Aller au contenu

thewho

Membres
  • Compteur de contenus

    1
  • Inscription

  • Dernière visite

Tout ce qui a été posté par thewho

  1. Bonjour, voilà, je viens vers vous car je ne sais plus à qui m'adresser. Mon pc est blindé de trojans dont les noms sont pour la plupart presque pas connus et j'ai essayé bitdefender + malwarebyte mais rien n'y fais. emsisoft high jack free m'a dis que des trojans et autres spywares étaient localisés dans le fichier ctfmon.exe. Or, en essayant de désactiver ce processus, c'est msconfig qui a déconné et la plupart des trojans et spywares se sont retrouvés dedans ! ( toujours d'après ce que me dit emsisoft high jack free ! ) Un intervenant m'a suggéré de lancer RSIT et de lui faire parvenir le log, il m'a dit RAS, ensuite, de faire un scan malwarebyte,toujours RAS! Ensuite, il m'a suggéré de lancer combofix ( auparavant j'avais déconnecté internet et l'antivirus + parefeu ). En cours de route, la console de récupération n'a pu s'installer mais le scan s'est avéré ok et j'en ai sortis un log : le voici ci-après : ComboFix 10-08-10.06 - Administrateur 11/08/2010 15:36:22.1.1 - x86 Microsoft Windows XP Professionnel 5.1.2600.3.1252.33.1036.18.447.223 [GMT 2:00] Lancé depuis: c:\documents and settings\Administrateur\Mes documents\Téléchargements\ComboFix.exe AV: BitDefender Antivirus *On-access scanning enabled* (Updated) {6C4BB89C-B0ED-4F41-A29C-4373888923BB} FW: BitDefender Pare-feu *enabled* {4055920F-2E99-48A8-A270-4243D2B8F242} * Un antivirus résident est actif AVERTISSEMENT - LA CONSOLE DE RÉCUPÉRATION N'EST PAS INSTALLÉE SUR CETTE MACHINE !! . ((((((((((((((((((((((((((((( Fichiers créés du 2010-07-11 au 2010-08-11 )))))))))))))))))))))))))))))))))))) . 2010-08-10 23:05 . 2010-08-10 23:05 201 ----a-w- C:\restore.vbs 2010-08-10 21:36 . 2010-08-10 21:37 -------- d-----w- C:\5c4fb5044ef78685380d4e046c 2010-08-10 21:14 . 2010-08-10 21:14 -------- d-sh--w- c:\documents and settings\NetworkService\IETldCache 2010-08-10 21:13 . 2010-08-10 21:13 -------- d-sh--w- c:\documents and settings\Administrateur\IETldCache 2010-08-10 21:06 . 2010-08-10 21:06 4 ----a-w- c:\windows\system32\aspdict-en.dat 2010-08-10 21:06 . 2010-08-10 21:06 16 ----a-w- c:\windows\system32\asdict.dat 2010-08-10 19:09 . 2010-08-10 19:09 -------- d-----w- c:\documents and settings\Administrateur\Application Data\Malwarebytes 2010-08-10 19:09 . 2010-04-29 13:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys 2010-08-10 19:09 . 2010-08-10 19:09 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes 2010-08-10 19:09 . 2010-04-29 13:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys 2010-08-10 19:09 . 2010-08-10 19:09 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2010-08-10 19:03 . 2010-08-10 19:07 -------- d-----w- c:\windows\ie8updates 2010-08-10 18:54 . 2010-08-10 19:02 -------- dc-h--w- c:\windows\ie8 2010-08-10 18:39 . 2010-06-24 12:25 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll 2010-08-10 18:39 . 2010-06-24 12:25 599040 -c----w- c:\windows\system32\dllcache\msfeeds.dll 2010-08-10 18:39 . 2010-06-24 12:25 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll 2010-08-10 18:39 . 2010-06-24 12:25 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll 2010-08-10 18:39 . 2010-06-24 12:25 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll 2010-08-10 18:39 . 