Aller au contenu
  • Pas encore inscrit ?

    Pourquoi ne pas vous inscrire ? C'est simple, rapide et gratuit.
    Pour en savoir plus, lisez Les avantages de l'inscription... et la Charte de Zébulon.
    De plus, les messages que vous postez en tant qu'invité restent invisibles tant qu'un modérateur ne les a pas validés. Inscrivez-vous, ce sera un gain de temps pour tout le monde, vous, les helpeurs et les modérateurs ! :wink:

Messages recommandés

Posté(e)

Bonsoir messieurs....J'ai été convié à m'adresser à vous suite à mon problème réseau ^^

 

en réalité j'ai 2 intrus détecté je vous les présente brièvement :

 

Win32:Obfuscated-BPP [Trj]

 

Win32:Adware-gen [Adw]

 

 

Inutile de vous dire que ma petite ligne maginot n'a encore pas fait le poids.

Avast et Bitdefender voila mes mini remparts...

 

J'ai des scans Hitjackthis mais je dois les refaire.

Cause absence de SP2 je crois que ça joue un peu ça ^^

Posté(e) (modifié)

Salut

Tu parles de Avast et Bitdefender.....le BitDefender,est ce la version gratuite sans la protection résidente??

....si tu as le BitDefender version payante,alors il y a un antivirus de trop.......et Avast est selon moi de trop :P

Si tu as le BitDefender version gratuite alors tu peux le garder car il n'interfère pas avec un antivirus X ou Y avec protection en temps réel.....

et dans le même sens que Wizard42 ,voila pourquoi je te suggère Antivir au lieu de Avast (si ton BitDefender est le gratos...autrement garde le payant...à moins que ta licence soit échue ou presqu'a renouveler)

http://tutopat.hostonet.org/viewtopic.php?t=2417

http://www.malekal.com/tutorial_antivir.html

(idéalement de stopper les processus Avast antivirus avant la suppression par ajout /Supp de prog.

voici selon moi des processus Avast antivirus a stopper par le gestionnaire de taches, avant la suppression de Avast antivirus...

AshDisp.exe

-Asmaisv.exe

-ashserv.exe

-ashwebsv.exe

 

 

-aawservice.exe

-aswupdsv.exe

en cas de problème lors de la désinstallation

http://www.avast.com/fre/avast-uninstall-utility.html

suite à cela,il serait bon de savoir si tu as un logiciel antispyware???

antispyware

Tutoriel 1

Tutoriel 2

et de faire des vérifications en mode sans échec (soit patient ...parfois le démarrage/fermeture est beaucoup plus long...et l'affichage sera altéré...c'est normal...ça reviendra suite à un redémarrage)

http://www.malekal.com/modesansechec.php

une fois tout ça passé...

un rapport serait bienvenue

http://telechargement.zebulon.fr/hijackthis.html

 

@+

Modifié par Zonk
Posté(e)

j'ai pas de version payante :s

 

Sinon j'ai les moyens d'avoir norton 2007 :P

mais Norton reste Norton = petite vitesse et grosse lenteur...

 

Et autres détails, je ne vais pas sur des sites bizarres je dl que de la musique ><

 

euh avant de dl votre bazar j'ai un petit souci stupide mais si je supprime avast

il va me libérer ce qu'il a en quarantaine ?

Comment on supprime ce qui est en quarantaine ?

 

...Voila je suis un gros noob je sais mais dsl :s

Posté(e) (modifié)
j'ai pas de version payante :s

 

Sinon j'ai les moyens d'avoir norton 2007 :P

mais Norton reste Norton = petite vitesse et grosse lenteur...

 

Et autres détails, je ne vais pas sur des sites bizarres je dl que de la musique ><

 

euh avant de dl votre bazar j'ai un petit souci stupide mais si je supprime avast

il va me libérer ce qu'il a en quarantaine ?

Comment on supprime ce qui est en quarantaine ?

 

...Voila je suis un gros noob je sais mais dsl :s

Pour ce qui est des antivirus non payants,y a pas de problèmes.....je ne te soupçonne pas de piratage mais tu dois être certain que le BitDefender est réellement la version sans protection résidente et non le BitDefender payant que tu as gratuitement..........si il n'a pas de résident tu peux garder BitDefender comme renfort......(tu peux aller dans le gestionnaire de taches et regarder si il ya des services se reliant à BitDefender...si oui alors retourne lire mon message #3)

Norton a des défauts....mais pas que des défauts..je l'utilise et rien à redire :P

........en supprimant Avast il ne devrait pas te libérer quoi que ce soit...mais va dans la quarantaine ...fait un tour et tu verras sûrement quelque chose te permettant de supprimer celle-ci avant de supprimer Avast.....

