Fenêtre pop-ups arrivant tout le temps

Fermé
Hardslider - 7 janv. 2009 à 20:02
 Utilisateur anonyme - 11 janv. 2009 à 22:10
Bonjour,
Donc comme j'ai énoncé dans le titre j'ai des fenêtres de pub qui s'ouvrent sans cesse et plus particulièrement lorsque je suis sur le net et ça ne veux plus aller sur des sites desfois, je suis actuellement sur mozilla firefox. J'ai désinstallé et réinstallé plusieurs fois Mozilla Firefox mais sans succès. J'ai aussi fait un scan total de mon pc avec avast et mis en quarantaine les virus mais cela n'arrange rien. Donc je vous envoie mon scan hijackthis:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:52:30, on 07/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\3Com\3Com OfficeConnect Wireless Utility\3Com Wireless 11g XJACK PC Card\WLService.exe
C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe
C:\Program Files\3Com\3Com OfficeConnect Wireless Utility\3Com Wireless 11g XJACK PC Card\WLanCfgAG.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Binn\sqlservr.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\system32\ICO.EXE
C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
C:\Program Files\Sony\ISB Utility\ISBMgr.exe
C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe
C:\Program Files\Utimaco\SafeGuard PrivateDisk\pdservice.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\HP\HP Software Update\HPWuSchd.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
C:\Program Files\HP\Digital Imaging\Promotions\HPpromo.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Veoh Networks\Veoh\VeohClient.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\Macromed\Shockwave 10\PostUpdate.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Pierre BELIN\Bureau\HiJackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/?p=us
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/?p=us
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: {1A03F196-9617-4CA0-842B-A83CEECB022B} - - (no file)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.1.3.19.dll
O2 - BHO: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~2\MEGAUP~1.DLL (file missing)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: (no name) - {8e280733-1d3b-4fb1-953f-1a84f890912c} - C:\WINDOWS\system32\tazamuto.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: (no name) - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - (no file)
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~2\MEGAUP~1.DLL (file missing)
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [Mouse Suite 98 Daemon] ICO.EXE
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SonyPowerCfg] C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
O4 - HKLM\..\Run: [ISBMgr.exe] C:\Program Files\Sony\ISB Utility\ISBMgr.exe
O4 - HKLM\..\Run: [VAIO Update 2] "C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe" /Stationary
O4 - HKLM\..\Run: [PDService.exe] C:\Program Files\Utimaco\SafeGuard PrivateDisk\pdservice.exe
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [HPpromo psc 2400 series] "C:\Program Files\HP\Digital Imaging\Promotions\HPpromo.exe" /N "psc 2400 series" -r
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [WebcamMax] "C:\Program Files\WebcamMax\WebcamMax.exe" /autorun
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [sodokimipu] Rundll32.exe "C:\WINDOWS\system32\pupepume.dll",s
O4 - HKLM\..\Run: [CPM5796bdc3] Rundll32.exe "c:\windows\system32\dayoyadu.dll",a
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [road draw] C:\DOCUME~1\PIERRE~1\APPLIC~1\FORDER~1\DVD OPTION START.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
O4 - HKCU\..\RunOnce: [SWHelper] "C:\WINDOWS\system32\Macromed\Shockwave 10\PostUpdate.exe" 1014020
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [sodokimipu] Rundll32.exe "C:\WINDOWS\system32\pupepume.dll",s (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Yahoo! Widget Engine.lnk = C:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Download all videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: Download Link Using Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Transfert par Image Converter 2 Plus - C:\Program Files\Sony\Image Converter 2\menu.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.club-vaio.com/fr/
O15 - Trusted Zone: *.sony-europe.com
O15 - Trusted Zone: *.sonystyle-europe.com
O15 - Trusted Zone: *.vaio-link.com
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{243D6C5C-5485-4F1E-839B-BC579CED3FFD}: NameServer = 192.168.1.1
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O20 - AppInit_DLLs: C:\WINDOWS\system32\tehomake.dll c:\windows\system32\makatizi.dll c:\windows\system32\dayoyadu.dll
O21 - SSODL: SSODL - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\makatizi.dll
O22 - SharedTaskScheduler: STS - {EC43E3FD-5C60-46a6-97D7-E0B85DBDD6C4} - c:\windows\system32\makatizi.dll
O23 - Service: 3COM Wireless LAN Service (3Com OfficeConnect Wireless 108Mbps 11g XJACK PC Card WLService) - Unknown owner - C:\Program Files\3Com\3Com OfficeConnect Wireless Utility\3Com Wireless 11g XJACK PC Card\WLService.exe
O23 - Service: Adobe Active File Monitor V4 (AdobeActiveFileMonitor4.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe
O23 - Service: VAIO Cooporated Initialisation (VCI) - Sony Corporation - C:\Program Files\Sony\VAIO Cooperated Initialisation\VCI_SVC.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
A voir également:

27 réponses

Utilisateur anonyme
11 janv. 2009 à 14:47
Re,

Redémarre ton pc et refait un log avec RSIT.

