696] Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\KEM.exe [2007-12-26 16:05:19 581632] Microsoft Recherche acc‚l‚r‚e.lnk - C:\Program Files\Microsoft Office\Office\FINDFAST.EXE [1997-08-29 01:00:00 111376] [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\system] "DisableTaskMgr"= 0 (0x0) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] "gAlbccQf"= {80ADC34A-2A07-69E0-716C-C6B489ECE477} - C:\WINDOWS\system32\rp.dll [2007-04-16 17:53 32768] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "vidc.iv50"= C:\WINDOWS\ir50_32.dll "vidc.xvid"= xvid.dll "vidc.mpg4"= C:\WINDOWS\mpg4c32.dll "vidc.mpg2"= C:\WINDOWS\mpg4c32.dll "vidc.mpg3"= C:\WINDOWS\mpg4c32.dll "vidc.GEOX"= C:\WINDOWS\system32\v8120\GeoCodec.dll "vidc.MJPG"= C:\WINDOWS\m3jpeg32.dll "vidc.dmb1"= C:\WINDOWS\m3jpeg32.dll "vidc.GM20"= C:\WINDOWS\system32\GXGM20.dll "vidc.GEOV"= C:\WINDOWS\system32\GeoCodec.dll "vidc.GMP4"= C:\WINDOWS\system32\v8120\GXAMP4.dll "vidc.GM40"= C:\WINDOWS\system32\GXAMP4.dll "vidc.G264"= C:\WINDOWS\system32\v8120\GX264.dll "msacm.geoadpcm"= C:\WINDOWS\system32\v8100\GeoADPCM.acm "vidc.GM4H"= C:\WINDOWS\system32\v8120\GXAMP4D.dll "vidc.GM4S"= C:\WINDOWS\system32\v8120\GXAMP4D.dll [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders] SecurityProviders msapsspc.dll schannel.dll digest.dll msnsspc.dll [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader] -ra------ 2008-04-01 13:21 61440 C:\Program Files\Adobe\Adobe Photoshop Lightroom 1.4\apdproxy.exe [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "C:\\WINDOWS\\system32\\sessmgr.exe"= "C:\\Program Files\\eMule\\emule.exe"= "C:\\Program Files\\Messenger\\msmsgs.exe"= "C:\\Program Files\\v8010\\DMMultiView\\MultiView.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "C:\\Program Files\\MSN Messenger\\msnmsgr.exe"= "C:\\Program Files\\MSN Messenger\\livecall.exe"= "C:\\Program Files\\Real\\RealPlayer\\realplay.exe"= "C:\\WINDOWS\\system32\\spoolsv.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpfccopy.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"= "C:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqPhUnl.exe"= "C:\\Program Files\\HP\\Digital Imaging\\Unload\\HpqDIA.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"= "C:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"= [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "42456:TCP"= 42456:TCP:PORT_42456 "57446:TCP"= 57446:TCP:PORT_57446 "22403:TCP"= 22403:TCP:PORT_22403 "13086:TCP"= 13086:TCP:PORT_13086 "35676:TCP"= 35676:TCP:PORT_35676 "41321:TCP"= 41321:TCP:PORT_41321 "23264:TCP"= 23264:TCP:PORT_23264 "18116:TCP"= 18116:TCP:PORT_18116 "61537:TCP"= 61537:TCP:PORT_61537 "42013:TCP"= 42013:TCP:PORT_42013 "29381:TCP"= 29381:TCP:PORT_29381 "9307:TCP"= 9307:TCP:PORT_9307 "45790:TCP"= 