PB HiJackThis ! - Page 2

  1. les droits nésséssaires ?
    0
    1. tu es sur un compte administrateur ou invité ?

      Télécharge DDS.scr de sUBs :

      DDS

      Sur le bureau.
      L'outil ne nécessite pas d'installation.

      Lances-le en cliquant sur l'icône dds.scr

      Cette fenêtre DOS va apparaitre:

      https://i75.servimg.com/u/f75/11/05/93/83/ddsdos10.jpg

      Le scan ne doit pas dépasser trois minutes.
      Un premier rapport va s'ouvrir que tu enregistreras sous DDS.txt par défaut sur le bureau.
      Il te sera demandé si tu veux faire le scan optionnel.
      Accepte par Oui
      Un nouveau rapport s'ouvre que tu enregistres sous Attach.txt sur le bureau.
      Tu ne le fourniras que si nécessaire.
      Poste le rapport DDS.txt
      0
      1. j'ai le compte Administrateur de mon pere et il m'a créé une session ca marche aussi avec les sessions ?
        0
        1. j'ai le compte Administrateur de mon pere et il m'a créé une session ca marche aussi avec les sessions ?
          0
          1. non fais le plutot sur le compte administateur(de ton pere)
            0
            1. ha y est !

              DDS (Ver_09-02-01.01) - NTFSx86
              Run by KLEIN jean francois at 10:28:15,35 on 01/03/2009
              Internet Explorer: 7.0.6000.16809
              Microsoft® Windows Vista™ Professionnel 6.0.6000.0.1252.33.1036.18.2046.569 [GMT 1:00]

              AV: avast! antivirus 4.8.1296 [VPS 090228-0] *On-access scanning enabled* (Updated)

              ============== Running Processes ===============

              C:\Windows\system32\wininit.exe
              C:\Windows\system32\lsm.exe
              C:\Windows\system32\svchost.exe -k DcomLaunch
              C:\Windows\system32\svchost.exe -k rpcss
              C:\Windows\System32\svchost.exe -k secsvcs
              C:\Windows\system32\Ati2evxx.exe
              C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
              C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
              C:\Windows\system32\svchost.exe -k netsvcs
              C:\Windows\system32\SLsvc.exe
              C:\Windows\system32\svchost.exe -k LocalService
              C:\Windows\system32\svchost.exe -k NetworkService
              C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
              C:\Program Files\Alwil Software\Avast4\ashServ.exe
              C:\Windows\System32\spoolsv.exe
              C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
              C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
              C:\Program Files\Bonjour\mDNSResponder.exe
              C:\Windows\system32\svchost.exe -k bthsvcs
              C:\Program Files\Windows Live\Contrôle parental\fsssvc.exe
              C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
              C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
              C:\Windows\system32\lxcrcoms.exe
              C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
              C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
              C:\Program Files\Dell Support Center\bin\sprtsvc.exe
              C:\Windows\system32\svchost.exe -k imgsvc
              C:\Windows\System32\svchost.exe -k WerSvcGroup
              C:\Windows\system32\SearchIndexer.exe
              C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
              C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
              C:\Windows\system32\svchost.exe -k WindowsMobile
              C:\Windows\system32\WUDFHost.exe
              C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
              C:\Windows\system32\taskeng.exe
              C:\Program Files\iPod\bin\iPodService.exe
              C:\Program Files\Windows Live\Messenger\usnsvc.exe
              C:\Windows\system32\wbem\wmiprvse.exe
              C:\Windows\system32\Ati2evxx.exe
              C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
              C:\Windows\system32\taskeng.exe
              C:\Windows\system32\Dwm.exe
              C:\Windows\Explorer.EXE
              C:\Program Files\Windows Defender\MSASCui.exe
              C:\Windows\RtHDVCpl.exe
              C:\Windows\WindowsMobile\wmdc.exe
              C:\Program Files\Java\jre1.6.0\bin\jusched.exe
              C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
              C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
              C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
              C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
              C:\Program Files\Lexmark 2400 Series\lxcrmon.exe
              C:\Program Files\Lexmark 2400 Series\ezprint.exe
              C:\Program Files\Windows Live\Contrôle parental\fssui.exe
              C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
              C:\Program Files\Logitech\QuickCam\Quickcam.exe
              C:\Program Files\iTunes\iTunesHelper.exe
              C:\Program Files\Alwil Software\Avast4\ashDisp.exe
              C:\Program Files\Windows Media Player\wmpnscfg.exe
              C:\Program Files\Windows Live\Messenger\msnmsgr.exe
              C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
              C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
              C:\Program Files\WIDCOMM\Logiciel Bluetooth\BTTray.exe
              C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
              C:\Program Files\Windows Media Player\wmpnetwk.exe
              C:\Windows\system32\wbem\unsecapp.exe
              C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
              C:\Windows\system32\wuauclt.exe
              C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
              C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
              C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
              C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
              C:\Windows\servicing\TrustedInstaller.exe
              C:\Windows\system32\vssvc.exe
              C:\Windows\System32\svchost.exe -k swprv
              C:\Windows\system32\wuauclt.exe
              C:\Windows\system32\conime.exe
              C:\Program Files\Internet Explorer\ieuser.exe
              C:\Program Files\Internet Explorer\iexplore.exe
              C:\Program Files\Google\Google Toolbar\GoogleToolbarUser.exe
              C:\Windows\system32\Macromed\Flash\FlashUtil9f.exe
              C:\Windows\system32\SearchProtocolHost.exe
              C:\Windows\system32\SearchFilterHost.exe
              C:\Windows\system32\WerCon.exe
              C:\Users\KLEIN jean francois\Desktop\dds.scr
              C:\Windows\system32\wbem\wmiprvse.exe