Merci
0
re, voici le log:

Logfile of random's system information tool 1.05 (written by random/random)
Run by Pierre BELIN at 2009-01-11 15:46:33
Microsoft Windows XP Édition familiale Service Pack 2
System drive C: has 10 GB (20%) free of 48 GB
Total RAM: 1022 MB (54% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:46:55, on 11/01/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\3Com\3Com OfficeConnect Wireless Utility\3Com Wireless 11g XJACK PC Card\WLService.exe
C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe
C:\Program Files\3Com\3Com OfficeConnect Wireless Utility\3Com Wireless 11g XJACK PC Card\WLanCfgAG.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\system32\ICO.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$VAIO_VEDB\Binn\sqlservr.exe
C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
C:\Program Files\Sony\ISB Utility\ISBMgr.exe
C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe
C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\HP\HP Software Update\HPWuSchd.exe
C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe
C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe
C:\Program Files\HP\Digital Imaging\Promotions\HPpromo.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
C:\Program Files\Fichiers communs\Teleca Shared\CapabilityManager.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
C:\Program Files\Veoh Networks\Veoh\VeohClient.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Fichiers communs\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Documents and Settings\Pierre BELIN\Bureau\RSIT.exe
C:\Documents and Settings\Pierre BELIN\Bureau\Pierre BELIN.exe
C:\Program Files\Mozilla Firefox\firefox.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/?p=us
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: {1A03F196-9617-4CA0-842B-A83CEECB022B} - - (no file)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.1.3.19.dll
O2 - BHO: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~2\MEGAUP~1.DLL (file missing)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: (no name) - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - (no file)
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
O3 - Toolbar: Megaupload Toolbar - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - C:\PROGRA~1\MEGAUP~2\MEGAUP~1.DLL (file missing)
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [AzMixerSel] C:\Program Files\Realtek\InstallShield\AzMixerSel.exe
O4 - HKLM\..\Run: [Mouse Suite 98 Daemon] ICO.EXE
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SonyPowerCfg] C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
O4 - HKLM\..\Run: [ISBMgr.exe] C:\Program Files\Sony\ISB Utility\ISBMgr.exe
O4 - HKLM\..\Run: [VAIO Update 2] "C:\Program Files\Sony\VAIO Update 2\VAIOUpdt.exe" /Stationary
O4 - HKLM\..\Run: [PDService.exe] C:\Program Files\Utimaco\SafeGuard PrivateDisk\pdservice.exe
O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Acrobat 7.0\Distillr\Acrotray.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Edition Découverte\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [HPpromo psc 2400 series] "C:\Program Files\HP\Digital Imaging\Promotions\HPpromo.exe" /N "psc 2400 series" -r
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [WebcamMax] "C:\Program Files\WebcamMax\WebcamMax.exe" /autorun
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - HKCU\..\Run: [road draw] C:\DOCUME~1\PIERRE~1\APPLIC~1\FORDER~1\DVD OPTION START.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [sodokimipu] Rundll32.exe "C:\WINDOWS\system32\pupepume.dll",s (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Yahoo! Widget Engine.lnk = C:\Program Files\Yahoo!\Yahoo! Widget Engine\YahooWidgetEngine.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Download all videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: Download Link Using Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Transfert par Image Converter 2 Plus - C:\Program Files\Sony\Image Converter 2\menu.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_05\bin\npjpi150_05.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://www.club-vaio.com/fr/
O15 - Trusted Zone: *.sony-europe.com
O15 - Trusted Zone: *.sonystyle-europe.com
O15 - Trusted Zone: *.vaio-link.com
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {BD393C14-72AD-4790-A095-76522973D6B8} (CBreakshotControl Class) - http://messenger.zone.msn.com/binary/Bankshot.cab31267.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{243D6C5C-5485-4F1E-839B-BC579CED3FFD}: NameServer = 192.168.1.1
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O20 - AppInit_DLLs: ,
O23 - Service: 3COM Wireless LAN Service (3Com OfficeConnect Wireless 108Mbps 11g XJACK PC Card WLService) - Unknown owner - C:\Program Files\3Com\3Com OfficeConnect Wireless Utility\3Com Wireless 11g XJACK PC Card\WLService.exe
O23 - Service: Adobe Active File Monitor V4 (AdobeActiveFileMonitor4.0) - Unknown owner - C:\Program Files\Adobe\Photoshop Elements 4.0\PhotoshopElementsFileAgent.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Ma-Config Service (maconfservice) - CybelSoft - C:\Program Files\ma-config.com\maconfservice.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe
O23 - Service: VAIO Cooporated Initialisation (VCI) - Sony Corporation - C:\Program Files\Sony\VAIO Cooperated Initialisation\VCI_SVC.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\Program Files\Fichiers communs\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
0
Utilisateur anonyme
11 janv. 2009 à 15:55
Re,

▶ Relance hijack et clique sur "Do a system scan only"

▶ Ensuite recherche ces lignes et coches les cases


O4 - HKCU\..\Run: [road draw] C:\DOCUME~1\PIERRE~1\APPLIC~1\FORDER~1\DVD OPTION START.exe

▶ Ensuite clique sur "Fix checked"
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
> Fais un scan en ligne avec Kaspersky : Kaspersky

N.B. : Le scan ne marche que sous Internet Explorer.

- Commence par connecter tout ton matériel de stockage à ton PC (clés USB, DD amovible...). Allume les si necessaire.

- Sous Démonstration en ligne, on t'explique la marche à suivre, et pour lancer le scan il faut sélectionner < Exécuter l'analyse en ligne >.