45790:TCP:PORT_45790 "63130:TCP"= 63130:TCP:PORT_63130 "55588:TCP"= 55588:TCP:PORT_55588 "46947:TCP"= 46947:TCP:PORT_46947 "9810:TCP"= 9810:TCP:PORT_9810 "64341:TCP"= 64341:TCP:PORT_64341 "49586:TCP"= 49586:TCP:PORT_49586 "41298:TCP"= 41298:TCP:PORT_41298 "42555:TCP"= 42555:TCP:PORT_42555 "15375:TCP"= 15375:TCP:PORT_15375 "42395:TCP"= 42395:TCP:PORT_42395 "32091:TCP"= 32091:TCP:PORT_32091 "45055:TCP"= 45055:TCP:PORT_45055 "41005:TCP"= 41005:TCP:PORT_41005 "23854:TCP"= 23854:TCP:PORT_23854 "31948:TCP"= 31948:TCP:PORT_31948 "54136:TCP"= 54136:TCP:PORT_54136 "15450:TCP"= 15450:TCP:PORT_15450 "33916:TCP"= 33916:TCP:PORT_33916 "35610:TCP"= 35610:TCP:PORT_35610 "35670:TCP"= 35670:TCP:PORT_35670 "33944:TCP"= 33944:TCP:PORT_33944 "65050:TCP"= 65050:TCP:PORT_65050 "44995:TCP"= 44995:TCP:PORT_44995 "29739:TCP"= 29739:TCP:PORT_29739 "29981:TCP"= 29981:TCP:PORT_29981 "35075:TCP"= 35075:TCP:PORT_35075 "55127:TCP"= 55127:TCP:PORT_55127 "45441:TCP"= 45441:TCP:PORT_45441 "53895:TCP"= 53895:TCP:PORT_53895 "15955:TCP"= 15955:TCP:PORT_15955 "56724:TCP"= 56724:TCP:PORT_56724 "20002:TCP"= 20002:TCP:PORT_20002 "56970:TCP"= 56970:TCP:PORT_56970 "30778:TCP"= 30778:TCP:PORT_30778 "64001:TCP"= 64001:TCP:PORT_64001 "16321:TCP"= 16321:TCP:PORT_16321 "55716:TCP"= 55716:TCP:PORT_55716 "16989:TCP"= 16989:TCP:PORT_16989 "13587:TCP"= 13587:TCP:PORT_13587 "34705:TCP"= 34705:TCP:PORT_34705 "44575:TCP"= 44575:TCP:PORT_44575 "5363:TCP"= 5363:TCP:PORT_5363 "57540:TCP"= 57540:TCP:PORT_57540 "54731:TCP"= 54731:TCP:PORT_54731 "63626:TCP"= 63626:TCP:PORT_63626 "39859:TCP"= 39859:TCP:PORT_39859 "47156:TCP"= 47156:TCP:PORT_47156 "28758:TCP"= 28758:TCP:PORT_28758 "35403:TCP"= 35403:TCP:PORT_35403 "11495:TCP"= 11495:TCP:PORT_11495 "39281:TCP"= 39281:TCP:PORT_39281 "18727:TCP"= 18727:TCP:PORT_18727 "15540:TCP"= 15540:TCP:PORT_15540 "23130:TCP"= 23130:TCP:PORT_23130 "29540:TCP"= 29540:TCP:PORT_29540 "28903:TCP"= 28903:TCP:PORT_28903 "56869:TCP"= 56869:TCP:PORT_56869 "9295:TCP"= 9295:TCP:PORT_9295 "38712:TCP"= 38712:TCP:PORT_38712 "25247:TCP"= 25247:TCP:PORT_25247 "35028:TCP"= 35028:TCP:PORT_35028 "16732:TCP"= 16732:TCP:PORT_16732 "5669:TCP"= 5669:TCP:PORT_5669 "22689:TCP"= 22689:TCP:PORT_22689 "15052:TCP"= 15052:TCP:PORT_15052 "53211:TCP"= 53211:TCP:PORT_53211 "46563:TCP"= 46563:TCP:PORT_46563 "22597:TCP"= 22597:TCP:PORT_22597 "22959:TCP"= 22959:TCP:PORT_22959 "40481:TCP"= 40481:TCP:PORT_40481 "41594:TCP"= 41594:TCP:PORT_41594 "8662:TCP"= 8662:TCP:PORT_8662 "19673:TCP"= 19673:TCP:PORT_19673 "17961:TCP"= 17961:TCP:PORT_17961 R0 BsStor;InCD Storage Helper Driver;C:\WINDOWS\system32\DRIVERS\bsstor.sys [2002-06-05 18:07] R2 BsUDF;InCD UDF Driver;C:\WINDOWS\system32\drivers\BsUDF.sys [2002-09-25 21:47] R2 ppsio2;PPDevice;C:\WINDOWS\system32\drivers\ppsio2.sys [1998-07-30 