...pour ce qui est de noob,dit toi que l'on est probablement tous le noob de quelqu'un d'autre.....on ne peut pas tout savoir.....

ceux qui disent tout savoir se prennent souvent pour Dieu et on souvent une camisole de force ..............

va lire ceci

http://forum.zebulon.fr/index.php?showtopic=85544

@+

Modifié par Zonk
Posté(e)

non je crois que je suis en bas de la noob attitude ^^

 

Alors voila le scan antivir...

Les 93 choses dangereuses j'aimerais savoir ce que je peux faire pour les éliminer ^^

 

AntiVir PersonalEdition Classic

Report file date: mercredi 7 novembre 2007 17:55

 

Scanning for 921220 virus strains and unwanted programs.

 

Licensed to: Avira AntiVir PersonalEdition Classic

Serial number: 0000149996-ADJIE-0001

Platform: Windows XP

Windows version: (Service Pack 2) [5.1.2600]

Username: Laurent

Computer name: LAURENTBOT

 

Version information:

BUILD.DAT : 270 15603 Bytes 19/09/2007 13:32:00

AVSCAN.EXE : 7.0.6.1 290856 Bytes 23/08/2007 13:16:29

AVSCAN.DLL : 7.0.6.0 49192 Bytes 16/08/2007 12:23:51

LUKE.DLL : 7.0.5.3 147496 Bytes 14/08/2007 15:32:47

LUKERES.DLL : 7.0.6.1 10280 Bytes 21/08/2007 12:35:20

ANTIVIR0.VDF : 6.40.0.0 11030528 Bytes 18/07/2007 14:27:15

ANTIVIR1.VDF : 7.0.0.0 1640448 Bytes 13/09/2007 14:26:55

ANTIVIR2.VDF : 7.0.0.172 1092608 Bytes 05/11/2007 16:46:08

ANTIVIR3.VDF : 7.0.0.184 69632 Bytes 07/11/2007 16:46:08

AVEWIN32.DLL : 7.6.0.34 3125760 Bytes 07/11/2007 16:46:10

AVWINLL.DLL : 1.0.0.7 14376 Bytes 26/02/2007 10:36:26

AVPREF.DLL : 7.0.2.2 25640 Bytes 18/07/2007 07:39:17

AVREP.DLL : 7.0.0.1 155688 Bytes 16/04/2007 13:16:24

AVPACK32.DLL : 7.3.0.15 360488 Bytes 03/08/2007 08:46:00

AVREG.DLL : 7.0.1.6 30760 Bytes 18/07/2007 07:17:06

AVARKT.DLL : 1.0.0.20 278568 Bytes 28/08/2007 12:26:33

AVEVTLOG.DLL : 7.0.0.20 86056 Bytes 18/07/2007 07:10:18

NETNT.DLL : 7.0.0.0 7720 Bytes 08/03/2007 11:09:42

RCIMAGE.DLL : 7.0.1.30 2342952 Bytes 07/08/2007 12:38:13

RCTEXT.DLL : 7.0.62.0 86056 Bytes 21/08/2007 12:50:37

SQLITE3.DLL : 3.3.17.1 339968 Bytes 23/07/2007 09:37:21

 

Configuration settings for the scan:

Jobname..........................: Manual Selection

Configuration file...............: C:\Documents and Settings\All Users\Application Data\Avira\AntiVir PersonalEdition Classic\PROFILES\folder.avp

Logging..........................: low

Primary action...................: interactive

Secondary action.................: ignore

Scan master boot sector..........: off

Scan boot sector.................: on

Boot sectors.....................: C:,

Scan memory......................: on

Process scan.....................: on

Scan registry....................: on

Search for rootkits..............: on

Scan all files...................: Intelligent file selection

Scan archives....................: on

Recursion depth..................: 20

Smart extensions.................: on

Macro heuristic..................: on

File heuristic...................: medium

 

Start of the scan: mercredi 7 novembre 2007 17:55

 

Starting search for hidden objects.

'49664' objects were checked, '0' hidden objects were found.

