

JEFFISERE
Membres-
Compteur de contenus
24 -
Inscription
-
Dernière visite
Type de contenu
Profils
Forums
Blogs
Tout ce qui a été posté par JEFFISERE
-
bonjour je ne sais pas si c ici que je dois poster ma question ,mais depuis quelque temps je ne peux plus visionner sur les sites des teles habituelles les emissions que j ai loupees en direct. lors je clic sur l emission ,l ecran s ouvre ;le message connexion s affiche ;mais le visionnage ne souvre pas . j ai fait une maj de flash player ;pas mieux. au secours ,qui a une idee? par avance merci jeffisere
-
OK MERCI A TOUS .
-
bonjour je recherche un log pour enregister sur mon disque dur les video du net ;j ai essayer real player mais ca plante ,meri d avance
-
patch pour IE 7 SUITE PROBLEM SECURITE
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Internet & Réseaux
ok merci je vais voir -
bj a tous ,j ai lu que ie 7 a des pb de securite et que microsoft allait sortir un patch correcti masi qaund ??
-
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
OK RESOLU -
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
[ Rapport ToolsCleaner version 2.2.8 (par A.Rothstein & dj QUIOU) ] -->- Recherche: C:\fixnavi.txt: trouvé ! C:\TB.txt: trouvé ! C:\Toolbar SD: trouvé ! C:\Program Files\Navilog1: trouvé ! C:\Program Files\Navilog1\Navilog1.bat: trouvé ! C:\Program Files\Trend Micro\HijackThis: trouvé ! C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé ! C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programmes\HijackThis: trouvé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programmes\Navilog1: trouvé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis: trouvé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navilog1: trouvé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis\HijackThis.lnk: trouvé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navilog1\Navilog1.lnk: trouvé ! C:\Users\All Users\Microsoft\Windows\Start Menu\Programmes\HijackThis: trouvé ! C:\Users\All Users\Microsoft\Windows\Start Menu\Programmes\Navilog1: trouvé ! C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\HijackThis: trouvé ! C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Navilog1: trouvé ! C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\HijackThis\HijackThis.lnk: trouvé ! C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Navilog1\Navilog1.lnk: trouvé ! C:\Users\JEAN LUC LAMBERT\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis: trouvé ! C:\Users\JEAN LUC LAMBERT\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé ! C:\Users\JEAN LUC LAMBERT\AppData\Roaming\Microsoft\Windows\Recent\HijackThis.lnk: trouvé ! C:\Users\JEAN LUC LAMBERT\Desktop\HijackThis.lnk: trouvé ! C:\Users\JEAN LUC LAMBERT\Desktop\Navilog1.exe: trouvé ! C:\Users\JEAN LUC LAMBERT\Desktop\ToolBarSD.exe: trouvé ! C:\Users\Public\Desktop\Navilog1.lnk: trouvé ! [ Rapport ToolsCleaner version 2.2.8 (par A.Rothstein & dj QUIOU) ] -->- Recherche: C:\fixnavi.txt: trouvé ! C:\TB.txt: trouvé ! C:\Toolbar SD: trouvé ! C:\Program Files\Navilog1: trouvé ! C:\Program Files\Navilog1\Navilog1.bat: trouvé ! C:\Program Files\Trend Micro\HijackThis: trouvé ! C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: trouvé ! C:\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programmes\HijackThis: trouvé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programmes\Navilog1: trouvé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis: trouvé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navilog1: trouvé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis\HijackThis.lnk: trouvé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navilog1\Navilog1.lnk: trouvé ! C:\Users\All Users\Microsoft\Windows\Start Menu\Programmes\HijackThis: trouvé ! C:\Users\All Users\Microsoft\Windows\Start Menu\Programmes\Navilog1: trouvé ! C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\HijackThis: trouvé ! C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Navilog1: trouvé ! C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\HijackThis\HijackThis.lnk: trouvé ! C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Navilog1\Navilog1.lnk: trouvé ! C:\Users\JEAN LUC LAMBERT\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis: trouvé ! C:\Users\JEAN LUC LAMBERT\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis\hijackthis.log: trouvé ! C:\Users\JEAN LUC LAMBERT\AppData\Roaming\Microsoft\Windows\Recent\HijackThis.lnk: trouvé ! C:\Users\JEAN LUC LAMBERT\Desktop\HijackThis.lnk: trouvé ! C:\Users\JEAN LUC LAMBERT\Desktop\Navilog1.exe: trouvé ! C:\Users\JEAN LUC LAMBERT\Desktop\ToolBarSD.exe: trouvé ! C:\Users\Public\Desktop\Navilog1.lnk: trouvé ! --------------------------------- -->- Suppression: C:\Program Files\Navilog1\Navilog1.bat: supprimé ! C:\Program Files\Trend Micro\HijackThis\HijackThis.exe: supprimé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis\HijackThis.lnk: supprimé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navilog1\Navilog1.lnk: supprimé ! C:\Users\JEAN LUC LAMBERT\AppData\Roaming\Microsoft\Windows\Recent\HijackThis.lnk: supprimé ! C:\Users\JEAN LUC LAMBERT\Desktop\HijackThis.lnk: supprimé ! C:\Users\JEAN LUC LAMBERT\Desktop\Navilog1.exe: supprimé ! C:\Users\JEAN LUC LAMBERT\Desktop\ToolBarSD.exe: supprimé ! C:\Users\Public\Desktop\Navilog1.lnk: supprimé ! C:\fixnavi.txt: supprimé ! C:\TB.txt: supprimé ! C:\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé ! C:\Users\JEAN LUC LAMBERT\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis\hijackthis.log: supprimé ! C:\Toolbar SD: supprimé ! C:\Program Files\Navilog1: supprimé ! C:\Program Files\Trend Micro\HijackThis: supprimé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programmes\HijackThis: ERREUR DE SUPPRESSION !! C:\ProgramData\Microsoft\Windows\Start Menu\Programmes\Navilog1: ERREUR DE SUPPRESSION !! C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis: supprimé ! C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navilog1: supprimé ! C:\Users\JEAN LUC LAMBERT\AppData\Local\VirtualStore\Program Files\Trend Micro\HijackThis: supprimé ! -
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
merci apollo c est super sympa je vais suivre tes conseils et encore merci -