14:44] R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;C:\WINDOWS\system32\DRIVERS\bdfndisf.sys [2008-06-02 16:16] S3 cvspydr2;ColorVision Spyder 2;C:\WINDOWS\system32\DRIVERS\cvspydr2.sys [2002-04-02 17:30] S3 epcfw2k;Pilote CF du port parallèle SCM;C:\WINDOWS\system32\DRIVERS\epcfw2k.sys [2001-08-17 21:50] S3 NPF;NetGroup Packet Filter Driver;C:\WINDOWS\system32\drivers\npf.sys [2004-10-29 16:14] S3 PL2302;Sitecom USB to USB Network cable CN-101v2;C:\WINDOWS\system32\DRIVERS\PL2302.sys [2003-05-07 10:32] S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM);C:\WINDOWS\system32\DRIVERS\ss_bus.sys [2005-08-30 18:57] S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter;C:\WINDOWS\system32\DRIVERS\ss_mdfl.sys [2005-08-30 18:58] S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers;C:\WINDOWS\system32\DRIVERS\ss_mdm.sys [2005-08-30 18:59] S3 V90drv;v90drv;C:\WINDOWS\system32\DRIVERS\v90drv.sys [2001-11-29 17:10] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] bdx REG_MULTI_SZ scan [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d5481b7e-cc0c-11dc-a8f4-0020ed53e8f9}] \Shell\AutoRun\command - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL MoniteurJET1OEIL\MoniteurJET1OEIL.exe . Contenu du dossier 'Scheduled Tasks/Tâches planifiées' 2003-04-15 C:\WINDOWS\Tasks\Symantec NetDetect.job - C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE [] . - - - - ORPHANS REMOVED - - - - HKCU-Run-Shareaza - C:\Program Files\Shareaza\Shareaza.exe HKCU-Run-FlyAway - (no file) HKLM-Run-NetAnalyse - C:\Program Files\NetAnalyse\NetAnalyse.exe HKLM-Run-Microsoft Inet Xp.. - (no file) HKLM-Run-EoEngine - (no file) HKLM-Run-EoWeather - (no file) ************************************************************************** catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2008-08-26 21:04:12 Windows 5.1.2600 Service Pack 2 NTFS Balayage processus cachés ... Balayage caché autostart entries ... Balayage des fichiers cachés ... Scan terminé avec succès Les fichiers cachés: 0 ************************************************************************** . Temps d'accomplissement: 2008-08-26 21:14:03 ComboFix-quarantined-files.txt 2008-08-26 19:13:55 Pre-Run: 41,682,128,896 octets libres Post-Run: 42,505,658,368 octets libres 337 --- E O F --- 2008-08-23 12:00:40
  10. bonjour, je viens de réessayer de renvoyer le fichier a virus total, il se passe toujours la meme chose. Par contre pour vérifier j'ai essayer 2 autres fichier du repertoire systeme 32, 1 .dll et un .ax et la ca marche Est ce qu'il n'y aurait pas encore quelquechose dans ce fichier???
  11. ah oui je l'ai trouvé sans pb, le l'ai envoyer j'ai un message d'attente puis internet ex ne peut pas afficher la page
  12. j'ai beau réessayer ca ne veut pas qu'est ce qu'on peut faire?
