Aller au contenu

cladman83

Membres
  • Compteur de contenus

    20
  • Inscription

  • Dernière visite

cladman83's Achievements

Junior Member

Junior Member (3/12)

0

Réputation sur la communauté

  1. Bonjour je viens de redémarrer après avoir utilisé unhide et l'ordi vient justement de redémarrer bizarrement (je ne vois pas le DD, aucun programme ne s'est lancé dans la barre des taches à part outpost firewall) Je vais donc essayer un nouveau compte administrateur
  2. Lors de certains démarrages, mon ordi démarre bizarrement; c'est-à-dire que le disque dur n'est pas reconnu( lorsque je vais dans le bureau il n’apparaît pas), certaines icônes dans la barre des tâches en bas à droite ne démarrent pas ( logiciel webcam, batterie...). Mon problème n'est donc pas résolu Il n'y a aucun message d'erreur même lorsque l'ordi démarre bizarrement.
  3. Bonjour, c'est encore moi mais après 3 jours de vérification le problème n'est pas résolu, l'ordi ne démarre pas correctement lors de certains démarrages. D'autres idées??? Merci
  4. Merci pour l'aide, je vais attendre 2/3 jours lors des démarrages de mon ordi pour vérifier si le problème persiste ou si tout est rentré dans l'ordre.
  5. Bonjour voici le rapport Combofix: ComboFix 11-10-19.03 - Aurélien 19/10/2011 17:03:42.2.2 - x86 Microsoft® Windows Vista™ Édition Familiale Basique 6.0.6002.2.1252.33.1036.18.2939.1731 [GMT 2:00] Lancé depuis: c:\users\Aurélien\Desktop\ComboFix.exe Commutateurs utilisés :: c:\users\Aurélien\Desktop\CFScript.txt AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C} SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((((((((( Fichiers créés du 2011-09-19 au 2011-10-19 )))))))))))))))))))))))))))))))))))) . . 2011-10-19 15:17 . 2011-10-19 15:17 -------- d-----w- c:\users\Aurélien\AppData\Local\temp 2011-10-19 15:17 . 2011-10-19 15:17 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-10-19 15:17 . 2011-10-19 15:17 -------- d-----w- c:\users\AurÚlien\AppData\Local\temp 2011-10-19 15:17 . 2011-10-19 15:17 -------- d-----w- c:\users\Aurélie\AppData\Local\temp 2011-10-19 14:43 . 2011-10-19 14:43 56200 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{61FEA2D9-861C-4B4F-90CA-B1DE77C621C6}\offreg.dll 2011-10-18 06:35 . 2011-09-12 23:14 7269712 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{61FEA2D9-861C-4B4F-90CA-B1DE77C621C6}\mpengine.dll 2011-10-16 18:31 . 2011-10-16 18:31 512 ----a-w- C:\PhysicalDisk0_MBR.bin 2011-10-16 18:28 . 2011-10-18 09:02 -------- d-----w- C:\ZHP 2011-10-16 18:27 . 2011-10-18 08:59 -------- d-----w- c:\program files\ZHPDiag 2011-10-13 16:51 . 2011-07-29 16:01 293376 ----a-w- c:\windows\system32\psisdecd.dll 2011-10-13 16:51 . 2011-07-29 16:01 217088 ----a-w- c:\windows\system32\psisrndr.ax 2011-10-13 16:51 . 2011-07-29 16:00 57856 ----a-w- c:\windows\system32\MSDvbNP.ax 2011-10-13 16:51 . 2011-07-29 16:00 69632 ----a-w- c:\windows\system32\Mpeg2Data.ax 2011-10-13 16:51 . 2011-09-06 13:30 2043392 ----a-w- c:\windows\system32\win32k.sys 2011-10-13 16:51 . 2011-09-14 10:51 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat 2011-10-13 16:51 . 2011-08-25 16:15 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll 2011-10-13 16:51 . 2011-08-25 16:14 563712 ----a-w- c:\windows\system32\oleaut32.dll 2011-10-13 16:51 . 2011-08-25 16:14 238080 ----a-w- c:\windows\system32\oleacc.dll 2011-10-13 16:51 . 2011-08-25 13:31 4096 ----a-w- c:\windows\system32\oleaccrc.dll 2011-09-27 14:02 . 2011-09-27 14:02 -------- d-----w- c:\users\Aurélien\AppData\Roaming\Malwarebytes 2011-09-27 14:02 . 2011-09-27 14:02 -------- d-----w- c:\programdata\Malwarebytes 2011-09-27 14:02 . 2011-09-27 14:02 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2011-09-27 14:02 . 2011-08-31 15:00 22216 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-09-21 16:33 . 2011-09-21 16:33 -------- d-----w- c:\program files\Common Files\xing shared 2011-09-21 14:10 . 2011-09-21 14:10 -------- d-----w- c:\program files\Quicksys 2011-09-20 15:19 . 2011-09-29 07:16 134104 ----a-w- c:\program files\Mozilla Firefox\components\browsercomps.dll 2011-09-20 15:19 . 2011-09-29 07:16 89048 ----a-w- c:\program files\Mozilla Firefox\libEGL.dll 2011-09-20 15:19 . 2011-09-29 07:16 773080 ----a-w- c:\program files\Mozilla Firefox\mozsqlite3.dll 2011-09-20 15:19 . 2011-09-29 07:16 478168 ----a-w- c:\program files\Mozilla Firefox\libGLESv2.dll 2011-09-20 15:19 . 2011-09-29 07:16 1833944 ----a-w- c:\program files\Mozilla Firefox\mozjs.dll 2011-09-20 15:19 . 2011-09-29 07:16 15832 ----a-w- c:\program files\Mozilla Firefox\mozalloc.dll 2011-09-20 15:19 . 2011-09-29 00:26 2106216 ----a-w- c:\program files\Mozilla Firefox\D3DCompiler_43.dll 2011-09-20 15:19 . 2011-09-29 00:26 1998168 ----a-w- c:\program files\Mozilla Firefox\d3dx9_43.dll 2011-09-20 14:16 . 2011-09-20 14:16 -------- d-----w- c:\programdata\IndexEducation . . . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2011-09-21 16:32 . 2010-11-02 16:52 499712 ----a-w- c:\windows\system32\msvcp71.dll 2011-09-21 16:32 . 2010-11-02 16:52 348160 ----a-w- c:\windows\system32\msvcr71.dll 2011-09-21 11:19 . 2011-05-17 16:06 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2011-09-06 20:45 . 2010-08-31 15:48 41184 ----a-w- c:\windows\avastSS.scr 2011-09-06 20:45 . 2010-08-31 15:48 199304 ----a-w- c:\windows\system32\aswBoot.exe 2011-09-06 20:38 . 2011-06-30 18:30 442200 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2011-09-06 20:37 . 2010-08-31 15:48 320856 ----a-w- c:\windows\system32\drivers\aswSP.sys 2011-09-06 20:36 . 2010-08-31 15:48 34392 ----a-w- c:\windows\system32\drivers\aswRdr.sys 2011-09-06 20:36 . 