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
Search Navipromo version 3.7.0 commencé le 21/12/2008 à 23:18:56,17 !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!! !!! Postez ce rapport sur le forum pour le faire analyser !!! !!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!! Outil exécuté depuis C:\Program Files\navilog1 Mise à jour le 10.12.2008 à 21h00 par IL-MAFIOSO Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1 X86-based PC ( Multiprocessor Free : Intel® Core2 Duo CPU E4600 @ 2.40GHz ) BIOS : Phoenix - AwardBIOS v6.00PG USER : JEAN LUC LAMBERT ( Administrator ) BOOT : Normal boot Antivirus : Norton Internet Security 15.5.0.23 (Activated) Firewall : Norton Internet Security 15.5.0.23 (Activated) C:\ (Local Disk) - NTFS - Total:222 Go (Free:156 Go) D:\ (CD or DVD) E:\ (USB) F:\ (USB) G:\ (USB) H:\ (USB) Recherche executé en mode normal *** Recherche Programmes installés *** *** Recherche dossiers dans "C:\Windows" *** *** Recherche dossiers dans "C:\Program Files" *** *** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1\programs" *** *** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1" *** *** Recherche dossiers dans "C:\ProgramData" *** *** Recherche dossiers dans "c:\users\jeanlu~1\appdata\roaming\micros~1\windows\startm~1\programs" *** *** Recherche dossiers dans "C:\Users\JEAN LUC LAMBERT\AppData\Local\virtualstore\Program Files" *** *** Recherche dossiers dans "C:\Users\JEAN LUC LAMBERT\AppData\Roaming" *** *** Recherche avec Catchme-rootkit/stealth malware detector par gmer *** pour + d'infos : http://www.gmer.net *** Recherche avec GenericNaviSearch *** !!! Tous ces résultats peuvent révéler des fichiers légitimes !!! !!! A vérifier impérativement avant toute suppression manuelle !!! * Recherche dans "C:\Windows\system32" * * Recherche dans "C:\Users\JEAN LUC LAMBERT\AppData\Local\Microsoft" * * Recherche dans "C:\Users\JEAN LUC LAMBERT\AppData\Local\virtualstore\windows\system32" * * Recherche dans "C:\Users\JEAN LUC LAMBERT\AppData\Local" * *** Recherche fichiers *** *** Recherche clés spécifiques dans le Registre *** !! Les clés trouvées ne sont pas forcément infectées !! *** Module de Recherche complémentaire *** (Recherche fichiers spécifiques) 1)Recherche nouveaux fichiers Instant Access : 2)Recherche Heuristique : * Dans "C:\Windows\system32" : * Dans "C:\Users\JEAN LUC LAMBERT\AppData\Local\Microsoft" : * Dans "C:\Users\JEAN LUC LAMBERT\AppData\Local\virtualstore\windows\system32" : * Dans "C:\Users\JEAN LUC LAMBERT\AppData\Local" : 3)Recherche Certificats : Certificat Egroup absent ! Certificat Electronic-Group absent ! Certificat Montorgueil absent ! Certificat OOO-Favorit absent ! Certificat Sunny-Day-Design-Ltd absent ! 4)Recherche autres dossiers et fichiers connus : *** Analyse terminée le 21/12/2008 à 23:27:18,74 *** -
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
NAVILOG ne veux pas fonctionner il me dit qu il faut faire une recherche et envoyer le rapport avant de faire optoin 2 -
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
NAVILOG NE VEUX PAS fonctionner il me dis qu il ne peux pas faire de suppression sans avoir fais de recherche et envoyer le rapport ?? -
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
un question -que me conseille tu comme antisyware? j ai spybot et syware doctor et j ai norton 2008 en anti virus . faut il mieux garder le firewall norton ou celui de windows? norton a chaque ouverture me pose la question merci pour tes conseils par avance -
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
il faut que je relance navilog en supression ? -
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
ca marche super ;plus de page qui s ouvre toute seule ;j ai retabli ma barre google ;merci encore apollo . tu m as enleve une sacre epine du pied -
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
J AI merde et j ai pas poster le rapport navilog !!!!! c est important ? au fait ma barre google a changer c est normal? -
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
-----------\\ ToolBar S&D 1.2.8 XP/Vista Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1 X86-based PC ( Multiprocessor Free : Intel® Core2 Duo CPU E4600 @ 2.40GHz ) BIOS : Phoenix - AwardBIOS v6.00PG USER : JEAN LUC LAMBERT ( Administrator ) BOOT : Normal boot Antivirus : Norton Internet Security 15.5.0.23 (Activated) Firewall : Norton Internet Security 15.5.0.23 (Activated) C:\ (Local Disk) - NTFS - Total:222 Go (Free:156 Go) D:\ (CD or DVD) E:\ (USB) F:\ (USB) G:\ (USB) H:\ (USB) "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 ) Option : [2] ( 21/12/2008|22:18 ) [ UAC => 1 ] -----------\\ SUPPRESSION Supprime! - C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Dealio Supprime! - C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com Supprime! - C:\Program Files\Dealio\DealioAU.exe Supprime! - C:\Program Files\Dealio\kb127 Supprime! - C:\Program Files\Dealio\SearchSettingsKit.exe Supprime! - C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com Supprime! - C:\Program Files\Search Settings\kb127 Supprime! - C:\Program Files\Search Settings\SearchSettings.exe Supprime! - C:\Program Files\Dealio Supprime! - C:\Program Files\Search Settings -----------\\ Recherche de Fichiers / Dossiers ... -----------\\ [..