- On va te demander de télécharger un contrôle active x, accepte .

- Dans le menu < Choisissez la cible de l'analyse >, sélectionne < Poste de travail >. Le scan va commencer.

- Poste le rapport qui sera généré stp. (clique sur <enregistrer le rapport> puis sauvegarde-le sur ton bureau en choisissant "fichier texte (*.txt)" pour l'extension).
S'il y a un problème, assure toi que les contrôles active x sont bien configurés dans les options internet comme décrit sur ce lien : clic ici


Rappel : le scan est à faire sous Internet Explorer
Tuto ici si problème

NOTE : Si tu reçois le message "La licence de Kaspersky On-line Scanner est périmée", va dans Ajout/Suppression de programmes puis désinstalle On-Line Scanner, reconnecte toi sur le site de Kaspersky pour retenter le scan en ligne.
Pour le rapport Kaspersky il faut que tu choisisses "Afficher le rapport" puis que tu l'enregistres sur ton bureau sous forme de fichier texte (type de fichier "tous les fichiers").
0
re, j'ai fait le scan hijackthis et cela a marché par contre je n'arrive à rien avec kaspersky
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
11 janv. 2009 à 20:13
Re,

Télécharge Lop S&D


▶ Double-clique dessus pour lancer l'installation

▶ Puis double-clique sur le raccourci Lop S&D présent sur ton bureau

▶ Séléctionne la langue souhaitée

▶ Puis choisis l'Option 1 ( Recherche )

▶ Patiente jusqu'à la fin du scan

▶ Poste le rapport généré ( C:lopR.txt )

Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
0
re, voici le rapport

--------------------\\ Lop S&D 4.2.5-0 XP/Vista


"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 11/01/2009|20:54 )

--------------------\\ Listing des dossiers dans APPLIC~1

[24/04/2007|17:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[20/04/2006|11:03] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[28/03/2008|21:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CDTEST
[24/04/2007|17:45] C:\DOCUME~1\ALLUSE~1\APPLIC~1\espionServerData
[15/12/2008|08:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[21/11/2005|14:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Intel
[21/09/2008|11:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ma-config.com
[25/10/2006|21:12] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Macrovision
[08/01/2009|18:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[05/06/2006|08:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[07/05/2008|22:58] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[07/08/2008|11:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[26/06/2006|22:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\pixelStorm
[21/11/2005|12:16] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[04/08/2007|11:44] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Second Ante One Web
[09/02/2007|19:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[27/05/2006|21:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Softdisk LLC
[22/12/2005|21:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sony Corporation
[10/01/2007|18:43] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sony Ericsson
[31/01/2007|12:28] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[10/01/2007|18:42] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Teleca
[23/06/2008|22:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TrackMania
[22/12/2005|21:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\VAIO Media Platform
[18/07/2006|09:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[10/07/2007|11:13] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WindowsLiveInstaller
[15/03/2008|18:14] C:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller

[22/12/2005|21:18] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Adobe
[21/11/2005|11:49] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[10/07/2007|11:13] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[22/12/2005|21:11] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Sony Corporation
[21/11/2005|16:55] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec

[22/12/2005|21:18] C:\DOCUME~1\INVIT~1\APPLIC~1\Adobe
[21/11/2005|11:49] C:\DOCUME~1\INVIT~1\APPLIC~1\Identities
[30/06/2006|13:26] C:\DOCUME~1\INVIT~1\APPLIC~1\Macromedia
[21/11/2005|17:07] C:\DOCUME~1\INVIT~1\APPLIC~1\Microsoft
[22/12/2005|21:11] C:\DOCUME~1\INVIT~1\APPLIC~1\Sony Corporation
[21/11/2005|16:55] C:\DOCUME~1\INVIT~1\APPLIC~1\Symantec

[16/06/2006|05:19] C:\DOCUME~1\LOCALS~1\APPLIC~1\Macromedia
[21/11/2005|11:52] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[16/06/2006|05:19] C:\DOCUME~1\LOCALS~1\APPLIC~1\sony

[12/07/2007|09:46] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[24/05/2006|19:26] C:\DOCUME~1\NETWOR~1\APPLIC~1\Symantec