2010-08-31 15:48 52568 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2011-09-06 20:36 . 2010-08-31 15:48 54616 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2011-09-06 20:36 . 2010-08-31 15:48 20568 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys 2011-09-04 09:08 . 2010-06-24 10:33 18328 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2011-09-29 07:16 . 2011-09-20 15:19 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll 2006-05-03 10:06 163328 --sha-r- c:\windows\System32\flvDX.dll 2007-02-21 11:47 31232 --sha-r- c:\windows\System32\msfDX.dll 2008-03-16 13:30 216064 --sha-r- c:\windows\System32\nbDX.dll . . ((((((((((((((((((((((((((((( SnapShot@2011-10-18_15.39.22 ))))))))))))))))))))))))))))))))))))))))) . + 2008-01-21 01:58 . 2011-10-19 14:47 62032 c:\windows\System32\WDI\ShutdownPerformanceDiagnostics_SystemData.bin + 2010-08-31 14:27 . 2011-10-19 14:44 16384 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat - 2010-08-31 14:27 . 2011-10-18 15:11 16384 c:\windows\System32\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat - 2010-08-31 14:27 . 2011-10-18 15:11 32768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat + 2010-08-31 14:27 . 2011-10-19 14:44 32768 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat + 2010-08-31 14:27 . 2011-10-19 14:44 16384 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat - 2010-08-31 14:27 . 2011-10-18 15:11 16384 c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat + 2010-08-31 14:40 . 2011-10-19 14:47 9714 c:\windows\System32\WDI\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-2498620278-4290747164-346320608-1000_UserData.bin - 2011-10-18 15:11 . 2011-10-18 15:11 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat + 2011-10-19 14:43 . 2011-10-19 14:43 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive1.dat - 2011-10-18 15:11 . 2011-10-18 15:11 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat + 2011-10-19 14:43 . 2011-10-19 14:43 2048 c:\windows\ServiceProfiles\LocalService\AppData\Local\lastalive0.dat + 2010-08-31 16:48 . 2011-10-19 09:51 308822 c:\windows\System32\WDI\SuspendPerformanceDiagnostics_SystemData_S3.bin + 2006-11-02 13:02 . 2011-10-19 14:47 109184 c:\windows\System32\WDI\BootPerformanceDiagnostics_SystemData.bin + 2008-01-21 07:23 . 2011-10-19 14:51 720096 c:\windows\System32\perfh00C.dat - 2008-01-21 07:23 . 2011-10-18 15:19 720096 c:\windows\System32\perfh00C.dat + 2006-11-02 10:33 . 2011-10-19 14:51 632364 c:\windows\System32\perfh009.dat - 2006-11-02 10:33 . 2011-10-18 15:19 632364 c:\windows\System32\perfh009.dat + 2008-01-21 07:23 . 2011-10-19 14:51 144892 c:\windows\System32\perfc00C.dat - 2008-01-21 07:23 . 2011-10-18 15:19 144892 c:\windows\System32\perfc00C.dat - 2006-11-02 10:33 . 2011-10-18 15:19 118990 c:\windows\System32\perfc009.dat + 2006-11-02 10:33 . 2011-10-19 14:51 118990 c:\windows\System32\perfc009.dat + 2010-11-07 22:02 . 2011-10-19 14:42 437284 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat - 2010-11-07 22:02 . 2011-10-18 09:43 437284 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache-System.dat + 2010-08-31 14:54 . 2011-10-19 14:42 4699336 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat - 2010-08-31 14:54 . 2011-10-18 15:11 4699336 c:\windows\ServiceProfiles\LocalService\AppData\Local\FontCache3.0.0.0.dat . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2011-09-06 20:45 122512 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GladinetIconOverlay] @="{3C3DC57A-7535-48AF-BB9E-C3576A4F34D0}" [HKEY_CLASSES_ROOT\CLSID\{3C3DC57A-7535-48AF-BB9E-C3576A4F34D0}] 2011-07-26 11:58 194416 ----a-w- c:\program files\Nuance\Nuance Cloud Connector\GlOverlayIcon.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GladinetUploading] @="{959A18D3-9CC9-41e8-B76F-34ED9A89D4EA}" [HKEY_CLASSES_ROOT\CLSID\{959A18D3-9CC9-41e8-B76F-34ED9A89D4EA}] 2011-07-26 12:00 194416 ----a-w- c:\program files\Nuance\Nuance Cloud Connector\GlOverlayIconU.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "boincmgr"="c:\program files\BOINC\boincmgr.exe" [2010-09-23 4543232] "boinctray"="c:\program files\BOINC\boinctray.exe" [2010-09-23 58112] "OutpostMonitor"="c:\progra~1\Agnitum\OUTPOS~1\op_mon.exe" [2009-04-28 2374464] . c:\users\Aurélie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ OpenOffice.org 3.2.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-5-20 1195008] . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=c:\progra~1\Agnitum\OUTPOS~1\wl_hook.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "aux"=wdmaud.drv . [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk] path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk backup=c:\windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup backupExtension=.CommonStartup . [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Nuance Cloud Connector.lnk] path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Nuance Cloud Connector.lnk backup=c:\windows\pss\Nuance Cloud Connector.lnk.CommonStartup backupExtension=.CommonStartup . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\00TCrdMain] 2008-05-09 09:49 716800 ----a-w- c:\program files\TOSHIBA\FlashCards\TCrdMain.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] 2011-06-06 10:55 937920 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0] 2010-07-29 00:25 497648 ----a-w- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Camera Assistant Software] 2008-09-26 12:22 417792 ----a-w- c:\program files\Camera Assistant Software for Toshiba\traybar.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX400 Series] 2007-12-17 04:00 188928 ----a-w- c:\windows\System32\spool\drivers\w32x86\3\E_FATIEGE.EXE . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google EULA Launcher] 2008-05-28 11:40 20480 ----a-w- c:\program files\Google\Google EULA\GoogleEULALauncher.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update] 2010-08-31 15:26 136176 ----atw- c:\users\Aurélien\AppData\Local\Google\Update\GoogleUpdate.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update] 2011-05-10 00:41 49208 ----a-w- c:\program files\HP\HP Software Update\hpwuschd2.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon] 2011-05-20 08:10 284440 ----a-w- c:\program files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM] 2010-05-21 11:40 324976 ----a-w- c:\programdata\FLEXnet\Connect\11\ISUSPM.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper] 2011-08-01 03:32 958352 ----a-w- c:\program files\Samsung\Kies\KiesHelper.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR] 2011-08-01 03:32 20880 ----a-w- c:\program files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent] 2011-08-01 03:32 3507088 ----a-w- c:\program files\Samsung\Kies\KiesTrayAgent.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBAgent] 2010-04-02 23:27 1234216 ----a-w- c:\program files\Nero\Nero 10\Nero BackItUp\NBAgent.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nuance OmniPage 18-reminder] 2011-05-16 10:40 333088 ----a-w- c:\program files\Nuance\OmniPage18\Ereg\Ereg.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OmniPage Preload] 2011-07-28 08:15 2987880 ----a-w- c:\program files\Nuance\OmniPage18\OmniPage18.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OutpostFeedBack] 2009-04-28 09:04 428032 ----a-w- c:\program files\Agnitum\Outpost Firewall\feedback.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDF7 Registry Controller] 2011-06-27 23:22 140136 ----a-w- c:\program files\Nuance\PDF Create 7\RegistryController.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDFCreHook] 2011-06-28 06:18 605032 ----a-w- c:\program files\Nuance\PDF Create 7\PdfCreate7Hook.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl] 2008-04-08 13:14 6037504 ----a-w- c:\windows\RtHDVCpl.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel] 2007-11-20 16:15 1826816 ----a-w- c:\windows\SkyTel.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SmoothView] 2008-06-24 08:06 509816 ----a-w- c:\program files\TOSHIBA\SmoothView\SmoothView.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] 2011-06-09 11:06 254696 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh] 2007-12-06 16:12 1029416 ----a-w- c:\program files\Synaptics\SynTP\SynTPEnh.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe] 2011-09-21 16:32 273528 ----a-w- c:\program files\Real\RealPlayer\Update\realsched.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\topi] 2007-07-10 07:24 581632 ----a-w- c:\program files\TOSHIBA\Toshiba Online Product Information\TOPI.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Toshiba Registration] 2008-01-11 02:07 574864 ----a-w- c:\program files\TOSHIBA\Registration\ToshibaRegistration.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Toshiba TEMPO] 2008-04-24 08:22 103824 ----a-w- c:\program files\Toshiba TEMPRO\Toshiba.Tempo.UI.TrayApplication.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TPwrMain] 2008-01-17 14:27 431456 ----a-w- c:\program files\TOSHIBA\Power Saver\TPwrMain.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender] 2008-01-21 02:33 1008184 ----a-w- c:\program files\Windows Defender\MSASCui.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG] 2008-01-21 02:35 202240 ----a-w- c:\program files\Windows Media Player\wmpnscfg.exe . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware] "DisableMonitoring"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc] "FirewallOverride"=dword:00000001 . R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [2011-01-29 20032] R3 jswpsapi;Jumpstart Wifi Protected Setup;c:\program files\Jumpstart\jswpsapi.exe [2008-04-16 954368] R3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [2011-08-08 311928] R3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\DRIVERS\ssadbus.sys [2011-07-20 121064] R3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\DRIVERS\ssadmdfl.sys [2011-07-20 12776] R3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\DRIVERS\ssadmdm.sys [2011-07-20 136808] R3 WPFFontCache_v0400;Cache de police de Windows Presentation Foundation 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504] S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-11-02 691696] S1 afw;Agnitum Firewall Driver;c:\windows\system32\DRIVERS\afw.sys [2009-02-18 29208] S1 aswSnx;aswSnx; [x] S1 aswSP;aswSP; [x] S1 jswpslwf;JumpStart Wireless Filter Driver;c:\windows\system32\DRIVERS\jswpslwf.sys [2008-04-28 20384] S1 SandBox;SandBox;c:\windows\system32\drivers\SandBox.sys [2009-04-06 704384] S2 acssrv;Agnitum Client Security Service;c:\progra~1\Agnitum\OUTPOS~1\acs.exe [2009-04-28 1195008] S2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9;c:\program files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [2010-09-30 169408] S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952] S2 aswFsBlk;aswFsBlk; [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2011-09-06 54616] S2 ConfigFree Service;ConfigFree Service;c:\program files\TOSHIBA\ConfigFree\CFSvcs.exe [2008-04-16 40960] S2 FsUsbExService;FsUsbExService;c:\windows\system32\FsUsbExService.Exe [2010-05-28 233472] S2 GladFileMonSvc;GladFileMonSvc;c:\program files\Nuance\Nuance Cloud Connector\GladFileMonSvc.exe [2011-07-26 29552] S2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;c:\program files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-05-20 13592] S2 NAUpdate;Nero