\Internet Explorer\Main] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Local Page"="C:\\Windows\\system32\\blank.htm" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"'>http://go.microsoft.com/fwlink/?LinkId=54896"'>http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://www.google.fr/" "Default_Page_URL"="http://format.packardbell.com/cgi-bin/redirect/?country=FR&range=AD&phase=8&key=IESTART" "Url"="http://go.microsoft.com/fwlink/?LinkID=68928" "Url"="http://go.microsoft.com/fwlink/?LinkID=44406" "Url"="http://go.microsoft.com/fwlink/?LinkID=68929" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://www.msn.com/" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" --------------------\\ Recherche d'autres infections Aucune autre infection trouvée ! [ UAC => 1 ] 1 - "C:\ToolBar SD\TB_1.txt" - 21/12/2008|21:50 - Option : [1] 2 - "C:\ToolBar SD\TB_2.txt" - 21/12/2008|21:57 - Option : [1] 3 - "C:\ToolBar SD\TB_3.txt" - 21/12/2008|22:19 - Option : [2] -----------\\ Fin du rapport a 22:19:34,90 Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 22:24:17, on 21/12/2008 Platform: Windows Vista SP1 (WinNT 6.00.1905) MSIE: Internet Explorer v7.00 (7.00.6001.18000) Boot mode: Normal Running processes: C:\Windows\System32\smss.exe C:\Windows\system32\csrss.exe C:\Windows\system32\wininit.exe C:\Windows\system32\csrss.exe C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe C:\Windows\system32\winlogon.exe C:\Windows\system32\svchost.exe C:\Windows\system32\nvvsvc.exe C:\Windows\system32\svchost.exe C:\Windows\System32\svchost.exe C:\Windows\System32\svchost.exe C:\Windows\System32\svchost.exe C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe C:\Windows\system32\svchost.exe C:\Windows\system32\SLsvc.exe C:\Windows\system32\svchost.exe C:\Windows\system32\rundll32.exe C:\Windows\system32\svchost.exe C:\Windows\system32\Dwm.exe C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe C:\Windows\Explorer.EXE C:\Windows\System32\spoolsv.exe C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\svchost.exe C:\Windows\system32\taskeng.exe C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe C:\Windows\system32\lxbkcoms.exe C:\Windows\system32\msiexec.exe C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\Windows\system32\IoctlSvc.exe C:\Windows\system32\svchost.exe C:\Program Files\Spyware Doctor\pctsAuxs.exe C:\Program Files\Spyware Doctor\pctsSvc.exe C:\Windows\system32\svchost.exe C:\Program Files\Spyware Doctor\pctsTray.exe C:\Windows\System32\svchost.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe C:\Windows\system32\WUDFHost.exe C:\Windows\system32\conime.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Windows\RtHDVCpl.exe C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe C:\Program Files\Logitech\QuickCam\Quickcam.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe C:\Windows\ehome\ehtray.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe C:\Program Files\PDFCreator\PDFCreator.exe C:\Windows\system32\wbem\unsecapp.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\ehome\ehmsas.exe C:\Windows\System32\mobsync.exe C:\Program Files\Internet Explorer\ieuser.exe C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe C:\Windows\servicing\TrustedInstaller.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Google\Google Toolbar\GoogleToolbarUser.exe C:\Windows\system32\Macromed\Flash\FlashUtil10a.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://format.packardbell.com/cgi-bin/redi...amp;key=IESTART R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = JEAN LUC LAMBERT R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - Default URLSearchHook is missing O1 - Hosts: ::1 localhost O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\coIEPlg.dll O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll O2 - BHO: PDFCreator Toolbar Helper - {C451C08A-EC37-45DF-AAAD-18B51AB5E837} - C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Google\Google_BAE\BAE.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\CoIEPlg.dll O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: PDFCreator Toolbar - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe O4 - HKLM\..\Run: [skytel] Skytel.exe O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" O4 - HKLM\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALuNotify.exe O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [iSTray] "C:\Program Files\Spyware Doctor\pctsTray.exe" O4 - HKCU\..\Run: [smpcSys] C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU') O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - Global Startup: PDFCreator.lnk = C:\Program Files\PDFCreator\PDFCreator.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks Basic Edition\Norton Cleanup\WCQuick.lnk O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks Basic Edition\Norton Cleanup\WCQuick.lnk O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: (no name) - cmdmapping - (no file) (HKCU) O13 - Gopher Prefix: O16 - DPF: CANALPLAY Installer - http://www.canalplay.com/cabs/CanalInstaller.CAB O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) - http://housecall65.trendmicro.com/housecal...ivex/hcImpl.cab O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://www.pandasecurity.com/activescan/cabs/as2stubie.cab O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - http://support.f-secure.com/ols/fscax.cab O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe O23 - Service: Planificateur LiveUpdate automatique (Automatic LiveUpdate Scheduler) - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe O23 - Service: Google Desktop Manager 5.7.801.7324 (GoogleDesktopManager-010708-104812) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe O23 - Service: lxbk_device - - C:\Windows\system32\lxbkcoms.exe O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe -- End of file - 13238 bytes -
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
appolo merci de ton aide precieuse j ai lance en attendant MALWAREBYTES et il a detecte adware.navipromo.h j ai suprime et ca a l air de fonctionner . j avais vu cette manip solution sur le forum ,ca a l air de fonctionner ,. super ce forum je reviendrais si j ai des probleme ,vraiment tres pro les mecs ici . -
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