 

The scan of running processes will be started

Scan process 'avscan.exe' - '1' Module(s) have been scanned

Scan process 'avcenter.exe' - '1' Module(s) have been scanned

Scan process 'sched.exe' - '1' Module(s) have been scanned

Scan process 'avgnt.exe' - '1' Module(s) have been scanned

Scan process 'avguard.exe' - '1' Module(s) have been scanned

Scan process 'firefox.exe' - '1' Module(s) have been scanned

Scan process 'iPodService.exe' - '1' Module(s) have been scanned

Scan process 'alg.exe' - '1' Module(s) have been scanned

Scan process 'bdss.exe' - '1' Module(s) have been scanned

Scan process 'xcommsvr.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'CFSvcs.exe' - '1' Module(s) have been scanned

Scan process 'TrayMin200.exe' - '1' Module(s) have been scanned

Scan process 'msmsgs.exe' - '1' Module(s) have been scanned

Scan process 'msnmsgr.exe' - '1' Module(s) have been scanned

Scan process 'TOSCDSPD.exe' - '1' Module(s) have been scanned

Scan process 'ctfmon.exe' - '1' Module(s) have been scanned

Scan process 'E_S4I0S2.EXE' - '1' Module(s) have been scanned

Scan process 'iTunesHelper.exe' - '1' Module(s) have been scanned

Scan process 'TPSBattM.exe' - '1' Module(s) have been scanned

Scan process 'VM_STI.EXE' - '1' Module(s) have been scanned

Scan process 'WZCSLDR.exe' - '1' Module(s) have been scanned

Scan process 'AirPlusCFG.exe' - '1' Module(s) have been scanned

Scan process 'qttask.exe' - '1' Module(s) have been scanned

Scan process 'bdmcon.exe' - '1' Module(s) have been scanned

Scan process 'agrsmmsg.exe' - '1' Module(s) have been scanned

Scan process 'ltmoh.exe' - '1' Module(s) have been scanned

Scan process 'TFncKy.exe' - '1' Module(s) have been scanned

Scan process 'PadExe.exe' - '1' Module(s) have been scanned

Scan process 'SmoothView.exe' - '1' Module(s) have been scanned

Scan process 'THotkey.exe' - '1' Module(s) have been scanned

Scan process 'SynTPEnh.exe' - '1' Module(s) have been scanned

Scan process 'SynTPLpr.exe' - '1' Module(s) have been scanned

Scan process 'atiptaxx.exe' - '1' Module(s) have been scanned

Scan process 'explorer.exe' - '1' Module(s) have been scanned

Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned

Scan process 'spoolsv.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'svchost.exe' - '1' Module(s) have been scanned

Scan process 'ati2evxx.exe' - '1' Module(s) have been scanned

Scan process 'lsass.exe' - '1' Module(s) have been scanned

Scan process 'services.exe' - '1' Module(s) have been scanned

Scan process 'winlogon.exe' - '1' Module(s) have been scanned

Scan process 'csrss.exe' - '1' Module(s) have been scanned

Scan process 'smss.exe' - '1' Module(s) have been scanned

48 processes with 48 modules were scanned

 

Start scanning boot sectors:

Boot sector 'C:\'

[NOTE] No virus was found!

 

Starting to scan the registry.

The registry was scanned ( '44' files ).

 

 

Starting the file scan:

 

Begin scan in 'C:\'

C:\pagefile.sys

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB822624$\hal.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB824141$\user32.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB824141$\win32k.sys

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\accwiz.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\crypt32.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\cryptsvc.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\hh.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\hhsetup.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\itss.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\locator.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\magnify.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\migwiz.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\mrxsmb.sys

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\msconv97.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\narrator.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\newdev.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\ntdll.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\ole32.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\osk.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\pchshell.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\raspptp.sys

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\rpcrt4.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\rpcss.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\shell32.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\shmedia.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\srrstr.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\srv.sys

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\winsrv.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB826939$\zipfldr.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828012$\ntkrnlmp.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828012$\ntkrnlpa.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828012$\ntkrpamp.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828012$\ntoskrnl.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828028$\msasn1.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828035$\msgsvc.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828035$\wkssvc.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\catsrv.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\catsrvut.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\clbcatex.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\clbcatq.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\colbact.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\comadmin.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\comrepl.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\comsvcs.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\comuid.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\es.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\migregdb.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\msdtcprx.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\msdtctm.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\msdtcuiu.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\mtxclu.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\mtxoci.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\ole32.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\rpcrt4.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\rpcss.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB828741$\txflog.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB830680$\keymgr.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\callcont.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\gdi32.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\h323msp.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\helpctr.exe