2010-06-24 12:25 1986560 -c----w- c:\windows\system32\dllcache\iertutil.dll 2010-08-10 18:39 . 2010-06-24 15:55 11077120 -c----w- c:\windows\system32\dllcache\ieframe.dll 2010-08-10 18:36 . 2010-06-18 11:39 16896 -c----w- c:\windows\system32\dllcache\iecompat.dll 2010-08-10 17:43 . 2010-08-11 12:51 -------- d-----w- c:\program files\trend micro 2010-08-10 17:43 . 2010-08-11 12:52 -------- d-----w- C:\rsit 2010-08-10 17:25 . 2010-08-10 17:25 -------- d-----w- c:\documents and settings\Administrateur\Application Data\BitDefender 2010-08-10 17:20 . 2010-08-10 17:20 -------- d-----w- c:\documents and settings\Administrateur\Local Settings\Application Data\Mozilla 2010-08-10 16:52 . 2010-08-10 16:53 -------- d-----w- c:\program files\QuickTime 2010-08-10 16:52 . 2010-08-10 16:52 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple Computer 2010-08-10 16:51 . 2010-08-10 16:51 -------- d-----w- c:\program files\Fichiers communs\Apple 2010-08-10 16:50 . 2010-08-10 16:50 -------- d-----w- c:\documents and settings\Ordinateur\Local Settings\Application Data\Apple 2010-08-10 16:50 . 2010-08-10 16:50 -------- d-----w- c:\program files\Apple Software Update 2010-08-10 16:50 . 2010-08-10 16:50 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple 2010-08-10 16:50 . 2010-08-10 16:50 -------- d-----w- c:\documents and settings\Ordinateur\Local Settings\Application Data\Apple Computer 2010-08-10 14:06 . 2010-08-10 14:06 0 ----a-w- c:\windows\system32\wsbl.dat 2010-08-10 14:06 . 2010-08-10 14:06 0 ----a-w- c:\windows\system32\phar_unmip.dat 2010-08-10 14:06 . 2010-08-10 14:06 0 ----a-w- c:\windows\system32\phar_histprot.dat 2010-08-10 14:06 . 2010-08-10 14:06 0 ----a-w- c:\windows\system32\ph_summ.dat 2010-08-10 14:06 . 2010-08-10 14:06 0 ----a-w- c:\windows\system32\ph_white.dat 2010-08-10 14:06 . 2010-08-10 14:06 0 ----a-w- c:\windows\system32\ph_black.dat 2010-08-10 13:42 . 2010-08-10 13:42 -------- d-----w- c:\documents and settings\Ordinateur\Application Data\BitDefender 2010-08-10 13:41 . 2010-08-10 13:51 -------- d-----w- c:\documents and settings\All Users\Application Data\BitDefender 2010-08-10 13:41 . 2010-08-10 13:42 -------- d-----w- c:\program files\BitDefender 2010-08-10 13:39 . 2010-08-10 13:42 -------- d-----w- c:\program files\Fichiers communs\BitDefender 2010-08-10 03:27 . 2010-08-10 03:27 -------- d-----w- c:\documents and settings\Ordinateur\Local Settings\Application Data\PCHealth 2010-08-10 03:24 . 2010-08-10 03:24 -------- d-----w- c:\documents and settings\Ordinateur\Local Settings\Application Data\COMODO 2010-08-09 19:29 . 2010-08-09 19:29 16384 ---ha-w- C:\SZKGFS.dat 2010-08-09 19:13 . 2010-08-09 19:13 -------- d-----w- c:\documents and settings\All Users\Application Data\SITEguard 2010-08-09 19:09 . 2010-08-09 19:09 -------- d-----w- c:\program files\Fichiers communs\iS3 2010-08-09 19:09 . 2010-08-10 13:21 -------- d-----w- c:\documents and settings\All Users\Application Data\STOPzilla! 2010-08-09 00:36 . 2010-08-09 00:36 -------- d-----w- C:\videooutput 2010-08-09 00:36 . 2006-11-01 12:52 765952 ----a-w- c:\windows\system32\xvidcore.dll 2010-08-09 00:36 . 2007-03-06 22:45 3086336 ----a-w- c:\windows\system32\flvvideo.dll 2010-08-09 00:36 . 2007-02-25 13:36 383238 ----a-w- c:\windows\system32\libmp3lame-0.dll 2010-08-09 00:36 . 2007-03-06 22:45 3086336 ----a-w- c:\windows\system32\NCMedia.dll 2010-08-09 00:36 . 2010-08-09 00:36 -------- d-----w- c:\program files\Smallvideosoft 2010-08-08 23:13 . 