  13. impossible de l'envoyer internet ex ne peut pas afficher cette page dès que je fais envoyer
  14. Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:23:41, on 25/08/2008 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v7.00 (7.00.6000.16705) Boot mode: Normal Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\system32\Ati2evxx.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\SOUNDMAN.EXE C:\ati-cpanel\atiptaxx.exe C:\Program Files\Ahead\InCD\InCD.exe C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe C:\WINDOWS\Logi_MwX.Exe C:\Program Files\QuickTime\qttask.exe C:\PROGRA~1\GOTOSO~1\VADERE~1\Vaderetro_oe.exe C:\Program Files\ATI Technologies\ATI.ACE\cli.exe C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraDM.exe C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe C:\Program Files\HP\HP Software Update\HPWuSchd2.exe C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe C:\WINDOWS\system32\ctfmon.exe C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe C:\Program Files\Microsoft Office\Office\OSA.EXE C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe C:\Program Files\Logitech\SetPoint\KEM.exe C:\Program Files\Logitech\SetPoint\KHALMNPR.EXE C:\Program Files\HP\Digital Imaging\bin\hpqimzone.exe C:\Program Files\HP\Digital Imaging\bin\hpqnrs08.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\HPZinw12.exe C:\Program Files\Outlook Express\msimn.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Adobe\Adobe Photoshop CS2\Photoshop.exe C:\DOCUME~1\Benoit\LOCALS~1\Temp\Adobelm_Cleanup.0001 C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe C:\DOCUME~1\Benoit\LOCALS~1\Temp\Adobelm_Cleanup.0001 C:\Program Files\Internet Explorer\iexplore.exe C:\Documents and Settings\Benoit\Bureau\HiJackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.planete-powershot.net/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll (file missing) O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: EoBho Class - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\PROGRA~1\eoRezo\EoAdv\EOREZO~1.DLL (file missing) O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll O3 - Toolbar: BitDefender Toolbar - {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - C:\Program Files\BitDefender\BitDefender 2008\IEToolbar.dll O4 - HKLM\..\Run: [soundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [ATIPTA] C:\ati-cpanel\atiptaxx.exe O4 - HKLM\..\Run: [NeroCheck] C:\WINDOWS\system32\NeroCheck.exe O4 - HKLM\..\Run: [inCD] C:\Program Files\Ahead\InCD\InCD.exe O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [Vade Retro Outlook Express] "C:\PROGRA~1\GOTOSO~1\VADERE~1\Vaderetro_oe.exe" O4 - HKLM\..\Run: [NetAnalyse] C:\Program Files\NetAnalyse\NetAnalyse.exe O4 - HKLM\..\Run: [Vaderetro Outlook] "C:\PROGRA~1\GOTOSO~1\VADERE~1\VrMoRegister.exe -s" O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime O4 - HKLM\..\Run: [HydraVisionDesktopManager] C:\Program Files\ATI Technologies\ATI HYDRAVISION\HydraDM.exe O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe O4 - HKLM\..\Run: [bitDefender Antiphishing Helper] "C:\Program Files\BitDefender\BitDefender 2008\IEShow.exe" O4 - HKLM\..\Run: [bDAgent] "C:\Program Files\BitDefender\BitDefender 2008\bdagent.exe" O4 - HKCU\..\Run: [MoneyAgent] "c:\Program Files\Microsoft Money\System\mnyexpr.exe" O4 - HKCU\..