Mon pc ram,lag
House
-
Nic00 Messages postés 1751 Statut Membre -
Nic00 Messages postés 1751 Statut Membre -
Bonjour,
Je vous poste mon rapport hijackthis:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:02:45, on 01/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Windows Live\Family Safety\fsssvc.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PROGRA~1\GAMING~1\MouseElf.EXE
C:\Program Files\Windows Live\Family Safety\fsui.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\Program Files\Microsoft LifeCam\LifeTray.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Steam\Steam.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatcher.aspx?tp=aus&qkw=%s&tbid=60327
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.fr/?client=firefox-a&rls=org.mozilla:fr:official&gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?client=firefox-a&rls=org.mozilla:fr:official&gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60327
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [mouseElf] C:\PROGRA~1\GAMING~1\MouseElf.EXE
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Outil de notification Live Search.lnk = D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://dev.srtest.com/srl_bin/sysreqlab3.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
Je vous poste mon rapport hijackthis:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:02:45, on 01/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Windows Live\Family Safety\fsssvc.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PROGRA~1\GAMING~1\MouseElf.EXE
C:\Program Files\Windows Live\Family Safety\fsui.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\Program Files\Microsoft LifeCam\LifeTray.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Steam\Steam.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatcher.aspx?tp=aus&qkw=%s&tbid=60327
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.fr/?client=firefox-a&rls=org.mozilla:fr:official&gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?client=firefox-a&rls=org.mozilla:fr:official&gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60327
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [mouseElf] C:\PROGRA~1\GAMING~1\MouseElf.EXE
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Startup: Outil de notification Live Search.lnk = D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://dev.srtest.com/srl_bin/sysreqlab3.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
A voir également:
- Mon pc ram,lag
- Pc qui rame - Guide
- Reinitialiser pc - Guide
- Test performance pc - Guide
- Downloader for pc - Télécharger - Téléchargement & Transfert
- Plus de son sur mon pc - Guide
42 réponses
Ok, plus d'infections apparemment =)
Tu peux faire le rapport en ligne comme suggéré par Genproc ou bien un rapport avec ton Antivirus mais fait en 1 des 2.
Tu peux faire le rapport en ligne comme suggéré par Genproc ou bien un rapport avec ton Antivirus mais fait en 1 des 2.
House
Et je te le poste
House
Et aussi j'ai un problème avec un jeu en ligne sais counter strike 1.6.J'ai une baisse de fps pendant 5scd sur laquel je lag et de temps en temps en haut a droite sa me marque warning cl_flushentytipacket un truc comme sa.Jai aussi counter strike source qui est plus puissant et que je fait tourner a fond et je n'ai pas la baisse de fps de quoi sa peu venir?peu être de java moi jais la version 6 udpade 13.merci de me repondre
House
Et puis faut encore que je vire avast etou les autre truc que tu ma dit donc j'ai vraiment besoin de toi et je te remercie pour tous
Salut,
Clique sur Démarrer, puis Exécuter
Tape : Services.msc et appuie sur Entrée
Choisis le mode "Etendu" (onglets inférieurs)
Grâce à la barre de défilement (à droite) recherche le service suivant:
Boonty Games
Quand le service est trouvé, pointe dessus, double-clique.
Dans la fenêtre suivante qui apparait, sous l'onglet Général clique sur le bouton Arrêter,
puis déroule le Type de Démarrage pour le modifier en Désactivé
Clique sur Appliquer puis OK.
Ensuite supprime le dossier "boonty shared" qui se trouve ici :
C:\Program Files\Fichiers communs\
Relance ensuite Hijackthis en faisant Do a system scan only et coche ces lignes:
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
puis clique sur Fix checked
Tu peux fermer Hijackthis.
Ensuite:
▶ Télécharge random's system information tool (RSIT)
http://images.malwareremoval.com/random/RSIT.exe
▶Enregistre le sur ton Bureau
▶ Double clique sur RSIT.exe pour l’exécuter.
▶ Clique sur "continue" à l'écran Disclaimer.
▶ Une fois le scan terminé , 2 rapports vont apparaitre.
▶Poste les dans ton prochain message
▶ Note : les rapports se trouvent aussi ici : ( log.txt & info.txt )
Clique sur Démarrer, puis Exécuter
Tape : Services.msc et appuie sur Entrée
Choisis le mode "Etendu" (onglets inférieurs)
Grâce à la barre de défilement (à droite) recherche le service suivant:
Boonty Games
Quand le service est trouvé, pointe dessus, double-clique.
Dans la fenêtre suivante qui apparait, sous l'onglet Général clique sur le bouton Arrêter,
puis déroule le Type de Démarrage pour le modifier en Désactivé
Clique sur Appliquer puis OK.
Ensuite supprime le dossier "boonty shared" qui se trouve ici :
C:\Program Files\Fichiers communs\
Relance ensuite Hijackthis en faisant Do a system scan only et coche ces lignes:
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Fichiers communs\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
puis clique sur Fix checked
Tu peux fermer Hijackthis.
Ensuite:
▶ Télécharge random's system information tool (RSIT)
http://images.malwareremoval.com/random/RSIT.exe
▶Enregistre le sur ton Bureau
▶ Double clique sur RSIT.exe pour l’exécuter.
▶ Clique sur "continue" à l'écran Disclaimer.
▶ Une fois le scan terminé , 2 rapports vont apparaitre.
▶Poste les dans ton prochain message
▶ Note : les rapports se trouvent aussi ici : ( log.txt & info.txt )
Voici mes deux rapport RSIT:
1r Rapport:
Logfile of random's system information tool 1.06 (written by random/random)
Run by DAVID at 2009-06-02 13:49:08
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 11 GB (36%) free of 31 GB
Total RAM: 2047 MB (70% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:49:13, on 02/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Windows Live\Family Safety\fsssvc.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\GAMING~1\MouseElf.EXE
C:\Program Files\Windows Live\Family Safety\fsui.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\Program Files\Mozilla Firefox\firefox.exe
D:\Documents and Settings\DAVID\Bureau\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\DAVID.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatcher.aspx?tp=aus&qkw=%s&tbid=60327
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.fr/?client=firefox-a&rls=org.mozilla:fr:official&gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?client=firefox-a&rls=org.mozilla:fr:official&gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60327
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [mouseElf] C:\PROGRA~1\GAMING~1\MouseElf.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - Startup: Outil de notification Live Search.lnk = D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://dev.srtest.com/srl_bin/sysreqlab3.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
1r Rapport:
Logfile of random's system information tool 1.06 (written by random/random)
Run by DAVID at 2009-06-02 13:49:08
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 11 GB (36%) free of 31 GB
Total RAM: 2047 MB (70% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 13:49:13, on 02/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Windows Live\Family Safety\fsssvc.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\GAMING~1\MouseElf.EXE
C:\Program Files\Windows Live\Family Safety\fsui.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\Program Files\Mozilla Firefox\firefox.exe
D:\Documents and Settings\DAVID\Bureau\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\DAVID.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.crawler.com/search/dispatcher.aspx?tp=aus&qkw=%s&tbid=60327
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.fr/?client=firefox-a&rls=org.mozilla:fr:official&gws_rd=ssl
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?client=firefox-a&rls=org.mozilla:fr:official&gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60327
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [mouseElf] C:\PROGRA~1\GAMING~1\MouseElf.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - Startup: Outil de notification Live Search.lnk = D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://dev.srtest.com/srl_bin/sysreqlab3.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd.dll,C:\PROGRA~1\KASPER~1\KASPER~1\mzvkbd3.dll,C:\PROGRA~1\KASPER~1\KASPER~1\adialhk.dll,C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
C'est tout simplement bourré d'infections.....
▶ /!\ Désactive ton antivirus et tout autre type de protection ! /!\
▶ /!\ Déconnecte toi et ferme toutes les applications en cours (y compris Internet) ! /!\
▶ Si tu es sous Vista désactive l'UAC le temps de la désinfection :
https://www.zebulon.fr/astuces/pratique/220-desactiver-l-uac-dans-vista.html
▶Télécharge ComboFix de sUBs :
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
▶Sauvegarde le sur ton bureau et pas ailleurs !
▶ Double-clique sur ComboFix.exe Il va te poser une question, suis les invites puis attends que Combofix ait terminé, il est possible que ton PC reboot, c’est normal, un rapport sera créé.
▶Poste le rapport qui se trouve ici: C:\Combofix.txt
▶ clique dessus pour l'ouvrir puis clique droit >>copier
▶Et dans ta prochaine réponse : clique droit >> coller
▶ /!\ Désactive ton antivirus et tout autre type de protection ! /!\
▶ /!\ Déconnecte toi et ferme toutes les applications en cours (y compris Internet) ! /!\
▶ Si tu es sous Vista désactive l'UAC le temps de la désinfection :
https://www.zebulon.fr/astuces/pratique/220-desactiver-l-uac-dans-vista.html
▶Télécharge ComboFix de sUBs :
http://download.bleepingcomputer.com/sUBs/ComboFix.exe
▶Sauvegarde le sur ton bureau et pas ailleurs !
▶ Double-clique sur ComboFix.exe Il va te poser une question, suis les invites puis attends que Combofix ait terminé, il est possible que ton PC reboot, c’est normal, un rapport sera créé.
▶Poste le rapport qui se trouve ici: C:\Combofix.txt
▶ clique dessus pour l'ouvrir puis clique droit >>copier
▶Et dans ta prochaine réponse : clique droit >> coller
voici mon rapport combofix:
ComboFix 09-05-31.06 - DAVID 02/06/2009 20:18.1 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.33.1036.18.2047.1585 [GMT 2:00]
Lancé depuis: d:\documents and settings\DAVID\Bureau\ComboFix.exe
AV: BitDefender Antivirus *On-access scanning disabled* (Updated) {6C4BB89C-B0ED-4F41-A29C-4373888923BB}
AV: Kaspersky Internet Security *On-access scanning disabled* (Updated) {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FW: Kaspersky Internet Security *disabled* {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FW: Norton Internet Worm Protection *disabled* {990F9400-4CEE-43EA-A83A-D013ADD8EA6E}
FW: Pare-feu BitDefender *disabled* {4055920F-2E99-48A8-A270-4243D2B8F242}
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_BOONTY_GAMES
-------\Service_Boonty Games
((((((((((((((((((((((((((((( Fichiers créés du 2009-05-02 au 2009-06-02 ))))))))))))))))))))))))))))))))))))
.
2009-06-02 18:15 . 2009-06-02 18:15 -------- d-sh--w- d:\documents and settings\NetworkService\IETldCache
2009-06-02 11:49 . 2009-06-02 11:49 -------- d-----w- C:\rsit
2009-06-01 16:00 . 2009-06-01 16:00 -------- d-----w- c:\program files\Trend Micro
2009-05-30 17:32 . 2009-05-30 17:32 3371383 ----a-w- d:\documents and settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
2009-05-29 14:46 . 2009-05-29 14:46 -------- d-----w- d:\documents and settings\DAVID\Local Settings\Application Data\Scansoft
2009-05-29 14:38 . 2009-05-29 14:39 -------- d-----w- d:\documents and settings\DAVID\Local Settings\Application Data\Canon Easy-PhotoPrint EX
2009-05-29 14:24 . 2009-05-29 14:31 -------- d-----w- d:\documents and settings\DAVID\Application Data\Canon
2009-05-29 14:23 . 2009-05-29 14:23 -------- d-----w- d:\documents and settings\All Users\Application Data\CanonIJPLM
2009-05-29 14:15 . 2009-05-29 14:15 -------- d-----w- d:\documents and settings\All Users\Application Data\InstallShield
2009-05-29 14:15 . 2009-05-29 14:15 -------- d-----w- d:\documents and settings\DAVID\Application Data\ScanSoft
2009-05-29 14:15 . 2009-05-29 14:15 -------- d-----w- d:\documents and settings\All Users\Application Data\ScanSoft
2009-05-29 14:15 . 2009-05-29 14:15 -------- d-----w- c:\program files\Fichiers communs\ScanSoft Shared
2009-05-29 14:14 . 2009-05-29 14:14 -------- d-----w- c:\program files\ScanSoft
2009-05-29 14:01 . 2009-05-29 14:01 -------- d-----w- c:\program files\Fichiers communs\CANON
2009-05-29 13:55 . 2009-05-29 13:55 -------- d--h--w- d:\documents and settings\All Users\Application Data\CanonBJ
2009-05-29 13:55 . 2007-03-18 20:00 215040 ----a-w- c:\windows\system32\CNMLM8S.DLL
2009-05-29 13:55 . 2009-05-29 13:55 -------- d--h--w- c:\windows\system32\CanonIJ Uninstaller Information
2009-05-29 13:54 . 2007-03-15 05:12 188416 ----a-w- c:\windows\system32\CNC210O.DLL
2009-05-29 13:54 . 2007-03-23 07:29 98304 ----a-w- c:\windows\system32\CNC210I.DLL
2009-05-29 13:54 . 2007-03-19 01:16 200704 ----a-w- c:\windows\system32\CNC210L.DLL
2009-05-29 13:54 . 2007-03-23 07:30 1400832 ----a-w- c:\windows\system32\CNC210C.DLL
2009-05-29 13:54 . 2009-05-29 13:54 -------- d--h--w- c:\program files\CanonBJ
2009-05-29 13:52 . 2009-05-29 14:23 -------- d-----w- c:\program files\Canon
2009-05-28 09:34 . 2009-05-28 09:34 -------- d-----w- c:\program files\PhotoFiltre
2009-05-22 14:03 . 2009-05-22 14:03 -------- d-----w- c:\program files\Teamspeak2_RC2