2010-08-08 23:13 13104 ----a-w- c:\documents and settings\Administrateur\Local Settings\Application Data\GDIPFONTCACHEV1.DAT 2010-08-08 21:59 . 2010-08-08 21:59 -------- d-----w- c:\documents and settings\All Users\Application Data\Sophos 2010-08-08 21:47 . 2010-08-08 21:47 22486 ----a-r- c:\documents and settings\Ordinateur\Application Data\Microsoft\Installer\{EDE875B0-6566-4E93-B955-C63AE5F4737C}\ARPPRODUCTICON.exe 2010-08-08 21:47 . 2010-08-09 17:37 -------- d-----w- C:\Sophos 2010-08-08 21:46 . 2010-08-08 21:46 -------- d-----w- C:\scss1 2010-08-08 21:25 . 2010-08-08 21:25 -------- d-----w- c:\program files\MSBuild 2010-08-08 21:24 . 2010-08-10 21:38 -------- d-----w- c:\windows\system32\XPSViewer 2010-08-08 21:24 . 2010-08-08 21:24 -------- d-----w- c:\program files\Reference Assemblies 2010-08-08 21:23 . 2006-06-29 11:07 14048 ------w- c:\windows\system32\spmsg2.dll 2010-08-08 20:23 . 2010-08-08 20:23 -------- d-----w- C:\scss 2010-08-08 20:17 . 2010-08-08 20:17 -------- d-----w- C:\scss_102 2010-08-08 20:14 . 2010-08-08 20:14 -------- d-----w- C:\scss_10 2010-08-08 16:52 . 2010-08-08 16:52 -------- d-----w- C:\VritualRoot 2010-08-08 16:52 . 2010-08-10 13:22 1474832 ----a-w- c:\windows\system32\drivers\sfi.dat 2010-08-08 14:53 . 2010-08-08 14:53 -------- d-----w- c:\program files\COMODO 2010-08-08 14:51 . 2010-08-08 14:52 -------- d-----w- c:\documents and settings\All Users\Application Data\Comodo Downloader 2010-08-08 14:22 . 2010-08-08 14:22 -------- d-----w- c:\program files\Emsisoft HiJackFree 2010-08-07 18:56 . 2010-08-07 18:56 -------- d-----w- c:\documents and settings\Ordinateur\Application Data\Media Player Classic 2010-08-07 18:43 . 2010-08-07 18:43 -------- d-----w- c:\program files\StatnPerf 2010-08-07 17:40 . 2010-08-07 17:40 -------- d-----w- c:\program files\CCleaner 2010-08-06 16:48 . 2010-08-06 16:48 -------- d-----w- c:\program files\SFR 2010-08-06 13:20 . 2010-08-10 00:20 -------- d-----w- c:\documents and settings\Ordinateur\Application Data\dvdcss 2010-08-06 12:39 . 2010-08-06 12:39 503808 ----a-w- c:\documents and settings\Ordinateur\Application Data\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-45fb05ef-n\msvcp71.dll 2010-08-06 12:39 . 2010-08-06 12:39 499712 ----a-w- c:\documents and settings\Ordinateur\Application Data\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-45fb05ef-n\jmc.dll 2010-08-06 12:39 . 2010-08-06 12:39 348160 ----a-w- c:\documents and settings\Ordinateur\Application Data\Sun\Java\Deployment\SystemCache\6.0\4\7ec4bf04-45fb05ef-n\msvcr71.dll 2010-08-06 12:39 . 2010-08-06 12:39 61440 ----a-w- c:\documents and settings\Ordinateur\Application Data\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-493e2360-n\decora-sse.dll 2010-08-06 12:39 . 2010-08-06 12:39 12800 ----a-w- c:\documents and settings\Ordinateur\Application Data\Sun\Java\Deployment\SystemCache\6.0\42\4488892a-493e2360-n\decora-d3d.dll 2010-08-04 18:49 . 2010-08-10 21:13 -------- d-----w- c:\windows\system32\fr-fr 2010-08-04 18:49 . 2010-08-04 18:49 -------- d-----w- c:\windows\system32\fr 2010-08-04 18:49 . 2010-08-04 18:49 -------- d-----w- c:\windows\l2schemas 2010-08-03 22:13 . 2010-08-03 22:13 -------- d-----w- c:\documents and settings\All Users\Application Data\Win7codecs 2010-08-03 20:43 . 2010-08-03 20:43 -------- d-----w- c:\documents and settings\Ordinateur\Application Data\PCF-VLC 2010-08-03 20:33 . 