[08/01/2008|20:27] C:\DOCUME~1\PIERRE~1\APPLIC~1\Adobe
[03/02/2008|10:50] C:\DOCUME~1\PIERRE~1\APPLIC~1\AdobeUM
[20/04/2006|11:04] C:\DOCUME~1\PIERRE~1\APPLIC~1\Apple Computer
[05/06/2007|17:51] C:\DOCUME~1\PIERRE~1\APPLIC~1\Audacity
[29/08/2006|10:28] C:\DOCUME~1\PIERRE~1\APPLIC~1\BitTorrent
[11/02/2008|09:45] C:\DOCUME~1\PIERRE~1\APPLIC~1\DMCache
[06/01/2008|12:13] C:\DOCUME~1\PIERRE~1\APPLIC~1\dvdcss
[04/01/2009|10:24] C:\DOCUME~1\PIERRE~1\APPLIC~1\Ford Error Hide
[27/05/2006|17:00] C:\DOCUME~1\PIERRE~1\APPLIC~1\FotoWire
[17/09/2008|14:31] C:\DOCUME~1\PIERRE~1\APPLIC~1\GetRightToGo
[15/11/2006|17:23] C:\DOCUME~1\PIERRE~1\APPLIC~1\Google
[02/08/2006|20:45] C:\DOCUME~1\PIERRE~1\APPLIC~1\Help
[03/01/2007|14:27] C:\DOCUME~1\PIERRE~1\APPLIC~1\ICQLite
[21/11/2005|11:49] C:\DOCUME~1\PIERRE~1\APPLIC~1\Identities
[11/02/2008|13:50] C:\DOCUME~1\PIERRE~1\APPLIC~1\IDM
[02/04/2006|15:16] C:\DOCUME~1\PIERRE~1\APPLIC~1\InterVideo
[15/11/2006|16:58] C:\DOCUME~1\PIERRE~1\APPLIC~1\Lavasoft
[14/02/2007|20:36] C:\DOCUME~1\PIERRE~1\APPLIC~1\Leadertech
[02/06/2006|21:31] C:\DOCUME~1\PIERRE~1\APPLIC~1\Macromedia
[08/01/2009|18:23] C:\DOCUME~1\PIERRE~1\APPLIC~1\Malwarebytes
[13/02/2007|22:58] C:\DOCUME~1\PIERRE~1\APPLIC~1\Megaupload
[14/02/2007|12:42] C:\DOCUME~1\PIERRE~1\APPLIC~1\MegauploadToolbar
[13/12/2007|22:26] C:\DOCUME~1\PIERRE~1\APPLIC~1\Microsoft
[10/10/2008|19:10] C:\DOCUME~1\PIERRE~1\APPLIC~1\Mozilla
[07/08/2008|11:56] C:\DOCUME~1\PIERRE~1\APPLIC~1\Nero
[23/09/2008|16:47] C:\DOCUME~1\PIERRE~1\APPLIC~1\Real
[09/07/2007|09:18] C:\DOCUME~1\PIERRE~1\APPLIC~1\Skype
[14/02/2007|20:37] C:\DOCUME~1\PIERRE~1\APPLIC~1\Sonic
[01/04/2006|19:12] C:\DOCUME~1\PIERRE~1\APPLIC~1\sony
[08/11/2006|10:17] C:\DOCUME~1\PIERRE~1\APPLIC~1\Sony Corporation
[31/05/2006|11:42] C:\DOCUME~1\PIERRE~1\APPLIC~1\Sun
[01/04/2006|18:55] C:\DOCUME~1\PIERRE~1\APPLIC~1\Symantec
[26/10/2006|10:02] C:\DOCUME~1\PIERRE~1\APPLIC~1\Talkback
[01/06/2007|18:37] C:\DOCUME~1\PIERRE~1\APPLIC~1\teamspeak2
[10/01/2007|18:47] C:\DOCUME~1\PIERRE~1\APPLIC~1\Teleca
[02/04/2006|10:16] C:\DOCUME~1\PIERRE~1\APPLIC~1\Template
[19/04/2007|21:38] C:\DOCUME~1\PIERRE~1\APPLIC~1\U3
[10/02/2007|22:18] C:\DOCUME~1\PIERRE~1\APPLIC~1\vlc

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[10/01/2009 23:00][--a------] C:\WINDOWS\tasks\At24.job
[10/01/2009 22:00][--a------] C:\WINDOWS\tasks\At23.job
[10/01/2009 21:00][--a------] C:\WINDOWS\tasks\At22.job
[11/01/2009 20:00][--a------] C:\WINDOWS\tasks\At21.job
[11/01/2009 19:00][--a------] C:\WINDOWS\tasks\At20.job
[11/01/2009 18:00][--a------] C:\WINDOWS\tasks\At19.job
[11/01/2009 17:00][--a------] C:\WINDOWS\tasks\At18.job
[11/01/2009 16:00][--a------] C:\WINDOWS\tasks\At17.job
[11/01/2009 15:00][--a------] C:\WINDOWS\tasks\At16.job
[11/01/2009 14:00][--a------] C:\WINDOWS\tasks\At15.job
[11/01/2009 13:00][--a------] C:\WINDOWS\tasks\At14.job
[11/01/2009 12:00][--a------] C:\WINDOWS\tasks\At13.job
[11/01/2009 11:00][--a------] C:\WINDOWS\tasks\At12.job
[11/01/2009 10:00][--a------] C:\WINDOWS\tasks\At11.job
[18/12/2008 09:00][--a------] C:\WINDOWS\tasks\At10.job
[08/01/2009 08:00][--a------] C:\WINDOWS\tasks\At9.job
[06/01/2009 07:00][--a------] C:\WINDOWS\tasks\At8.job
[14/12/2008 22:09][--a------] C:\WINDOWS\tasks\At7.job
[14/12/2008 22:09][--a------] C:\WINDOWS\tasks\At6.job
[14/12/2008 22:09][--a------] C:\WINDOWS\tasks\At5.job
[14/12/2008 22:09][--a------] C:\WINDOWS\tasks\At4.job
[14/12/2008 22:09][--a------] C:\WINDOWS\tasks\At3.job
[14/12/2008 22:09][--a------] C:\WINDOWS\tasks\At2.MSNFix
[14/12/2008 22:09][--a------] C:\WINDOWS\tasks\At1.MSNFix
[11/01/2009 15:43][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 13:00][-r-h-----] C:\WINDOWS\tasks\desktop.ini

--------------------\\ MsgPlus SPONSOR INSTALLED !