Update;c:\program files\Nero\Update\NASvc.exe [2010-03-25 490280] S2 TempoMonitoringService;Notebook Performance Tuning Service ;c:\program files\Toshiba TEMPRO\TempoSVC.exe [2008-04-24 99720] S2 TOSHIBA SMART Log Service;TOSHIBA SMART Log Service;c:\program files\TOSHIBA\SMARTLogService\TosIPCSrv.exe [2008-02-06 126976] S3 afwcore;afwcore;c:\windows\system32\drivers\afwcore.sys [2009-02-10 307224] S3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.SYS [2010-09-15 36640] S3 FwLnk;FwLnk Driver;c:\windows\system32\DRIVERS\FwLnk.sys [2006-11-20 7168] S3 pcouffin;VSO Software pcouffin;c:\windows\system32\Drivers\pcouffin.sys [2011-01-24 47360] S3 SmartFaceVWatchSrv;SmartFaceVWatchSrv;c:\program files\TOSHIBA\SmartFaceV\SmartFaceVWatchSrv.exe [2008-08-25 77824] . . --- Autres Services/Pilotes en mémoire --- . *NewlyCreated* - FSUSBEXDISK . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12 hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc . . ------- Examen supplémentaire ------- . uStart Page = hxxp://www.google.fr/ mStart Page = hxxp://www.google.com/ig/redirectdomain?brand=TSEA&bmod=TSEA IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000 TCP: DhcpNameServer = 212.27.40.241 212.27.40.240 FF - ProfilePath - c:\users\Aurélien\AppData\Roaming\Mozilla\Firefox\Profiles\7xexbup5.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.fr . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover Rootkit scan 2011-10-19 17:17 Windows 6.0.6002 Service Pack 2 NTFS . Recherche de processus cachés ... . Recherche d'éléments en démarrage automatique cachés ... . Recherche de fichiers cachés ... . Scan terminé avec succès Fichiers cachés: 0 . ************************************************************************** . --------------------- DLLs chargées dans les processus actifs --------------------- . - - - - - - - > 'Explorer.exe'(4704) c:\program files\Nuance\Nuance Cloud Connector\GlOverlayIcon.dll c:\program files\Nuance\Nuance Cloud Connector\GlOverlayIconU.dll . Heure de fin: 2011-10-19 17:31:02 ComboFix-quarantined-files.txt 2011-10-19 15:30 ComboFix2.txt 2011-10-18 15:52 . Avant-CF: 36 174 114 816 octets libres Après-CF: 36 146 995 200 octets libres . - - End Of File - - 857817AF845D741DA1A6977EEC1F617B
  6. Concernant mon problème , rien n'est résolu puisque juste avant de lancer combofix mon disque dur n'était pas reconnu... J'ai donc lancé combofix voici ce qu'il dit: ComboFix 11-10-18.02 - Aurélien 18/10/2011 17:25:13.1.2 - x86 Microsoft® Windows Vista™ Édition Familiale Basique 6.0.6002.2.1252.33.1036.18.2939.1619 [GMT 2:00] Lancé depuis: c:\users\AurÚlien\Desktop\ComboFix.exe AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C} SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Autres suppressions )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\windows\system32\muzapp.exe c:\windows\system32\system32 c:\windows\system32\system32\3DAudio.ax c:\windows\system32\system32\avrt.dll c:\windows\system32\system32\cis-2.4.dll c:\windows\system32\system32\issacapi_bs-2.3.dll c:\windows\system32\system32\issacapi_pe-2.3.dll c:\windows\system32\system32\issacapi_se-2.3.dll c:\windows\system32\system32\MACXMLProto.dll c:\windows\system32\system32\MaDRM.dll c:\windows\system32\system32\MaJGUILib.dll c:\windows\system32\system32\MaJUtilLib.dll c:\windows\system32\system32\MAMACExtract.dll c:\windows\system32\system32\MASetupCaller.dll c:\windows\system32\system32\MASetupCleaner.exe c:\windows\system32\system32\MaXMLProto.dll c:\windows\system32\system32\MetaStore2.dll c:\windows\system32\system32\mfplat.dll c:\windows\system32\system32\Microsoft.Synchronization.dll c:\windows\system32\system32\MK_Lyric.dll c:\windows\system32\system32\MSCLib.dll c:\windows\system32\system32\MSFLib.dll c:\windows\system32\system32\MSLUR71.dll c:\windows\system32\system32\msvcp60.dll c:\windows\system32\system32\MTTELECHIP.dll c:\windows\system32\system32\MTXSYNCICON.dll c:\windows\system32\system32\muzaf1.dll c:\windows\system32\system32\muzapp.dll c:\windows\system32\system32\muzapp.exe c:\windows\system32\system32\muzdecode.ax c:\windows\system32\system32\muzeffect.ax c:\windows\system32\system32\muzmp4sp.ax c:\windows\system32\system32\muzmpgsp.ax c:\windows\system32\system32\muzoggsp.ax c:\windows\system32\system32\muzwmts.dll c:\windows\system32\system32\psapi.dll c:\windows\system32\system32\Synchronization2.dll . . ((((((((((((((((((((((((((((( Fichiers créés du 2011-09-18 au 2011-10-18 )))))))))))))))))))))))))))))))))))) . . 2011-10-18 15:38 . 2011-10-18 15:39 -------- d-----w- c:\users\Aurélien\AppData\Local\temp 2011-10-18 15:38 . 2011-10-18 15:38 -------- d-----w- c:\users\Default\AppData\Local\temp 2011-10-18 15:38 . 2011-10-18 15:38 -------- d-----w- c:\users\Aurélie\AppData\Local\temp 2011-10-18 06:35 . 2011-09-12 23:14 7269712 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{61FEA2D9-861C-4B4F-90CA-B1DE77C621C6}\mpengine.dll 2011-10-16 18:31 . 2011-10-16 18:31 512 ----a-w- C:\PhysicalDisk0_MBR.bin 2011-10-16 18:28 . 2011-10-18 09:02 -------- d-----w- C:\ZHP 2011-10-16 18:27 . 2011-10-18 08:59 -------- d-----w- c:\program files\ZHPDiag 2011-10-13 16:51 . 2011-07-29 16:01 293376 ----a-w- c:\windows\system32\psisdecd.dll 2011-10-13 16:51 . 2011-07-29 16:01 217088 ----a-w- c:\windows\system32\psisrndr.ax 2011-10-13 16:51 . 2011-07-29 16:00 57856 ----a-w- c:\windows\system32\MSDvbNP.ax 2011-10-13 16:51 . 2011-07-29 16:00 69632 ----a-w- c:\windows\system32\Mpeg2Data.ax 2011-10-13 16:51 . 2011-09-06 13:30 2043392 ----a-w- c:\windows\system32\win32k.sys 2011-10-13 16:51 . 2011-09-14 10:51 2409784 ----a-w- c:\program files\Windows Mail\OESpamFilter.dat 2011-10-13 16:51 . 