Search Navipromo version 3.7.0 commencé le 21/12/2008 à 21:38:43,71 !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!! !!! Postez ce rapport sur le forum pour le faire analyser !!! !!! Ne lancez pas la partie désinfection sans l'avis d'un spécialiste !!! Outil exécuté depuis C:\Program Files\navilog1 Mise à jour le 10.12.2008 à 21h00 par IL-MAFIOSO Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1 X86-based PC ( Multiprocessor Free : Intel® Core2 Duo CPU E4600 @ 2.40GHz ) BIOS : Phoenix - AwardBIOS v6.00PG USER : JEAN LUC LAMBERT ( Administrator ) BOOT : Normal boot Antivirus : Norton Internet Security 15.5.0.23 (Activated) Firewall : Norton Internet Security 15.5.0.23 (Activated) C:\ (Local Disk) - NTFS - Total:222 Go (Free:157 Go) D:\ (CD or DVD) E:\ (USB) F:\ (USB) G:\ (USB) H:\ (USB) Recherche executé en mode normal *** Recherche Programmes installés *** *** Recherche dossiers dans "C:\Windows" *** *** Recherche dossiers dans "C:\Program Files" *** *** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1\programs" *** *** Recherche dossiers dans "c:\progra~2\micros~1\windows\startm~1" *** *** Recherche dossiers dans "C:\ProgramData" *** *** Recherche dossiers dans "c:\users\jeanlu~1\appdata\roaming\micros~1\windows\startm~1\programs" *** *** Recherche dossiers dans "C:\Users\JEAN LUC LAMBERT\AppData\Local\virtualstore\Program Files" *** *** Recherche dossiers dans "C:\Users\JEAN LUC LAMBERT\AppData\Roaming" *** *** Recherche avec Catchme-rootkit/stealth malware detector par gmer *** pour + d'infos : http://www.gmer.net *** Recherche avec GenericNaviSearch *** !!! Tous ces résultats peuvent révéler des fichiers légitimes !!! !!! A vérifier impérativement avant toute suppression manuelle !!! * Recherche dans "C:\Windows\system32" * * Recherche dans "C:\Users\JEAN LUC LAMBERT\AppData\Local\Microsoft" * * Recherche dans "C:\Users\JEAN LUC LAMBERT\AppData\Local\virtualstore\windows\system32" * * Recherche dans "C:\Users\JEAN LUC LAMBERT\AppData\Local" * *** Recherche fichiers *** *** Recherche clés spécifiques dans le Registre *** !! Les clés trouvées ne sont pas forcément infectées !! HKEY_CURRENT_USER\Software\Lanconfig trouvé ! [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "uewyoug"="\"c:\\users\\jean luc lambert\\appdata\\local\\uewyoug.exe\" uewyoug" *** Module de Recherche complémentaire *** (Recherche fichiers spécifiques) 1)Recherche nouveaux fichiers Instant Access : 2)Recherche Heuristique : * Dans "C:\Windows\system32" : * Dans "C:\Users\JEAN LUC LAMBERT\AppData\Local\Microsoft" : * Dans "C:\Users\JEAN LUC LAMBERT\AppData\Local\virtualstore\windows\system32" : * Dans "C:\Users\JEAN LUC LAMBERT\AppData\Local" : 3)Recherche Certificats : Certificat Egroup absent ! Certificat Electronic-Group trouvé ! Certificat Montorgueil absent ! Certificat OOO-Favorit trouvé ! Certificat Sunny-Day-Design-Ltd absent ! 4)Recherche autres dossiers et fichiers connus : *** Analyse terminée le 21/12/2008 à 21:47:25,95 *** -----------\\ ToolBar S&D 1.2.8 XP/Vista Microsoft® Windows Vista™ Édition Familiale Premium ( v6.0.6001 ) Service Pack 1 X86-based PC ( Multiprocessor Free : Intel® Core2 Duo CPU E4600 @ 2.40GHz ) BIOS : Phoenix - AwardBIOS v6.00PG USER : JEAN LUC LAMBERT ( Administrator ) BOOT : Normal boot Antivirus : Norton Internet Security 15.5.0.23 (Activated) Firewall : Norton Internet Security 15.5.0.23 (Activated) C:\ (Local Disk) - NTFS - Total:222 Go (Free:157 Go) D:\ (CD or DVD) E:\ (USB) F:\ (USB) G:\ (USB) H:\ (USB) "C:\ToolBar SD" ( MAJ : 21-12-2008|20:47 ) Option : [1] ( 21/12/2008|21:50 ) [ UAC => 1 ] -----------\\ Recherche de Fichiers / Dossiers ... C:\PROGRA~2\MICROS~1\Windows\STARTM~1\Programs\Dealio C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\CONTENT\dealiotoolbarplugin.js C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\CONTENT\dealiotoolbarplugin.xul C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\LOCALE\EN-US\dealio.dtd C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\LOCALE\EN-US\dealio.properties C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\SKIN\dealio.ico C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\SKIN\dealiotoolbarplugin.css C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\SKIN\dealio_large.png C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\SKIN\dealio_small.png C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\SKIN\dealio_winxp_act.ico C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\SKIN\dealio_winxp_hot.ico C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\SKIN\dealio_win_act.bmp C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\SKIN\dealio_win_act.ico C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\SKIN\dealio_win_hot.bmp C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\SKIN\dealio_win_hot.ico C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\CHROME\SKIN\search_dealio.bmp C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\COMPONENTS\DealioFF.dll C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\COMPONENTS\DealioProtocol.js C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\COMPONENTS\IFBHODealio.idl C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\COMPONENTS\IFBHODealio.xpt C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\COMPONENTS\IFBHODealioHelperEngine.idl C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\COMPONENTS\IFBHODealioHelperEngine.xpt C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\COMPONENTS\IFDealioHelperPreferences.idl C:\Program Files\Mozilla Firefox\extensions\toolbar@dealio.com\COMPONENTS\IFDealioHelperPreferences.xpt C:\Program Files\Dealio C:\Program Files\Dealio\DealioAU.exe C:\Program Files\Dealio\kb127 C:\Program Files\Dealio\SearchSettingsKit.exe C:\Program Files\Dealio\kb127\Dealio Deskbar.exe C:\Program Files\Dealio\kb127\Dealio.dll C:\Program Files\Dealio\kb127\DealioRes409.dll C:\Program Files\Dealio\kb127\res C:\Program Files\Dealio\kb127\resDN C:\Program Files\Dealio\kb127\resFF C:\Program Files\Dealio\kb127\rules C:\Program Files\Dealio\kb127\rulesFF C:\Program Files\Dealio\kb127\temp C:\Program Files\Dealio\kb127\res\alerts.gif C:\Program Files\Dealio\kb127\res\alerts_over.gif C:\Program Files\Dealio\kb127\res\alerts_rec.gif C:\Program Files\Dealio\kb127\res\alerts_rec_over.gif C:\Program Files\Dealio\kb127\res\chevron-small.gif C:\Program Files\Dealio\kb127\res\DealioSearch.html C:\Program Files\Dealio\kb127\res\deals-leftcap.gif C:\Program Files\Dealio\kb127\res\deal_report.jpg C:\Program Files\Dealio\kb127\res\ebay_login.jpg C:\Program Files\Dealio\kb127\res\err_mainwindow.html C:\Program Files\Dealio\kb127\res\err_toolbar.html C:\Program Files\Dealio\kb127\res\global_scripts.js C:\Program Files\Dealio\kb127\res\headerbgthin.jpg C:\Program Files\Dealio\kb127\res\highlight-bg.png C:\Program Files\Dealio\kb127\res\logo.gif C:\Program Files\Dealio\kb127\res\logo_over.gif C:\Program Files\Dealio\kb127\res\man_toolbar.css C:\Program