2009-05-21 11:38 . 2009-05-21 11:38 -------- d-sh--w- d:\documents and settings\DAVID\IECompatCache
2009-05-20 11:32 . 2009-05-20 11:32 -------- d-sh--w- d:\documents and settings\DAVID\PrivacIE
2009-05-20 09:09 . 2009-05-20 09:09 -------- d-sh--w- d:\documents and settings\DAVID\IETldCache
2009-05-20 09:07 . 2009-05-20 09:07 -------- d-sh--w- d:\documents and settings\LocalService\IETldCache
2009-05-20 09:06 . 2009-05-31 11:23 -------- d-----w- c:\windows\ie8updates
2009-05-20 09:05 . 2009-04-25 05:30 102400 ------w- c:\windows\system32\dllcache\iecompat.dll
2009-05-20 09:04 . 2009-05-20 09:05 -------- dc-h--w- c:\windows\ie8
2009-05-15 15:03 . 2009-05-26 11:19 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-05-15 15:03 . 2009-05-26 11:20 40160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-05-15 15:03 . 2009-05-30 17:32 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-05-04 17:03 . 2009-05-04 17:03 -------- d-----w- d:\documents and settings\DAVID\Application Data\dvdcss
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-02 18:24 . 2009-04-26 08:37 -------- d-----w- c:\program files\Steam
2009-06-02 18:24 . 2009-04-04 15:33 -------- d-----w- d:\documents and settings\All Users\Application Data\Kaspersky Lab
2009-06-02 18:22 . 2009-04-04 15:33 614432 --sha-w- c:\windows\system32\drivers\fidbox2.dat
2009-06-02 18:22 . 2009-04-04 15:33 4228 --sha-w- c:\windows\system32\drivers\fidbox2.idx
2009-06-02 18:22 . 2009-04-04 15:33 2702368 --sha-w- c:\windows\system32\drivers\fidbox.dat
2009-06-02 18:22 . 2009-04-04 15:33 23240 --sha-w- c:\windows\system32\drivers\fidbox.idx
2009-06-02 18:21 . 2006-08-23 19:30 12 ----a-w- c:\windows\bthservsdp.dat
2009-05-31 17:10 . 2009-01-01 19:14 -------- d-----w- d:\documents and settings\DAVID\Application Data\FileZilla
2009-05-31 11:23 . 2009-04-05 17:56 -------- d-----w- c:\program files\Arovax AntiSpyware
2009-05-31 10:17 . 2009-03-08 10:15 1 ----a-w- d:\documents and settings\DAVID\Application Data\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2009-05-29 14:15 . 2006-07-08 16:30 -------- d-----w- c:\program files\Fichiers communs\InstallShield
2009-05-29 13:49 . 2006-07-08 16:30 -------- d-----w- c:\program files\Fichiers communs\Adobe
2009-05-22 12:10 . 2008-02-27 15:28 -------- d-----w- d:\documents and settings\DAVID\Application Data\uTorrent
2009-05-20 21:24 . 2009-04-04 15:34 94643 ----a-w- c:\windows\system32\drivers\klick.dat
2009-05-20 21:24 . 2009-04-04 15:34 105395 ----a-w- c:\windows\system32\drivers\klin.dat
2009-05-13 19:16 . 2009-03-29 20:49 -------- d-----w- c:\program files\CCleaner
2009-05-10 17:57 . 2008-05-17 09:53 -------- d-----w- c:\program files\Java
2009-05-07 14:44 . 2008-12-22 19:23 -------- d-----w- d:\documents and settings\DAVID\Application Data\teamspeak2
2009-04-27 12:06 . 2009-04-27 11:51 -------- d-----w- d:\documents and settings\DAVID\Application Data\Audacity
2009-04-26 18:26 . 2009-04-26 18:26 -------- d-----w- c:\program files\AGEIA Technologies
2009-04-26 18:25 . 2009-04-26 18:25 -------- d-----w- c:\program files\Fichiers communs\Wise Installation Wizard
2009-04-26 17:43 . 2006-08-23 14:05 51744 ----a-w- d:\documents and settings\DAVID\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-04-26 16:40 . 2009-04-26 16:40 -------- d-----w- d:\documents and settings\DAVID\Application Data\AccurateRip
2009-04-26 16:40 . 2009-04-26 16:40 13783 ----a-w- c:\windows\system32\SpoonUninstall-dBpoweramp Music Converter.dat
2009-04-26 16:40 . 2009-04-26 16:40 -------- d-----w- c:\program files\Illustrate
2009-04-26 16:40 . 2009-04-26 16:40 5052280 ----a-w- c:\windows\system32\SpoonUninstall.exe
2009-04-25 12:38 . 2009-04-25 12:38 -------- d-----w- c:\program files\JRE
2009-04-25 12:38 . 2009-03-08 10:09 -------- d-----w- c:\program files\OpenOffice.org 3
2009-04-22 14:31 . 2009-02-19 16:55 -------- d-----w- d:\documents and settings\DAVID\Application Data\gtk-2.0
2009-04-17 09:07 . 2009-04-17 09:05 -------- d-----w- d:\documents and settings\DAVID\Application Data\vlc
2009-04-16 11:34 . 2004-08-16 15:41 85984 ----a-w- c:\windows\system32\perfc00C.dat
2009-04-16 11:34 . 2004-08-16 15:41 512624 ----a-w- c:\windows\system32\perfh00C.dat
2009-04-16 11:34 . 2009-04-01 10:56 152576 ----a-w- d:\documents and settings\DAVID\Application Data\Sun\Java\jre1.6.0_13\lzma.dll
2009-04-15 10:20 . 2009-04-15 10:20 -------- d-----w- c:\program files\MSBuild
2009-04-15 10:20 . 2009-04-15 10:20 -------- d-----w- c:\program files\Reference Assemblies
2009-04-12 14:51 . 2009-04-12 14:50 86016 ----a-w- c:\windows\system32\OpenAL32.dll
2009-04-12 14:51 . 2009-04-12 14:50 262144 ----a-w- c:\windows\system32\wrap_oal.dll
2009-04-12 14:47 . 2006-07-08 16:30 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-04-12 14:23 . 2009-04-12 14:23 -------- d-----w- c:\program files\PC Wizard 2008
2009-04-10 20:58 . 2009-04-10 20:58 -------- d-----w- c:\program files\uTorrent
2009-04-10 20:56 . 2009-02-04 17:35 -------- d-----w- c:\program files\Microsoft ActiveSync
2009-04-10 20:55 . 2009-03-02 10:54 -------- d-----w- c:\program files\Free Audio Pack
2009-04-06 10:35 . 2006-07-08 16:30 -------- d-----w- c:\program files\Fichiers communs\AOL
2009-04-04 15:50 . 2008-01-29 15:29 33808 ----a-w- c:\windows\system32\drivers\klbg.sys
2009-04-04 15:50 . 2009-04-04 15:50 206088 ----a-w- d:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP8\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav8exec\8.0.0.506\avp.exe
2009-04-04 15:50 . 2009-04-04 15:50 33808 ----a-w- d:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP8\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav8exec\8.0.0.506\klbg.sys
2009-04-04 15:50 . 2009-04-04 15:50 226832 ----a-w- d:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP8\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav8exec\8.0.0.506\XP\klif.sys
2009-04-04 15:33 . 2009-04-04 15:33 -------- d-----w- c:\program files\Kaspersky Lab
2009-04-04 15:25 . 2007-09-29 14:37 -------- d-----w- d:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2009-03-27 06:14 . 2006-06-16 07:38 453152 ----a-w- c:\windows\system32\NVUNINST.EXE
2009-03-09 10:44 . 2009-03-09 10:44 152576 ----a-w- d:\documents and settings\DAVID\Application Data\Sun\Java\jre1.6.0_11\lzma.dll
2009-03-09 03:19 . 2009-03-09 10:45 410984 ----a-w- c:\windows\system32\deploytk.dll
2009-03-08 02:34 . 2004-08-16 15:41 914944 ----a-w- c:\windows\system32\wininet.dll
2009-03-08 02:34 . 2004-08-16 15:40 43008 ----a-w- c:\windows\system32\licmgr10.dll
2009-03-08 02:33 . 2004-08-16 15:40 18944 ----a-w- c:\windows\system32\corpol.dll
2009-03-08 02:33 . 2004-08-16 15:41 420352 ----a-w- c:\windows\system32\vbscript.dll
2009-03-08 02:32 . 2004-08-16 15:39 72704 ----a-w- c:\windows\system32\admparse.dll
2009-03-08 02:32 . 2004-08-16 15:40 71680 ----a-w- c:\windows\system32\iesetup.dll
2009-03-08 02:31 . 2004-08-16 15:40 34816 ----a-w- c:\windows\system32\imgutil.dll
2009-03-08 02:31 . 2004-08-16 15:40 48128 ----a-w- c:\windows\system32\mshtmler.dll
2009-03-08 02:31 . 2004-08-16 15:40 45568 ----a-w- c:\windows\system32\mshta.exe
2009-03-08 02:22 . 2004-08-16 15:40 156160 ----a-w- c:\windows\system32\msls31.dll
2009-03-06 14:20 . 2004-08-16 15:40 286720 ----a-w- c:\windows\system32\pdh.dll
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="c:\program files\steam\steam.exe" [2009-05-18 1217784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-03-27 13684736]
"mouseElf"="c:\progra~1\GAMING~1\MouseElf.EXE" [2006-02-27 471166]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe" [2009-04-04 206088]
"fssui"="c:\program files\Windows Live\Family Safety\fsui.exe" [2009-02-06 454000]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-03-27 86016]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-03-09 148888]
"CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2007-05-14 644696]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2007-04-03 1603152]
"OpwareSE4"="c:\program files\ScanSoft\OmniPageSE4\OpwareSE4.exe" [2007-02-04 79400]
d:\documents and settings\DAVID\Menu D‚marrer\Programmes\D‚marrage\
Outil de notification Live Search.lnk - d:\documents and settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe [2009-3-1 142336]
[HKLM\~\startupfolder\D:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^HP Digital Imaging Monitor.lnk]
path=d:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\HP Digital Imaging Monitor.lnk
backup=c:\windows\pss\HP Digital Imaging Monitor.lnkCommon Startup
[HKLM\~\startupfolder\D:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk]
path=d:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\Microsoft Office.lnk
backup=c:\windows\pss\Microsoft Office.lnkCommon Startup
[HKLM\~\startupfolder\D:^Documents and Settings^DAVID^Menu Démarrer^Programmes^Démarrage^Outil de notification Live Search.lnk]
path=d:\documents and settings\DAVID\Menu Démarrer\Programmes\Démarrage\Outil de notification Live Search.lnk
backup=c:\windows\pss\Outil de notification Live Search.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"InCD"=c:\program files\Nero\Nero 7\InCD\InCD.exe
"NeroFilterCheck"=c:\program files\Fichiers communs\Ahead\Lib\NeroCheck.exe
"nwiz"=nwiz.exe /install
"RTHDCPL"=RTHDCPL.EXE
"VX1000"=c:\windows\vVX1000.exe
"Alcmtr"=ALCMTR.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\Steam\\steam.exe"=
"c:\\Program Files\\Ratajik Software\\StationRipper\\StationRipperConsole.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\AOL 9.0\\aol.exe"=
"c:\\Program Files\\AOL 9.0\\waol.exe"=
"c:\\WINDOWS\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Steam\\steamapps\\ronii9\\counter-strike\\hl.exe"=
"c:\\Program Files\\Steam\\steamapps\\ronii9\\counter-strike source\\hl2.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\Microsoft LifeCam\\LifeCam.exe"=
"c:\\Program Files\\Microsoft LifeCam\\LifeExp.exe"=
"c:\\APPS\\skype\\phone\\Skype.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [29/01/2008 17:29 33808]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [29/01/2009 14:21 55136]
R2 fsssvc;Windows Live Contrôle parental;c:\program files\Windows Live\Family Safety\fsssvc.exe [06/02/2009 19:08 533360]
R3 genmcmnUSB;USB Scroll Mouse Driver;c:\windows\system32\drivers\gflmouhid.sys [29/04/2008 20:27 7808]
R3 KLFLTDEV;Kaspersky Lab KLFltDev;c:\windows\system32\drivers\klfltdev.sys [13/03/2008 18:02 26640]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [30/04/2008 17:06 24592]
S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys --> c:\windows\system32\DRIVERS\Lbd.sys [?]
S1 aswSP;avast! Self Protection; [x]
S2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys --> c:\windows\system32\DRIVERS\aswFsBlk.sys [?]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
.
Contenu du dossier 'Tâches planifiées'
2009-06-02 c:\windows\Tasks\Configurer mon PC.job
- c:\apps\SMP\PCSETUP.EXE [2005-11-17 08:03]
.
- - - - ORPHELINS SUPPRIMES - - - -
SafeBoot-procexp90.Sys
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.fr/firefox?client=firefox-a&rls=org.mozilla:fr:official
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~3\Office10\EXCEL.EXE/3000
FF - ProfilePath - d:\documents and settings\DAVID\Application Data\Mozilla\Firefox\Profiles\wup0okhd.default\
FF - component: c:\program files\Mozilla Firefox\extensions\{34ea1c70-42cc-42c5-aa29-ec58b95a343e}\components\FFAlert.dll
FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npbittorrent.dll
FF - plugin: c:\program files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
---- PARAMETRES FIREFOX ----
FF - user.js: yahoo.homepage.dontask - true.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-06-02 20:24
Windows 5.1.2600 Service Pack 3 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
--------------------- DLLs chargées dans les processus actifs ---------------------
- - - - - - - > 'explorer.exe'(2904)
c:\program files\ScanSoft\OmniPageSE4\OpHookSE4.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\eappprxy.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Autres processus actifs ------------------------
.
c:\program files\Fichiers communs\AOL\ACS\AOLacsd.exe
c:\apps\Powercinema\Kernel\TV\CLCapSvc.exe
c:\apps\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
c:\apps\HIDSERVICE\HidService.exe
c:\program files\Canon\IJPLM\ijplmsvc.exe
c:\program files\Nero\Nero 7\InCD\InCDsrv.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Microsoft LifeCam\MSCamS32.exe
c:\windows\system32\nvsvc32.exe
c:\windows\system32\HPZipm12.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\apps\Powercinema\Kernel\TV\CLSched.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\windows\system32\rundll32.exe
d:\documents and settings\DAVID\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Heure de fin: 2009-06-02 20:28 - La machine a redémarré
ComboFix-quarantined-files.txt 2009-06-02 18:28
Avant-CF: 11 636 113 408 octets libres
Après-CF: 11 516 608 512 octets libres
268 --- E O F --- 2009-05-27 09:03
ComboFix 09-05-31.06 - DAVID 02/06/2009 20:18.1 - NTFSx86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.33.1036.18.2047.1585 [GMT 2:00]
Lancé depuis: d:\documents and settings\DAVID\Bureau\ComboFix.exe
AV: BitDefender Antivirus *On-access scanning disabled* (Updated) {6C4BB89C-B0ED-4F41-A29C-4373888923BB}
AV: Kaspersky Internet Security *On-access scanning disabled* (Updated) {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FW: Kaspersky Internet Security *disabled* {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FW: Norton Internet Worm Protection *disabled* {990F9400-4CEE-43EA-A83A-D013ADD8EA6E}
FW: Pare-feu BitDefender *disabled* {4055920F-2E99-48A8-A270-4243D2B8F242}
.
(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Legacy_BOONTY_GAMES
-------\Service_Boonty Games
((((((((((((((((((((((((((((( Fichiers créés du 2009-05-02 au 2009-06-02 ))))))))))))))))))))))))))))))))))))
.