2011-08-25 16:15 555520 ----a-w- c:\windows\system32\UIAutomationCore.dll 2011-10-13 16:51 . 2011-08-25 16:14 563712 ----a-w- c:\windows\system32\oleaut32.dll 2011-10-13 16:51 . 2011-08-25 16:14 238080 ----a-w- c:\windows\system32\oleacc.dll 2011-10-13 16:51 . 2011-08-25 13:31 4096 ----a-w- c:\windows\system32\oleaccrc.dll 2011-09-27 14:02 . 2011-09-27 14:02 -------- d-----w- c:\users\Aurélien\AppData\Roaming\Malwarebytes 2011-09-27 14:02 . 2011-09-27 14:02 -------- d-----w- c:\programdata\Malwarebytes 2011-09-27 14:02 . 2011-09-27 14:02 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware 2011-09-27 14:02 . 2011-08-31 15:00 22216 ----a-w- c:\windows\system32\drivers\mbam.sys 2011-09-21 16:33 . 2011-09-21 16:33 -------- d-----w- c:\program files\Common Files\xing shared 2011-09-21 14:10 . 2011-09-21 14:10 -------- d-----w- c:\program files\Quicksys 2011-09-20 15:19 . 2011-09-29 07:16 134104 ----a-w- c:\program files\Mozilla Firefox\components\browsercomps.dll 2011-09-20 15:19 . 2011-09-29 07:16 89048 ----a-w- c:\program files\Mozilla Firefox\libEGL.dll 2011-09-20 15:19 . 2011-09-29 07:16 773080 ----a-w- c:\program files\Mozilla Firefox\mozsqlite3.dll 2011-09-20 15:19 . 2011-09-29 07:16 478168 ----a-w- c:\program files\Mozilla Firefox\libGLESv2.dll 2011-09-20 15:19 . 2011-09-29 07:16 1833944 ----a-w- c:\program files\Mozilla Firefox\mozjs.dll 2011-09-20 15:19 . 2011-09-29 07:16 15832 ----a-w- c:\program files\Mozilla Firefox\mozalloc.dll 2011-09-20 15:19 . 2011-09-29 00:26 2106216 ----a-w- c:\program files\Mozilla Firefox\D3DCompiler_43.dll 2011-09-20 15:19 . 2011-09-29 00:26 1998168 ----a-w- c:\program files\Mozilla Firefox\d3dx9_43.dll 2011-09-20 14:16 . 2011-09-20 14:16 -------- d-----w- c:\programdata\IndexEducation 2011-09-18 18:17 . 2011-09-18 18:17 -------- d-----w- c:\program files\Common Files\Intel Corporation 2011-09-18 18:17 . 2011-09-18 18:17 -------- d-----w- c:\users\Aurélien\AppData\Roaming\Intel Corporation 2011-09-18 18:04 . 2011-05-20 07:43 461592 ----a-w- c:\windows\system32\drivers\iaStor.sys 2011-09-18 18:03 . 2011-02-22 12:21 80416 ----a-w- c:\windows\system32\RtNicProp32.dll 2011-09-18 18:03 . 2011-02-22 12:21 319592 ----a-w- c:\windows\system32\drivers\Rtlh86.sys 2011-09-18 18:03 . 2011-02-22 12:21 100896 ----a-w- c:\windows\system32\RTNUninst32.dll 2011-09-18 17:57 . 2010-04-27 14:19 1214976 ----a-w- c:\windows\system32\drivers\athr.sys 2011-09-18 17:35 . 2011-09-21 17:45 -------- d-----w- c:\program files\ma-config.com 2011-09-18 17:35 . 2011-09-21 17:45 -------- d-----w- c:\programdata\ma-config.com 2011-09-18 16:35 . 2011-09-18 16:35 -------- d-----w- c:\programdata\Uniblue 2011-09-18 16:34 . 2011-09-18 16:34 -------- d-----w- c:\program files\CrystalDiskInfo . . . (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M )))))))))))))))))))))))))))))))))))))))))))))))) . 2011-09-21 16:32 . 2010-11-02 16:52 499712 ----a-w- c:\windows\system32\msvcp71.dll 2011-09-21 16:32 . 2010-11-02 16:52 348160 ----a-w- c:\windows\system32\msvcr71.dll 2011-09-21 11:19 . 2011-05-17 16:06 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2011-09-06 20:45 . 2010-08-31 15:48 41184 ----a-w- c:\windows\avastSS.scr 2011-09-06 20:45 . 2010-08-31 15:48 199304 ----a-w- c:\windows\system32\aswBoot.exe 2011-09-06 20:38 . 2011-06-30 18:30 442200 ----a-w- c:\windows\system32\drivers\aswSnx.sys 2011-09-06 20:37 . 2010-08-31 15:48 320856 ----a-w- c:\windows\system32\drivers\aswSP.sys 2011-09-06 20:36 . 2010-08-31 15:48 34392 ----a-w- c:\windows\system32\drivers\aswRdr.sys 2011-09-06 20:36 . 2010-08-31 15:48 52568 ----a-w- c:\windows\system32\drivers\aswTdi.sys 2011-09-06 20:36 . 2010-08-31 15:48 54616 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2011-09-06 20:36 . 2010-08-31 15:48 20568 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys 2011-09-04 09:08 . 2010-06-24 10:33 18328 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll 2011-09-29 07:16 . 2011-09-20 15:19 134104 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll 2006-05-03 10:06 163328 --sha-r- c:\windows\System32\flvDX.dll 2007-02-21 11:47 31232 --sha-r- c:\windows\System32\msfDX.dll 2008-03-16 13:30 216064 --sha-r- c:\windows\System32\nbDX.dll . . ((((((((((((((((((((((((((((((((( Points de chargement Reg )))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés REGEDIT4 . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2011-09-06 20:45 122512 ----a-w- c:\program files\Alwil Software\Avast5\ashShell.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GladinetIconOverlay] @="{3C3DC57A-7535-48AF-BB9E-C3576A4F34D0}" [HKEY_CLASSES_ROOT\CLSID\{3C3DC57A-7535-48AF-BB9E-C3576A4F34D0}] 2011-07-26 11:58 194416 ----a-w- c:\program files\Nuance\Nuance Cloud Connector\GlOverlayIcon.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GladinetUploading] @="{959A18D3-9CC9-41e8-B76F-34ED9A89D4EA}" [HKEY_CLASSES_ROOT\CLSID\{959A18D3-9CC9-41e8-B76F-34ED9A89D4EA}] 2011-07-26 12:00 194416 ----a-w- c:\program files\Nuance\Nuance Cloud Connector\GlOverlayIconU.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "boincmgr"="c:\program files\BOINC\boincmgr.exe" [2010-09-23 4543232] "boinctray"="c:\program files\BOINC\boinctray.exe" [2010-09-23 58112] "OutpostMonitor"="c:\progra~1\Agnitum\OUTPOS~1\op_mon.exe" [2009-04-28 2374464] . c:\users\Aurélie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ OpenOffice.org 3.2.lnk - c:\program files\OpenOffice.org 3\program\quickstart.exe [2010-5-20 1195008] . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows] "AppInit_DLLs"=c:\progra~1\Agnitum\OUTPOS~1\wl_hook.