              ============== Pseudo HJT Report ===============

              uSearch Page = hxxp://www.google.com
              uStart Page = hxxp://www.google.fr/webhp?sourceid=navclient&hl=fr&ie=UTF-8
              uWindow Title = Internet Explorer fourni par Dell
              uSearch Bar = hxxp://www.google.com/ie
              uInternet Settings,ProxyOverride = *.local
              BHO: Aide pour le lien d'Adobe PDF Reader: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
              BHO: Lexmark Barre d'outils: {1017a80c-6f09-4548-a84d-edd6ac9525f0} - c:\program files\lexmark toolbar\toolband.dll
              BHO: Windows Live OneCare Family Safety Browser Helper Class: {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - c:\program files\windows live\contrôle parental\fssbho.dll
              BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
              BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0\bin\ssv.dll
              BHO: {7E853D72-626A-48EC-A868-BA8D5E23E045} - No File
              BHO: Programme d'aide de l'Assistant de connexion Windows Live: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
              BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar.dll
              BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.0.926.3450\swg.dll
              BHO: Windows Live Toolbar Helper: {bdbd1dad-c946-4a17-adc1-64b5b4ff55d0} - c:\program files\windows live toolbar\msntb.dll
              BHO: NoExplorer - No File
              BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - c:\program files\google\google toolbar\component\fastsearch_219B3E1547538286.dll
              BHO: CBrowserHelperObject Object: {ca6319c0-31b7-401e-a518-a07c3db8f777} - c:\program files\dell\bae\BAE.dll
              TB: Lexmark Barre d'outils: {1017a80c-6f09-4548-a84d-edd6ac9525f0} - c:\program files\lexmark toolbar\toolband.dll
              TB: Windows Live Toolbar: {bdad1dad-c946-4a17-adc1-64b5b4ff55d0} - c:\program files\windows live toolbar\msntb.dll
              TB: &Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar.dll
              uRun: [DellSupportCenter] "c:\program files\dell support center\bin\sprtcmd.exe" /P DellSupportCenter
              uRun: [AdobeUpdater] c:\program files\common files\adobe\updater5\AdobeUpdater.exe
              uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
              uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
              uRun: [VPbubble] "c:\program files\nosibay\vpbubble\launcher.exe"
              uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe
              uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
              mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
              mRun: [RtHDVCpl] RtHDVCpl.exe
              mRun: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe
              mRun: [SunJavaUpdateSched] "c:\program files\java\jre1.6.0\bin\jusched.exe"
              mRun: [StartCCC] c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe
              mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
              mRun: [<NO NAME>]
              mRun: [RoxWatchTray] "c:\program files\common files\roxio shared\9.0\sharedcom\RoxWatchTray9.exe"
              mRun: [PDVDDXSrv] "c:\program files\cyberlink\powerdvd dx\PDVDDXSrv.exe"
              mRun: [Google Desktop Search] "c:\program files\google\google desktop search\GoogleDesktop.exe" /startup
              mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
              mRun: [dscactivate] "c:\program files\dell support center\gs_agent\custom\dsca.exe"
              mRun: [lxcrmon.exe] "c:\program files\lexmark 2400 series\lxcrmon.exe"
              mRun: [EzPrint] "c:\program files\lexmark 2400 series\ezprint.exe"
              mRun: [FaxCenterServer] "c:\program files\lexmark fax solutions\fm3032.exe" /s
              mRun: [LXCRCATS] rundll32 c:\windows\system32\spool\drivers\w32x86\3\LXCRtime.dll,_RunDLLEntry@16