2009-06-02 18:15 . 2009-06-02 18:15 -------- d-sh--w- d:\documents and settings\NetworkService\IETldCache
2009-06-02 11:49 . 2009-06-02 11:49 -------- d-----w- C:\rsit
2009-06-01 16:00 . 2009-06-01 16:00 -------- d-----w- c:\program files\Trend Micro
2009-05-30 17:32 . 2009-05-30 17:32 3371383 ----a-w- d:\documents and settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
2009-05-29 14:46 . 2009-05-29 14:46 -------- d-----w- d:\documents and settings\DAVID\Local Settings\Application Data\Scansoft
2009-05-29 14:38 . 2009-05-29 14:39 -------- d-----w- d:\documents and settings\DAVID\Local Settings\Application Data\Canon Easy-PhotoPrint EX
2009-05-29 14:24 . 2009-05-29 14:31 -------- d-----w- d:\documents and settings\DAVID\Application Data\Canon
2009-05-29 14:23 . 2009-05-29 14:23 -------- d-----w- d:\documents and settings\All Users\Application Data\CanonIJPLM
2009-05-29 14:15 . 2009-05-29 14:15 -------- d-----w- d:\documents and settings\All Users\Application Data\InstallShield
2009-05-29 14:15 . 2009-05-29 14:15 -------- d-----w- d:\documents and settings\DAVID\Application Data\ScanSoft
2009-05-29 14:15 . 2009-05-29 14:15 -------- d-----w- d:\documents and settings\All Users\Application Data\ScanSoft
2009-05-29 14:15 . 2009-05-29 14:15 -------- d-----w- c:\program files\Fichiers communs\ScanSoft Shared
2009-05-29 14:14 . 2009-05-29 14:14 -------- d-----w- c:\program files\ScanSoft
2009-05-29 14:01 . 2009-05-29 14:01 -------- d-----w- c:\program files\Fichiers communs\CANON
2009-05-29 13:55 . 2009-05-29 13:55 -------- d--h--w- d:\documents and settings\All Users\Application Data\CanonBJ
2009-05-29 13:55 . 2007-03-18 20:00 215040 ----a-w- c:\windows\system32\CNMLM8S.DLL
2009-05-29 13:55 . 2009-05-29 13:55 -------- d--h--w- c:\windows\system32\CanonIJ Uninstaller Information
2009-05-29 13:54 . 2007-03-15 05:12 188416 ----a-w- c:\windows\system32\CNC210O.DLL
2009-05-29 13:54 . 2007-03-23 07:29 98304 ----a-w- c:\windows\system32\CNC210I.DLL
2009-05-29 13:54 . 2007-03-19 01:16 200704 ----a-w- c:\windows\system32\CNC210L.DLL
2009-05-29 13:54 . 2007-03-23 07:30 1400832 ----a-w- c:\windows\system32\CNC210C.DLL
2009-05-29 13:54 . 2009-05-29 13:54 -------- d--h--w- c:\program files\CanonBJ
2009-05-29 13:52 . 2009-05-29 14:23 -------- d-----w- c:\program files\Canon
2009-05-28 09:34 . 2009-05-28 09:34 -------- d-----w- c:\program files\PhotoFiltre
2009-05-22 14:03 . 2009-05-22 14:03 -------- d-----w- c:\program files\Teamspeak2_RC2
2009-05-21 11:38 . 2009-05-21 11:38 -------- d-sh--w- d:\documents and settings\DAVID\IECompatCache
2009-05-20 11:32 . 2009-05-20 11:32 -------- d-sh--w- d:\documents and settings\DAVID\PrivacIE
2009-05-20 09:09 . 2009-05-20 09:09 -------- d-sh--w- d:\documents and settings\DAVID\IETldCache
2009-05-20 09:07 . 2009-05-20 09:07 -------- d-sh--w- d:\documents and settings\LocalService\IETldCache
2009-05-20 09:06 . 2009-05-31 11:23 -------- d-----w- c:\windows\ie8updates
2009-05-20 09:05 . 2009-04-25 05:30 102400 ------w- c:\windows\system32\dllcache\iecompat.dll
2009-05-20 09:04 . 2009-05-20 09:05 -------- dc-h--w- c:\windows\ie8
2009-05-15 15:03 . 2009-05-26 11:19 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-05-15 15:03 . 2009-05-26 11:20 40160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-05-15 15:03 . 2009-05-30 17:32 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-05-04 17:03 . 2009-05-04 17:03 -------- d-----w- d:\documents and settings\DAVID\Application Data\dvdcss
.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-06-02 18:24 . 2009-04-26 08:37 -------- d-----w- c:\program files\Steam
2009-06-02 18:24 . 2009-04-04 15:33 -------- d-----w- d:\documents and settings\All Users\Application Data\Kaspersky Lab
2009-06-02 18:22 . 2009-04-04 15:33 614432 --sha-w- c:\windows\system32\drivers\fidbox2.dat
2009-06-02 18:22 . 2009-04-04 15:33 4228 --sha-w- c:\windows\system32\drivers\fidbox2.idx
2009-06-02 18:22 . 2009-04-04 15:33 2702368 --sha-w- c:\windows\system32\drivers\fidbox.dat
2009-06-02 18:22 . 2009-04-04 15:33 23240 --sha-w- c:\windows\system32\drivers\fidbox.idx
2009-06-02 18:21 . 2006-08-23 19:30 12 ----a-w- c:\windows\bthservsdp.dat
2009-05-31 17:10 . 2009-01-01 19:14 -------- d-----w- d:\documents and settings\DAVID\Application Data\FileZilla
2009-05-31 11:23 . 2009-04-05 17:56 -------- d-----w- c:\program files\Arovax AntiSpyware
2009-05-31 10:17 . 2009-03-08 10:15 1 ----a-w- d:\documents and settings\DAVID\Application Data\OpenOffice.org\3\user\uno_packages\cache\stamp.sys
2009-05-29 14:15 . 2006-07-08 16:30 -------- d-----w- c:\program files\Fichiers communs\InstallShield
2009-05-29 13:49 . 2006-07-08 16:30 -------- d-----w- c:\program files\Fichiers communs\Adobe
2009-05-22 12:10 . 2008-02-27 15:28 -------- d-----w- d:\documents and settings\DAVID\Application Data\uTorrent
2009-05-20 21:24 . 2009-04-04 15:34 94643 ----a-w- c:\windows\system32\drivers\klick.dat
2009-05-20 21:24 . 2009-04-04 15:34 105395 ----a-w- c:\windows\system32\drivers\klin.dat
2009-05-13 19:16 . 2009-03-29 20:49 -------- d-----w- c:\program files\CCleaner
2009-05-10 17:57 . 2008-05-17 09:53 -------- d-----w- c:\program files\Java
2009-05-07 14:44 . 2008-12-22 19:23 -------- d-----w- d:\documents and settings\DAVID\Application Data\teamspeak2
2009-04-27 12:06 . 2009-04-27 11:51 -------- d-----w- d:\documents and settings\DAVID\Application Data\Audacity
2009-04-26 18:26 . 2009-04-26 18:26 -------- d-----w- c:\program files\AGEIA Technologies
2009-04-26 18:25 . 2009-04-26 18:25 -------- d-----w- c:\program files\Fichiers communs\Wise Installation Wizard
2009-04-26 17:43 . 2006-08-23 14:05 51744 ----a-w- d:\documents and settings\DAVID\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-04-26 16:40 . 2009-04-26 16:40 -------- d-----w- d:\documents and settings\DAVID\Application Data\AccurateRip
2009-04-26 16:40 . 2009-04-26 16:40 13783 ----a-w- c:\windows\system32\SpoonUninstall-dBpoweramp Music Converter.dat
2009-04-26 16:40 . 2009-04-26 16:40 -------- d-----w- c:\program files\Illustrate
2009-04-26 16:40 . 2009-04-26 16:40 5052280 ----a-w- c:\windows\system32\SpoonUninstall.exe
2009-04-25 12:38 . 2009-04-25 12:38 -------- d-----w- c:\program files\JRE
2009-04-25 12:38 . 2009-03-08 10:09 -------- d-----w- c:\program files\OpenOffice.org 3
2009-04-22 14:31 . 2009-02-19 16:55 -------- d-----w- d:\documents and settings\DAVID\Application Data\gtk-2.0
2009-04-17 09:07 . 2009-04-17 09:05 -------- d-----w- d:\documents and settings\DAVID\Application Data\vlc
2009-04-16 11:34 . 2004-08-16 15:41 85984 ----a-w- c:\windows\system32\perfc00C.dat
2009-04-16 11:34 . 2004-08-16 15:41 512624 ----a-w- c:\windows\system32\perfh00C.dat
2009-04-16 11:34 . 2009-04-01 10:56 152576 ----a-w- d:\documents and settings\DAVID\Application Data\Sun\Java\jre1.6.0_13\lzma.dll
2009-04-15 10:20 . 2009-04-15 10:20 -------- d-----w- c:\program files\MSBuild
2009-04-15 10:20 . 2009-04-15 10:20 -------- d-----w- c:\program files\Reference Assemblies
2009-04-12 14:51 . 2009-04-12 14:50 86016 ----a-w- c:\windows\system32\OpenAL32.dll
2009-04-12 14:51 . 2009-04-12 14:50 262144 ----a-w- c:\windows\system32\wrap_oal.dll
2009-04-12 14:47 . 2006-07-08 16:30 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-04-12 14:23 . 2009-04-12 14:23 -------- d-----w- c:\program files\PC Wizard 2008
2009-04-10 20:58 . 2009-04-10 20:58 -------- d-----w- c:\program files\uTorrent
2009-04-10 20:56 . 2009-02-04 17:35 -------- d-----w- c:\program files\Microsoft ActiveSync
2009-04-10 20:55 . 2009-03-02 10:54 -------- d-----w- c:\program files\Free Audio Pack
2009-04-06 10:35 . 2006-07-08 16:30 -------- d-----w- c:\program files\Fichiers communs\AOL
2009-04-04 15:50 . 2008-01-29 15:29 33808 ----a-w- c:\windows\system32\drivers\klbg.sys
2009-04-04 15:50 . 2009-04-04 15:50 206088 ----a-w- d:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP8\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav8exec\8.0.0.506\avp.exe
2009-04-04 15:50 . 2009-04-04 15:50 33808 ----a-w- d:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP8\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav8exec\8.0.0.506\klbg.sys
2009-04-04 15:50 . 2009-04-04 15:50 226832 ----a-w- d:\documents and settings\All Users\Application Data\Kaspersky Lab\AVP8\Data\Updater\Temporary Files\temporaryFolder\AutoPatches\kav8exec\8.0.0.506\XP\klif.sys
2009-04-04 15:33 . 2009-04-04 15:33 -------- d-----w- c:\program files\Kaspersky Lab
2009-04-04 15:25 . 2007-09-29 14:37 -------- d-----w- d:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2009-03-27 06:14 . 2006-06-16 07:38 453152 ----a-w- c:\windows\system32\NVUNINST.EXE
2009-03-09 10:44 . 2009-03-09 10:44 152576 ----a-w- d:\documents and settings\DAVID\Application Data\Sun\Java\jre1.6.0_11\lzma.dll
2009-03-09 03:19 . 2009-03-09 10:45 410984 ----a-w- c:\windows\system32\deploytk.dll
2009-03-08 02:34 . 2004-08-16 15:41 914944 ----a-w- c:\windows\system32\wininet.dll
2009-03-08 02:34 . 2004-08-16 15:40 43008 ----a-w- c:\windows\system32\licmgr10.dll
2009-03-08 02:33 . 2004-08-16 15:40 18944 ----a-w- c:\windows\system32\corpol.dll
2009-03-08 02:33 . 2004-08-16 15:41 420352 ----a-w- c:\windows\system32\vbscript.dll
2009-03-08 02:32 . 2004-08-16 15:39 72704 ----a-w- c:\windows\system32\admparse.dll
2009-03-08 02:32 . 2004-08-16 15:40 71680 ----a-w- c:\windows\system32\iesetup.dll
2009-03-08 02:31 . 2004-08-16 15:40 34816 ----a-w- c:\windows\system32\imgutil.dll
2009-03-08 02:31 . 2004-08-16 15:40 48128 ----a-w- c:\windows\system32\mshtmler.dll
2009-03-08 02:31 . 2004-08-16 15:40 45568 ----a-w- c:\windows\system32\mshta.exe
2009-03-08 02:22 . 2004-08-16 15:40 156160 ----a-w- c:\windows\system32\msls31.dll
2009-03-06 14:20 . 2004-08-16 15:40 286720 ----a-w- c:\windows\system32\pdh.dll
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Steam"="c:\program files\steam\steam.exe" [2009-05-18 1217784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2009-03-27 13684736]
"mouseElf"="c:\progra~1\GAMING~1\MouseElf.EXE" [2006-02-27 471166]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe" [2009-04-04 206088]
"fssui"="c:\program files\Windows Live\Family Safety\fsui.exe" [2009-02-06 454000]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2009-03-27 86016]
"SunJavaUpdateSched"="c:\program files\Java\jre6\bin\jusched.exe" [2009-03-09 148888]
"CanonSolutionMenu"="c:\program files\Canon\SolutionMenu\CNSLMAIN.exe" [2007-05-14 644696]
"CanonMyPrinter"="c:\program files\Canon\MyPrinter\BJMyPrt.exe" [2007-04-03 1603152]
"OpwareSE4"="c:\program files\ScanSoft\OmniPageSE4\OpwareSE4.exe" [2007-02-04 79400]
d:\documents and settings\DAVID\Menu D‚marrer\Programmes\D‚marrage\
Outil de notification Live Search.lnk - d:\documents and settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe [2009-3-1 142336]
[HKLM\~\startupfolder\D:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^HP Digital Imaging Monitor.lnk]
path=d:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\HP Digital Imaging Monitor.lnk
backup=c:\windows\pss\HP Digital Imaging Monitor.lnkCommon Startup
[HKLM\~\startupfolder\D:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk]
path=d:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\Microsoft Office.lnk
backup=c:\windows\pss\Microsoft Office.lnkCommon Startup
[HKLM\~\startupfolder\D:^Documents and Settings^DAVID^Menu Démarrer^Programmes^Démarrage^Outil de notification Live Search.lnk]
path=d:\documents and settings\DAVID\Menu Démarrer\Programmes\Démarrage\Outil de notification Live Search.lnk
backup=c:\windows\pss\Outil de notification Live Search.lnkStartup
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"InCD"=c:\program files\Nero\Nero 7\InCD\InCD.exe
"NeroFilterCheck"=c:\program files\Fichiers communs\Ahead\Lib\NeroCheck.exe
"nwiz"=nwiz.exe /install
"RTHDCPL"=RTHDCPL.EXE
"VX1000"=c:\windows\vVX1000.exe
"Alcmtr"=ALCMTR.EXE
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\Steam\\steam.exe"=
"c:\\Program Files\\Ratajik Software\\StationRipper\\StationRipperConsole.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\AOL 9.0\\aol.exe"=
"c:\\Program Files\\AOL 9.0\\waol.exe"=
"c:\\WINDOWS\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Steam\\steamapps\\ronii9\\counter-strike\\hl.exe"=
"c:\\Program Files\\Steam\\steamapps\\ronii9\\counter-strike source\\hl2.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpofxm08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposfx08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqCopy.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqnrs08.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpzwiz01.exe"=
"c:\\Program Files\\Microsoft LifeCam\\LifeCam.exe"=
"c:\\Program Files\\Microsoft LifeCam\\LifeExp.exe"=
"c:\\APPS\\skype\\phone\\Skype.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqscnvw.exe"=
"c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\uTorrent\\uTorrent.exe"=
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [29/01/2008 17:29 33808]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [29/01/2009 14:21 55136]
R2 fsssvc;Windows Live Contrôle parental;c:\program files\Windows Live\Family Safety\fsssvc.exe [06/02/2009 19:08 533360]
R3 genmcmnUSB;USB Scroll Mouse Driver;c:\windows\system32\drivers\gflmouhid.sys [29/04/2008 20:27 7808]
R3 KLFLTDEV;Kaspersky Lab KLFltDev;c:\windows\system32\drivers\klfltdev.sys [13/03/2008 18:02 26640]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [30/04/2008 17:06 24592]
S0 Lbd;Lbd;c:\windows\system32\DRIVERS\Lbd.sys --> c:\windows\system32\DRIVERS\Lbd.sys [?]
S1 aswSP;avast! Self Protection; [x]
S2 aswFsBlk;aswFsBlk;c:\windows\system32\DRIVERS\aswFsBlk.sys --> c:\windows\system32\DRIVERS\aswFsBlk.sys [?]
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\>{60B49E34-C7CC-11D0-8953-00A0C90347FF}]
"c:\windows\system32\rundll32.exe" "c:\windows\system32\iedkcs32.dll",BrandIEActiveSetup SIGNUP
.
Contenu du dossier 'Tâches planifiées'
2009-06-02 c:\windows\Tasks\Configurer mon PC.job
- c:\apps\SMP\PCSETUP.EXE [2005-11-17 08:03]
.
- - - - ORPHELINS SUPPRIMES - - - -
SafeBoot-procexp90.Sys
.
------- Examen supplémentaire -------
.
uStart Page = hxxp://www.google.fr/firefox?client=firefox-a&rls=org.mozilla:fr:official
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~3\Office10\EXCEL.EXE/3000
FF - ProfilePath - d:\documents and settings\DAVID\Application Data\Mozilla\Firefox\Profiles\wup0okhd.default\
FF - component: c:\program files\Mozilla Firefox\extensions\{34ea1c70-42cc-42c5-aa29-ec58b95a343e}\components\FFAlert.dll
FF - plugin: c:\program files\Microsoft\Office Live\npOLW.dll
FF - plugin: c:\program files\Mozilla Firefox\plugins\npbittorrent.dll
FF - plugin: c:\program files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll
FF - plugin: c:\program files\Windows Live\Photo Gallery\NPWLPG.dll
---- PARAMETRES FIREFOX ----
FF - user.js: yahoo.homepage.dontask - true.
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-06-02 20:24
Windows 5.1.2600 Service Pack 3 NTFS
Recherche de processus cachés ...
Recherche d'éléments en démarrage automatique cachés ...
Recherche de fichiers cachés ...
Scan terminé avec succès
Fichiers cachés: 0
**************************************************************************
.