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\ipnathlp.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\lsasrv.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\mf3216.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\msasn1.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\msgina.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\mst120.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\netapi32.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\nmcom.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\rtcdll.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB835732$\schannel.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\dao360.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\expsrv.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\msexch40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\msexcl40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\msjet40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\msjetol1.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\msjetoledb40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\msjint40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\msjter40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\msjtes40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\msltus40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\mspbde40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\msrd2x40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\msrd3x40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\msrepl40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\mstext40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\mswdat10.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\mswstr10.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\msxbde40.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallKB837001$\vbajet32.dll

[WARNING] The file could not be opened!

C:\WINDOWS\$NtUninstallQ828026$\wmp.dll

[WARNING] The file could not be opened!

 

 

End of the scan: mercredi 7 novembre 2007 19:07

Used time: 1:11:54 min

 

The scan has been done completely.

 

4715 Scanning directories

165754 Files were scanned

0 viruses and/or unwanted programs were found

0 Files were classified as suspicious:

0 files were deleted

0 files were repaired

0 files were moved to quarantine

0 files were renamed

93 Files cannot be scanned

165754 Files not concerned

8277 Archives were scanned

93 Warnings

0 Notes

49664 Objects were scanned with rootkit scan

0 Hidden objects were found

Posté(e) (modifié)

ne t'en fait pas.....ces "warnings" sont normalement sans danger.......y a juste le nombre que je trouve très élevé....(selon ce que j'ai ici tout les antivirus agissent de la même facon face à ces fichiers protégés...sauf que Antivir lui le signe)

je vais faire des recherches pour te démontrer que les "Warnings" sont sans danger...

@+Laurent !

édit: voici

http://forum.zebulon.fr/index.php?showtopic=99887

Modifié par Zonk
Posté(e)
OK MERCI ^^

bon je redémmare en mode sans echec...après je prie pour qu'aucun plantage existe et enfin je répare les problèmes de connexion ^^

Quand ces étapes de bases seront finies alors les connaisseurs pourront continuer le travail.....en sans échec tu auras normalement beaucoup moins de "warnings"...et profite en pour passer tes autres logiciels antipestes en mode sans échec...

@+

Posté(e) (modifié)

VOila pour Hijackthis

 

 

 

Logfile of HijackThis v1.99.1

Scan saved at 20:09:14, on 07/11/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\Documents and Settings\Laurent\Bureau\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe

O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe

O4 - HKLM\..\Run: [synTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe

O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [TPSMain] TPSMain.exe

O4 - HKLM\..\Run: [THotkey] C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe

O4 - HKLM\..\Run: [smoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe

O4 - HKLM\..\Run: [PadTouch] "C:\Program Files\TOSHIBA\PadTouch\PadExe.exe

O4 - HKLM\..\Run: [TFncKy] TFncKy.exe

O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe

O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe

O4 - HKLM\..\Run: [bDMCon] C:\Program Files\Softwin\BitDefender Free Edition\\bdmcon.exe

O4 - HKLM\..\Run: [bDNewsAgent] C:\Program Files\Softwin\BitDefender Free Edition\\bdnagent.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [D-Link AirPlus Xtreme G] C:\Program Files\D-Link\AirPlus Xtreme G\AirPlusCFG.exe

O4 - HKLM\..\Run: [ANIWZCSService] C:\Program Files\Alpha Networks\ANIWZCS Service\WZCSLDR.exe

O4 - HKLM\..\Run: [bigDogPath] C:\WINDOWS\VM_STI.EXE Philips SPC 200NC PC Camera

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [EPSON Stylus C66 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0S2.EXE /P23 "EPSON Stylus C66 Series" /O6 "USB001" /M "Stylus C66"

O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe

O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background

O4 - HKCU\..\Run: [blueway] C:\DOCUME~1\Laurent\APPLIC~1\THIRDF~1\barb free.exe

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\MSMSGS.EXE" /background

O4 - Global Startup: TrayMin300.exe.lnk = ?