              mRun: [DellSupportCenter] "c:\program files\dell support center\bin\sprtcmd.exe" /P DellSupportCenter
              mRun: [fssui] "c:\program files\windows live\contrôle parental\fssui.exe" -autorun
              mRun: [PAC207_Monitor] c:\windows\pixart\pac207\Monitor.exe
              mRun: [Monitor] c:\windows\pixart\pac207\Monitor.exe
              mRun: [LogitechCommunicationsManager] "c:\program files\common files\logishrd\lcommgr\Communications_Helper.exe"
              mRun: [LogitechQuickCamRibbon] "c:\program files\logitech\quickcam\Quickcam.exe" /hide
              mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
              mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
              mRun: [avast!] c:\progra~1\alwils~1\avast4\ashDisp.exe
              dRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
              dRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
              StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\bttray.lnk - c:\program files\widcomm\logiciel bluetooth\BTTray.exe
              StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\desktop messenger\8876480\program\LogitechDesktopMessenger.exe
              IE: &Windows Live Search - c:\program files\windows live toolbar\msntb.dll/search.htm
              IE: Envoyer à &Bluetooth - c:\program files\widcomm\logiciel bluetooth\btsendto_ie_ctx.htm
              IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0\bin\npjpi160.dll
              IE: {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - c:\windows\windowsmobile\INetRepl.dll
              IE: {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - c:\windows\windowsmobile\INetRepl.dll
              IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
              DPF: {04CB5B64-5915-4629-B869-8945CEBADD21} - hxxps://static.impots.gouv.fr/abos/static/securite/certdgi1.cab
              DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
              DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} - hxxp://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
              DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} - hxxp://musicmix.messenger.msn.com/Medialogic.CAB
              DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} - hxxp://gfx2.hotmail.com/mail/w3/resources/VistaMSNPUpldfr-fr.cab
              DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} - hxxp://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
              DPF: {5D6F45B3-9043-443D-A792-115447494D24} - hxxp://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
              DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
              DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
              DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
              DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
              DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
              Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\logitech\desktop messenger\8876480\program\GAPlugProtocol-8876480.dll
              AppInit_DLLs: c:\progra~1\google\google~2\GOEC62~1.DLL

              ============= SERVICES / DRIVERS ===============

              R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-12-29 111184]
              R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2008-12-29 20560]
              R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2008-12-29 51792]
              R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr.sys [2008-7-11 43816]
              R2 fsssvc;Windows Live OneCare Contrôle parental;c:\program files\windows live\contrôle parental\fsssvc.exe [2007-12-17 523816]
              S3 GoogleDesktopManager-061008-081103;Google Desktop Manager 5.7.806.10245;c:\program files\google\google desktop search\GoogleDesktop.exe [2008-1-15 29744]