--------------------- DLLs chargées dans les processus actifs ---------------------
- - - - - - - > 'explorer.exe'(2904)
c:\program files\ScanSoft\OmniPageSE4\OpHookSE4.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\eappprxy.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Autres processus actifs ------------------------
.
c:\program files\Fichiers communs\AOL\ACS\AOLacsd.exe
c:\apps\Powercinema\Kernel\TV\CLCapSvc.exe
c:\apps\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
c:\apps\HIDSERVICE\HidService.exe
c:\program files\Canon\IJPLM\ijplmsvc.exe
c:\program files\Nero\Nero 7\InCD\InCDsrv.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Microsoft LifeCam\MSCamS32.exe
c:\windows\system32\nvsvc32.exe
c:\windows\system32\HPZipm12.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\apps\Powercinema\Kernel\TV\CLSched.exe
c:\windows\system32\wbem\wmiapsrv.exe
c:\windows\system32\rundll32.exe
d:\documents and settings\DAVID\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Heure de fin: 2009-06-02 20:28 - La machine a redémarré
ComboFix-quarantined-files.txt 2009-06-02 18:28
Avant-CF: 11 636 113 408 octets libres
Après-CF: 11 516 608 512 octets libres
268 --- E O F --- 2009-05-27 09:03
tient je te reposte mes deux rapport RSIT car j'en avait oublier un:
1er rapport:log:
Logfile of random's system information tool 1.06 (written by random/random)
Run by DAVID at 2009-06-03 11:40:02
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 11 GB (36%) free of 31 GB
Total RAM: 2047 MB (75% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:40:06, on 03/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Windows Live\Family Safety\fsssvc.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\GAMING~1\MouseElf.EXE
C:\Program Files\Windows Live\Family Safety\fsui.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
C:\program files\steam\steam.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
D:\Documents and Settings\DAVID\Bureau\RSIT.exe
C:\Program Files\trend micro\DAVID.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?client=firefox-a&rls=org.mozilla:fr:official&gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [mouseElf] C:\PROGRA~1\GAMING~1\MouseElf.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - Startup: Outil de notification Live Search.lnk = D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://dev.srtest.com/srl_bin/sysreqlab3.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
1er rapport:log:
Logfile of random's system information tool 1.06 (written by random/random)
Run by DAVID at 2009-06-03 11:40:02
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 11 GB (36%) free of 31 GB
Total RAM: 2047 MB (75% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:40:06, on 03/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Windows Live\Family Safety\fsssvc.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\GAMING~1\MouseElf.EXE
C:\Program Files\Windows Live\Family Safety\fsui.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
C:\program files\steam\steam.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
D:\Documents and Settings\DAVID\Bureau\RSIT.exe
C:\Program Files\trend micro\DAVID.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?client=firefox-a&rls=org.mozilla:fr:official&gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [mouseElf] C:\PROGRA~1\GAMING~1\MouseElf.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - Startup: Outil de notification Live Search.lnk = D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://dev.srtest.com/srl_bin/sysreqlab3.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
voila mon rapport RSIT:
Logfile of random's system information tool 1.06 (written by random/random)
Run by DAVID at 2009-06-02 21:19:29
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 11 GB (36%) free of 31 GB
Total RAM: 2047 MB (74% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:19:32, on 02/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Windows Live\Family Safety\fsssvc.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\PROGRA~1\GAMING~1\MouseElf.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Windows Live\Family Safety\fsui.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Microsoft LifeCam\LifeTray.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Steam\Steam.exe
D:\Documents and Settings\DAVID\Bureau\RSIT.exe
C:\Program Files\trend micro\DAVID.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?client=firefox-a&rls=org.mozilla:fr:official&gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [mouseElf] C:\PROGRA~1\GAMING~1\MouseElf.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - Startup: Outil de notification Live Search.lnk = D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://dev.srtest.com/srl_bin/sysreqlab3.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
Logfile of random's system information tool 1.06 (written by random/random)
Run by DAVID at 2009-06-02 21:19:29
Microsoft Windows XP Édition familiale Service Pack 3
System drive C: has 11 GB (36%) free of 31 GB
Total RAM: 2047 MB (74% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 21:19:32, on 02/06/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
C:\Program Files\Windows Live\Family Safety\fsssvc.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft LifeCam\MSCamS32.exe
C:\PROGRA~1\GAMING~1\MouseElf.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Windows Live\Family Safety\fsui.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Mise-a-jour-LiveSearch.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Microsoft LifeCam\LifeTray.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\Program Files\Steam\Steam.exe
D:\Documents and Settings\DAVID\Bureau\RSIT.exe
C:\Program Files\trend micro\DAVID.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?client=firefox-a&rls=org.mozilla:fr:official&gws_rd=ssl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://www.crawler.com/search/ie.aspx?tb_id=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,CustomizeSearch = http://dnl.crawler.com/support/sa_customize.aspx?TbId=60327
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Windows Live Family Safety Browser Helper - {4f3ed5cd-0726-42a9-87f5-d13f3d2976ac} - C:\Program Files\Windows Live\Family Safety\fssbho.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ievkbd.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [mouseElf] C:\PROGRA~1\GAMING~1\MouseElf.EXE
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe"
O4 - HKLM\..\Run: [fssui] "C:\Program Files\Windows Live\Family Safety\fsui.exe" -autorun
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe /logon
O4 - HKLM\..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
O4 - HKLM\..\Run: [OpwareSE4] "C:\Program Files\ScanSoft\OmniPageSE4\OpwareSE4.exe"
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - Startup: Outil de notification Live Search.lnk = D:\Documents and Settings\DAVID\Application Data\Microsoft\Live Search\Notification-LiveSearch.exe
O8 - Extra context menu item: Ajouter à Kaspersky Anti-Bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\ie_banner_deny.htm
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: Statistiques de la protection du trafic Internet - {1F460357-8A94-4D71-9CA3-AA4ACF32ED8E} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\SCIEPlgn.dll
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://dev.srtest.com/srl_bin/sysreqlab3.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2009\avp.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - c:\APPS\Powercinema\Kernel\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: PIXMA Extended Survey Program (IJPLMSVC) - Unknown owner - C:\Program Files\Canon\IJPLM\IJPLMSVC.EXE
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Fichiers communs\Ahead\Lib\NMIndexingService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
Répond moi au plus stp pour me dire qu'est ce qui faut que je face encore.En tout cas je te remercie pour tout.
Désolé je n'ai pas pu te répondre plus tôt.
Je regarde ça et je te réponds le plus rapidement possible.
Je regarde ça et je te réponds le plus rapidement possible.
C'est déjà plus propre mais ce n'est pas fini.
Il semblerait que tu ait plusieurs antivirus ! ==> Risque de conflits. Garde en un seul (Kaspersky sans aucun doute)
Tu as également plusieurs anti-spywares : ça ne sert à rien, gardes un seul.
Mets à jour JAVA:
https://www.java.com/fr/download/
Fais cette vérification vant de passer à l'étape suivante:
Va dans ajout/suppression de programmes puis cherche si tu as des programmes comme :
" CID Help", "Circle Developement" , "Adverts"( ou "CiD-quelquechose")
--->s’ils s'y trouvent, supprime les.
Ensuite:
▶Télécharges Lop S&D :
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
▶Installe-le en double-cliquant dessus
/!\ si tu as Vista, désactive l’UAC le temps de la désinfection : Panneau de configuration>comptes utilisateurs>activer/désactiver le contrôle des comptes utilisateurs>décoche la cas puis fais OK
/!\ si tu as TeaTimer (le résident de Spybot), désactive-le sinon il va gêner la désinfection en empêchant la modification des BHO et la réparation du registre :
*Démarre Spybot, clique sur Mode, coche Mode avancé
*A gauche, clique sur Outils, puis sur Résident
*Décoche la case devant Résident "TeaTimer" puis quitte Spybot :
▶ Une fois la désinfection terminée ( et pas avant ), réactiver le " TeaTimer " .
▶ Sélectionne la langue souhaitée, puis choisis l'option 1 (Recherche).
▶Une fois le scan terminé, enregistrez le rapport généré, poste-le.
▶ Le rapport se trouve aussi sous la racine du disque: C:\lopR.txt.
Il semblerait que tu ait plusieurs antivirus ! ==> Risque de conflits. Garde en un seul (Kaspersky sans aucun doute)
Tu as également plusieurs anti-spywares : ça ne sert à rien, gardes un seul.
Mets à jour JAVA:
https://www.java.com/fr/download/
Fais cette vérification vant de passer à l'étape suivante:
Va dans ajout/suppression de programmes puis cherche si tu as des programmes comme :
" CID Help", "Circle Developement" , "Adverts"( ou "CiD-quelquechose")
--->s’ils s'y trouvent, supprime les.
Ensuite:
▶Télécharges Lop S&D :
https://77b4795d-a-62cb3a1a-s-sites.googlegroups.com/site/eric71mespages/LopSD.exe?attachauth=ANoY7co3ntqUavpZ3q1BG-h4pc13vqDZmhcNeEPChtsyrgAykRbhE8bZzhk979EfQD4AgwtQUHCaQ7ZQwNYMo3_0kA8htAspckDJtu2K5t6J9z6dLW4fpZyH4FpFL1tVMBZ8H-KnN7afZ5vt-WxZRpnynk-a0XmV_Y0C0q6DxGEDKie1TnPT7gFoZnoCnspzBmbW6ZzxA4fNr3oEDlbelNZON-LjF8nOmQ%3D%3D&attredirects=2
▶Installe-le en double-cliquant dessus
/!\ si tu as Vista, désactive l’UAC le temps de la désinfection : Panneau de configuration>comptes utilisateurs>activer/désactiver le contrôle des comptes utilisateurs>décoche la cas puis fais OK
/!\ si tu as TeaTimer (le résident de Spybot), désactive-le sinon il va gêner la désinfection en empêchant la modification des BHO et la réparation du registre :
*Démarre Spybot, clique sur Mode, coche Mode avancé
*A gauche, clique sur Outils, puis sur Résident
*Décoche la case devant Résident "TeaTimer" puis quitte Spybot :
▶ Une fois la désinfection terminée ( et pas avant ), réactiver le " TeaTimer " .
▶ Sélectionne la langue souhaitée, puis choisis l'option 1 (Recherche).
▶Une fois le scan terminé, enregistrez le rapport généré, poste-le.
▶ Le rapport se trouve aussi sous la racine du disque: C:\lopR.txt.
Il doit rester des traces.
D'Avast par exemple. Utilise ceci:
https://www.avast.com/fr-fr/uninstall-utility
Et Bitdefender, tu l'as eu comme antivirus ou bien c'est pour faire des analyses en ligne ?
Ensuite:
>> Télécharge CCleaner:
http://download.piriform.com
>Installe-le en prenant soin de décocher les diverses options dont la barre Yahoo et la mise à jour.
> Lance CCleaner puis Clique sur "Options", "Avancé" et décoche la case "Effacer uniquement les fichiers, du dossier Temp de Windows, plus vieux que 48 heures".
>Pour les autres paramètres, laisse-le avec ses réglages par défaut.
> Puis dans le menu Nettoyeur
> Clique sur Analyse (laisser travailler cela peut durer longtemps la 1ere fois)
> Clique sur le bouton Lancer le nettoyage.
> Clique une seconde fois sur le bouton Lancer le nettoyage
> Fait de même pour le menu "Chercher des erreurs"
Fais ensuite Lop S&D si tu ne l'as pas encore fait.
D'Avast par exemple. Utilise ceci:
https://www.avast.com/fr-fr/uninstall-utility
Et Bitdefender, tu l'as eu comme antivirus ou bien c'est pour faire des analyses en ligne ?
Ensuite:
>> Télécharge CCleaner:
http://download.piriform.com
>Installe-le en prenant soin de décocher les diverses options dont la barre Yahoo et la mise à jour.
> Lance CCleaner puis Clique sur "Options", "Avancé" et décoche la case "Effacer uniquement les fichiers, du dossier Temp de Windows, plus vieux que 48 heures".
>Pour les autres paramètres, laisse-le avec ses réglages par défaut.
> Puis dans le menu Nettoyeur
> Clique sur Analyse (laisser travailler cela peut durer longtemps la 1ere fois)
> Clique sur le bouton Lancer le nettoyage.
> Clique une seconde fois sur le bouton Lancer le nettoyage
> Fait de même pour le menu "Chercher des erreurs"
Fais ensuite Lop S&D si tu ne l'as pas encore fait.
sais quoi lop S&D.
Je connaissait ccleaner je l'avait déjà.
quand je lance aswclear pour avast je mais uninstall et sa me marque des truc mai sa ne fait rien et quand je veut y couper sa redémarre mon ordinateur.
Bitdefender je ne l'ai jamais utiliser donc je ne sais pa se que sa fait dans mon ordinateur.
Ensuite que dois je faire
Je connaissait ccleaner je l'avait déjà.
quand je lance aswclear pour avast je mais uninstall et sa me marque des truc mai sa ne fait rien et quand je veut y couper sa redémarre mon ordinateur.
Bitdefender je ne l'ai jamais utiliser donc je ne sais pa se que sa fait dans mon ordinateur.
Ensuite que dois je faire
Pourtant Avast est présent dans ton rapport.
Il n'est pas répertorié et installé mais il doit rester des traces.
Lop S&D c'est pour supp une infection que tu as....
Fais le.
Il n'est pas répertorié et installé mais il doit rester des traces.
Lop S&D c'est pour supp une infection que tu as....
Fais le.
Et je fait comment pour lop S&D car je ne mi connait pas grand chose en ordinateur et pour avast dans aswclear je ne comprend pas comment il fonctionne je doit choisir le dossier pour kil efface les trace de avast.
On reverra pour Avast plus tard, on va pas tout mélanger...
Pour Lop c'est pas compliqué je t'ai tout expliqué :
http://www.commentcamarche.net/forum/affich 12693755 mon pc ram lag?#15
>>Tu n'es pas sous Vista, donc l'étape où il faut désactiver l'UAC tu ne t'en occupe pas.
>>Par contre je crois que tu as Spybot donc il faut désactiver le Tea-timer (je t'ai mis la procédure pour le désactiver).
Pour Lop c'est pas compliqué je t'ai tout expliqué :
http://www.commentcamarche.net/forum/affich 12693755 mon pc ram lag?#15
>>Tu n'es pas sous Vista, donc l'étape où il faut désactiver l'UAC tu ne t'en occupe pas.
>>Par contre je crois que tu as Spybot donc il faut désactiver le Tea-timer (je t'ai mis la procédure pour le désactiver).
J'ai fait qu'une recherche d'infection car sa me dit qu'il faut demander l'avis d'un spécialiste avant de supprimer les hosts donc je préfère te demander avant.