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MsgPlus! Plugin]
"DisplayName"="Messenger Plus! 3 & Sponsor"
"SponsorInstalled"=dword:00000000


--------------------\\ Listing des dossiers dans C:\Program Files

[25/10/2006|09:30] C:\Program Files\3Com
[10/01/2007|19:03] C:\Program Files\Adobe
[11/01/2009|14:17] C:\Program Files\Ad-remover
[30/01/2007|21:43] C:\Program Files\Alwil Software
[21/11/2005|12:43] C:\Program Files\Apoint
[06/11/2006|21:01] C:\Program Files\Aspyr
[29/01/2008|19:09] C:\Program Files\Audacity
[10/05/2007|18:22] C:\Program Files\AviSynth 2.5
[22/12/2008|23:06] C:\Program Files\BitComet
[21/11/2005|11:47] C:\Program Files\ComPlus Applications
[21/11/2005|12:26] C:\Program Files\CONEXANT
[14/02/2007|10:11] C:\Program Files\DAEMON Tools
[19/04/2007|18:27] C:\Program Files\Data Design Interactive
[26/05/2006|18:51] C:\Program Files\DIFX
[10/01/2007|19:00] C:\Program Files\Disc2Phone
[11/02/2007|10:07] C:\Program Files\DivX
[11/01/2009|14:09] C:\Program Files\Fichiers communs
[15/11/2006|08:05] C:\Program Files\GameSpy Arcade
[15/12/2008|08:48] C:\Program Files\Google
[06/05/2007|07:41] C:\Program Files\Guitar Pro 5
[21/09/2008|11:46] C:\Program Files\HardwareDetection
[15/11/2006|11:12] C:\Program Files\HP
[16/07/2008|22:32] C:\Program Files\InstallShield Installation Information
[21/11/2005|14:21] C:\Program Files\Intel
[12/12/2008|23:29] C:\Program Files\Internet Explorer
[21/11/2005|16:52] C:\Program Files\InterVideo
[20/04/2006|11:01] C:\Program Files\iPod
[21/11/2005|16:50] C:\Program Files\ISP
[20/04/2006|11:03] C:\Program Files\iTunes
[21/11/2005|16:38] C:\Program Files\Java
[21/11/2005|15:28] C:\Program Files\LanExpress
[15/11/2006|16:58] C:\Program Files\Lavasoft
[22/12/2008|22:55] C:\Program Files\LimeWire
[27/05/2006|17:00] C:\Program Files\Logitech
[21/09/2008|11:46] C:\Program Files\ma-config.com
[08/01/2009|18:23] C:\Program Files\Malwarebytes' Anti-Malware
[31/08/2008|21:52] C:\Program Files\Messenger
[10/07/2007|11:28] C:\Program Files\Messenger Plus! Live
[26/06/2006|17:51] C:\Program Files\MessengerPlus! 3
[03/12/2007|18:41] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[21/11/2005|11:49] C:\Program Files\microsoft frontpage
[24/05/2006|19:47] C:\Program Files\Microsoft Office
[22/12/2005|21:15] C:\Program Files\Microsoft SQL Server
[24/05/2006|19:30] C:\Program Files\Microsoft Visual Studio
[24/05/2006|19:31] C:\Program Files\Microsoft Works
[24/05/2006|19:47] C:\Program Files\Microsoft.NET
[15/12/2008|17:48] C:\Program Files\MotoRacer3
[21/11/2005|11:47] C:\Program Files\Movie Maker
[11/01/2009|19:33] C:\Program Files\Mozilla Firefox
[21/11/2005|11:46] C:\Program Files\MSN
[05/06/2006|08:19] C:\Program Files\MSN Apps
[21/11/2005|11:46] C:\Program Files\MSN Gaming Zone
[10/01/2009|21:14] C:\Program Files\MSN Messenger
[03/11/2006|16:42] C:\Program Files\MSXML 4.0
[08/01/2009|07:46] C:\Program Files\Navilog1
[07/08/2008|11:51] C:\Program Files\Nero
[21/11/2005|11:47] C:\Program Files\NetMeeting
[21/11/2005|11:46] C:\Program Files\Online Services
[12/06/2007|22:06] C:\Program Files\Outlook Express
[26/06/2006|16:53] C:\Program Files\PhotoFiltre
[20/04/2006|11:04] C:\Program Files\QuickTime
[01/04/2006|18:53] C:\Program Files\Raccourcis de programmes
[23/09/2008|16:44] C:\Program Files\Real
[10/02/2007|20:18] C:\Program Files\Realtek
[22/12/2005|21:11] C:\Program Files\Roxio
[21/11/2005|11:47] C:\Program Files\Services en ligne
[22/12/2005|21:25] C:\Program Files\Sony
[10/01/2007|18:42] C:\Program Files\Sony Ericsson
[17/01/2008|19:46] C:\Program Files\Tcl
[19/11/2008|19:05] C:\Program Files\TI Education
[08/05/2008|13:14] C:\Program Files\TmNationsForever
[22/12/2005|21:16] C:\Program Files\Uninstall Information
[21/11/2005|16:54] C:\Program Files\Utimaco
[16/07/2008|22:31] C:\Program Files\Veoh Networks
[10/02/2007|22:13] C:\Program Files\VideoLAN
[03/01/2009|16:14] C:\Program Files\VirtualDJ
[17/07/2006|08:52] C:\Program Files\WebServer
[12/05/2007|16:07] C:\Program Files\Wild Hare
[10/07/2007|11:14] C:\Program Files\Windows Live
[28/09/2008|10:22] C:\Program Files\Windows Media Connect
[06/08/2008|10:03] C:\Program Files\Windows Media Connect 2
[06/08/2008|10:03] C:\Program Files\Windows Media Player
[21/11/2005|11:46] C:\Program Files\Windows NT
[21/11/2005|11:47] C:\Program Files\WindowsUpdate
[06/01/2007|09:32] C:\Program Files\WinRAR
[21/11/2005|11:49] C:\Program Files\xerox
[21/11/2005|16:53] C:\Program Files\Yahoo HTML