              =============== Created Last 30 ================

              2009-02-25 20:38 268 a---h--- C:\sqmdata01.sqm
              2009-02-25 20:38 244 a---h--- C:\sqmnoopt01.sqm
              2009-02-25 14:44 <DIR> --d----- c:\program files\Trend Micro
              2009-02-07 11:25 <DIR> --d----- c:\program files\Disney Pix Micro Downloader
              2009-02-07 11:19 <DIR> --d----- c:\program files\Disney Pix 2.0
              2009-02-07 11:15 <DIR> --d----- c:\program files\common files\Wise Installation Wizard

              ==================== Find3M ====================

              2009-02-28 18:57 1,828 a------- c:\users\kleinj~1\appdata\roaming\wklnhst.dat
              2009-02-19 18:47 690,888 a------- c:\windows\system32\perfh00C.dat
              2009-02-19 18:47 117,676 a------- c:\windows\system32\perfc00C.dat
              2009-01-15 05:16 826,368 a------- c:\windows\system32\wininet.dll
              2009-01-15 05:16 56,320 a------- c:\windows\system32\iesetup.dll
              2009-01-15 05:16 52,736 a------- c:\windows\apppatch\iebrshim.dll
              2009-01-15 05:15 26,624 a------- c:\windows\system32\ieUnatt.exe
              2008-12-28 16:26 51,200 a------- c:\windows\inf\infpub.dat
              2008-12-28 16:26 143,360 a------- c:\windows\inf\infstrng.dat
              2008-12-28 16:26 86,016 a------- c:\windows\inf\infstor.dat
              2008-12-12 07:33 174 a--sh--- c:\program files\desktop.ini
              2008-06-12 09:07 665,600 a------- c:\windows\inf\drvindex.dat
              2006-11-02 16:44 340,236 a------- c:\windows\inf\perflib\040c\perfi.dat
              2006-11-02 16:44 340,236 a------- c:\windows\inf\perflib\040c\perfh.dat
              2006-11-02 16:44 37,390 a------- c:\windows\inf\perflib\040c\perfd.dat
              2006-11-02 16:44 37,390 a------- c:\windows\inf\perflib\040c\perfc.dat
              2006-11-02 10:20 287,440 a------- c:\windows\inf\perflib\0000\perfi.dat
              2006-11-02 10:20 287,440 a------- c:\windows\inf\perflib\0000\perfh.dat
              2006-11-02 10:20 30,674 a------- c:\windows\inf\perflib\0000\perfd.dat
              2006-11-02 10:20 30,674 a------- c:\windows\inf\perflib\0000\perfc.dat
              2008-07-16 18:33 16,384 a--sh--- c:\windows\serviceprofiles\networkservice\appdata\local\microsoft\windows\history\history.ie5\index.dat
              2008-07-16 18:33 32,768 a--sh--- c:\windows\serviceprofiles\networkservice\appdata\local\microsoft\windows\temporary internet files\content.ie5\index.dat
              2008-07-16 18:33 16,384 a--sh--- c:\windows\serviceprofiles\networkservice\appdata\roaming\microsoft\windows\cookies\index.dat
              2008-09-14 09:10 32,768 a--sh--- c:\windows\system32\config\systemprofile\appdata\local\microsoft\windows\history\history.ie5\mshist012008091420080915\index.dat
              2008-01-15 18:05 8,192 a--sh--- c:\windows\users\default\NTUSER.DAT

              ============= FINISH: 10:31:57,40 ===============
              0
              1. DDS (Ver_09-02-01.01) - NTFSx86
                Run by KLEIN jean francois at 10:28:15,35 on 01/03/2009
                Internet Explorer: 7.0.6000.16809
                Microsoft® Windows Vista™ Professionnel 6.0.6000.0.1252.33.1036.18.2046.569 [GMT 1:00]

                AV: avast! antivirus 4.8.1296 [VPS 090228-0] *On-access scanning enabled* (Updated)