je te poste la recherche de lopS&D:
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU E4600 @ 2.40GHz )
BIOS : Default System BIOS
USER : DAVID ( Administrator )
BOOT : Normal boot
Antivirus : Kaspersky Internet Security 8.0.0.506 (Activated)
Firewall : Kaspersky Internet Security 8.0.0.506 (Not Activated)
C:\ (Local Disk) - NTFS - Total:29 Go (Free:10 Go)
D:\ (Local Disk) - NTFS - Total:73 Go (Free:67 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 04/06/2009|20:13 )
--------------------\\ Listing des dossiers dans APPLIC~1
[10/05/2009|20:05] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[15/11/2008|13:00] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[25/08/2006|20:49] D:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[02/03/2008|20:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Arovax
[02/08/2008|12:26] D:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[12/08/2008|19:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[29/05/2009|15:55] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ
[29/05/2009|16:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonIJPLM
[15/11/2008|12:52] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[29/09/2007|16:06] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[15/09/2006|18:52] D:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[29/05/2009|16:15] D:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[04/06/2009|19:48] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab
[27/06/2008|17:30] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
[29/09/2007|16:16] D:\DOCUME~1\ALLUSE~1\APPLIC~1\MailFrontier
[04/03/2009|12:40] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[27/05/2009|11:03] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[14/09/2008|02:30] D:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Software
[14/09/2008|02:29] D:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Swift Sound
[15/11/2008|12:56] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[04/09/2006|17:44] D:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2
[20/03/2008|17:54] D:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[29/05/2009|16:15] D:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[16/02/2007|16:01] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[04/04/2009|17:25] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[28/01/2009|12:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com
[29/09/2007|15:57] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[03/01/2009|15:29] D:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[08/03/2009|13:09] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Uniblue
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\VadeRetro
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
[06/10/2007|11:26] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[05/10/2007|23:31] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[15/06/2008|20:26] D:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[26/04/2009|18:40] D:\DOCUME~1\DAVID\APPLIC~1\AccurateRip
[19/05/2008|13:57] D:\DOCUME~1\DAVID\APPLIC~1\Adobe
[24/08/2006|13:02] D:\DOCUME~1\DAVID\APPLIC~1\AdobeUM
[15/11/2008|14:00] D:\DOCUME~1\DAVID\APPLIC~1\Ahead
[02/05/2008|22:38] D:\DOCUME~1\DAVID\APPLIC~1\Apple Computer
[27/04/2009|14:06] D:\DOCUME~1\DAVID\APPLIC~1\Audacity
[02/08/2008|12:26] D:\DOCUME~1\DAVID\APPLIC~1\AVS4YOU
[18/01/2009|13:36] D:\DOCUME~1\DAVID\APPLIC~1\BitTorrent
[03/09/2008|21:32] D:\DOCUME~1\DAVID\APPLIC~1\Canneverbe_Limited
[29/05/2009|16:31] D:\DOCUME~1\DAVID\APPLIC~1\Canon
[15/11/2008|13:08] D:\DOCUME~1\DAVID\APPLIC~1\CyberLink
[19/02/2009|16:19] D:\DOCUME~1\DAVID\APPLIC~1\DNA
[04/05/2009|19:03] D:\DOCUME~1\DAVID\APPLIC~1\dvdcss
[04/06/2009|17:33] D:\DOCUME~1\DAVID\APPLIC~1\FileZilla
[02/03/2008|22:03] D:\DOCUME~1\DAVID\APPLIC~1\FrostWire
[28/09/2007|20:29] D:\DOCUME~1\DAVID\APPLIC~1\Google
[22/04/2009|16:31] D:\DOCUME~1\DAVID\APPLIC~1\gtk-2.0
[17/10/2006|22:45] D:\DOCUME~1\DAVID\APPLIC~1\Help
[24/12/2008|23:23] D:\DOCUME~1\DAVID\APPLIC~1\HLSW
[26/09/2006|11:51] D:\DOCUME~1\DAVID\APPLIC~1\HP
[08/07/2006|18:39] D:\DOCUME~1\DAVID\APPLIC~1\Identities
[15/09/2006|19:54] D:\DOCUME~1\DAVID\APPLIC~1\Image Zone Express
[05/06/2008|08:56] D:\DOCUME~1\DAVID\APPLIC~1\InstallShield
[04/09/2006|17:45] D:\DOCUME~1\DAVID\APPLIC~1\Leadertech
[18/02/2009|17:30] D:\DOCUME~1\DAVID\APPLIC~1\LimeWire
[23/08/2006|16:42] D:\DOCUME~1\DAVID\APPLIC~1\Macromedia
[04/03/2009|12:40] D:\DOCUME~1\DAVID\APPLIC~1\Malwarebytes
[29/09/2007|17:08] D:\DOCUME~1\DAVID\APPLIC~1\Media Player Classic
[10/04/2009|22:56] D:\DOCUME~1\DAVID\APPLIC~1\Microsoft
[04/06/2009|16:37] D:\DOCUME~1\DAVID\APPLIC~1\mIRC
[01/03/2009|11:49] D:\DOCUME~1\DAVID\APPLIC~1\Mozilla
[01/03/2009|11:37] D:\DOCUME~1\DAVID\APPLIC~1\MSNInstaller
[14/09/2008|02:32] D:\DOCUME~1\DAVID\APPLIC~1\NCH Swift Sound
[12/04/2008|12:52] D:\DOCUME~1\DAVID\APPLIC~1\Nero
[28/04/2008|19:42] D:\DOCUME~1\DAVID\APPLIC~1\nView_Wallpaper
[23/08/2006|16:11] D:\DOCUME~1\DAVID\APPLIC~1\OD2
[08/03/2009|12:14] D:\DOCUME~1\DAVID\APPLIC~1\OpenOffice.org
[04/02/2009|19:37] D:\DOCUME~1\DAVID\APPLIC~1\Retriever
[29/05/2009|16:15] D:\DOCUME~1\DAVID\APPLIC~1\ScanSoft
[03/11/2007|15:07] D:\DOCUME~1\DAVID\APPLIC~1\Skype
[04/09/2006|17:45] D:\DOCUME~1\DAVID\APPLIC~1\Sonic
[04/02/2009|19:31] D:\DOCUME~1\DAVID\APPLIC~1\Sony Corporation
[05/01/2008|13:16] D:\DOCUME~1\DAVID\APPLIC~1\Sun
[24/02/2009|21:37] D:\DOCUME~1\DAVID\APPLIC~1\SUPERAntiSpyware.com
[04/03/2008|18:18] D:\DOCUME~1\DAVID\APPLIC~1\Talkback
[07/05/2009|16:44] D:\DOCUME~1\DAVID\APPLIC~1\teamspeak2
[08/03/2009|13:09] D:\DOCUME~1\DAVID\APPLIC~1\Uniblue
[04/06/2009|12:54] D:\DOCUME~1\DAVID\APPLIC~1\uTorrent
[27/08/2008|16:57] D:\DOCUME~1\DAVID\APPLIC~1\Viewpoint
[17/04/2009|11:07] D:\DOCUME~1\DAVID\APPLIC~1\vlc
[11/04/2008|15:49] D:\DOCUME~1\DAVID\APPLIC~1\WinRAR
[08/07/2006|18:39] D:\DOCUME~1\DAVID\APPLIC~1\You've Got Pictures Screensaver
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver
[01/04/2009|18:40] D:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[04/04/2009|17:16] D:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[04/04/2009|17:16] D:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\Identities
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\Macromedia
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\Microsoft
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\You've Got Pictures Screensaver
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[04/06/2009 19:30][--a------] C:\WINDOWS\tasks\Configurer mon PC.job
[04/06/2009 19:47][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 14:00][-rah-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[11/11/2007|16:10] C:\Program Files\A123 3GP to AVI WMV DVD MPEG MP4 MOV Converter
[29/08/2008|14:22] C:\Program Files\ACE Mega CoDecS Pack
[26/04/2009|20:26] C:\Program Files\AGEIA Technologies
[08/07/2006|18:30] C:\Program Files\AMD
[01/04/2009|13:05] C:\Program Files\AOL 9.0
[08/07/2006|18:30] C:\Program Files\AOL Compagnon
[04/06/2009|20:04] C:\Program Files\Arovax AntiSpyware
[29/05/2009|16:23] C:\Program Files\Canon
[29/05/2009|15:54] C:\Program Files\CanonBJ
[04/06/2009|12:50] C:\Program Files\CCleaner
[16/06/2008|19:31] C:\Program Files\Custom-Strike
[17/05/2008|16:02] C:\Program Files\DIFX
[19/02/2009|16:25] C:\Program Files\DNA
[02/06/2009|20:20] C:\Program Files\Fichiers communs
[01/04/2009|15:57] C:\Program Files\FileZilla FTP Client
[10/04/2009|22:55] C:\Program Files\Free Audio Pack
[29/04/2008|20:27] C:\Program Files\Gaming Mouse
[19/02/2009|18:50] C:\Program Files\GIMP-2.0
[12/05/2008|20:37] C:\Program Files\Google
[08/07/2006|18:30] C:\Program Files\Goto Software
[15/09/2006|18:48] C:\Program Files\Hewlett-Packard
[24/12/2008|23:23] C:\Program Files\HLSW
[15/09/2006|18:51] C:\Program Files\HP
[26/04/2009|18:40] C:\Program Files\Illustrate
[12/04/2009|16:47] C:\Program Files\InstallShield Installation Information
[05/06/2008|08:49] C:\Program Files\Intel
[20/05/2009|11:07] C:\Program Files\Internet Explorer
[04/06/2009|19:02] C:\Program Files\Java
[25/04/2009|14:38] C:\Program Files\JRE
[04/04/2009|17:33] C:\Program Files\Kaspersky Lab
[26/07/2008|19:59] C:\Program Files\Lavalys
[08/07/2006|18:30] C:\Program Files\Learn2.com
[12/03/2009|10:59] C:\Program Files\lg_fwupdate
[09/02/2007|20:30] C:\Program Files\LRC Editor 4
[30/05/2009|19:32] C:\Program Files\Malwarebytes' Anti-Malware
[14/08/2008|17:30] C:\Program Files\Messenger
[29/01/2009|14:22] C:\Program Files\Microsoft
[10/04/2009|22:56] C:\Program Files\Microsoft ActiveSync
[06/10/2007|00:29] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[08/07/2006|18:30] C:\Program Files\microsoft frontpage
[24/10/2007|11:13] C:\Program Files\Microsoft LifeCam
[25/04/2009|18:02] C:\Program Files\Microsoft Office
[26/02/2009|20:08] C:\Program Files\Microsoft Silverlight
[19/02/2008|21:44] C:\Program Files\Microsoft SQL Server Compact Edition
[29/01/2009|14:21] C:\Program Files\Microsoft Sync Framework
[04/06/2009|16:03] C:\Program Files\mIRC
[10/11/2006|14:48] C:\Program Files\Mouse Driver
[13/05/2008|21:24] C:\Program Files\Movie Maker
[04/06/2009|20:05] C:\Program Files\Mozilla Firefox
[15/04/2009|12:20] C:\Program Files\MSBuild
[01/03/2009|11:37] C:\Program Files\MSN
[08/07/2006|18:30] C:\Program Files\MSN Gaming Zone
[13/11/2008|00:46] C:\Program Files\MSXML 4.0
[03/09/2006|16:47] C:\Program Files\Musicmatch
[14/09/2008|02:31] C:\Program Files\NCH Software
[14/09/2008|02:33] C:\Program Files\NCH Swift Sound
[15/11/2008|12:56] C:\Program Files\Nero
[13/05/2008|21:21] C:\Program Files\NetMeeting
[27/09/2007|16:28] C:\Program Files\Neuf
[08/07/2006|18:34] C:\Program Files\Online Services
[25/04/2009|14:38] C:\Program Files\OpenOffice.org 3
[13/05/2008|21:21] C:\Program Files\Outlook Express
[12/04/2009|16:23] C:\Program Files\PC Wizard 2008
[28/05/2009|11:34] C:\Program Files\PhotoFiltre
[01/04/2009|13:06] C:\Program Files\QuickTime
[29/09/2007|15:11] C:\Program Files\Ratajik Software
[08/07/2006|18:30] C:\Program Files\Real
[05/06/2008|08:56] C:\Program Files\Realtek
[15/04/2009|12:20] C:\Program Files\Reference Assemblies
[12/03/2009|13:10] C:\Program Files\RegFreeze
[04/02/2009|19:37] C:\Program Files\Retriever
[11/11/2008|20:44] C:\Program Files\RomuSoft
[29/05/2009|16:14] C:\Program Files\ScanSoft
[08/07/2006|18:36] C:\Program Files\Services en ligne
[08/07/2006|18:36] C:\Program Files\ShowTime
[30/03/2009|14:03] C:\Program Files\Sonic
[04/02/2009|19:23] C:\Program Files\Sony
[04/06/2009|19:48] C:\Program Files\Steam
[05/06/2008|09:03] C:\Program Files\SystemRequirementsLab
[22/05/2009|16:03] C:\Program Files\Teamspeak2_RC2
[03/09/2006|16:38] C:\Program Files\Thomson
[03/06/2009|11:40] C:\Program Files\Trend Micro
[08/10/2006|19:16] C:\Program Files\Uninstall Information
[10/04/2009|22:58] C:\Program Files\uTorrent
[08/07/2006|18:30] C:\Program Files\Viewpoint
[14/03/2007|16:13] C:\Program Files\Winamp
[01/03/2009|11:55] C:\Program Files\Windows Live
[17/12/2008|17:11] C:\Program Files\Windows Live SkyDrive
[17/05/2008|18:01] C:\Program Files\Windows Live Toolbar
[24/05/2008|11:17] C:\Program Files\Windows Media Connect 2
[14/05/2008|18:03] C:\Program Files\Windows Media Player
[13/05/2008|21:21] C:\Program Files\Windows NT
[08/07/2006|18:30] C:\Program Files\WindowsUpdate
[11/04/2008|15:48] C:\Program Files\WinRAR
[08/07/2006|18:30] C:\Program Files\xerox
[29/02/2008|17:50] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[29/05/2009|15:49] C:\Program Files\Fichiers communs\Adobe
[15/11/2008|12:59] C:\Program Files\Fichiers communs\Ahead
[06/04/2009|12:35] C:\Program Files\Fichiers communs\AOL
[08/07/2006|18:33] C:\Program Files\Fichiers communs\aolshare
[02/08/2008|12:24] C:\Program Files\Fichiers communs\AVSMedia
[29/05/2009|16:01] C:\Program Files\Fichiers communs\CANON
[15/09/2006|18:47] C:\Program Files\Fichiers communs\Hewlett-Packard
[15/09/2006|18:51] C:\Program Files\Fichiers communs\HP
[29/05/2009|16:15] C:\Program Files\Fichiers communs\InstallShield
[25/04/2009|18:02] C:\Program Files\Fichiers communs\Microsoft Shared
[08/07/2006|18:30] C:\Program Files\Fichiers communs\MSSoap
[12/10/2008|21:43] C:\Program Files\Fichiers communs\Nero
[08/07/2006|18:30] C:\Program Files\Fichiers communs\Nullsoft
[08/07/2006|18:30] C:\Program Files\Fichiers communs\ODBC
[08/07/2006|18:30] C:\Program Files\Fichiers communs\Real
[29/05/2009|16:15] C:\Program Files\Fichiers communs\ScanSoft Shared
[08/07/2006|18:33] C:\Program Files\Fichiers communs\Services
[02/01/2009|19:48] C:\Program Files\Fichiers communs\Softwin
[08/07/2006|18:33] C:\Program Files\Fichiers communs\Sonic Shared
[08/07/2006|18:30] C:\Program Files\Fichiers communs\SpeechEngines
[08/07/2006|18:33] C:\Program Files\Fichiers communs\SureThing Shared
[29/02/2008|17:49] C:\Program Files\Fichiers communs\Symantec Shared
[25/04/2009|18:01] C:\Program Files\Fichiers communs\System
[17/12/2008|17:04] C:\Program Files\Fichiers communs\Windows Live
[19/02/2008|21:30] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[26/04/2009|20:25] C:\Program Files\Fichiers communs\Wise Installation Wizard
--------------------\\ Process
( 43 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-06-04 20:14:50
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
folder error: D:\DOCUME~1\DAVID\LOCALS~1\APPLIC~1
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:1][D:0]-> D:\DOCUME~1\DAVID\LOCALS~1\Temp
[F:2][D:0]-> D:\DOCUME~1\DAVID\Cookies
[F:2][D:0]-> D:\DOCUME~1\DAVID\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 04/06/2009|20:15 - Option : [1]
--------------------\\ Fin du rapport a 20:15:44
je te poste la recherche de lopS&D:
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU E4600 @ 2.40GHz )
BIOS : Default System BIOS
USER : DAVID ( Administrator )
BOOT : Normal boot
Antivirus : Kaspersky Internet Security 8.0.0.506 (Activated)
Firewall : Kaspersky Internet Security 8.0.0.506 (Not Activated)
C:\ (Local Disk) - NTFS - Total:29 Go (Free:10 Go)
D:\ (Local Disk) - NTFS - Total:73 Go (Free:67 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 04/06/2009|20:13 )
--------------------\\ Listing des dossiers dans APPLIC~1
[10/05/2009|20:05] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[15/11/2008|13:00] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[25/08/2006|20:49] D:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[02/03/2008|20:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Arovax
[02/08/2008|12:26] D:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[12/08/2008|19:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[29/05/2009|15:55] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ
[29/05/2009|16:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonIJPLM
[15/11/2008|12:52] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[29/09/2007|16:06] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[15/09/2006|18:52] D:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[29/05/2009|16:15] D:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[04/06/2009|19:48] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab
[27/06/2008|17:30] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
[29/09/2007|16:16] D:\DOCUME~1\ALLUSE~1\APPLIC~1\MailFrontier
[04/03/2009|12:40] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[27/05/2009|11:03] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[14/09/2008|02:30] D:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Software
[14/09/2008|02:29] D:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Swift Sound
[15/11/2008|12:56] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[04/09/2006|17:44] D:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2
[20/03/2008|17:54] D:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[29/05/2009|16:15] D:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[16/02/2007|16:01] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[04/04/2009|17:25] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[28/01/2009|12:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com
[29/09/2007|15:57] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[03/01/2009|15:29] D:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[08/03/2009|13:09] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Uniblue
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\VadeRetro
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
[06/10/2007|11:26] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[05/10/2007|23:31] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[15/06/2008|20:26] D:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[26/04/2009|18:40] D:\DOCUME~1\DAVID\APPLIC~1\AccurateRip
[19/05/2008|13:57] D:\DOCUME~1\DAVID\APPLIC~1\Adobe
[24/08/2006|13:02] D:\DOCUME~1\DAVID\APPLIC~1\AdobeUM
[15/11/2008|14:00] D:\DOCUME~1\DAVID\APPLIC~1\Ahead
[02/05/2008|22:38] D:\DOCUME~1\DAVID\APPLIC~1\Apple Computer
[27/04/2009|14:06] D:\DOCUME~1\DAVID\APPLIC~1\Audacity
[02/08/2008|12:26] D:\DOCUME~1\DAVID\APPLIC~1\AVS4YOU
[18/01/2009|13:36] D:\DOCUME~1\DAVID\APPLIC~1\BitTorrent
[03/09/2008|21:32] D:\DOCUME~1\DAVID\APPLIC~1\Canneverbe_Limited
[29/05/2009|16:31] D:\DOCUME~1\DAVID\APPLIC~1\Canon
[15/11/2008|13:08] D:\DOCUME~1\DAVID\APPLIC~1\CyberLink
[19/02/2009|16:19] D:\DOCUME~1\DAVID\APPLIC~1\DNA
[04/05/2009|19:03] D:\DOCUME~1\DAVID\APPLIC~1\dvdcss
[04/06/2009|17:33] D:\DOCUME~1\DAVID\APPLIC~1\FileZilla
[02/03/2008|22:03] D:\DOCUME~1\DAVID\APPLIC~1\FrostWire
[28/09/2007|20:29] D:\DOCUME~1\DAVID\APPLIC~1\Google
[22/04/2009|16:31] D:\DOCUME~1\DAVID\APPLIC~1\gtk-2.0
[17/10/2006|22:45] D:\DOCUME~1\DAVID\APPLIC~1\Help
[24/12/2008|23:23] D:\DOCUME~1\DAVID\APPLIC~1\HLSW
[26/09/2006|11:51] D:\DOCUME~1\DAVID\APPLIC~1\HP
[08/07/2006|18:39] D:\DOCUME~1\DAVID\APPLIC~1\Identities
[15/09/2006|19:54] D:\DOCUME~1\DAVID\APPLIC~1\Image Zone Express
[05/06/2008|08:56] D:\DOCUME~1\DAVID\APPLIC~1\InstallShield
[04/09/2006|17:45] D:\DOCUME~1\DAVID\APPLIC~1\Leadertech
[18/02/2009|17:30] D:\DOCUME~1\DAVID\APPLIC~1\LimeWire
[23/08/2006|16:42] D:\DOCUME~1\DAVID\APPLIC~1\Macromedia
[04/03/2009|12:40] D:\DOCUME~1\DAVID\APPLIC~1\Malwarebytes
[29/09/2007|17:08] D:\DOCUME~1\DAVID\APPLIC~1\Media Player Classic
[10/04/2009|22:56] D:\DOCUME~1\DAVID\APPLIC~1\Microsoft
[04/06/2009|16:37] D:\DOCUME~1\DAVID\APPLIC~1\mIRC
[01/03/2009|11:49] D:\DOCUME~1\DAVID\APPLIC~1\Mozilla
[01/03/2009|11:37] D:\DOCUME~1\DAVID\APPLIC~1\MSNInstaller
[14/09/2008|02:32] D:\DOCUME~1\DAVID\APPLIC~1\NCH Swift Sound
[12/04/2008|12:52] D:\DOCUME~1\DAVID\APPLIC~1\Nero
[28/04/2008|19:42] D:\DOCUME~1\DAVID\APPLIC~1\nView_Wallpaper
[23/08/2006|16:11] D:\DOCUME~1\DAVID\APPLIC~1\OD2
[08/03/2009|12:14] D:\DOCUME~1\DAVID\APPLIC~1\OpenOffice.org
[04/02/2009|19:37] D:\DOCUME~1\DAVID\APPLIC~1\Retriever
[29/05/2009|16:15] D:\DOCUME~1\DAVID\APPLIC~1\ScanSoft
[03/11/2007|15:07] D:\DOCUME~1\DAVID\APPLIC~1\Skype
[04/09/2006|17:45] D:\DOCUME~1\DAVID\APPLIC~1\Sonic
[04/02/2009|19:31] D:\DOCUME~1\DAVID\APPLIC~1\Sony Corporation
[05/01/2008|13:16] D:\DOCUME~1\DAVID\APPLIC~1\Sun
[24/02/2009|21:37] D:\DOCUME~1\DAVID\APPLIC~1\SUPERAntiSpyware.com
[04/03/2008|18:18] D:\DOCUME~1\DAVID\APPLIC~1\Talkback
[07/05/2009|16:44] D:\DOCUME~1\DAVID\APPLIC~1\teamspeak2
[08/03/2009|13:09] D:\DOCUME~1\DAVID\APPLIC~1\Uniblue
[04/06/2009|12:54] D:\DOCUME~1\DAVID\APPLIC~1\uTorrent
[27/08/2008|16:57] D:\DOCUME~1\DAVID\APPLIC~1\Viewpoint
[17/04/2009|11:07] D:\DOCUME~1\DAVID\APPLIC~1\vlc
[11/04/2008|15:49] D:\DOCUME~1\DAVID\APPLIC~1\WinRAR
[08/07/2006|18:39] D:\DOCUME~1\DAVID\APPLIC~1\You've Got Pictures Screensaver
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver
[01/04/2009|18:40] D:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[04/04/2009|17:16] D:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[04/04/2009|17:16] D:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\Identities
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\Macromedia
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\Microsoft
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\You've Got Pictures Screensaver
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[04/06/2009 19:30][--a------] C:\WINDOWS\tasks\Configurer mon PC.job
[04/06/2009 19:47][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 14:00][-rah-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[11/11/2007|16:10] C:\Program Files\A123 3GP to AVI WMV DVD MPEG MP4 MOV Converter
[29/08/2008|14:22] C:\Program Files\ACE Mega CoDecS Pack
[26/04/2009|20:26] C:\Program Files\AGEIA Technologies
[08/07/2006|18:30] C:\Program Files\AMD
[01/04/2009|13:05] C:\Program Files\AOL 9.0
[08/07/2006|18:30] C:\Program Files\AOL Compagnon
[04/06/2009|20:04] C:\Program Files\Arovax AntiSpyware
[29/05/2009|16:23] C:\Program Files\Canon
[29/05/2009|15:54] C:\Program Files\CanonBJ
[04/06/2009|12:50] C:\Program Files\CCleaner
[16/06/2008|19:31] C:\Program Files\Custom-Strike
[17/05/2008|16:02] C:\Program Files\DIFX
[19/02/2009|16:25] C:\Program Files\DNA
[02/06/2009|20:20] C:\Program Files\Fichiers communs
[01/04/2009|15:57] C:\Program Files\FileZilla FTP Client
[10/04/2009|22:55] C:\Program Files\Free Audio Pack
[29/04/2008|20:27] C:\Program Files\Gaming Mouse
[19/02/2009|18:50] C:\Program Files\GIMP-2.0
[12/05/2008|20:37] C:\Program Files\Google
[08/07/2006|18:30] C:\Program Files\Goto Software
[15/09/2006|18:48] C:\Program Files\Hewlett-Packard
[24/12/2008|23:23] C:\Program Files\HLSW
[15/09/2006|18:51] C:\Program Files\HP
[26/04/2009|18:40] C:\Program Files\Illustrate
[12/04/2009|16:47] C:\Program Files\InstallShield Installation Information
[05/06/2008|08:49] C:\Program Files\Intel
[20/05/2009|11:07] C:\Program Files\Internet Explorer
[04/06/2009|19:02] C:\Program Files\Java
[25/04/2009|14:38] C:\Program Files\JRE
[04/04/2009|17:33] C:\Program Files\Kaspersky Lab
[26/07/2008|19:59] C:\Program Files\Lavalys
[08/07/2006|18:30] C:\Program Files\Learn2.com
[12/03/2009|10:59] C:\Program Files\lg_fwupdate
[09/02/2007|20:30] C:\Program Files\LRC Editor 4
[30/05/2009|19:32] C:\Program Files\Malwarebytes' Anti-Malware
[14/08/2008|17:30] C:\Program Files\Messenger
[29/01/2009|14:22] C:\Program Files\Microsoft
[10/04/2009|22:56] C:\Program Files\Microsoft ActiveSync
[06/10/2007|00:29] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[08/07/2006|18:30] C:\Program Files\microsoft frontpage
[24/10/2007|11:13] C:\Program Files\Microsoft LifeCam
[25/04/2009|18:02] C:\Program Files\Microsoft Office
[26/02/2009|20:08] C:\Program Files\Microsoft Silverlight
[19/02/2008|21:44] C:\Program Files\Microsoft SQL Server Compact Edition
[29/01/2009|14:21] C:\Program Files\Microsoft Sync Framework
[04/06/2009|16:03] C:\Program Files\mIRC
[10/11/2006|14:48] C:\Program Files\Mouse Driver
[13/05/2008|21:24] C:\Program Files\Movie Maker
[04/06/2009|20:05] C:\Program Files\Mozilla Firefox
[15/04/2009|12:20] C:\Program Files\MSBuild
[01/03/2009|11:37] C:\Program Files\MSN
[08/07/2006|18:30] C:\Program Files\MSN Gaming Zone
[13/11/2008|00:46] C:\Program Files\MSXML 4.0
[03/09/2006|16:47] C:\Program Files\Musicmatch
[14/09/2008|02:31] C:\Program Files\NCH Software
[14/09/2008|02:33] C:\Program Files\NCH Swift Sound
[15/11/2008|12:56] C:\Program Files\Nero
[13/05/2008|21:21] C:\Program Files\NetMeeting
[27/09/2007|16:28] C:\Program Files\Neuf
[08/07/2006|18:34] C:\Program Files\Online Services
[25/04/2009|14:38] C:\Program Files\OpenOffice.org 3
[13/05/2008|21:21] C:\Program Files\Outlook Express
[12/04/2009|16:23] C:\Program Files\PC Wizard 2008
[28/05/2009|11:34] C:\Program Files\PhotoFiltre
[01/04/2009|13:06] C:\Program Files\QuickTime
[29/09/2007|15:11] C:\Program Files\Ratajik Software
[08/07/2006|18:30] C:\Program Files\Real
[05/06/2008|08:56] C:\Program Files\Realtek
[15/04/2009|12:20] C:\Program Files\Reference Assemblies
[12/03/2009|13:10] C:\Program Files\RegFreeze
[04/02/2009|19:37] C:\Program Files\Retriever
[11/11/2008|20:44] C:\Program Files\RomuSoft
[29/05/2009|16:14] C:\Program Files\ScanSoft
[08/07/2006|18:36] C:\Program Files\Services en ligne
[08/07/2006|18:36] C:\Program Files\ShowTime
[30/03/2009|14:03] C:\Program Files\Sonic
[04/02/2009|19:23] C:\Program Files\Sony
[04/06/2009|19:48] C:\Program Files\Steam
[05/06/2008|09:03] C:\Program Files\SystemRequirementsLab
[22/05/2009|16:03] C:\Program Files\Teamspeak2_RC2
[03/09/2006|16:38] C:\Program Files\Thomson
[03/06/2009|11:40] C:\Program Files\Trend Micro
[08/10/2006|19:16] C:\Program Files\Uninstall Information
[10/04/2009|22:58] C:\Program Files\uTorrent
[08/07/2006|18:30] C:\Program Files\Viewpoint
[14/03/2007|16:13] C:\Program Files\Winamp
[01/03/2009|11:55] C:\Program Files\Windows Live
[17/12/2008|17:11] C:\Program Files\Windows Live SkyDrive
[17/05/2008|18:01] C:\Program Files\Windows Live Toolbar
[24/05/2008|11:17] C:\Program Files\Windows Media Connect 2
[14/05/2008|18:03] C:\Program Files\Windows Media Player
[13/05/2008|21:21] C:\Program Files\Windows NT
[08/07/2006|18:30] C:\Program Files\WindowsUpdate
[11/04/2008|15:48] C:\Program Files\WinRAR
[08/07/2006|18:30] C:\Program Files\xerox
[29/02/2008|17:50] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[29/05/2009|15:49] C:\Program Files\Fichiers communs\Adobe
[15/11/2008|12:59] C:\Program Files\Fichiers communs\Ahead
[06/04/2009|12:35] C:\Program Files\Fichiers communs\AOL
[08/07/2006|18:33] C:\Program Files\Fichiers communs\aolshare
[02/08/2008|12:24] C:\Program Files\Fichiers communs\AVSMedia
[29/05/2009|16:01] C:\Program Files\Fichiers communs\CANON
[15/09/2006|18:47] C:\Program Files\Fichiers communs\Hewlett-Packard
[15/09/2006|18:51] C:\Program Files\Fichiers communs\HP
[29/05/2009|16:15] C:\Program Files\Fichiers communs\InstallShield
[25/04/2009|18:02] C:\Program Files\Fichiers communs\Microsoft Shared
[08/07/2006|18:30] C:\Program Files\Fichiers communs\MSSoap
[12/10/2008|21:43] C:\Program Files\Fichiers communs\Nero
[08/07/2006|18:30] C:\Program Files\Fichiers communs\Nullsoft
[08/07/2006|18:30] C:\Program Files\Fichiers communs\ODBC
[08/07/2006|18:30] C:\Program Files\Fichiers communs\Real
[29/05/2009|16:15] C:\Program Files\Fichiers communs\ScanSoft Shared
[08/07/2006|18:33] C:\Program Files\Fichiers communs\Services
[02/01/2009|19:48] C:\Program Files\Fichiers communs\Softwin
[08/07/2006|18:33] C:\Program Files\Fichiers communs\Sonic Shared
[08/07/2006|18:30] C:\Program Files\Fichiers communs\SpeechEngines
[08/07/2006|18:33] C:\Program Files\Fichiers communs\SureThing Shared
[29/02/2008|17:49] C:\Program Files\Fichiers communs\Symantec Shared
[25/04/2009|18:01] C:\Program Files\Fichiers communs\System
[17/12/2008|17:04] C:\Program Files\Fichiers communs\Windows Live
[19/02/2008|21:30] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[26/04/2009|20:25] C:\Program Files\Fichiers communs\Wise Installation Wizard
--------------------\\ Process
( 43 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-06-04 20:14:50
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
folder error: D:\DOCUME~1\DAVID\LOCALS~1\APPLIC~1
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:1][D:0]-> D:\DOCUME~1\DAVID\LOCALS~1\Temp
[F:2][D:0]-> D:\DOCUME~1\DAVID\Cookies
[F:2][D:0]-> D:\DOCUME~1\DAVID\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 04/06/2009|20:15 - Option : [1]
--------------------\\ Fin du rapport a 20:15:44
enfaite sais bon j'ai fait se que tu ma dit une recherche.