2010-08-03 20:33 -------- d-----w- c:\documents and settings\Ordinateur\Application Data\Participatory Culture Foundation 2010-08-03 19:49 . 2010-08-03 19:49 -------- d-----w- c:\program files\Participatory Culture Foundation 2010-08-03 19:19 . 2010-08-03 19:19 -------- d-----w- c:\documents and settings\Ordinateur\Local Settings\Application Data\MaxTV Technologies 2010-08-03 19:04 . 2010-08-03 19:04 -------- d-----w- c:\documents and settings\Ordinateur\Application Data\MaxTV Technologies 2010-08-03 19:02 . 2010-08-03 19:02 -------- d-----w- c:\program files\MaxTV 2010-08-03 15:22 . 2008-10-15 04:22 452440 ----a-w- c:\windows\system32\d3dx10_40.dll 2010-08-03 15:21 . 2010-08-03 15:21 -------- d-----w- c:\windows\Logs 2010-08-03 14:39 . 2008-04-14 02:33 221184 ----a-w- c:\windows\system32\wmpns.dll 2010-08-03 14:11 . 2010-08-03 14:11 -------- d-----w- c:\documents and settings\Ordinateur\Local Settings\Application Data\Yahoo 2010-08-02 19:38 . 2010-08-10 13:22 -------- d-----w- c:\documents and settings\All Users\Application Data\Yahoo! 2010-08-02 19:38 . 2010-08-03 14:12 -------- d-----w- c:\documents and settings\All Users\Application Data\Yahoo! Companion 2010-08-02 19:38 . 2010-08-02 19:38 -------- d-----w- c:\documents and settings\Ordinateur\Application Data\Yahoo! 2010-08-02 19:38 . 2010-08-10 13:23 -------- d-----w- c:\program files\Yahoo! 2010-08-02 19:37 . 2010-08-05 01:07 -------- d-----w- c:\program files\adslTV 2010-08-02 18:57 . 2010-08-02 18:57 -------- d-----w- c:\documents and settings\Ordinateur\Local Settings\Application Data\Adobe 2010-08-02 18:55 . 2010-08-02 18:56 -------- d-----w- c:\program files\Fichiers communs\Adobe 2010-08-02 17:12 . 2010-08-02 17:12 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\Google 2010-08-02 17:07 . 2010-08-02 17:10 -------- d-----w- c:\documents and settings\Ordinateur\Local Settings\Application Data\Temp 2010-08-02 17:07 . 2010-08-02 17:07 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\Google 2010-08-02 17:07 . 2010-08-02 17:12 -------- d-----w- c:\documents and settings\Ordinateur\Local Settings\Application Data\Google 2010-08-02 17:07 . 2010-08-02 17:10 -------- d-----w- c:\program files\Google 2010-08-02 13:21 . 2010-08-02 13:21 -------- d-----w- c:\documents and settings\Ordinateur\Application Data\Mchid 2010-08-02 13:21 . 2010-08-02 13:21 -------- d-----w- c:\documents and settings\Ordinateur\Application Data\Livestation 2010-08-02 13:21 . 2010-08-02 19:46 -------- d-----w- c:\documents and settings\Ordinateur\Livestation 2010-08-02 13:21 . 2010-08-02 13:21 -------- d-----w- c:\program files\Livestation 2010-08-01 23:16 . 2010-08-01 23:16 -------- d-----w- c:\windows\Sun 2010-08-01 18:50 . 2010-08-08 23:47 -------- d-----w- c:\documents and settings\Ordinateur\Application Data\vlc 2010-08-01 18:49 . 2010-08-01 18:49 -------- d-----w- c:\program files\VideoLAN 2010-08-01 14:37 . 2010-08-01 14:37 -------- d-----w- c:\documents and settings\Ordinateur\Local Settings\Application Data\Identities 2010-08-01 11:38 . 2008-04-14 02:33 153600 -c----w- c:\windows\system32\dllcache\shmedia.dll 2010-08-01 11:37 . 2008-04-14 02:33 384512 -c----w- c:\windows\system32\dllcache\mp4sdmod.dll 2010-08-01 11:36 . 2008-04-14 02:33 136192 ------w- c:\windows\system32\aaclient.dll 2010-08-01 03:47 . 2010-08-01 03:47 -------- d-----w- c:\program files\sisagp 2010-08-01 03:41 . 