                ============== Running Processes ===============

                C:\Windows\system32\wininit.exe
                C:\Windows\system32\lsm.exe
                C:\Windows\system32\svchost.exe -k DcomLaunch
                C:\Windows\system32\svchost.exe -k rpcss
                C:\Windows\System32\svchost.exe -k secsvcs
                C:\Windows\system32\Ati2evxx.exe
                C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
                C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
                C:\Windows\system32\svchost.exe -k netsvcs
                C:\Windows\system32\SLsvc.exe
                C:\Windows\system32\svchost.exe -k LocalService
                C:\Windows\system32\svchost.exe -k NetworkService
                C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
                C:\Program Files\Alwil Software\Avast4\ashServ.exe
                C:\Windows\System32\spoolsv.exe
                C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
                C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
                C:\Program Files\Bonjour\mDNSResponder.exe
                C:\Windows\system32\svchost.exe -k bthsvcs
                C:\Program Files\Windows Live\Contrôle parental\fsssvc.exe
                C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
                C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
                C:\Windows\system32\lxcrcoms.exe
                C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
                C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
                C:\Program Files\Dell Support Center\bin\sprtsvc.exe
                C:\Windows\system32\svchost.exe -k imgsvc
                C:\Windows\System32\svchost.exe -k WerSvcGroup
                C:\Windows\system32\SearchIndexer.exe
                C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
                C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
                C:\Windows\system32\svchost.exe -k WindowsMobile
                C:\Windows\system32\WUDFHost.exe
                C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
                C:\Windows\system32\taskeng.exe
                C:\Program Files\iPod\bin\iPodService.exe
                C:\Program Files\Windows Live\Messenger\usnsvc.exe
                C:\Windows\system32\wbem\wmiprvse.exe
                C:\Windows\system32\Ati2evxx.exe
                C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
                C:\Windows\system32\taskeng.exe
                C:\Windows\system32\Dwm.exe
                C:\Windows\Explorer.EXE
                C:\Program Files\Windows Defender\MSASCui.exe
                C:\Windows\RtHDVCpl.exe
                C:\Windows\WindowsMobile\wmdc.exe
                C:\Program Files\Java\jre1.6.0\bin\jusched.exe
                C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe
                C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
                C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.EXE
                C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
                C:\Program Files\Lexmark 2400 Series\lxcrmon.exe
                C:\Program Files\Lexmark 2400 Series\ezprint.exe
                C:\Program Files\Windows Live\Contrôle parental\fssui.exe
                C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
                C:\Program Files\Logitech\QuickCam\Quickcam.exe
                C:\Program Files\iTunes\iTunesHelper.exe
                C:\Program Files\Alwil Software\Avast4\ashDisp.exe
                C:\Program Files\Windows Media Player\wmpnscfg.exe
                C:\Program Files\Windows Live\Messenger\msnmsgr.exe
                C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
                C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                C:\Program Files\WIDCOMM\Logiciel Bluetooth\BTTray.exe
                C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
                C:\Program Files\Windows Media Player\wmpnetwk.exe
                C:\Windows\system32\wbem\unsecapp.exe
                C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
                C:\Windows\system32\wuauclt.exe
                C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
                C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
                C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
                C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\CPSHelpRunner.exe
                C:\Windows\servicing\TrustedInstaller.exe
                C:\Windows\system32\vssvc.exe
                C:\Windows\System32\svchost.exe -k swprv
                C:\Windows\system32\wuauclt.exe
                C:\Windows\system32\conime.exe
                C:\Program Files\Internet Explorer\ieuser.exe
                C:\Program Files\Internet Explorer\iexplore.exe
                C:\Program Files\Google\Google Toolbar\GoogleToolbarUser.exe
                C:\Windows\system32\Macromed\Flash\FlashUtil9f.exe
                C:\Windows\system32\SearchProtocolHost.exe
                C:\Windows\system32\SearchFilterHost.exe
                C:\Windows\system32\WerCon.exe
                C:\Users\KLEIN jean francois\Desktop\dds.scr
                C:\Windows\system32\wbem\wmiprvse.exe