je te reposte le rapport de la recherche:
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU E4600 @ 2.40GHz )
BIOS : Default System BIOS
USER : DAVID ( Administrator )
BOOT : Normal boot
Antivirus : Kaspersky Internet Security 8.0.0.506 (Activated)
Firewall : Kaspersky Internet Security 8.0.0.506 (Not Activated)
C:\ (Local Disk) - NTFS - Total:29 Go (Free:10 Go)
D:\ (Local Disk) - NTFS - Total:73 Go (Free:67 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 04/06/2009|20:13 )
--------------------\\ Listing des dossiers dans APPLIC~1
[10/05/2009|20:05] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[15/11/2008|13:00] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[25/08/2006|20:49] D:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[02/03/2008|20:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Arovax
[02/08/2008|12:26] D:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[12/08/2008|19:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[29/05/2009|15:55] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ
[29/05/2009|16:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonIJPLM
[15/11/2008|12:52] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[29/09/2007|16:06] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[15/09/2006|18:52] D:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[29/05/2009|16:15] D:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[04/06/2009|19:48] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab
[27/06/2008|17:30] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
[29/09/2007|16:16] D:\DOCUME~1\ALLUSE~1\APPLIC~1\MailFrontier
[04/03/2009|12:40] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[27/05/2009|11:03] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[14/09/2008|02:30] D:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Software
[14/09/2008|02:29] D:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Swift Sound
[15/11/2008|12:56] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[04/09/2006|17:44] D:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2
[20/03/2008|17:54] D:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[29/05/2009|16:15] D:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[16/02/2007|16:01] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[04/04/2009|17:25] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[28/01/2009|12:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com
[29/09/2007|15:57] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[03/01/2009|15:29] D:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[08/03/2009|13:09] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Uniblue
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\VadeRetro
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
[06/10/2007|11:26] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[05/10/2007|23:31] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[15/06/2008|20:26] D:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[26/04/2009|18:40] D:\DOCUME~1\DAVID\APPLIC~1\AccurateRip
[19/05/2008|13:57] D:\DOCUME~1\DAVID\APPLIC~1\Adobe
[24/08/2006|13:02] D:\DOCUME~1\DAVID\APPLIC~1\AdobeUM
[15/11/2008|14:00] D:\DOCUME~1\DAVID\APPLIC~1\Ahead
[02/05/2008|22:38] D:\DOCUME~1\DAVID\APPLIC~1\Apple Computer
[27/04/2009|14:06] D:\DOCUME~1\DAVID\APPLIC~1\Audacity
[02/08/2008|12:26] D:\DOCUME~1\DAVID\APPLIC~1\AVS4YOU
[18/01/2009|13:36] D:\DOCUME~1\DAVID\APPLIC~1\BitTorrent
[03/09/2008|21:32] D:\DOCUME~1\DAVID\APPLIC~1\Canneverbe_Limited
[29/05/2009|16:31] D:\DOCUME~1\DAVID\APPLIC~1\Canon
[15/11/2008|13:08] D:\DOCUME~1\DAVID\APPLIC~1\CyberLink
[19/02/2009|16:19] D:\DOCUME~1\DAVID\APPLIC~1\DNA
[04/05/2009|19:03] D:\DOCUME~1\DAVID\APPLIC~1\dvdcss
[04/06/2009|17:33] D:\DOCUME~1\DAVID\APPLIC~1\FileZilla
[02/03/2008|22:03] D:\DOCUME~1\DAVID\APPLIC~1\FrostWire
[28/09/2007|20:29] D:\DOCUME~1\DAVID\APPLIC~1\Google
[22/04/2009|16:31] D:\DOCUME~1\DAVID\APPLIC~1\gtk-2.0
[17/10/2006|22:45] D:\DOCUME~1\DAVID\APPLIC~1\Help
[24/12/2008|23:23] D:\DOCUME~1\DAVID\APPLIC~1\HLSW
[26/09/2006|11:51] D:\DOCUME~1\DAVID\APPLIC~1\HP
[08/07/2006|18:39] D:\DOCUME~1\DAVID\APPLIC~1\Identities
[15/09/2006|19:54] D:\DOCUME~1\DAVID\APPLIC~1\Image Zone Express
[05/06/2008|08:56] D:\DOCUME~1\DAVID\APPLIC~1\InstallShield
[04/09/2006|17:45] D:\DOCUME~1\DAVID\APPLIC~1\Leadertech
[18/02/2009|17:30] D:\DOCUME~1\DAVID\APPLIC~1\LimeWire
[23/08/2006|16:42] D:\DOCUME~1\DAVID\APPLIC~1\Macromedia
[04/03/2009|12:40] D:\DOCUME~1\DAVID\APPLIC~1\Malwarebytes
[29/09/2007|17:08] D:\DOCUME~1\DAVID\APPLIC~1\Media Player Classic
[10/04/2009|22:56] D:\DOCUME~1\DAVID\APPLIC~1\Microsoft
[04/06/2009|16:37] D:\DOCUME~1\DAVID\APPLIC~1\mIRC
[01/03/2009|11:49] D:\DOCUME~1\DAVID\APPLIC~1\Mozilla
[01/03/2009|11:37] D:\DOCUME~1\DAVID\APPLIC~1\MSNInstaller
[14/09/2008|02:32] D:\DOCUME~1\DAVID\APPLIC~1\NCH Swift Sound
[12/04/2008|12:52] D:\DOCUME~1\DAVID\APPLIC~1\Nero
[28/04/2008|19:42] D:\DOCUME~1\DAVID\APPLIC~1\nView_Wallpaper
[23/08/2006|16:11] D:\DOCUME~1\DAVID\APPLIC~1\OD2
[08/03/2009|12:14] D:\DOCUME~1\DAVID\APPLIC~1\OpenOffice.org
[04/02/2009|19:37] D:\DOCUME~1\DAVID\APPLIC~1\Retriever
[29/05/2009|16:15] D:\DOCUME~1\DAVID\APPLIC~1\ScanSoft
[03/11/2007|15:07] D:\DOCUME~1\DAVID\APPLIC~1\Skype
[04/09/2006|17:45] D:\DOCUME~1\DAVID\APPLIC~1\Sonic
[04/02/2009|19:31] D:\DOCUME~1\DAVID\APPLIC~1\Sony Corporation
[05/01/2008|13:16] D:\DOCUME~1\DAVID\APPLIC~1\Sun
[24/02/2009|21:37] D:\DOCUME~1\DAVID\APPLIC~1\SUPERAntiSpyware.com
[04/03/2008|18:18] D:\DOCUME~1\DAVID\APPLIC~1\Talkback
[07/05/2009|16:44] D:\DOCUME~1\DAVID\APPLIC~1\teamspeak2
[08/03/2009|13:09] D:\DOCUME~1\DAVID\APPLIC~1\Uniblue
[04/06/2009|12:54] D:\DOCUME~1\DAVID\APPLIC~1\uTorrent
[27/08/2008|16:57] D:\DOCUME~1\DAVID\APPLIC~1\Viewpoint
[17/04/2009|11:07] D:\DOCUME~1\DAVID\APPLIC~1\vlc
[11/04/2008|15:49] D:\DOCUME~1\DAVID\APPLIC~1\WinRAR
[08/07/2006|18:39] D:\DOCUME~1\DAVID\APPLIC~1\You've Got Pictures Screensaver
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver
[01/04/2009|18:40] D:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[04/04/2009|17:16] D:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[04/04/2009|17:16] D:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\Identities
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\Macromedia
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\Microsoft
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\You've Got Pictures Screensaver
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[04/06/2009 19:30][--a------] C:\WINDOWS\tasks\Configurer mon PC.job
[04/06/2009 19:47][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 14:00][-rah-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[11/11/2007|16:10] C:\Program Files\A123 3GP to AVI WMV DVD MPEG MP4 MOV Converter
[29/08/2008|14:22] C:\Program Files\ACE Mega CoDecS Pack
[26/04/2009|20:26] C:\Program Files\AGEIA Technologies
[08/07/2006|18:30] C:\Program Files\AMD
[01/04/2009|13:05] C:\Program Files\AOL 9.0
[08/07/2006|18:30] C:\Program Files\AOL Compagnon
[04/06/2009|20:04] C:\Program Files\Arovax AntiSpyware
[29/05/2009|16:23] C:\Program Files\Canon
[29/05/2009|15:54] C:\Program Files\CanonBJ
[04/06/2009|12:50] C:\Program Files\CCleaner
[16/06/2008|19:31] C:\Program Files\Custom-Strike
[17/05/2008|16:02] C:\Program Files\DIFX
[19/02/2009|16:25] C:\Program Files\DNA
[02/06/2009|20:20] C:\Program Files\Fichiers communs
[01/04/2009|15:57] C:\Program Files\FileZilla FTP Client
[10/04/2009|22:55] C:\Program Files\Free Audio Pack
[29/04/2008|20:27] C:\Program Files\Gaming Mouse
[19/02/2009|18:50] C:\Program Files\GIMP-2.0
[12/05/2008|20:37] C:\Program Files\Google
[08/07/2006|18:30] C:\Program Files\Goto Software
[15/09/2006|18:48] C:\Program Files\Hewlett-Packard
[24/12/2008|23:23] C:\Program Files\HLSW
[15/09/2006|18:51] C:\Program Files\HP
[26/04/2009|18:40] C:\Program Files\Illustrate
[12/04/2009|16:47] C:\Program Files\InstallShield Installation Information
[05/06/2008|08:49] C:\Program Files\Intel
[20/05/2009|11:07] C:\Program Files\Internet Explorer
[04/06/2009|19:02] C:\Program Files\Java
[25/04/2009|14:38] C:\Program Files\JRE
[04/04/2009|17:33] C:\Program Files\Kaspersky Lab
[26/07/2008|19:59] C:\Program Files\Lavalys
[08/07/2006|18:30] C:\Program Files\Learn2.com
[12/03/2009|10:59] C:\Program Files\lg_fwupdate
[09/02/2007|20:30] C:\Program Files\LRC Editor 4
[30/05/2009|19:32] C:\Program Files\Malwarebytes' Anti-Malware
[14/08/2008|17:30] C:\Program Files\Messenger
[29/01/2009|14:22] C:\Program Files\Microsoft
[10/04/2009|22:56] C:\Program Files\Microsoft ActiveSync
[06/10/2007|00:29] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[08/07/2006|18:30] C:\Program Files\microsoft frontpage
[24/10/2007|11:13] C:\Program Files\Microsoft LifeCam
[25/04/2009|18:02] C:\Program Files\Microsoft Office
[26/02/2009|20:08] C:\Program Files\Microsoft Silverlight
[19/02/2008|21:44] C:\Program Files\Microsoft SQL Server Compact Edition
[29/01/2009|14:21] C:\Program Files\Microsoft Sync Framework
[04/06/2009|16:03] C:\Program Files\mIRC
[10/11/2006|14:48] C:\Program Files\Mouse Driver
[13/05/2008|21:24] C:\Program Files\Movie Maker
[04/06/2009|20:05] C:\Program Files\Mozilla Firefox
[15/04/2009|12:20] C:\Program Files\MSBuild
[01/03/2009|11:37] C:\Program Files\MSN
[08/07/2006|18:30] C:\Program Files\MSN Gaming Zone
[13/11/2008|00:46] C:\Program Files\MSXML 4.0
[03/09/2006|16:47] C:\Program Files\Musicmatch
[14/09/2008|02:31] C:\Program Files\NCH Software
[14/09/2008|02:33] C:\Program Files\NCH Swift Sound
[15/11/2008|12:56] C:\Program Files\Nero
[13/05/2008|21:21] C:\Program Files\NetMeeting
[27/09/2007|16:28] C:\Program Files\Neuf
[08/07/2006|18:34] C:\Program Files\Online Services
[25/04/2009|14:38] C:\Program Files\OpenOffice.org 3
[13/05/2008|21:21] C:\Program Files\Outlook Express
[12/04/2009|16:23] C:\Program Files\PC Wizard 2008
[28/05/2009|11:34] C:\Program Files\PhotoFiltre
[01/04/2009|13:06] C:\Program Files\QuickTime
[29/09/2007|15:11] C:\Program Files\Ratajik Software
[08/07/2006|18:30] C:\Program Files\Real
[05/06/2008|08:56] C:\Program Files\Realtek
[15/04/2009|12:20] C:\Program Files\Reference Assemblies
[12/03/2009|13:10] C:\Program Files\RegFreeze
[04/02/2009|19:37] C:\Program Files\Retriever
[11/11/2008|20:44] C:\Program Files\RomuSoft
[29/05/2009|16:14] C:\Program Files\ScanSoft
[08/07/2006|18:36] C:\Program Files\Services en ligne
[08/07/2006|18:36] C:\Program Files\ShowTime
[30/03/2009|14:03] C:\Program Files\Sonic
[04/02/2009|19:23] C:\Program Files\Sony
[04/06/2009|19:48] C:\Program Files\Steam
[05/06/2008|09:03] C:\Program Files\SystemRequirementsLab
[22/05/2009|16:03] C:\Program Files\Teamspeak2_RC2
[03/09/2006|16:38] C:\Program Files\Thomson
[03/06/2009|11:40] C:\Program Files\Trend Micro
[08/10/2006|19:16] C:\Program Files\Uninstall Information
[10/04/2009|22:58] C:\Program Files\uTorrent
[08/07/2006|18:30] C:\Program Files\Viewpoint
[14/03/2007|16:13] C:\Program Files\Winamp
[01/03/2009|11:55] C:\Program Files\Windows Live
[17/12/2008|17:11] C:\Program Files\Windows Live SkyDrive
[17/05/2008|18:01] C:\Program Files\Windows Live Toolbar
[24/05/2008|11:17] C:\Program Files\Windows Media Connect 2
[14/05/2008|18:03] C:\Program Files\Windows Media Player
[13/05/2008|21:21] C:\Program Files\Windows NT
[08/07/2006|18:30] C:\Program Files\WindowsUpdate
[11/04/2008|15:48] C:\Program Files\WinRAR
[08/07/2006|18:30] C:\Program Files\xerox
[29/02/2008|17:50] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[29/05/2009|15:49] C:\Program Files\Fichiers communs\Adobe
[15/11/2008|12:59] C:\Program Files\Fichiers communs\Ahead
[06/04/2009|12:35] C:\Program Files\Fichiers communs\AOL
[08/07/2006|18:33] C:\Program Files\Fichiers communs\aolshare
[02/08/2008|12:24] C:\Program Files\Fichiers communs\AVSMedia
[29/05/2009|16:01] C:\Program Files\Fichiers communs\CANON
[15/09/2006|18:47] C:\Program Files\Fichiers communs\Hewlett-Packard
[15/09/2006|18:51] C:\Program Files\Fichiers communs\HP
[29/05/2009|16:15] C:\Program Files\Fichiers communs\InstallShield
[25/04/2009|18:02] C:\Program Files\Fichiers communs\Microsoft Shared
[08/07/2006|18:30] C:\Program Files\Fichiers communs\MSSoap
[12/10/2008|21:43] C:\Program Files\Fichiers communs\Nero
[08/07/2006|18:30] C:\Program Files\Fichiers communs\Nullsoft
[08/07/2006|18:30] C:\Program Files\Fichiers communs\ODBC
[08/07/2006|18:30] C:\Program Files\Fichiers communs\Real
[29/05/2009|16:15] C:\Program Files\Fichiers communs\ScanSoft Shared
[08/07/2006|18:33] C:\Program Files\Fichiers communs\Services
[02/01/2009|19:48] C:\Program Files\Fichiers communs\Softwin
[08/07/2006|18:33] C:\Program Files\Fichiers communs\Sonic Shared
[08/07/2006|18:30] C:\Program Files\Fichiers communs\SpeechEngines
[08/07/2006|18:33] C:\Program Files\Fichiers communs\SureThing Shared
[29/02/2008|17:49] C:\Program Files\Fichiers communs\Symantec Shared
[25/04/2009|18:01] C:\Program Files\Fichiers communs\System
[17/12/2008|17:04] C:\Program Files\Fichiers communs\Windows Live
[19/02/2008|21:30] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[26/04/2009|20:25] C:\Program Files\Fichiers communs\Wise Installation Wizard
--------------------\\ Process
( 43 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-06-04 20:14:50
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
folder error: D:\DOCUME~1\DAVID\LOCALS~1\APPLIC~1
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:1][D:0]-> D:\DOCUME~1\DAVID\LOCALS~1\Temp
[F:2][D:0]-> D:\DOCUME~1\DAVID\Cookies
[F:2][D:0]-> D:\DOCUME~1\DAVID\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 04/06/2009|20:15 - Option : [1]
--------------------\\ Fin du rapport a 20:15:44
je te reposte le rapport de la recherche:
--------------------\\ Lop S&D 4.2.5-0 XP/Vista
Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Multiprocessor Free : Intel(R) Core(TM)2 Duo CPU E4600 @ 2.40GHz )
BIOS : Default System BIOS
USER : DAVID ( Administrator )
BOOT : Normal boot
Antivirus : Kaspersky Internet Security 8.0.0.506 (Activated)
Firewall : Kaspersky Internet Security 8.0.0.506 (Not Activated)
C:\ (Local Disk) - NTFS - Total:29 Go (Free:10 Go)