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[22/12/2005|21:17] C:\Program Files\Fichiers communs\Adobe
[12/11/2006|00:02] C:\Program Files\Fichiers communs\Atlence
[24/05/2006|19:47] C:\Program Files\Fichiers communs\DESIGNER
[03/11/2006|11:13] C:\Program Files\Fichiers communs\DirectX
[27/05/2006|17:00] C:\Program Files\Fichiers communs\FotoWire
[15/11/2006|11:13] C:\Program Files\Fichiers communs\Hewlett-Packard
[15/11/2006|11:08] C:\Program Files\Fichiers communs\HP
[21/11/2005|16:52] C:\Program Files\Fichiers communs\InstallShield
[21/11/2005|16:37] C:\Program Files\Fichiers communs\Java
[27/05/2006|16:57] C:\Program Files\Fichiers communs\Logitech
[07/08/2008|11:49] C:\Program Files\Fichiers communs\Microsoft Shared
[21/11/2005|11:47] C:\Program Files\Fichiers communs\MSSoap
[07/08/2008|11:50] C:\Program Files\Fichiers communs\Nero
[21/11/2005|12:42] C:\Program Files\Fichiers communs\ODBC
[23/09/2008|16:45] C:\Program Files\Fichiers communs\Real
[21/11/2005|11:47] C:\Program Files\Fichiers communs\Services
[22/12/2005|21:11] C:\Program Files\Fichiers communs\Sonic Shared
[22/12/2005|21:16] C:\Program Files\Fichiers communs\Sony Shared
[21/11/2005|12:42] C:\Program Files\Fichiers communs\SpeechEngines
[01/04/2006|19:11] C:\Program Files\Fichiers communs\SWF Studio
[31/01/2007|12:33] C:\Program Files\Fichiers communs\Symantec Shared
[12/06/2007|21:43] C:\Program Files\Fichiers communs\System
[10/01/2007|18:43] C:\Program Files\Fichiers communs\Teleca Shared
[09/09/2007|19:48] C:\Program Files\Fichiers communs\TI Shared
[15/03/2008|18:25] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[09/09/2007|19:47] C:\Program Files\Fichiers communs\Wise Installation Wizard
[23/09/2008|16:45] C:\Program Files\Fichiers communs\xing shared

--------------------\\ Process

( 69 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\DOCUME~1\ALLUSE~1\APPLIC~1\espionServerData
C:\DOCUME~1\ALLUSE~1\APPLIC~1\espionServerData\globData.mk4
C:\DOCUME~1\PIERRE~1\APPLIC~1\Ford Error Hide
C:\DOCUME~1\PIERRE~1\LOCALS~1\Temp\nsg9.tmp
C:\DOCUME~1\PIERRE~1\LOCALS~1\Temp\nsr92.tmp
C:\DOCUME~1\PIERRE~1\LOCALS~1\Temp\nsu51.tmp
C:\DOCUME~1\PIERRE~1\Cookies\pierre_belin@banner.cotedazurpalace[2].txt
C:\DOCUME~1\PIERRE~1\Cookies\pierre_belin@cotedazurpalace[1].txt
C:\DOCUME~1\PIERRE~1\Cookies\pierre_belin@32vegas[1].txt
C:\DOCUME~1\PIERRE~1\Cookies\pierre_belin@banner.32vegas[2].txt