2010-08-01 03:41 49024 ----a-w- c:\windows\system32\drivers\sisidex.sys 2010-08-01 03:41 . 2010-08-01 03:41 9472 ----a-w- c:\windows\system32\drivers\sisperf.sys 2010-08-01 03:41 . 2010-08-01 03:41 139264 ----a-w- c:\windows\system32\IDEproperty.dll 2010-08-01 03:28 . 2003-10-30 12:09 249856 ----a-w- c:\windows\system32\Keyhook.exe 2010-08-01 03:28 . 2003-10-30 12:10 667648 ----a-w- c:\windows\system32\sistray.exe 2010-08-01 03:28 . 2010-08-08 18:20 -------- d-----w- c:\windows\SiS . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2010-08-11 00:35 . 2010-08-10 23:59 2013 ----a-w- c:\documents and settings\Administrateur\errorlog.tmp 2010-08-10 21:50 . 2001-08-28 12:00 80508 ----a-w- c:\windows\system32\perfc00C.dat 2010-08-10 21:50 . 2001-08-28 12:00 500482 ----a-w- c:\windows\system32\perfh00C.dat 2010-08-10 14:18 . 2010-01-04 17:41 111312 ----a-w- c:\windows\system32\drivers\bdfndisf.sys 2010-08-10 11:46 . 2010-08-10 11:45 536 ----a-w- c:\windows\system32\drivers\kgpcpy.cfg 2010-08-08 18:20 . 2010-07-31 22:53 -------- d--h--w- c:\program files\InstallShield Installation Information 2010-08-08 14:17 . 2006-02-14 14:02 32768 ----a-w- c:\windows\system32\drivers\sisnicxp.sys 2010-08-04 18:52 . 2010-07-31 22:45 86327 ----a-w- c:\windows\PCHEALTH\HELPCTR\OfflineCache\index.dat 2010-08-01 03:41 . 2003-03-25 15:50 4096 ----a-w- c:\windows\system32\drivers\siside.sys 2010-08-01 03:38 . 2010-07-31 23:19 -------- d-----w- c:\program files\ma-config.com 2010-08-01 03:38 . 2010-07-31 23:19 -------- d-----w- c:\documents and settings\All Users\Application Data\ma-config.com 2010-08-01 03:27 . 2003-10-30 12:08 5632 ----a-w- c:\windows\system32\instFunc.dll 2010-08-01 03:27 . 2003-10-30 12:08 172032 ----a-w- c:\windows\system32\SiSInst.dll 2010-08-01 03:27 . 2003-10-30 12:08 258048 ----a-w- c:\windows\system32\SiSParse.dll 2010-08-01 03:27 . 2003-10-30 12:07 49152 ----a-w- c:\windows\system32\SiSBase.dll 2010-08-01 03:27 . 2003-10-30 01:36 11264 ----a-w- c:\windows\system32\drivers\srvkp.sys 2010-08-01 03:27 . 2003-10-30 01:35 1861817 ----a-w- c:\windows\system32\sisgl.dll 2010-08-01 03:27 . 2003-10-30 01:01 1118720 ----a-w- c:\windows\system32\sisgrv.dll 2010-08-01 03:27 . 2003-10-30 00:54 427776 ----a-w- c:\windows\system32\drivers\sisgrp.sys 2010-08-01 03:27 . 2003-10-01 14:30 65536 ----a-w- c:\windows\system32\sis660.bin 2010-08-01 03:26 . 2010-08-01 03:26 -------- d-----w- c:\program files\C-Media 3D Audio 2010-08-01 03:20 . 2003-07-18 07:58 36992 ----a-w- c:\windows\system32\drivers\SISAGPX.SYS 2010-07-31 23:11 . 2010-07-31 23:11 0 ----a-w- c:\windows\nsreg.dat 2010-07-31 22:53 . 2010-07-31 22:53 -------- d-----w- c:\program files\USB Driver-Express 2010-07-31 22:53 . 2010-07-31 22:53 -------- d-----w- c:\program files\Fichiers communs\InstallShield 2010-07-31 22:51 . 2010-07-31 22:42 -------- d-----w- c:\program files\Services en ligne 2010-07-31 22:46 . 2010-07-31 22:46 -------- d-----w- c:\program files\microsoft frontpage 2010-07-31 22:42 . 2010-07-31 22:42 21892 ----a-w- c:\windows\system32\emptyregdb.dat 2010-06-24 12:25 . 2010-07-31 23:51 916480 ----a-w- c:\windows\system32\wininet.dll 2010-06-14 14:31 . 2010-07-31 23:45 744448 ----a-w- c:\windows\PCHEALTH\HELPCTR\Binaries\helpsvc.exe 2010-06-02 02:55 . 2010-08-03 15:23 74072 ----a-w- c:\windows\system32\XAPOFX1_5.dll 2010-06-02 02:55 . 2010-08-03 15:23 527192 ----a-w- c:\windows\system32\XAudio2_7.dll 2010-06-02 02:55 . 