Files\Dealio\kb127\res\man_toolbar.html C:\Program Files\Dealio\kb127\res\man_toolbar.js C:\Program Files\Dealio\kb127\res\man_toolbarl.js C:\Program Files\Dealio\kb127\res\post-this-deal.gif C:\Program Files\Dealio\kb127\res\post-this-deal_over.gif C:\Program Files\Dealio\kb127\res\scripts.js C:\Program Files\Dealio\kb127\res\scroller.js C:\Program Files\Dealio\kb127\res\search-chevron.gif C:\Program Files\Dealio\kb127\res\search-chevron_over.gif C:\Program Files\Dealio\kb127\res\search_bg_blink.gif C:\Program Files\Dealio\kb127\res\separator.gif C:\Program Files\Dealio\kb127\res\settings.gif C:\Program Files\Dealio\kb127\res\settings_over.gif C:\Program Files\Dealio\kb127\res\yahoo-search.png C:\Program Files\Dealio\kb127\resDN\bottom.gif C:\Program Files\Dealio\kb127\resDN\chevron_down.gif C:\Program Files\Dealio\kb127\resDN\chevron_up.gif C:\Program Files\Dealio\kb127\resDN\close.gif C:\Program Files\Dealio\kb127\resDN\deskbar.css C:\Program Files\Dealio\kb127\resDN\deskbar.js C:\Program Files\Dealio\kb127\resDN\dispatch_helper.js C:\Program Files\Dealio\kb127\resDN\ebay_compatible.jpg C:\Program Files\Dealio\kb127\resDN\logo.gif C:\Program Files\Dealio\kb127\resDN\logo_chevron_bkg.gif C:\Program Files\Dealio\kb127\resDN\losing.gif C:\Program Files\Dealio\kb127\resDN\lost.gif C:\Program Files\Dealio\kb127\resDN\man_deskbar.html C:\Program Files\Dealio\kb127\resDN\menu_arrow.gif C:\Program Files\Dealio\kb127\resDN\menu_check.gif C:\Program Files\Dealio\kb127\resDN\no_image.gif C:\Program Files\Dealio\kb127\resDN\prod_img.gif C:\Program Files\Dealio\kb127\resDN\search_chevron.gif C:\Program Files\Dealio\kb127\resDN\spacer.gif C:\Program Files\Dealio\kb127\resDN\textfield_bkg.gif C:\Program Files\Dealio\kb127\resDN\top.gif C:\Program Files\Dealio\kb127\resDN\unknown.gif C:\Program Files\Dealio\kb127\resDN\winning.gif C:\Program Files\Dealio\kb127\resDN\won.gif C:\Program Files\Dealio\kb127\resFF\deal_report.jpg C:\Program Files\Dealio\kb127\resFF\ebay_login.jpg C:\Program Files\Dealio\kb127\rules\index.76.35 C:\Program Files\Dealio\kb127\rules\rules.1.10.76 C:\Program Files\Dealio\kb127\rules\rules.1.109.43 C:\Program Files\Dealio\kb127\rules\rules.1.110.43 C:\Program Files\Dealio\kb127\rules\rules.1.12.52 C:\Program Files\Dealio\kb127\rules\rules.1.13.58 C:\Program Files\Dealio\kb127\rules\rules.1.130.58 C:\Program Files\Dealio\kb127\rules\rules.1.135.50 C:\Program Files\Dealio\kb127\rules\rules.1.153.44 C:\Program Files\Dealio\kb127\rules\rules.1.155.43 C:\Program Files\Dealio\kb127\rules\rules.1.156.49 C:\Program Files\Dealio\kb127\rules\rules.1.16.60 C:\Program Files\Dealio\kb127\rules\rules.1.161.52 C:\Program Files\Dealio\kb127\rules\rules.1.178.66 C:\Program Files\Dealio\kb127\rules\rules.1.184.55 C:\Program Files\Dealio\kb127\rules\rules.1.188.52 C:\Program Files\Dealio\kb127\rules\rules.1.189.45 C:\Program Files\Dealio\kb127\rules\rules.1.196.43 C:\Program Files\Dealio\kb127\rules\rules.1.198.56 C:\Program Files\Dealio\kb127\rules\rules.1.199.43 C:\Program Files\Dealio\kb127\rules\rules.1.200.53 C:\Program Files\Dealio\kb127\rules\rules.1.201.43 C:\Program Files\Dealio\kb127\rules\rules.1.202.43 C:\Program Files\Dealio\kb127\rules\rules.1.203.71 C:\Program Files\Dealio\kb127\rules\rules.1.205.62 C:\Program Files\Dealio\kb127\rules\rules.1.213.71 C:\Program Files\Dealio\kb127\rules\rules.1.214.49 C:\Program Files\Dealio\kb127\rules\rules.1.215.43 C:\Program Files\Dealio\kb127\rules\rules.1.216.67 C:\Program Files\Dealio\kb127\rules\rules.1.217.67 C:\Program Files\Dealio\kb127\rules\rules.1.218.52 C:\Program Files\Dealio\kb127\rules\rules.1.219.43 C:\Program Files\Dealio\kb127\rules\rules.1.220.43 C:\Program Files\Dealio\kb127\rules\rules.1.221.57 C:\Program Files\Dealio\kb127\rules\rules.1.222.43 C:\Program Files\Dealio\kb127\rules\rules.1.223.68 C:\Program Files\Dealio\kb127\rules\rules.1.226.68 C:\Program Files\Dealio\kb127\rules\rules.1.227.43 C:\Program Files\Dealio\kb127\rules\rules.1.228.62 C:\Program Files\Dealio\kb127\rules\rules.1.229.76 C:\Program Files\Dealio\kb127\rules\rules.1.23.63 C:\Program Files\Dealio\kb127\rules\rules.1.239.43 C:\Program Files\Dealio\kb127\rules\rules.1.24.43 C:\Program Files\Dealio\kb127\rules\rules.1.240.43 C:\Program Files\Dealio\kb127\rules\rules.1.241.43 C:\Program Files\Dealio\kb127\rules\rules.1.242.43 C:\Program Files\Dealio\kb127\rules\rules.1.243.43 C:\Program Files\Dealio\kb127\rules\rules.1.244.63 C:\Program Files\Dealio\kb127\rules\rules.1.245.43 C:\Program Files\Dealio\kb127\rules\rules.1.247.43 C:\Program Files\Dealio\kb127\rules\rules.1.248.43 C:\Program Files\Dealio\kb127\rules\rules.1.249.43 C:\Program Files\Dealio\kb127\rules\rules.1.250.43 C:\Program Files\Dealio\kb127\rules\rules.1.251.43 C:\Program Files\Dealio\kb127\rules\rules.1.252.43 C:\Program Files\Dealio\kb127\rules\rules.1.253.43 C:\Program Files\Dealio\kb127\rules\rules.1.254.43 C:\Program Files\Dealio\kb127\rules\rules.1.255.43 C:\Program Files\Dealio\kb127\rules\rules.1.256.43 C:\Program Files\Dealio\kb127\rules\rules.1.257.43 C:\Program Files\Dealio\kb127\rules\rules.1.279.43 C:\Program Files\Dealio\kb127\rules\rules.1.28.58 C:\Program Files\Dealio\kb127\rules\rules.1.282.75 C:\Program Files\Dealio\kb127\rules\rules.1.283.43 C:\Program Files\Dealio\kb127\rules\rules.1.284.43 C:\Program Files\Dealio\kb127\rules\rules.1.289.67 C:\Program Files\Dealio\kb127\rules\rules.1.290.62 C:\Program Files\Dealio\kb127\rules\rules.1.291.61 C:\Program Files\Dealio\kb127\rules\rules.1.296.43 C:\Program Files\Dealio\kb127\rules\rules.1.297.43 C:\Program Files\Dealio\kb127\rules\rules.1.304.43 C:\Program Files\Dealio\kb127\rules\rules.1.307.43 C:\Program Files\Dealio\kb127\rules\rules.1.308.75 C:\Program Files\Dealio\kb127\rules\rules.1.31.47 C:\Program Files\Dealio\kb127\rules\rules.1.310.46 C:\Program Files\Dealio\kb127\rules\rules.1.311.43 C:\Program Files\Dealio\kb127\rules\rules.1.315.43 C:\Program Files\Dealio\kb127\rules\rules.1.316.43 C:\Program Files\Dealio\kb127\rules\rules.1.317.43 C:\Program Files\Dealio\kb127\rules\rules.1.318.43 C:\Program Files\Dealio\kb127\rules\rules.1.319.49 C:\Program Files\Dealio\kb127\rules\rules.1.32.48 C:\Program Files\Dealio\kb127\rules\rules.1.334.44 C:\Program