--------------------\\ Verification du Registre

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts MODIFIE

127.0.0.1 bin.errorprotector.com ## added by CiD
127.0.0.1 br.errorsafe.com ## added by CiD
127.0.0.1 br.winfixer.com ## added by CiD
127.0.0.1 cdn.drivecleaner.com ## added by CiD
127.0.0.1 cdn.errorsafe.com ## added by CiD
127.0.0.1 cdn.winsoftware.com ## added by CiD
127.0.0.1 de.errorsafe.com ## added by CiD
127.0.0.1 download.cdn.drivecleaner.com ## added by CiD
127.0.0.1 download.cdn.errorsafe.com ## added by CiD
127.0.0.1 download.cdn.winsoftware.com ## added by CiD
127.0.0.1 download.errorsafe.com ## added by CiD
127.0.0.1 download.systemdoctor.com ## added by CiD
127.0.0.1 download.winantispyware.com ## added by CiD
127.0.0.1 download.windrivecleaner.com ## added by CiD
127.0.0.1 download.winfixer.com ## added by CiD
127.0.0.1 drivecleaner.com ## added by CiD
127.0.0.1 dynamique.drivecleaner.com ## added by CiD
127.0.0.1 errorprotector.com ## added by CiD
127.0.0.1 errorsafe.com ## added by CiD
127.0.0.1 fr.winfixer.com ## added by CiD
127.0.0.1 go.drivecleaner.com ## added by CiD
127.0.0.1 go.errorsafe.com ## added by CiD
127.0.0.1 go.winantispyware.com ## added by CiD
127.0.0.1 instlog.errorsafe.com ## added by CiD
127.0.0.1 instlog.winfixer.com ## added by CiD
127.0.0.1 jsp.drivecleaner.com ## added by CiD
127.0.0.1 kb.errorsafe.com ## added by CiD
127.0.0.1 nl.errorsafe.com ## added by CiD
127.0.0.1 se.errorsafe.com ## added by CiD
127.0.0.1 secure.drivecleaner.com ## added by CiD
127.0.0.1 secure.errorsafe.com ## added by CiD
127.0.0.1 secure.winantispam.com ## added by CiD
127.0.0.1 secure.winantispy.com ## added by CiD
127.0.0.1 trial.updates.winsoftware.com ## added by CiD
127.0.0.1 utils.errorsafe.com ## added by CiD
127.0.0.1 utils.winfixer.com ## added by CiD
127.0.0.1 winantispyware.com ## added by CiD
127.0.0.1 winfixer.com ## added by CiD
127.0.0.1 winfixer2006.com ## added by CiD
127.0.0.1 winsoftware.com ## added by CiD
127.0.0.1 [i]ww/iw.drivecleaner.com ## added by CiD
127.0.0.1 [i]ww/iw.errorprotector.com ## added by CiD
127.0.0.1 [i]ww/iw.errorsafe.com ## added by CiD
127.0.0.1 [i]ww/iw.systemdoctor.com ## added by CiD
127.0.0.1 [i]ww/iw.utils.winfixer.com ## added by CiD
127.0.0.1 [i]ww/iw.win-anti-virus-pro.com ## added by CiD
127.0.0.1 [i]ww/iw.win-virus-pro.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispam.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispy.com ## added by CiD
127.0.0.1 [i]ww/iw.winantispyware.com ## added by CiD
127.0.0.1 [i]ww/iw.winantiviruspro.com ## added by CiD
127.0.0.1 [i]ww/iw.windrivecleaner.com ## added by CiD
127.0.0.1 [i]ww/iw.windrivesafe.com ## added by CiD
127.0.0.1 [i]ww/iw.winfixer.com ## added by CiD
127.0.0.1 [i]ww/iw.winfixer2006.com ## added by CiD
127.0.0.1 [i]ww/iw.winsoftware.com ## added by CiD

-> 58 [ 56 ## added by CiD ]

--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-01-11 21:00:09
Windows 5.1.2600 Service Pack 2 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 265

--------------------\\ Recherche d'autres infections

C:\WINDOWS\Tasks\At10.job
C:\WINDOWS\Tasks\At11.job
C:\WINDOWS\Tasks\At12.job
C:\WINDOWS\Tasks\At13.job
C:\WINDOWS\Tasks\At14.job
C:\WINDOWS\Tasks\At15.job
C:\WINDOWS\Tasks\At16.job
C:\WINDOWS\Tasks\At17.job
C:\WINDOWS\Tasks\At18.job
C:\WINDOWS\Tasks\At19.job
C:\WINDOWS\Tasks\At20.job
C:\WINDOWS\Tasks\At21.job
C:\WINDOWS\Tasks\At22.job
C:\WINDOWS\Tasks\At23.job
C:\WINDOWS\Tasks\At24.job
C:\WINDOWS\Tasks\At3.job
C:\WINDOWS\Tasks\At4.job
C:\WINDOWS\Tasks\At5.job
C:\WINDOWS\Tasks\At6.job
C:\WINDOWS\Tasks\At7.job
C:\WINDOWS\Tasks\At8.job
C:\WINDOWS\Tasks\At9.job