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab56986.cab

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab

O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe

O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe

O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe

O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe

O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe

O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: BitDefender Communicator (XCOMM) - Softwin - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe

 

 

j'ai plus de antipeste à part la version gratuite de bitdefender et le antivir...qui dure 2h je vais faire de la place avant de le relancer c'est trop long ><

 

euh j'ai mis mode sans échec avec prise en charge réseau ...c'est normal l'écran tout moche mais vraiment tout moche :s

 

VOila pour Hijackthis

 

 

 

Logfile of HijackThis v1.99.1

Scan saved at 20:09:14, on 07/11/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

 

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\Explorer.EXE

C:\Documents and Settings\Laurent\Bureau\HijackThis.exe

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)

O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll

O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe

O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe

O4 - HKLM\..\Run: [synTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe

O4 - HKLM\..\Run: [synTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

O4 - HKLM\..\Run: [TPSMain] TPSMain.exe

O4 - HKLM\..\Run: [THotkey] C:\Program Files\Toshiba\Toshiba Applet\thotkey.exe

O4 - HKLM\..\Run: [smoothView] C:\Program Files\TOSHIBA\Utilitaire de zoom TOSHIBA\SmoothView.exe

O4 - HKLM\..\Run: [PadTouch] "C:\Program Files\TOSHIBA\PadTouch\PadExe.exe

O4 - HKLM\..\Run: [TFncKy] TFncKy.exe

O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe

O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe

O4 - HKLM\..\Run: [bDMCon] C:\Program Files\Softwin\BitDefender Free Edition\\bdmcon.exe

O4 - HKLM\..\Run: [bDNewsAgent] C:\Program Files\Softwin\BitDefender Free Edition\\bdnagent.exe

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [D-Link AirPlus Xtreme G] C:\Program Files\D-Link\AirPlus Xtreme G\AirPlusCFG.exe

O4 - HKLM\..\Run: [ANIWZCSService] C:\Program Files\Alpha Networks\ANIWZCS Service\WZCSLDR.exe

O4 - HKLM\..\Run: [bigDogPath] C:\WINDOWS\VM_STI.EXE Philips SPC 200NC PC Camera

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"

O4 - HKLM\..\Run: [EPSON Stylus C66 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I0S2.EXE /P23 "EPSON Stylus C66 Series" /O6 "USB001" /M "Stylus C66"

O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min

O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe

O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe

O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background

O4 - HKCU\..\Run: [blueway] C:\DOCUME~1\Laurent\APPLIC~1\THIRDF~1\barb free.exe

O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\MSMSGS.EXE" /background

O4 - Global Startup: TrayMin300.exe.lnk = ?

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll

O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_04\bin\npjpi142_04.dll

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab56986.cab

O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab

O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab56986.cab

O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL

O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe

O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe

O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe

O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe

O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe

O23 - Service: Service de l'iPod (iPod Service) - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe

O23 - Service: BitDefender Communicator (XCOMM) - Softwin - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe

O23 - Service: ConfigFree Service

 

(CFSvcs) - TOSHIBA CORPORATION -

 

C:\Program

 

Files\TOSHIBA\ConfigFree\CFSvcs.exe

O23 - Service: Service de l'iPod

 

(iPod Service) - Apple Inc. -

 

C:\Program

 

Files\iPod\bin\iPodService.exe

O23 - Service: BitDefender

 

Communicator (XCOMM) - Softwin -

 

C:\Program Files\Fichiers

 

communs\Softwin\BitDefender

 

Communicator\xcommsvr.exe

 

 

j'ai plus de antipeste à part la version gratuite de bitdefender et le antivir...qui dure 2h je vais faire de la place avant de le relancer c'est trop long ><

 

euh j'ai mis mode sans échec avec prise en charge réseau ...c'est normal l'écran tout moche mais vraiment tout moche :s

Modifié par -_-'

Rejoindre la conversation

Vous pouvez publier maintenant et vous inscrire plus tard. Si vous avez un compte, connectez-vous maintenant pour publier avec votre compte.
Remarque : votre message nécessitera l’approbation d’un modérateur avant de pouvoir être visible.

Invité
Répondre à ce sujet…

×   Collé en tant que texte enrichi.   Coller en tant que texte brut à la place

  Seulement 75 émoticônes maximum sont autorisées.

×   Votre lien a été automatiquement intégré.   Afficher plutôt comme un lien

×   Votre contenu précédent a été rétabli.   Vider l’éditeur

×   Vous ne pouvez pas directement coller des images. Envoyez-les depuis votre ordinateur ou insérez-les depuis une URL.

  • En ligne récemment   0 membre est en ligne

    • Aucun utilisateur enregistré regarde cette page.
×
×
  • Créer...