\Run: [shareaza] "C:\Program Files\Shareaza\Shareaza.exe" -tray O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Startup: NetAnalyse.lnk = C:\Program Files\NetAnalyse\NetAnalyse.exe O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Barre d'état système d'ATI CATALYST.lnk = C:\Program Files\ATI Technologies\ATI.ACE\CLI.exe O4 - Global Startup: ColorVisionStartup.lnk = C:\Program Files\PANTONE COLORVISION\Utility\ColorVisionStartup.exe O4 - Global Startup: Démarrage d'Office.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE O4 - Global Startup: Démarrage rapide de HP Photosmart Premier.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\KEM.exe O4 - Global Startup: Microsoft Recherche accélérée.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE O8 - Extra context menu item: Ouvrir client sur le moniteur &1 - C:\WINDOWS\web\AOpenClient.htm O8 - Extra context menu item: Ouvrir client sur le moniteur &2 - C:\WINDOWS\web\AOpenClient.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O15 - Trusted Zone: http://*.mcafee.com O16 - DPF: ppctlcab - http://www.pestscan.com/scanner/ppctlcab.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409 O16 - DPF: {1DB93715-3B60-43EE-93E6-279BB3E1DF76} (OCXDownloadChecker Control) - http://193.253.46.56/cab/OCXChecker_6110.cab O16 - DPF: {2EF3FB47-7B1E-4536-BA4D-51427BD45DFA} - http://www.pixaco.fr/static/download/pixacodndupload.cab O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/m...01/mcinsctl.cab O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.photoservice.com/aurigma/ImageUploader4.cab O16 - DPF: {983AB2CC-3D50-11D9-ADFE-00062919A34C} (ActiveXUpload.UserCtrl) - http://www.photoservice.com/activeX/newUpload.CAB O16 - DPF: {A18962F6-E6ED-40B1-97C9-1FB36F38BFA8} (Aurigma Image Uploader 3.5 Control) - http://www.phox.fr/Print/Components/Upload...geUploader3.cab O16 - DPF: {ADACAA8F-3595-47FE-9C31-9C7471B9BEC7} (OCXDownloadChecker Control) - http://193.251.5.13/cab/OCXChecker_8120.cab O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://download.mcafee.com/molbin/shared/m...,23/mcgdmgr.cab O16 - DPF: {DBAFE6AD-DC14-45DF-A3F7-F8832289A1CD} (DownloadFile Control) - http://86.204.67.114/cab/DownloadFile_8000.cab O16 - DPF: {DE625294-70E6-45ED-B895-CFFA13AEB044} (AxisMediaControlEmb Class) - http://jet1oeil.no-ip.info:8081/activex/AMC.cab O16 - DPF: {EDFCB7CB-942C-4822-AF14-F0B687409848} (Image Uploader Control) - http://www.photoservice.com/telechargement...geUploader4.cab O21 - SSODL: gAlbccQf - {80ADC34A-2A07-69E0-716C-C6B489ECE477} - C:\WINDOWS\System32\rp.dll O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Fichiers communs\EPSON\EBAPI\SAgent2.exe O23 - Service: HP Port Resolver - Hewlett-Packard Company - C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBPRO.EXE O23 - Service: HP Status Server - Hewlett-Packard Company - C:\WINDOWS\system32\spool\drivers\w32x86\3\HPBOID.EXE O23 - Service: BitDefender Desktop Update Service (LIVESRV) - BitDefender SRL - C:\Program Files\Fichiers communs\BitDefender\BitDefender Update Service\livesrv.exe O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - NetGroup - Politecnico di Torino - C:\Program Files\WinPcap\rpcapd.exe O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe O23 - Service: BitDefender Virus Shield (VSSERV) - BitDefender S.R.L. - C:\Program Files\BitDefender\BitDefender 2008\vsserv.exe O23 - Service: BitDefender Communicator (XCOMM) - BitDefender - C:\Program Files\Fichiers communs\BitDefender\BitDefender Communicator\xcommsvr.exe -- End of file - 12657 bytes mon spybot est-il encore efficace du fait que j'ai décoché teatimer résident??
  15. je viens de le faire a l'instant tout a l'air normal le fait de cocher c'est ligne correspond a quoi, que je ne meurt pas idiot merci bonne soirée
×
×
  • Créer...