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32] "aux"=wdmaud.drv . [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk] path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk backup=c:\windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup backupExtension=.CommonStartup . [HKLM\~\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Nuance Cloud Connector.lnk] path=c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\Nuance Cloud Connector.lnk backup=c:\windows\pss\Nuance Cloud Connector.lnk.CommonStartup backupExtension=.CommonStartup . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\00TCrdMain] 2008-05-09 09:49 716800 ----a-w- c:\program files\TOSHIBA\FlashCards\TCrdMain.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM] 2011-06-06 10:55 937920 ----a-w- c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AdobeAAMUpdater-1.0] 2010-07-29 00:25 497648 ----a-w- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Camera Assistant Software] 2008-09-26 12:22 417792 ----a-w- c:\program files\Camera Assistant Software for Toshiba\traybar.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EPSON Stylus SX400 Series] 2007-12-17 04:00 188928 ----a-w- c:\windows\System32\spool\drivers\w32x86\3\E_FATIEGE.EXE . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google EULA Launcher] 2008-05-28 11:40 20480 ----a-w- c:\program files\Google\Google EULA\GoogleEULALauncher.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update] 2010-08-31 15:26 136176 ----atw- c:\users\Aurélien\AppData\Local\Google\Update\GoogleUpdate.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update] 2011-05-10 00:41 49208 ----a-w- c:\program files\HP\HP Software Update\hpwuschd2.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IAStorIcon] 2011-05-20 08:10 284440 ----a-w- c:\program files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM] 2010-05-21 11:40 324976 ----a-w- c:\programdata\FLEXnet\Connect\11\ISUSPM.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper] 2011-08-01 03:32 958352 ----a-w- c:\program files\Samsung\Kies\KiesHelper.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR] 2011-08-01 03:32 20880 ----a-w- c:\program files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent] 2011-08-01 03:32 3507088 ----a-w- c:\program files\Samsung\Kies\KiesTrayAgent.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBAgent] 2010-04-02 23:27 1234216 ----a-w- c:\program files\Nero\Nero 10\Nero BackItUp\NBAgent.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nuance OmniPage 18-reminder] 2011-05-16 10:40 333088 ----a-w- c:\program files\Nuance\OmniPage18\Ereg\Ereg.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OmniPage Preload] 2011-07-28 08:15 2987880 ----a-w- c:\program files\Nuance\OmniPage18\OmniPage18.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OutpostFeedBack] 2009-04-28 09:04 428032 ----a-w- c:\program files\Agnitum\Outpost Firewall\feedback.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDF7 Registry Controller] 2011-06-27 23:22 140136 ----a-w- c:\program files\Nuance\PDF Create 7\RegistryController.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PDFCreHook] 2011-06-28 06:18 605032 ----a-w- c:\program files\Nuance\PDF Create 7\PdfCreate7Hook.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl] 2008-04-08 13:14 6037504 ----a-w- c:\windows\RtHDVCpl.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skytel] 2007-11-20 16:15 1826816 ----a-w- c:\windows\SkyTel.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SmoothView] 2008-06-24 08:06 509816 ----a-w- c:\program files\TOSHIBA\SmoothView\SmoothView.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched] 2011-06-09 11:06 254696 ----a-w- c:\program files\Common Files\Java\Java Update\jusched.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SynTPEnh] 2007-12-06 16:12 1029416 ----a-w- c:\program files\Synaptics\SynTP\SynTPEnh.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe] 2011-09-21 16:32 273528 ----a-w- c:\program files\Real\RealPlayer\Update\realsched.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\topi] 2007-07-10 07:24 581632 ----a-w- c:\program files\TOSHIBA\Toshiba Online Product Information\TOPI.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Toshiba Registration] 2008-01-11 02:07 574864 ----a-w- c:\program files\TOSHIBA\Registration\ToshibaRegistration.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Toshiba TEMPO] 2008-04-24 08:22 103824 ----a-w- c:\program files\Toshiba TEMPRO\Toshiba.Tempo.UI.TrayApplication.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TPwrMain] 2008-01-17 14:27 431456 ----a-w- c:\program files\TOSHIBA\Power Saver\TPwrMain.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender] 2008-01-21 02:33 1008184 ----a-w- c:\program files\Windows Defender\MSASCui.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WMPNSCFG] 2008-01-21 02:35 202240 ----a-w- c:\program files\Windows Media Player\wmpnscfg.exe . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\McAfeeAntiSpyware] "DisableMonitoring"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Svc] "FirewallOverride"=dword:00000001 . R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384] R3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [2011-01-29 20032] R3 jswpsapi;Jumpstart Wifi Protected Setup;c:\program files\Jumpstart\jswpsapi.exe [2008-04-16 954368] R3 maconfservice;Ma-Config Service;c:\program files\ma-config.com\maconfservice.exe [2011-08-08 311928] R3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\DRIVERS\ssadbus.sys [2011-07-20 121064] R3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\DRIVERS\ssadmdfl.sys [2011-07-20 12776] R3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\DRIVERS\ssadmdm.sys [2011-07-20 136808] R3 WPFFontCache_v0400;Cache de police de Windows Presentation Foundation 4.0.0.0;c:\windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2010-03-18 753504] S0 sptd;sptd;c:\windows\System32\Drivers\sptd.sys [2010-11-02 691696] S1 afw;Agnitum Firewall Driver;c:\windows\system32\DRIVERS\afw.sys [2009-02-18 29208] S1 aswSnx;aswSnx; [x] S1 aswSP;aswSP; [x] S1 jswpslwf;JumpStart Wireless Filter Driver;c:\windows\system32\DRIVERS\jswpslwf.sys [2008-04-28 20384] S1 SandBox;SandBox;c:\windows\system32\drivers\SandBox.sys [2009-04-06 704384] S2 acssrv;Agnitum Client Security Service;c:\progra~1\Agnitum\OUTPOS~1\acs.exe [2009-04-28 1195008] S2 AdobeActiveFileMonitor9.0;Adobe Active File Monitor V9;c:\program files\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe [2010-09-30 169408] S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952] S2 aswFsBlk;aswFsBlk; [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2011-09-06 54616] S2 ConfigFree Service;ConfigFree Service;c:\program files\TOSHIBA\ConfigFree\CFSvcs.exe [2008-04-16 40960] S2 FsUsbExService;FsUsbExService;c:\windows\system32\FsUsbExService.Exe [2010-05-28 233472] S2 GladFileMonSvc;GladFileMonSvc;c:\program files\Nuance\Nuance Cloud Connector\GladFileMonSvc.exe [2011-07-26 29552] S2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;c:\program files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-05-20 13592] S2 NAUpdate;Nero Update;c:\program files\Nero\Update\NASvc.exe [2010-03-25 490280] S2 TempoMonitoringService;Notebook Performance Tuning Service ;c:\program files\Toshiba TEMPRO\TempoSVC.exe [2008-04-24 99720] S2 TOSHIBA SMART Log Service;TOSHIBA SMART Log Service;c:\program files\TOSHIBA\SMARTLogService\TosIPCSrv.exe [2008-02-06 126976] S3 afwcore;afwcore;c:\windows\system32\drivers\afwcore.sys [2009-02-10 307224] S3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.SYS [2010-09-15 36640] S3 FwLnk;FwLnk Driver;c:\windows\system32\DRIVERS\FwLnk.sys [2006-11-20 7168] S3 pcouffin;VSO Software pcouffin;c:\windows\system32\Drivers\pcouffin.sys [2011-01-24 47360] S3 SmartFaceVWatchSrv;SmartFaceVWatchSrv;c:\program files\TOSHIBA\SmartFaceV\SmartFaceVWatchSrv.exe [2008-08-25 77824] . . --- Autres Services/Pilotes en mémoire --- . *NewlyCreated* - FSUSBEXDISK . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] LocalServiceNoNetwork REG_MULTI_SZ PLA DPS BFE mpssvc LocalServiceAndNoImpersonation REG_MULTI_SZ FontCache HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12 hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc . Contenu du dossier 'Tâches planifiées' . . ------- Examen supplémentaire ------- . uStart Page = hxxp://www.google.fr/ mStart Page = hxxp://www.google.com/ig/redirectdomain?brand=TSEA&bmod=TSEA IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000 TCP: DhcpNameServer = 212.27.40.241 212.27.40.240 FF - ProfilePath - c:\users\Aurélien\AppData\Roaming\Mozilla\Firefox\Profiles\7xexbup5.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.yahoo.fr . - - - - ORPHELINS SUPPRIMES - - - - . MSConfigStartUp-cfFncEnabler - cfFncEnabler.exe MSConfigStartUp-NDSTray - NDSTray.exe MSConfigStartUp-OpAgent - OpAgent.exe AddRemove-01_Simmental - c:\program files\Samsung\USB Drivers\01_Simmental\Uninstall.exe AddRemove-02_Siberian - c:\program files\Samsung\USB Drivers\02_Siberian\Uninstall.exe AddRemove-03_Swallowtail - c:\program files\Samsung\USB Drivers\03_Swallowtail\Uninstall.exe AddRemove-04_semseyite - c:\program files\Samsung\USB Drivers\04_semseyite\Uninstall.exe AddRemove-05_Sloan - c:\program files\Samsung\USB Drivers\05_Sloan\Uninstall.exe AddRemove-06_Spencer - c:\program files\Samsung\USB Drivers\06_Spencer\Uninstall.exe AddRemove-07_Schorl - c:\program files\Samsung\USB Drivers\07_Schorl\Uninstall.exe AddRemove-08_EMPChipset - c:\program files\Samsung\USB Drivers\08_EMPChipset\Uninstall.exe AddRemove-09_Hsp - c:\program files\Samsung\USB Drivers\09_Hsp\Uninstall.exe AddRemove-11_HSP_Plus_Default - c:\program files\Samsung\USB Drivers\11_HSP_Plus_Default\Uninstall.exe AddRemove-16_Shrewsbury - c:\program files\Samsung\USB Drivers\16_Shrewsbury\Uninstall.exe AddRemove-17_EMP_Chipset2 - c:\program files\Samsung\USB Drivers\17_EMP_Chipset2\Uninstall.exe AddRemove-18_Zinia_Serial_Driver - c:\program files\Samsung\USB Drivers\18_Zinia_Serial_Driver\Uninstall.exe AddRemove-19_VIA_driver - c:\program files\Samsung\USB Drivers\19_VIA_driver\Uninstall.exe AddRemove-20_NXP_Driver - c:\program files\Samsung\USB Drivers\20_NXP_Driver\Uninstall.exe AddRemove-22_WiBro_WiMAX - c:\program files\Samsung\USB Drivers\22_WiBro_WiMAX\Uninstall.exe AddRemove-24_flashusbdriver - c:\program files\Samsung\USB Drivers\24_flashusbdriver\Uninstall.exe AddRemove-25_escape - c:\program files\Samsung\USB Drivers\25_escape\Uninstall.exe . . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, GMER - Rootkit Detector and Remover Rootkit scan 2011-10-18 17:39 Windows 6.0.6002 Service Pack 2 NTFS . Recherche de processus cachés ... . Recherche d'éléments en démarrage automatique cachés ... . Recherche de fichiers cachés ... . Scan terminé avec succès Fichiers cachés: 0 . ************************************************************************** . --------------------- CLES DE REGISTRE BLOQUEES --------------------- . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . Heure de fin: 2011-10-18 17:52:20 ComboFix-quarantined-files.txt 2011-10-18 15:52 . Avant-CF: 35 040 755 712 octets libres Après-CF: 36 258 013 184 octets libres . - - End Of File - - CF85EA40F3A42A41931D9133EE68355E