                ============== Pseudo HJT Report ===============

                uSearch Page = hxxp://www.google.com
                uStart Page = hxxp://www.google.fr/webhp?sourceid=navclient&hl=fr&ie=UTF-8
                uWindow Title = Internet Explorer fourni par Dell
                uSearch Bar = hxxp://www.google.com/ie
                uInternet Settings,ProxyOverride = *.local
                BHO: Aide pour le lien d'Adobe PDF Reader: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
                BHO: Lexmark Barre d'outils: {1017a80c-6f09-4548-a84d-edd6ac9525f0} - c:\program files\lexmark toolbar\toolband.dll
                BHO: Windows Live OneCare Family Safety Browser Helper Class: {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - c:\program files\windows live\contrôle parental\fssbho.dll
                BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
                BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0\bin\ssv.dll
                BHO: {7E853D72-626A-48EC-A868-BA8D5E23E045} - No File
                BHO: Programme d'aide de l'Assistant de connexion Windows Live: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
                BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar.dll
                BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.0.926.3450\swg.dll
                BHO: Windows Live Toolbar Helper: {bdbd1dad-c946-4a17-adc1-64b5b4ff55d0} - c:\program files\windows live toolbar\msntb.dll
                BHO: NoExplorer - No File
                BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - c:\program files\google\google toolbar\component\fastsearch_219B3E1547538286.dll
                BHO: CBrowserHelperObject Object: {ca6319c0-31b7-401e-a518-a07c3db8f777} - c:\program files\dell\bae\BAE.dll
                TB: Lexmark Barre d'outils: {1017a80c-6f09-4548-a84d-edd6ac9525f0} - c:\program files\lexmark toolbar\toolband.dll
                TB: Windows Live Toolbar: {bdad1dad-c946-4a17-adc1-64b5b4ff55d0} - c:\program files\windows live toolbar\msntb.dll
                TB: &Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar.dll
                uRun: [DellSupportCenter] "c:\program files\dell support center\bin\sprtcmd.exe" /P DellSupportCenter
                uRun: [AdobeUpdater] c:\program files\common files\adobe\updater5\AdobeUpdater.exe
                uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
                uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
                uRun: [VPbubble] "c:\program files\nosibay\vpbubble\launcher.exe"
                uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe
                uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
                mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
                mRun: [RtHDVCpl] RtHDVCpl.exe
                mRun: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe
                mRun: [SunJavaUpdateSched] "c:\program files\java\jre1.6.0\bin\jusched.exe"
                mRun: [StartCCC] c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe
                mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
                mRun: [<NO NAME>]
                mRun: [RoxWatchTray] "c:\program files\common files\roxio shared\9.0\sharedcom\RoxWatchTray9.exe"
                mRun: [PDVDDXSrv] "c:\program files\cyberlink\powerdvd dx\PDVDDXSrv.exe"
                mRun: [Google Desktop Search] "c:\program files\google\google desktop search\GoogleDesktop.exe" /startup
                mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
                mRun: [dscactivate] "c:\program files\dell support center\gs_agent\custom\dsca.exe"
                mRun: [lxcrmon.exe] "c:\program files\lexmark 2400 series\lxcrmon.exe"
                mRun: [EzPrint] "c:\program files\lexmark 2400 series\ezprint.exe"
                mRun: [FaxCenterServer] "c:\program files\lexmark fax solutions\fm3032.exe" /s
                mRun: [LXCRCATS] rundll32 c:\windows\system32\spool\drivers\w32x86\3\LXCRtime.dll,_RunDLLEntry@16
                mRun: [DellSupportCenter] "c:\program files\dell support center\bin\sprtcmd.exe" /P DellSupportCenter
                mRun: [fssui] "c:\program files\windows live\contrôle parental\fssui.exe" -autorun
                mRun: [PAC207_Monitor] c:\windows\pixart\pac207\Monitor.exe
                mRun: [Monitor] c:\windows\pixart\pac207\Monitor.exe
                mRun: [LogitechCommunicationsManager] "c:\program files\common files\logishrd\lcommgr\Communications_Helper.exe"
                mRun: [LogitechQuickCamRibbon] "c:\program files\logitech\quickcam\Quickcam.exe" /hide
                mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
                mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
                mRun: [avast!] c:\progra~1\alwils~1\avast4\ashDisp.exe
                dRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
                dRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
                StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\bttray.lnk - c:\program files\widcomm\logiciel bluetooth\BTTray.exe
                StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\desktop messenger\8876480\program\LogitechDesktopMessenger.exe
                IE: &Windows Live Search - c:\program files\windows live toolbar\msntb.dll/search.htm
                IE: Envoyer à &Bluetooth - c:\program files\widcomm\logiciel bluetooth\btsendto_ie_ctx.htm
                IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0\bin\npjpi160.dll
                IE: {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - c:\windows\windowsmobile\INetRepl.dll
                IE: {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - c:\windows\windowsmobile\INetRepl.dll
                IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
                DPF: {04CB5B64-5915-4629-B869-8945CEBADD21} - hxxps://static.impots.gouv.fr/abos/static/securite/certdgi1.cab
                DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
                DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} - hxxp://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
                DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} - hxxp://musicmix.messenger.msn.com/Medialogic.CAB
                DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} - hxxp://gfx2.hotmail.com/mail/w3/resources/VistaMSNPUpldfr-fr.cab
                DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} - hxxp://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
                DPF: {5D6F45B3-9043-443D-A792-115447494D24} - hxxp://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
                DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
                DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
                DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
                DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
                DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
                Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\logitech\desktop messenger\8876480\program\GAPlugProtocol-8876480.dll
                AppInit_DLLs: c:\progra~1\google\google~2\GOEC62~1.DLL