Files\Dealio\kb127\rules\rules.1.335.60 C:\Program Files\Dealio\kb127\rules\rules.1.336.44 C:\Program Files\Dealio\kb127\rules\rules.1.337.44 C:\Program Files\Dealio\kb127\rules\rules.1.338.75 C:\Program Files\Dealio\kb127\rules\rules.1.339.47 C:\Program Files\Dealio\kb127\rules\rules.1.34.43 C:\Program Files\Dealio\kb127\rules\rules.1.340.47 C:\Program Files\Dealio\kb127\rules\rules.1.341.47 C:\Program Files\Dealio\kb127\rules\rules.1.349.50 C:\Program Files\Dealio\kb127\rules\rules.1.35.48 C:\Program Files\Dealio\kb127\rules\rules.1.350.50 C:\Program Files\Dealio\kb127\rules\rules.1.351.51 C:\Program Files\Dealio\kb127\rules\rules.1.352.54 C:\Program Files\Dealio\kb127\rules\rules.1.353.51 C:\Program Files\Dealio\kb127\rules\rules.1.354.51 C:\Program Files\Dealio\kb127\rules\rules.1.357.62 C:\Program Files\Dealio\kb127\rules\rules.1.358.52 C:\Program Files\Dealio\kb127\rules\rules.1.359.52 C:\Program Files\Dealio\kb127\rules\rules.1.360.53 C:\Program Files\Dealio\kb127\rules\rules.1.361.54 C:\Program Files\Dealio\kb127\rules\rules.1.362.68 C:\Program Files\Dealio\kb127\rules\rules.1.363.58 C:\Program Files\Dealio\kb127\rules\rules.1.364.54 C:\Program Files\Dealio\kb127\rules\rules.1.365.53 C:\Program Files\Dealio\kb127\rules\rules.1.367.56 C:\Program Files\Dealio\kb127\rules\rules.1.368.58 C:\Program Files\Dealio\kb127\rules\rules.1.369.55 C:\Program Files\Dealio\kb127\rules\rules.1.370.56 C:\Program Files\Dealio\kb127\rules\rules.1.371.56 C:\Program Files\Dealio\kb127\rules\rules.1.372.57 C:\Program Files\Dealio\kb127\rules\rules.1.373.55 C:\Program Files\Dealio\kb127\rules\rules.1.375.56 C:\Program Files\Dealio\kb127\rules\rules.1.376.57 C:\Program Files\Dealio\kb127\rules\rules.1.377.55 C:\Program Files\Dealio\kb127\rules\rules.1.378.65 C:\Program Files\Dealio\kb127\rules\rules.1.384.58 C:\Program Files\Dealio\kb127\rules\rules.1.386.71 C:\Program Files\Dealio\kb127\rules\rules.1.387.59 C:\Program Files\Dealio\kb127\rules\rules.1.388.59 C:\Program Files\Dealio\kb127\rules\rules.1.389.59 C:\Program Files\Dealio\kb127\rules\rules.1.390.60 C:\Program Files\Dealio\kb127\rules\rules.1.391.60 C:\Program Files\Dealio\kb127\rules\rules.1.392.60 C:\Program Files\Dealio\kb127\rules\rules.1.393.60 C:\Program Files\Dealio\kb127\rules\rules.1.394.60 C:\Program Files\Dealio\kb127\rules\rules.1.396.61 C:\Program Files\Dealio\kb127\rules\rules.1.397.61 C:\Program Files\Dealio\kb127\rules\rules.1.398.60 C:\Program Files\Dealio\kb127\rules\rules.1.399.60 C:\Program Files\Dealio\kb127\rules\rules.1.403.61 C:\Program Files\Dealio\kb127\rules\rules.1.404.63 C:\Program Files\Dealio\kb127\rules\rules.1.405.61 C:\Program Files\Dealio\kb127\rules\rules.1.406.61 C:\Program Files\Dealio\kb127\rules\rules.1.407.76 C:\Program Files\Dealio\kb127\rules\rules.1.408.63 C:\Program Files\Dealio\kb127\rules\rules.1.409.61 C:\Program Files\Dealio\kb127\rules\rules.1.412.62 C:\Program Files\Dealio\kb127\rules\rules.1.413.62 C:\Program Files\Dealio\kb127\rules\rules.1.414.62 C:\Program Files\Dealio\kb127\rules\rules.1.415.62 C:\Program Files\Dealio\kb127\rules\rules.1.416.62 C:\Program Files\Dealio\kb127\rules\rules.1.417.62 C:\Program Files\Dealio\kb127\rules\rules.1.418.62 C:\Program Files\Dealio\kb127\rules\rules.1.419.62 C:\Program Files\Dealio\kb127\rules\rules.1.420.62 C:\Program Files\Dealio\kb127\rules\rules.1.421.62 C:\Program Files\Dealio\kb127\rules\rules.1.423.63 C:\Program Files\Dealio\kb127\rules\rules.1.424.63 C:\Program Files\Dealio\kb127\rules\rules.1.425.63 C:\Program Files\Dealio\kb127\rules\rules.1.426.63 C:\Program Files\Dealio\kb127\rules\rules.1.427.63 C:\Program Files\Dealio\kb127\rules\rules.1.428.65 C:\Program Files\Dealio\kb127\rules\rules.1.429.63 C:\Program Files\Dealio\kb127\rules\rules.1.430.63 C:\Program Files\Dealio\kb127\rules\rules.1.432.65 C:\Program Files\Dealio\kb127\rules\rules.1.433.64 C:\Program Files\Dealio\kb127\rules\rules.1.434.65 C:\Program Files\Dealio\kb127\rules\rules.1.435.64 C:\Program Files\Dealio\kb127\rules\rules.1.436.76 C:\Program Files\Dealio\kb127\rules\rules.1.437.64 C:\Program Files\Dealio\kb127\rules\rules.1.438.71 C:\Program Files\Dealio\kb127\rules\rules.1.439.71 C:\Program Files\Dealio\kb127\rules\rules.1.440.75 C:\Program Files\Dealio\kb127\rules\rules.1.442.73 C:\Program Files\Dealio\kb127\rules\rules.1.443.73 C:\Program Files\Dealio\kb127\rules\rules.1.444.73 C:\Program Files\Dealio\kb127\rules\rules.1.445.68 C:\Program Files\Dealio\kb127\rules\rules.1.446.69 C:\Program Files\Dealio\kb127\rules\rules.1.450.67 C:\Program Files\Dealio\kb127\rules\rules.1.451.67 C:\Program Files\Dealio\kb127\rules\rules.1.452.68 C:\Program Files\Dealio\kb127\rules\rules.1.453.68 C:\Program Files\Dealio\kb127\rules\rules.1.454.69 C:\Program Files\Dealio\kb127\rules\rules.1.456.69 C:\Program Files\Dealio\kb127\rules\rules.1.457.75 C:\Program Files\Dealio\kb127\rules\rules.1.458.70 C:\Program Files\Dealio\kb127\rules\rules.1.459.70 C:\Program Files\Dealio\kb127\rules\rules.1.460.69 C:\Program Files\Dealio\kb127\rules\rules.1.462.74 C:\Program Files\Dealio\kb127\rules\rules.1.463.69 C:\Program Files\Dealio\kb127\rules\rules.1.464.70 C:\Program Files\Dealio\kb127\rules\rules.1.465.68 C:\Program Files\Dealio\kb127\rules\rules.1.468.70 C:\Program Files\Dealio\kb127\rules\rules.1.469.70 C:\Program Files\Dealio\kb127\rules\rules.1.470.70 C:\Program Files\Dealio\kb127\rules\rules.1.471.73 C:\Program Files\Dealio\kb127\rules\rules.1.472.70 C:\Program Files\Dealio\kb127\rules\rules.1.478.74 C:\Program Files\Dealio\kb127\rules\rules.1.479.73 C:\Program Files\Dealio\kb127\rules\rules.1.480.68 C:\Program Files\Dealio\kb127\rules\rules.1.481.71 C:\Program Files\Dealio\kb127\rules\rules.1.482.74 C:\Program Files\Dealio\kb127\rules\rules.1.49.67 C:\Program Files\Dealio\kb127\rules\rules.1.50.43 C:\Program Files\Dealio\kb127\rules\rules.1.500.71 C:\Program Files\Dealio\kb127\rules\rules.1.501.74 C:\Program Files\Dealio\kb127\rules\rules.1.502.71 C:\Program Files\Dealio\kb127\rules\rules.1.51.69 C:\Program Files\Dealio\kb127\rules\rules.1.52.72 C:\Program Files\Dealio\kb127\rules\rules.1.520.76 C:\Program Files\Dealio\kb127\rules\rules.1.521.76 C:\Program Files\Dealio\kb127\rules\rules.1.522.76 C:\Program