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\PIERRE~1\Bureau\Avast!.Antivirus.Pro.V.4.8.1282.FR+Keygen
C:\DOCUME~1\PIERRE~1\Bureau\Avast!.Antivirus.Pro.V.4.8.1282.FR+Keygen\Keygen
C:\DOCUME~1\PIERRE~1\Bureau\Avast!.Antivirus.Pro.V.4.8.1282.FR+Keygen\serials.txt
C:\DOCUME~1\PIERRE~1\Bureau\Avast!.Antivirus.Pro.V.4.8.1282.FR+Keygen\setupavastpro.exe
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Adobe.Acrobat.8.Keygen_Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Adobe.CS3.Design.Premium.Keygen_Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Adobe.CS3.Web.Premium.Keygen_Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\DreamWeaver.CS3.Keygen_Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\FireWorks.CS3.Keygen_Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Flash.CS3.Keygen_Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\PhotoShop.CS3.Extended.Keygen_Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Photoshop.CS3.Keygen_Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Adobe.Acrobat.8.Keygen_Activation\Adobe.Acrobat.8.Keygen+Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Adobe.Acrobat.8.Keygen_Activation\Adobe.Acrobat.8.Keygen+Activation\Filler.wav
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Adobe.CS3.Design.Premium.Keygen_Activation\Adobe.CS3.Design.Premium.Keygen+Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Adobe.CS3.Design.Premium.Keygen_Activation\Adobe.CS3.Design.Premium.Keygen+Activation\Adobe.CS3.Design.Premium.Keygen.exe
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Adobe.CS3.Design.Premium.Keygen_Activation\Adobe.CS3.Design.Premium.Keygen+Activation\Filler.wav
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Adobe.CS3.Web.Premium.Keygen_Activation\Adobe.CS3.Web.Premium.Keygen+Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Adobe.CS3.Web.Premium.Keygen_Activation\Adobe.CS3.Web.Premium.Keygen+Activation\Adobe.Web.Premium.CS3.Keygen+Activation.exe
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Adobe.CS3.Web.Premium.Keygen_Activation\Adobe.CS3.Web.Premium.Keygen+Activation\Filler.wav
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\DreamWeaver.CS3.Keygen_Activation\DreamWeaver.CS3.Keygen+Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\DreamWeaver.CS3.Keygen_Activation\DreamWeaver.CS3.Keygen+Activation\Filler.wav
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\FireWorks.CS3.Keygen_Activation\FireWorks.CS3.Keygen+Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\FireWorks.CS3.Keygen_Activation\FireWorks.CS3.Keygen+Activation\Filler.wav
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\FireWorks.CS3.Keygen_Activation\FireWorks.CS3.Keygen+Activation\FireWorks.CS3.Keygen+Activation.exe
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Flash.CS3.Keygen_Activation\Flash.CS3.Keygen+Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Flash.CS3.Keygen_Activation\Flash.CS3.Keygen+Activation\Filler.wav
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\PhotoShop.CS3.Extended.Keygen_Activation\PhotoShop.CS3.Extended.Keygen+Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\PhotoShop.CS3.Extended.Keygen_Activation\PhotoShop.CS3.Extended.Keygen+Activation\Filler.wav
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Photoshop.CS3.Keygen_Activation\Photoshop.CS3.Keygen+Activation
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Photoshop.CS3.Keygen_Activation\Photoshop.CS3.Keygen+Activation\Filler.wav
C:\DOCUME~1\PIERRE~1\Bureau\Jogging du nabot\Adobe CS3 family Activation\Photoshop.CS3.Keygen_Activation\Photoshop.CS3.Keygen+Activation\Photoshop.CS3.Keygen+Activation.exe


[F:122][D:339]-> C:\DOCUME~1\PIERRE~1\LOCALS~1\Temp
[F:54][D:0]-> C:\DOCUME~1\PIERRE~1\Cookies
[F:116][D:14]-> C:\DOCUME~1\PIERRE~1\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 11/01/2009|21:05 - Option : [1]

--------------------\\ Fin du rapport a 21:05:09
0
Utilisateur anonyme
11 janv. 2009 à 22:10
Re,

Il faut que tu vires tes cracks car cela et la source de pas mal d'infection.

▶ Relance Lop S&D

▶ Choisis cette fois ci l'Option 2 ( Suppression )

▶ Ne ferme pas la fenêtre lors de la suppression !

▶ Poste le rapport généré ( C:\lopR.txt )

( Si le Bureau ne réapparaît pas presse Ctrl + Alt + Suppr, Onglet Fichier,

Nouvelle tâche, tape explorer.exe et valide )

Si un rapport ne passe pas faire une alerte à la conciergerie avec le /!\ jaune.
xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
---> Télécharge OTMoveIt3 (OldTimer) sur ton Bureau :
http://oldtimer.geekstogo.com/OTMoveIt3.exe

---> Double-clique sur OTMoveIt3.exe afin de le lancer.

---> Copie (Ctrl+C) le texte suivant en gras ci-dessous :

:files
C:\WINDOWS\Tasks\At10.job
C:\WINDOWS\Tasks\At11.job
C:\WINDOWS\Tasks\At12.job
C:\WINDOWS\Tasks\At13.job
C:\WINDOWS\Tasks\At14.job
C:\WINDOWS\Tasks\At15.job
C:\WINDOWS\Tasks\At16.job
C:\WINDOWS\Tasks\At17.job
C:\WINDOWS\Tasks\At18.job
C:\WINDOWS\Tasks\At19.job
C:\WINDOWS\Tasks\At20.job
C:\WINDOWS\Tasks\At21.job
C:\WINDOWS\Tasks\At22.job
C:\WINDOWS\Tasks\At23.job
C:\WINDOWS\Tasks\At24.job
C:\WINDOWS\Tasks\At3.job
C:\WINDOWS\Tasks\At4.job
C:\WINDOWS\Tasks\At5.job
C:\WINDOWS\Tasks\At6.job
C:\WINDOWS\Tasks\At7.job
C:\WINDOWS\Tasks\At8.job
C:\WINDOWS\Tasks\At9.job

:commands
[purity]
[emptytemp]
[reboot]



---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.

---> Clique maintenant sur le bouton MoveIt! puis ferme OTMoveIt3.

Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.

---> Poste le rapport situé dans ce dossier : C:\_OTMoveIt\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log
0