                ============= SERVICES / DRIVERS ===============

                R1 aswSP;avast! Self Protection;c:\windows\system32\drivers\aswSP.sys [2008-12-29 111184]
                R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2008-12-29 20560]
                R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2008-12-29 51792]
                R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr.sys [2008-7-11 43816]
                R2 fsssvc;Windows Live OneCare Contrôle parental;c:\program files\windows live\contrôle parental\fsssvc.exe [2007-12-17 523816]
                S3 GoogleDesktopManager-061008-081103;Google Desktop Manager 5.7.806.10245;c:\program files\google\google desktop search\GoogleDesktop.exe [2008-1-15 29744]

                =============== Created Last 30 ================

                2009-02-25 20:38 268 a---h--- C:\sqmdata01.sqm
                2009-02-25 20:38 244 a---h--- C:\sqmnoopt01.sqm
                2009-02-25 14:44 <DIR> --d----- c:\program files\Trend Micro
                2009-02-07 11:25 <DIR> --d----- c:\program files\Disney Pix Micro Downloader
                2009-02-07 11:19 <DIR> --d----- c:\program files\Disney Pix 2.0
                2009-02-07 11:15 <DIR> --d----- c:\program files\common files\Wise Installation Wizard

                ==================== Find3M ====================

                2009-02-28 18:57 1,828 a------- c:\users\kleinj~1\appdata\roaming\wklnhst.dat
                2009-02-19 18:47 690,888 a------- c:\windows\system32\perfh00C.dat
                2009-02-19 18:47 117,676 a------- c:\windows\system32\perfc00C.dat
                2009-01-15 05:16 826,368 a------- c:\windows\system32\wininet.dll
                2009-01-15 05:16 56,320 a------- c:\windows\system32\iesetup.dll
                2009-01-15 05:16 52,736 a------- c:\windows\apppatch\iebrshim.dll
                2009-01-15 05:15 26,624 a------- c:\windows\system32\ieUnatt.exe
                2008-12-28 16:26 51,200 a------- c:\windows\inf\infpub.dat
                2008-12-28 16:26 143,360 a------- c:\windows\inf\infstrng.dat
                2008-12-28 16:26 86,016 a------- c:\windows\inf\infstor.dat
                2008-12-12 07:33 174 a--sh--- c:\program files\desktop.ini
                2008-06-12 09:07 665,600 a------- c:\windows\inf\drvindex.dat
                2006-11-02 16:44 340,236 a------- c:\windows\inf\perflib\040c\perfi.dat
                2006-11-02 16:44 340,236 a------- c:\windows\inf\perflib\040c\perfh.dat
                2006-11-02 16:44 37,390 a------- c:\windows\inf\perflib\040c\perfd.dat
                2006-11-02 16:44 37,390 a------- c:\windows\inf\perflib\040c\perfc.dat
                2006-11-02 10:20 287,440 a------- c:\windows\inf\perflib\0000\perfi.dat
                2006-11-02 10:20 287,440 a------- c:\windows\inf\perflib\0000\perfh.dat
                2006-11-02 10:20 30,674 a------- c:\windows\inf\perflib\0000\perfd.dat
                2006-11-02 10:20 30,674 a------- c:\windows\inf\perflib\0000\perfc.dat
                2008-07-16 18:33 16,384 a--sh--- c:\windows\serviceprofiles\networkservice\appdata\local\microsoft\windows\history\history.ie5\index.dat
                2008-07-16 18:33 32,768 a--sh--- c:\windows\serviceprofiles\networkservice\appdata\local\microsoft\windows\temporary internet files\content.ie5\index.dat