  7. Bonjour merci pour la réponse. J'ai donc fait ce que vous m'avez demandé et voici le rapport Rapport de ZHPFix 1.12.3363 par Nicolas Coolman, Update du 05/10/2011 Fichier d'export Registre : Run by Aurélien at 18/10/2011 11:02:38 Windows Vista Home Basic Edition, 32-bit Service Pack 2 (Build 6002) Web site : ZHPFix Fix de rapport ========== Logiciel(s) ========== ABSENT Uninstall Process: c:\program files\utorrent\utorrent.exe ========== Clé(s) du Registre ========== SUPPRIME Key: HKLM\Software\eRightSoft\OpenCandy ABSENT Key: HKCU\Software\BitTorrent ABSENT Key: Service: gpsvc SUPPRIME CLSID MPSK: {4fef568d-bf53-11df-a118-001e33b9bdc6} SUPPRIME CLSID MPSK: {68ab63bf-471e-11e0-aa02-001e33b9bdc6} SUPPRIME CLSID MPSK: {8661637e-d79b-11df-a636-001e33b9bdc6} SUPPRIME CLSID MPSK: {f949ebbb-118b-11e0-be73-001e33b9bdc6} ========== Valeur(s) du Registre ========== ABSENT Value Key: FirewallOverride SUPPRIME {2323F980-8A3E-4119-9CE3-CCB636E20926} SUPPRIME {9C924343-2BCB-4480-AE21-7E251765203A} SUPPRIME MWPS Value: FilterAdministratorToken SUPPRIME MWPS Value: EnableUIADesktopToggle SUPPRIME MWPS Value: EnableLinkedConnections ABSENT RunValue: OutpostFeedBack SUPPRIME TDSD Value: xvidvfw.dll ========== Elément(s) de donnée du Registre ========== SUPPRIME R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy ========== Dossier(s) ========== SUPPRIME Folder: C:\Users\Aurélien\AppData\Roaming\OpenCandy SUPPRIME Folder: C:\Users\Aurélien\AppData\Local\OpenCandy ABSENT C:\Program Files\uTorrent SUPPRIME Folder: C:\Users\Aurélien\AppData\Roaming\uTorrent SUPPRIME Folder: C:\ProgramData\regid.1986-12.com.adobe SUPPRIME Folder: C:\Users\Aurélien\AppData\Local\{3B190873-D87B-489C-B54F-9E284A0BE6CB} SUPPRIME Folder: C:\Users\Aurélien\AppData\Local\{3FEB553B-A0B1-4A39-A86D-FACA725519AB} SUPPRIME Folder: C:\Users\Aurélien\AppData\Local\{46CFA0A8-A4EE-4CFF-BD6B-E8332A6D30C8} SUPPRIME Folder: C:\Users\Aurélien\AppData\Local\{96F4F260-085F-4803-ACBA-BB4DE35AEDFF} SUPPRIME Folder: C:\Users\Aurélien\AppData\Local\{B02C2332-11C0-4267-B1CB-60E7EA9A7C00} SUPPRIME Temporaires Windows: : 113 SUPPRIME Flash Cookies: 7 ========== Fichier(s) ========== ABSENT Folder/File: c:\users\aurélien\appdata\roaming\opencandy ABSENT Folder/File: c:\users\aurélien\appdata\local\opencandy ABSENT File: c:\users\aurélien\appdata\roaming\microsoft\internet explorer\quick launch\µtorrent.lnk SUPPRIME Reboot c:\program files\utorrent\utorrent.exe ABSENT Folder/File: c:\program files\utorrent\utorrent.exe 064] ABSENT Folder/File: c:\users\aurélien\appdata\roaming\mozilla\firefox\profiles\7xexbup5.default\user.js (.not file.) SUPPRIME Temporaires Windows: : 190 SUPPRIME Flash Cookies: 4 ========== Récapitulatif ========== 7 : Clé(s) du Registre 8 : Valeur(s) du Registre 1 : Elément(s) de donnée du Registre 12 : Dossier(s) 8 : Fichier(s) 1 : Logiciel(s) End of clean in 00mn 20s ========== Chemin de fichier rapport ========== C:\ZHP\ZHPFix[R1].txt - 18/10/2011 11:02:38 [2975]
  8. Bonjour J'aurais besoin d'aide pour une désinfection totale de mon ordi portable Je mets un lien vers d'autres messages sur le forum pour voir toute l'aide qui m'a déjà était apportée. http://forum.zebulon.fr/findpost-t188035-p1578117.html Je vous mets aussi le lien vers le rapport ZHPdiag Cijoint.fr - Service gratuit de dépôt de fichiers Merci
  9. Bonjour Tonton -Je ne comprends pas pourquoi tu me dis un seul antivirus et pare-feu car je n'en n'ai qu'un: avast et outpost... -Java me dit que j'ai la dernière version installée -Peux-tu me dire quelle toolbars sont installées et comment les supprimer car justement je fais attention à ne pas en installer quand j'installe un programme -Quels sont les programmes que tu me conseilles de désactiver au démarrage? (j'ai peur de faire une bêtise) Merci pour toute ton aide, je vais donc suivre tes conseils et ouvrir un nouveau sujet
  10. bonsoir Tonton voici le lien avec le rapport Cijoint.fr - Service gratuit de dépôt de fichiers Merci
  11. Bonjour Tonton Je reviens vers toi car depuis je pensais le problème résolu mais ce n'est pas le cas, le problème persiste, ça n'a rien changé. Que me proposes-tu de faire? une autre idée d'où cela pourrait venir? Merci
  12. Bonjour Tonton, j'ai donc suivi et appliqué tous tes conseils je te dirai si mon ordi a tjs le problème de non reconnaissance du disque dur lors de certains démarrages. Merci beaucoup
  13. Bonjour Pour les logiciels je vais les mettre à jour même si je ne les utilise pas beaucoup. Crystal Disk Info me dit que la santé est correcte et que la température est de 37°C Pour l'image dis moi si c'est bon: Merci
  14. C'est bizarre pour l'histoire de la sidebar car elle est déjà désactivée. Je l'ai donc réactivé et désactivé à nouveau. Voici pour le log du checkup: Results of screen317's Security Check version 0.99.18 Windows Vista Service Pack 2 (UAC is enabled) Internet Explorer 8 `````````````````````````````` Antivirus/Firewall Check: avast! Free Antivirus Outpost Firewall 2009 WMI entry may not exist for antivirus; attempting automatic update. ``````````````````````````````` Anti-malware/Other Utilities Check: CCleaner Java 6 Update 24 Java 6 Update 6 Out of date Java installed! Adobe Flash Player 10.3.183.5 Adobe Reader X (KB403742..) Adobe Reader Out of Date! Mozilla Firefox (3.6.22) Firefox Out of Date! ```````````````````````````````` Process Check: objlist.exe by Laurent Windows Defender MSASCui.exe Windows Defender MSASCui.exe Aurélien AppData Local Google\Chrome\Application\AvastSvc.exe -?- Alwil Software Avast5 AvastUI.exe ``````````End of Log```````````` Voici pour l'image de crystaldiskinfo: Je ne sais pas comment poster l'image sur le forum??? Le portable est un TOSHIBA Satellite L300-245 System Unit Model: PSLB8E-0TM029FR Merci
×
×
  • Créer...