2010-08-03 15:23 239960 ----a-w- c:\windows\system32\xactengine3_7.dll 2010-05-26 09:41 . 2010-08-03 15:23 2106216 ----a-w- c:\windows\system32\D3DCompiler_43.dll 2010-05-26 09:41 . 2010-08-03 15:23 470880 ----a-w- c:\windows\system32\d3dx10_43.dll 2010-05-26 09:41 . 2010-08-03 15:23 248672 ----a-w- c:\windows\system32\d3dx11_43.dll 2010-05-26 09:41 . 2010-08-03 15:23 1868128 ----a-w- c:\windows\system32\d3dcsx_43.dll 2010-05-26 09:41 . 2010-08-03 15:23 1998168 ----a-w- c:\windows\system32\D3DX9_43.dll . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{0F6E720A-1A6B-40E1-A294-1D4D19F156C8}] 2009-10-15 08:53 165184 ----a-w- c:\program files\SFR\Kit\SFRNavErrorHelper.dll [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360] [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] 2010-03-17 19:53 421888 ----a-w- c:\program files\QuickTime\QTTask.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services] "VSSERV"=2 (0x2) "LIVESRV"=2 (0x2) [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" "Adobe ARM"="c:\program files\Fichiers communs\Adobe\ARM\1.0\AdobeARM.exe" "BDAgent"="c:\program files\BitDefender\BitDefender 2010\bdagent.exe" "BitDefender Antiphishing Helper"="c:\program files\BitDefender\BitDefender 2010\IEShow.exe" "SiSUSBRG"=c:\windows\SiSUSBrg.exe [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "c:\\Program Files\\Google\\Google Earth\\client\\googleearth.exe"= "c:\\Program Files\\adslTV\\adsltv.exe"= "c:\\Program Files\\VideoLAN\\VLC\\vlc.exe"= "c:\\Program Files\\Participatory Culture Foundation\\Miro\\Miro_Downloader.exe"= "c:\\Program Files\\Mozilla Firefox\\firefox.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Sophos\\Computer Security Scan\\Sophos Computer Security Scan.exe"= R2 BDVEDISK;BDVEDISK;c:\program files\BitDefender\BitDefender 2010\bdvedisk.sys [19/01/2010 19:32 85128] R3 bdfm;BDFM;c:\windows\system32\drivers\bdfm.sys [03/02/2010 13:57 153448] R3 Bdfndisf;BitDefender Firewall NDIS Filter Service;c:\windows\system32\drivers\bdfndisf.sys [04/01/2010 19:41 111312] S2 gupdate;Service Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [02/08/2010 19:07 136176] S3 Arrakis3;BitDefender Serveur Arrakis;c:\program files\Fichiers communs\BitDefender\BitDefender Arrakis Server\bin\arrakis3.exe [19/10/2009 17:06 183880] S3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [19/07/2010 14:59 259440] S3 PALLADIA;Palladia 300/400 Usb Adsl Modem;c:\windows\system32\drivers\usbiad.sys [01/08/2010 00:53 31547] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] bdx REG_MULTI_SZ scan . Contenu du dossier 'Tâches planifiées' 2010-08-10 c:\windows\Tasks\AppleSoftwareUpdate.job - c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 10:34] 2010-08-11 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-08-02 17:07] 2010-08-11 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files\Google\Update\GoogleUpdate.exe [2010-08-02 17:07] . . ------- Examen supplémentaire ------- . uInternet Connection Wizard,ShellNext = hxxp://analyze.hijackfree.com/analyze/?id=b1a21a5b-6988-4fd3-916e-72ba249b2826 FF - ProfilePath - c:\documents and settings\Administrateur\Application Data\Mozilla\Firefox\Profiles\dhpde2vr.default\ FF - prefs.js: browser.startup.homepage - www.google.fr FF - component: c:\program files\BitDefender\BitDefender 2010\bdaphffext\components\bdaphff2.dll FF - component: c:\program files\BitDefender\BitDefender 2010\bdaphffext\components\bdaphff3.6.dll FF - component: c:\program files\BitDefender\BitDefender 2010\bdaphffext\components\bdaphff3.dll FF - plugin: c:\program files\Google\Google Earth\plugin\npgeplugin.dll FF - plugin: c:\program files\Google\Update\1.2.183.29\npGoogleOneClick8.dll FF - plugin: c:\program files\Java\jre6\bin\new_plugin\npdeployJava1.dll FF - plugin: c:\program files\ma-config.com\nphardwaredetection.dll ---- PARAMETRES FIREFOX ---- c:\program files\Mozilla Firefox\greprefs\all.js - pref("ui.use_native_colors", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.lu", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nu", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.nz", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--p1ai", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbayh7gpa", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.IDN.whitelist.tel", true); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.proxy.type", 5); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.count", 24); c:\program files\Mozilla Firefox\greprefs\all.js - pref("network.buffer.cache.size", 4096); c:\program files\Mozilla Firefox\greprefs\all.js - pref("dom.ipc.plugins.timeoutSecs", 45); c:\program files\Mozilla Firefox\greprefs\all.js - pref("svg.smil.enabled", false); c:\program files\Mozilla Firefox\greprefs\all.js - pref("accelerometer.enabled", true); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", ""); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false); c:\program files\Mozilla Firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties"); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties"); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.nptest.dll", true); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npswf32.dll", true); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npctrl.dll", true); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled.npqtplugin.dll", true); c:\program files\Mozilla Firefox\defaults\pref\firefox.js - pref("dom.ipc.plugins.enabled", false); . - - - - ORPHELINS SUPPRIMES - - - - AddRemove-Stat 'n' Perf 1.13 Beta 03 - c:\program files\StatnPerf\StatnPerf -uninst ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover Rootkit scan 2010-08-11 15:46 Windows 5.1.2600 Service Pack 3 NTFS Recherche de processus cachés ... Recherche d'éléments en démarrage automatique cachés ... Recherche de fichiers cachés ... Scan terminé avec succès Fichiers cachés: 0 ************************************************************************** . --------------------- DLLs chargées dans les processus actifs --------------------- - - - - - - - > 'explorer.exe'(3092) c:\windows\system32\eappprxy.dll c:\windows\system32\webcheck.dll . Heure de fin: 2010-08-11 15:51:31 ComboFix-quarantined-files.txt 2010-08-11 13:51 Avant-CF: 70 814 490 624 octets libres Après-CF: 71 268 741 120 octets libres - - End Of File - - FE6477EF0FC7DC3F393F7DBF25BC49D9 Voilà, je tenais à préciser que le défilement d'une page internet est ralentit et saccadé et que les vidéos streaming c'est une vraie cata et qu'il met un temps fou par moment à ouvrir une page internet, de + le téléchargement ne dépasse jamais les 100ko / s + ou - ! Merci sincèrement à tous les experts qui pourraient m'apporter leur aide, car là je suis dépassé ...
×
×
  • Créer...