                2008-07-16 18:33 16,384 a--sh--- c:\windows\serviceprofiles\networkservice\appdata\roaming\microsoft\windows\cookies\index.dat
                2008-09-14 09:10 32,768 a--sh--- c:\windows\system32\config\systemprofile\appdata\local\microsoft\windows\history\history.ie5\mshist012008091420080915\index.dat
                2008-01-15 18:05 8,192 a--sh--- c:\windows\users\default\NTUSER.DAT

                ============= FINISH: 10:31:57,40 ===============
                0
                1. salut la je vois un peu mais desactive le tea-timer de spybot et :

                  Télécharge Random's System Information Tool (RSIT) de random/random et enregistre l'exécutable sur ton Bureau.

                  -> RSIT

                  ! Déconnecte toi et ferme toutes tes applications en cours !

                  Double-clique sur " RSIT.exe " pour le lancer .

                  -> Une première fenêtre s'ouvre avec en titre : " Disclaimer of warranty " .

                  * Devant l'option "List files/folders created ..." , tu choisis : 2 months

                  * clique ensuite sur " Continue " pour lancer l'analyse ...

                  -> laisse faire le scan et ne touche pas au PC ...

                  Lorsque l'analyse sera terminée, deux fichiers texte s'ouvriront (probablement avec le bloc-note).

                  Poste le contenu de " log.txt " (c'est celui qui apparait à l'écran), ainsi que de " info.txt " (que tu verras dans la barre des tâches), pour analyse et attends la suite ...

                  Important : poste un rapport, puis l'autre dans la réponse suivante
                  Si tu essaies de poster les deux en même temps, cela risque d'être trop long pour le forum

                  ( Note : les rapports seront en outre sauvegardés dans ce dossier -> C:\rsit )

                  0
                  1. salut

                    1 comment on enleve le tee timer de spybot ?
                    2 pourquoi tu as besoin de tous ces scans ?
                    3 y a besoin d'un installation ?
                    0
                    1. salut

                      comment on enleve le tee timer de spybot ?

                      dans l onglet options tu peux arreter le resident

                      pourquoi tu as besoin de tous ces scans

                      pour t'eviter de formater

                      y a besoin d'un installation


                      de quoi ?
                      0
                      1. heuuu j'ai pas j'ai pas de Option !
                        0
                        1. je trouve pas ! t'as pas un scan ?
                          0
                          1. bonsoir clic droit dans la barre des taches / gestionnaire des taches / Processus et stoppe le processus Tea-Timer

                            ensuite fais ce demandé

                            :)
                            0
                            1. Bon je vais passer pour un inculte mais j'assume ! c'est quoi ou bien où est la barre de taches ?
                              0
                              1. bonjour c'est la barre bleue ou noire que tu as en bas de l ecran

                                :)
                                0
                                Précédent
                                • 1
                                • 2