Files\Dealio\kb127\rules\rules.1.53.51 C:\Program Files\Dealio\kb127\rules\rules.1.531.76 C:\Program Files\Dealio\kb127\rules\rules.1.532.75 C:\Program Files\Dealio\kb127\rules\rules.1.534.75 C:\Program Files\Dealio\kb127\rules\rules.1.54.47 C:\Program Files\Dealio\kb127\rules\rules.1.55.45 C:\Program Files\Dealio\kb127\rules\rules.1.56.69 C:\Program Files\Dealio\kb127\rules\rules.1.57.43 C:\Program Files\Dealio\kb127\rules\rules.1.58.47 C:\Program Files\Dealio\kb127\rules\rules.1.593.76 C:\Program Files\Dealio\kb127\rules\rules.1.595.76 C:\Program Files\Dealio\kb127\rules\rules.1.63.57 C:\Program Files\Dealio\kb127\rules\rules.1.66.47 C:\Program Files\Dealio\kb127\rules\rules.1.70.75 C:\Program Files\Dealio\kb127\rules\rules.1.71.43 C:\Program Files\Dealio\kb127\rulesFF\index.3.67.22 C:\Program Files\Dealio\kb127\rulesFF\rules.3.109.43 C:\Program Files\Dealio\kb127\rulesFF\rules.3.178.66 C:\Program Files\Dealio\kb127\rulesFF\rules.3.198.56 C:\Program Files\Dealio\kb127\rulesFF\rules.3.245.43 C:\Program Files\Dealio\kb127\rulesFF\rules.3.247.43 C:\Program Files\Dealio\kb127\rulesFF\rules.3.279.43 C:\Program Files\Dealio\kb127\rulesFF\rules.3.283.43 C:\Program Files\Dealio\kb127\rulesFF\rules.3.284.43 C:\Program Files\Dealio\kb127\rulesFF\rules.3.289.67 C:\Program Files\Dealio\kb127\rulesFF\rules.3.290.62 C:\Program Files\Dealio\kb127\rulesFF\rules.3.297.43 C:\Program Files\Dealio\kb127\rulesFF\rules.3.315.43 C:\Program Files\Dealio\kb127\rulesFF\rules.3.319.49 C:\Program Files\Dealio\kb127\rulesFF\rules.3.335.60 C:\Program Files\Dealio\kb127\rulesFF\rules.3.337.44 C:\Program Files\Dealio\kb127\rulesFF\rules.3.340.47 C:\Program Files\Dealio\kb127\rulesFF\rules.3.360.53 C:\Program Files\Dealio\kb127\rulesFF\rules.3.386.59 C:\Program Files\Dealio\kb127\rulesFF\rules.3.388.59 C:\Program Files\Dealio\kb127\rulesFF\rules.3.391.60 C:\Program Files\Dealio\kb127\rulesFF\rules.3.398.60 C:\Program Files\Dealio\kb127\rulesFF\rules.3.399.60 C:\Program Files\Dealio\kb127\rulesFF\rules.3.403.61 C:\Program Files\Dealio\kb127\rulesFF\rules.3.404.63 C:\Program Files\Dealio\kb127\rulesFF\rules.3.405.61 C:\Program Files\Dealio\kb127\rulesFF\rules.3.406.61 C:\Program Files\Dealio\kb127\rulesFF\rules.3.407.61 C:\Program Files\Dealio\kb127\rulesFF\rules.3.408.63 C:\Program Files\Dealio\kb127\rulesFF\rules.3.409.61 C:\Program Files\Dealio\kb127\rulesFF\rules.3.412.62 C:\Program Files\Dealio\kb127\rulesFF\rules.3.413.62 C:\Program Files\Dealio\kb127\rulesFF\rules.3.414.62 C:\Program Files\Dealio\kb127\rulesFF\rules.3.415.62 C:\Program Files\Dealio\kb127\rulesFF\rules.3.416.62 C:\Program Files\Dealio\kb127\rulesFF\rules.3.417.62 C:\Program Files\Dealio\kb127\rulesFF\rules.3.418.62 C:\Program Files\Dealio\kb127\rulesFF\rules.3.419.62 C:\Program Files\Dealio\kb127\rulesFF\rules.3.420.62 C:\Program Files\Dealio\kb127\rulesFF\rules.3.421.62 C:\Program Files\Dealio\kb127\rulesFF\rules.3.424.63 C:\Program Files\Dealio\kb127\rulesFF\rules.3.427.63 C:\Program Files\Dealio\kb127\rulesFF\rules.3.432.65 C:\Program Files\Dealio\kb127\rulesFF\rules.3.49.67 C:\Program Files\Dealio\kb127\rulesFF\rules.3.51.46 C:\Program Files\Dealio\kb127\rulesFF\rules.3.52.57 C:\Program Files\Dealio\kb127\rulesFF\rules.3.53.51 C:\Program Files\Dealio\kb127\rulesFF\rules.3.54.47 C:\Program Files\Dealio\kb127\rulesFF\rules.3.57.43 C:\Program Files\Dealio\kb127\rulesFF\rules.3.58.47 C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\CONTENT\searchsettingsplugin.js C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\CONTENT\searchsettingsplugin.xul C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\LOCALE\EN-US\searchsettingsplugin.dtd C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\CHROME\LOCALE\EN-US\searchsettingsplugin.properties C:\Program Files\Mozilla Firefox\extensions\search@searchsettings.com\COMPONENTS\SearchSettingsFF.dll C:\Program Files\Search Settings C:\Program Files\Search Settings\kb127 C:\Program Files\Search Settings\SearchSettings.exe C:\Program Files\Search Settings\kb127\res C:\Program Files\Search Settings\kb127\SearchSettings.dll C:\Program Files\Search Settings\kb127\SearchSettingsRes409.dll C:\Program Files\Search Settings\kb127\temp -----------\\ [..\Internet Explorer\Main] [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Local Page"="C:\\Windows\\system32\\blank.htm" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"'>http://go.microsoft.com/fwlink/?LinkId=54896"'>http://go.microsoft.com/fwlink/?LinkId=54896" "Start Page"="http://www.google.fr/" "Default_Page_URL"="http://format.packardbell.com/cgi-bin/redirect/?country=FR&range=AD&phase=8&key=IESTART" "Url"="http://go.microsoft.com/fwlink/?LinkID=68928" "Url"="http://go.microsoft.com/fwlink/?LinkID=44406" "Url"="http://go.microsoft.com/fwlink/?LinkID=68929" [HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main] "Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"'>http://go.microsoft.com/fwlink/?LinkId=69157" "Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" "Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" "Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896" --------------------\\ Recherche d'autres infections Aucune autre infection trouvée ! [ UAC => 1 ] 1 - "C:\ToolBar SD\TB_1.txt" - 21/12/2008|21:50 - Option : [1] -----------\\ Fin du rapport a 21:50:57,38 -
je crois que j ai un virus RESOLU
JEFFISERE a répondu à un(e) sujet de JEFFISERE dans Analyses et éradication malwares
Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:13:39, on 21/12/2008 Platform: Windows Vista SP1 (WinNT 6.00.1905) MSIE: Internet Explorer v7.00 (7.00.6001.18000) Boot mode: Normal Running processes: C:\Windows\System32\smss.exe C:\Windows\system32\csrss.exe C:\Windows\system32\wininit.exe C:\Windows\system32\csrss.exe C:\Windows\system32\services.exe C:\Windows\system32\lsass.exe C:\Windows\system32\lsm.exe C:\Windows\system32\winlogon.exe C:\Windows\system32\svchost.exe C:\Windows\system32\nvvsvc.exe C:\Windows\system32\svchost.exe C:\Windows\System32\svchost.exe C:\Windows\System32\svchost.exe C:\Windows\System32\svchost.exe C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe C:\Windows\system32\svchost.exe C:\Windows\system32\SLsvc.exe C:\Windows\system32\svchost.exe C:\Windows\system32\svchost.exe C:\Windows\system32\rundll32.exe C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\System32\spoolsv.exe C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe C:\Windows\system32\taskeng.exe C:\Windows\system32\svchost.exe C:\Windows\system32\taskeng.exe C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe C:\Windows\system32\lxbkcoms.exe C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe C:\Windows\system32\IoctlSvc.exe C:\Windows\system32\svchost.exe C:\Program Files\Spyware Doctor\pctsAuxs.exe C:\Program Files\Spyware Doctor\pctsSvc.exe C:\Windows\system32\svchost.exe C:\Program Files\Spyware Doctor\pctsTray.exe C:\Windows\System32\svchost.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe C:\Windows\system32\WUDFHost.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Windows\RtHDVCpl.exe C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe C:\Program Files\Search Settings\SearchSettings.exe C:\Program Files\Logitech\QuickCam\Quickcam.exe C:\Program Files\Java\jre6\bin\jusched.exe C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe C:\Windows\ehome\ehtray.exe C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe C:\Program Files\PDFCreator\PDFCreator.exe C:\Windows\ehome\ehmsas.exe C:\Windows\system32\wbem\unsecapp.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe C:\Program Files\Internet Explorer\ieuser.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Google\Google Toolbar\GoogleToolbarUser.exe C:\Windows\System32\mobsync.exe C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe C:\Windows\system32\taskeng.exe C:\Program Files\Trend Micro\HijackThis\HijackThis.exe C:\Windows\system32\wbem\wmiprvse.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://format.packardbell.com/cgi-bin/redi...amp;key=IESTART R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157 R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = JEAN LUC LAMBERT R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = R3 - URLSearchHook: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll O1 - Hosts: ::1 localhost O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\coIEPlg.dll O2 - BHO: DealioBHO Class - {6A87B991-A31F-4130-AE72-6D0C294BF082} - C:\Program Files\Dealio\kb127\Dealio.dll O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\COMMON~1\SYMANT~1\IDS\IPSBHO.dll O2 - BHO: Java Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file) O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll O2 - BHO: PDFCreator Toolbar Helper - {C451C08A-EC37-45DF-AAAD-18B51AB5E837} - C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Google\Google_BAE\BAE.dll O2 - BHO: Java Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb127\SearchSettings.dll O3 - Toolbar: Show Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\2.5\CoIEPlg.dll O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll O3 - Toolbar: PDFCreator Toolbar - {31CF9EBE-5755-4A1D-AC25-2834D952D9B4} - C:\Program Files\PDFCreator Toolbar\v3.3.0.1\PDFCreator_Toolbar.dll O3 - Toolbar: Dealio - {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - C:\Program Files\Dealio\kb127\Dealio.dll O3 - Toolbar: &Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe O4 - HKLM\..\Run: [skytel] Skytel.exe O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" O4 - HKLM\..\Run: [toolbar_eula_launcher] C:\Program Files\Packard Bell\GOOGLE_EULA\EULALauncher.exe O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe" O4 - HKLM\..\Run: [searchSettings] C:\Program Files\Search Settings\SearchSettings.exe O4 - HKLM\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALuNotify.exe O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide O4 - HKLM\..\Run: [sunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe" O4 - HKLM\..\Run: [iSTray] "C:\Program Files\Spyware Doctor\pctsTray.exe" O4 - HKCU\..\Run: [smpcSys] C:\Program Files\Packard Bell\SetUpMyPC\SmpSys.exe O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe O4 - HKCU\..\Run: [uewyoug] "c:\users\jean luc lambert\appdata\local\uewyoug.exe" uewyoug O4 - HKUS\S-1-5-19\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL') O4 - HKUS\S-1-5-20\..\Run: [sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU') O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe O4 - Global Startup: PDFCreator.lnk = C:\Program Files\PDFCreator\PDFCreator.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks Basic Edition\Norton Cleanup\WCQuick.lnk O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Program Files\Norton SystemWorks Basic Edition\Norton Cleanup\WCQuick.lnk O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O9 - Extra button: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll O9 - Extra 'Tools' menuitem: Dealio - {E908B145-C847-4e85-B315-07E2E70DECF8} - C:\Program Files\Dealio\kb127\Dealio.dll O13 - Gopher Prefix: O16 - DPF: CANALPLAY Installer - http://www.canalplay.com/cabs/CanalInstaller.CAB O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) - http://housecall65.trendmicro.com/housecal...ivex/hcImpl.cab O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://www.pandasecurity.com/activescan/cabs/as2stubie.cab O16 - DPF: {BDBDE413-7B1C-4C68-A8FF-C5B2B4090876} (F-Secure Online Scanner 3.3) - http://support.f-secure.com/ols/fscax.cab O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~3\GOEC62~1.DLL O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe O23 - Service: Planificateur LiveUpdate automatique (Automatic LiveUpdate Scheduler) - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe O23 - Service: Google Desktop Manager 5.7.801.7324 (GoogleDesktopManager-010708-104812) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe O23 - Service: lxbk_device - - C:\Windows\system32\lxbkcoms.exe O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\CCPD-LC\symlcsvc.exe -- End of file - 14089 bytes -
bonjour depuis plusieurs jours j ai des fenetres intempestives qui s ouvrent toute seule.j ai fais analyse en ligne ,analyse spybot ;adaware ;spydoctor ,spydoctor m a detecte 3 adwares que j ai supprime ;amis ca continue encore ;j ai aussi le pb avec firefox .qui peux m aider ,merci d avance