D:\ (Local Disk) - NTFS - Total:73 Go (Free:67 Go)
E:\ (CD or DVD)
F:\ (USB)
G:\ (USB)
H:\ (USB)
I:\ (USB)
"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 04/06/2009|20:13 )
--------------------\\ Listing des dossiers dans APPLIC~1
[10/05/2009|20:05] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[15/11/2008|13:00] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[25/08/2006|20:49] D:\DOCUME~1\ALLUSE~1\APPLIC~1\AOL
[02/03/2008|20:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Arovax
[02/08/2008|12:26] D:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[12/08/2008|19:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[29/05/2009|15:55] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ
[29/05/2009|16:23] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonIJPLM
[15/11/2008|12:52] D:\DOCUME~1\ALLUSE~1\APPLIC~1\CyberLink
[29/09/2007|16:06] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[15/09/2006|18:52] D:\DOCUME~1\ALLUSE~1\APPLIC~1\HP
[29/05/2009|16:15] D:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[04/06/2009|19:48] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab
[27/06/2008|17:30] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Lavasoft
[29/09/2007|16:16] D:\DOCUME~1\ALLUSE~1\APPLIC~1\MailFrontier
[04/03/2009|12:40] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[27/05/2009|11:03] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[14/09/2008|02:30] D:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Software
[14/09/2008|02:29] D:\DOCUME~1\ALLUSE~1\APPLIC~1\NCH Swift Sound
[15/11/2008|12:56] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Nero
[04/09/2006|17:44] D:\DOCUME~1\ALLUSE~1\APPLIC~1\nView_Profiles
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\OD2
[20/03/2008|17:54] D:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[29/05/2009|16:15] D:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[16/02/2007|16:01] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[04/04/2009|17:25] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[28/01/2009|12:04] D:\DOCUME~1\ALLUSE~1\APPLIC~1\SUPERAntiSpyware.com
[29/09/2007|15:57] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[03/01/2009|15:29] D:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[08/03/2009|13:09] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Uniblue
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\VadeRetro
[08/07/2006|18:39] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Viewpoint
[06/10/2007|11:26] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[05/10/2007|23:31] D:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Live Toolbar
[15/06/2008|20:26] D:\DOCUME~1\ALLUSE~1\APPLIC~1\WLInstaller
[26/04/2009|18:40] D:\DOCUME~1\DAVID\APPLIC~1\AccurateRip
[19/05/2008|13:57] D:\DOCUME~1\DAVID\APPLIC~1\Adobe
[24/08/2006|13:02] D:\DOCUME~1\DAVID\APPLIC~1\AdobeUM
[15/11/2008|14:00] D:\DOCUME~1\DAVID\APPLIC~1\Ahead
[02/05/2008|22:38] D:\DOCUME~1\DAVID\APPLIC~1\Apple Computer
[27/04/2009|14:06] D:\DOCUME~1\DAVID\APPLIC~1\Audacity
[02/08/2008|12:26] D:\DOCUME~1\DAVID\APPLIC~1\AVS4YOU
[18/01/2009|13:36] D:\DOCUME~1\DAVID\APPLIC~1\BitTorrent
[03/09/2008|21:32] D:\DOCUME~1\DAVID\APPLIC~1\Canneverbe_Limited
[29/05/2009|16:31] D:\DOCUME~1\DAVID\APPLIC~1\Canon
[15/11/2008|13:08] D:\DOCUME~1\DAVID\APPLIC~1\CyberLink
[19/02/2009|16:19] D:\DOCUME~1\DAVID\APPLIC~1\DNA
[04/05/2009|19:03] D:\DOCUME~1\DAVID\APPLIC~1\dvdcss
[04/06/2009|17:33] D:\DOCUME~1\DAVID\APPLIC~1\FileZilla
[02/03/2008|22:03] D:\DOCUME~1\DAVID\APPLIC~1\FrostWire
[28/09/2007|20:29] D:\DOCUME~1\DAVID\APPLIC~1\Google
[22/04/2009|16:31] D:\DOCUME~1\DAVID\APPLIC~1\gtk-2.0
[17/10/2006|22:45] D:\DOCUME~1\DAVID\APPLIC~1\Help
[24/12/2008|23:23] D:\DOCUME~1\DAVID\APPLIC~1\HLSW
[26/09/2006|11:51] D:\DOCUME~1\DAVID\APPLIC~1\HP
[08/07/2006|18:39] D:\DOCUME~1\DAVID\APPLIC~1\Identities
[15/09/2006|19:54] D:\DOCUME~1\DAVID\APPLIC~1\Image Zone Express
[05/06/2008|08:56] D:\DOCUME~1\DAVID\APPLIC~1\InstallShield
[04/09/2006|17:45] D:\DOCUME~1\DAVID\APPLIC~1\Leadertech
[18/02/2009|17:30] D:\DOCUME~1\DAVID\APPLIC~1\LimeWire
[23/08/2006|16:42] D:\DOCUME~1\DAVID\APPLIC~1\Macromedia
[04/03/2009|12:40] D:\DOCUME~1\DAVID\APPLIC~1\Malwarebytes
[29/09/2007|17:08] D:\DOCUME~1\DAVID\APPLIC~1\Media Player Classic
[10/04/2009|22:56] D:\DOCUME~1\DAVID\APPLIC~1\Microsoft
[04/06/2009|16:37] D:\DOCUME~1\DAVID\APPLIC~1\mIRC
[01/03/2009|11:49] D:\DOCUME~1\DAVID\APPLIC~1\Mozilla
[01/03/2009|11:37] D:\DOCUME~1\DAVID\APPLIC~1\MSNInstaller
[14/09/2008|02:32] D:\DOCUME~1\DAVID\APPLIC~1\NCH Swift Sound
[12/04/2008|12:52] D:\DOCUME~1\DAVID\APPLIC~1\Nero
[28/04/2008|19:42] D:\DOCUME~1\DAVID\APPLIC~1\nView_Wallpaper
[23/08/2006|16:11] D:\DOCUME~1\DAVID\APPLIC~1\OD2
[08/03/2009|12:14] D:\DOCUME~1\DAVID\APPLIC~1\OpenOffice.org
[04/02/2009|19:37] D:\DOCUME~1\DAVID\APPLIC~1\Retriever
[29/05/2009|16:15] D:\DOCUME~1\DAVID\APPLIC~1\ScanSoft
[03/11/2007|15:07] D:\DOCUME~1\DAVID\APPLIC~1\Skype
[04/09/2006|17:45] D:\DOCUME~1\DAVID\APPLIC~1\Sonic
[04/02/2009|19:31] D:\DOCUME~1\DAVID\APPLIC~1\Sony Corporation
[05/01/2008|13:16] D:\DOCUME~1\DAVID\APPLIC~1\Sun
[24/02/2009|21:37] D:\DOCUME~1\DAVID\APPLIC~1\SUPERAntiSpyware.com
[04/03/2008|18:18] D:\DOCUME~1\DAVID\APPLIC~1\Talkback
[07/05/2009|16:44] D:\DOCUME~1\DAVID\APPLIC~1\teamspeak2
[08/03/2009|13:09] D:\DOCUME~1\DAVID\APPLIC~1\Uniblue
[04/06/2009|12:54] D:\DOCUME~1\DAVID\APPLIC~1\uTorrent
[27/08/2008|16:57] D:\DOCUME~1\DAVID\APPLIC~1\Viewpoint
[17/04/2009|11:07] D:\DOCUME~1\DAVID\APPLIC~1\vlc
[11/04/2008|15:49] D:\DOCUME~1\DAVID\APPLIC~1\WinRAR
[08/07/2006|18:39] D:\DOCUME~1\DAVID\APPLIC~1\You've Got Pictures Screensaver
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[08/07/2006|18:39] D:\DOCUME~1\DEFAUL~1\APPLIC~1\You've Got Pictures Screensaver
[01/04/2009|18:40] D:\DOCUME~1\LOCALS~1\APPLIC~1\Adobe
[04/04/2009|17:16] D:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft
[04/04/2009|17:16] D:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\Identities
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\Macromedia
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\Microsoft
[08/07/2006|18:39] D:\DOCUME~1\SOFIA\APPLIC~1\You've Got Pictures Screensaver
--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks
[04/06/2009 19:30][--a------] C:\WINDOWS\tasks\Configurer mon PC.job
[04/06/2009 19:47][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 14:00][-rah-----] C:\WINDOWS\tasks\desktop.ini
--------------------\\ Listing des dossiers dans C:\Program Files
[11/11/2007|16:10] C:\Program Files\A123 3GP to AVI WMV DVD MPEG MP4 MOV Converter
[29/08/2008|14:22] C:\Program Files\ACE Mega CoDecS Pack
[26/04/2009|20:26] C:\Program Files\AGEIA Technologies
[08/07/2006|18:30] C:\Program Files\AMD
[01/04/2009|13:05] C:\Program Files\AOL 9.0
[08/07/2006|18:30] C:\Program Files\AOL Compagnon
[04/06/2009|20:04] C:\Program Files\Arovax AntiSpyware
[29/05/2009|16:23] C:\Program Files\Canon
[29/05/2009|15:54] C:\Program Files\CanonBJ
[04/06/2009|12:50] C:\Program Files\CCleaner
[16/06/2008|19:31] C:\Program Files\Custom-Strike
[17/05/2008|16:02] C:\Program Files\DIFX
[19/02/2009|16:25] C:\Program Files\DNA
[02/06/2009|20:20] C:\Program Files\Fichiers communs
[01/04/2009|15:57] C:\Program Files\FileZilla FTP Client
[10/04/2009|22:55] C:\Program Files\Free Audio Pack
[29/04/2008|20:27] C:\Program Files\Gaming Mouse
[19/02/2009|18:50] C:\Program Files\GIMP-2.0
[12/05/2008|20:37] C:\Program Files\Google
[08/07/2006|18:30] C:\Program Files\Goto Software
[15/09/2006|18:48] C:\Program Files\Hewlett-Packard
[24/12/2008|23:23] C:\Program Files\HLSW
[15/09/2006|18:51] C:\Program Files\HP
[26/04/2009|18:40] C:\Program Files\Illustrate
[12/04/2009|16:47] C:\Program Files\InstallShield Installation Information
[05/06/2008|08:49] C:\Program Files\Intel
[20/05/2009|11:07] C:\Program Files\Internet Explorer
[04/06/2009|19:02] C:\Program Files\Java
[25/04/2009|14:38] C:\Program Files\JRE
[04/04/2009|17:33] C:\Program Files\Kaspersky Lab
[26/07/2008|19:59] C:\Program Files\Lavalys
[08/07/2006|18:30] C:\Program Files\Learn2.com
[12/03/2009|10:59] C:\Program Files\lg_fwupdate
[09/02/2007|20:30] C:\Program Files\LRC Editor 4
[30/05/2009|19:32] C:\Program Files\Malwarebytes' Anti-Malware
[14/08/2008|17:30] C:\Program Files\Messenger
[29/01/2009|14:22] C:\Program Files\Microsoft
[10/04/2009|22:56] C:\Program Files\Microsoft ActiveSync
[06/10/2007|00:29] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[08/07/2006|18:30] C:\Program Files\microsoft frontpage
[24/10/2007|11:13] C:\Program Files\Microsoft LifeCam
[25/04/2009|18:02] C:\Program Files\Microsoft Office
[26/02/2009|20:08] C:\Program Files\Microsoft Silverlight
[19/02/2008|21:44] C:\Program Files\Microsoft SQL Server Compact Edition
[29/01/2009|14:21] C:\Program Files\Microsoft Sync Framework
[04/06/2009|16:03] C:\Program Files\mIRC
[10/11/2006|14:48] C:\Program Files\Mouse Driver
[13/05/2008|21:24] C:\Program Files\Movie Maker
[04/06/2009|20:05] C:\Program Files\Mozilla Firefox
[15/04/2009|12:20] C:\Program Files\MSBuild
[01/03/2009|11:37] C:\Program Files\MSN
[08/07/2006|18:30] C:\Program Files\MSN Gaming Zone
[13/11/2008|00:46] C:\Program Files\MSXML 4.0
[03/09/2006|16:47] C:\Program Files\Musicmatch
[14/09/2008|02:31] C:\Program Files\NCH Software
[14/09/2008|02:33] C:\Program Files\NCH Swift Sound
[15/11/2008|12:56] C:\Program Files\Nero
[13/05/2008|21:21] C:\Program Files\NetMeeting
[27/09/2007|16:28] C:\Program Files\Neuf
[08/07/2006|18:34] C:\Program Files\Online Services
[25/04/2009|14:38] C:\Program Files\OpenOffice.org 3
[13/05/2008|21:21] C:\Program Files\Outlook Express
[12/04/2009|16:23] C:\Program Files\PC Wizard 2008
[28/05/2009|11:34] C:\Program Files\PhotoFiltre
[01/04/2009|13:06] C:\Program Files\QuickTime
[29/09/2007|15:11] C:\Program Files\Ratajik Software
[08/07/2006|18:30] C:\Program Files\Real
[05/06/2008|08:56] C:\Program Files\Realtek
[15/04/2009|12:20] C:\Program Files\Reference Assemblies
[12/03/2009|13:10] C:\Program Files\RegFreeze
[04/02/2009|19:37] C:\Program Files\Retriever
[11/11/2008|20:44] C:\Program Files\RomuSoft
[29/05/2009|16:14] C:\Program Files\ScanSoft
[08/07/2006|18:36] C:\Program Files\Services en ligne
[08/07/2006|18:36] C:\Program Files\ShowTime
[30/03/2009|14:03] C:\Program Files\Sonic
[04/02/2009|19:23] C:\Program Files\Sony
[04/06/2009|19:48] C:\Program Files\Steam
[05/06/2008|09:03] C:\Program Files\SystemRequirementsLab
[22/05/2009|16:03] C:\Program Files\Teamspeak2_RC2
[03/09/2006|16:38] C:\Program Files\Thomson
[03/06/2009|11:40] C:\Program Files\Trend Micro
[08/10/2006|19:16] C:\Program Files\Uninstall Information
[10/04/2009|22:58] C:\Program Files\uTorrent
[08/07/2006|18:30] C:\Program Files\Viewpoint
[14/03/2007|16:13] C:\Program Files\Winamp
[01/03/2009|11:55] C:\Program Files\Windows Live
[17/12/2008|17:11] C:\Program Files\Windows Live SkyDrive
[17/05/2008|18:01] C:\Program Files\Windows Live Toolbar
[24/05/2008|11:17] C:\Program Files\Windows Media Connect 2
[14/05/2008|18:03] C:\Program Files\Windows Media Player
[13/05/2008|21:21] C:\Program Files\Windows NT
[08/07/2006|18:30] C:\Program Files\WindowsUpdate
[11/04/2008|15:48] C:\Program Files\WinRAR
[08/07/2006|18:30] C:\Program Files\xerox
[29/02/2008|17:50] C:\Program Files\Yahoo!
--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs
[29/05/2009|15:49] C:\Program Files\Fichiers communs\Adobe
[15/11/2008|12:59] C:\Program Files\Fichiers communs\Ahead
[06/04/2009|12:35] C:\Program Files\Fichiers communs\AOL
[08/07/2006|18:33] C:\Program Files\Fichiers communs\aolshare
[02/08/2008|12:24] C:\Program Files\Fichiers communs\AVSMedia
[29/05/2009|16:01] C:\Program Files\Fichiers communs\CANON
[15/09/2006|18:47] C:\Program Files\Fichiers communs\Hewlett-Packard
[15/09/2006|18:51] C:\Program Files\Fichiers communs\HP
[29/05/2009|16:15] C:\Program Files\Fichiers communs\InstallShield
[25/04/2009|18:02] C:\Program Files\Fichiers communs\Microsoft Shared
[08/07/2006|18:30] C:\Program Files\Fichiers communs\MSSoap
[12/10/2008|21:43] C:\Program Files\Fichiers communs\Nero
[08/07/2006|18:30] C:\Program Files\Fichiers communs\Nullsoft
[08/07/2006|18:30] C:\Program Files\Fichiers communs\ODBC
[08/07/2006|18:30] C:\Program Files\Fichiers communs\Real
[29/05/2009|16:15] C:\Program Files\Fichiers communs\ScanSoft Shared
[08/07/2006|18:33] C:\Program Files\Fichiers communs\Services
[02/01/2009|19:48] C:\Program Files\Fichiers communs\Softwin
[08/07/2006|18:33] C:\Program Files\Fichiers communs\Sonic Shared
[08/07/2006|18:30] C:\Program Files\Fichiers communs\SpeechEngines
[08/07/2006|18:33] C:\Program Files\Fichiers communs\SureThing Shared
[29/02/2008|17:49] C:\Program Files\Fichiers communs\Symantec Shared
[25/04/2009|18:01] C:\Program Files\Fichiers communs\System
[17/12/2008|17:04] C:\Program Files\Fichiers communs\Windows Live
[19/02/2008|21:30] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[26/04/2009|20:25] C:\Program Files\Fichiers communs\Wise Installation Wizard
--------------------\\ Process
( 43 Processes )
... OK !
--------------------\\ Recherche avec S_Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Recherche de Fichiers / Dossiers Lop
Aucun fichier / dossier Lop trouvé !
--------------------\\ Verification du Registre
..... OK !
--------------------\\ Verification du fichier Hosts
Fichier Hosts PROPRE
--------------------\\ Recherche de fichiers avec Catchme
catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-06-04 20:14:50
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
folder error: D:\DOCUME~1\DAVID\LOCALS~1\APPLIC~1
--------------------\\ Recherche d'autres infections
Aucune autre infection trouvée !
[F:1][D:0]-> D:\DOCUME~1\DAVID\LOCALS~1\Temp
[F:2][D:0]-> D:\DOCUME~1\DAVID\Cookies
[F:2][D:0]-> D:\DOCUME~1\DAVID\LOCALS~1\TEMPOR~1\content.IE5
1 - "C:\Lop SD\LopR_1.txt" - 04/06/2009|20:15 - Option : [1]
--------------------\\ Fin du rapport a 20:15:44
Télécharge GenProc :
http://www.genproc.com/GenProc.exe
Exécute-le.
Laisse le travailler et poste moi le rapport à la fin.
http://www.genproc.com/GenProc.exe
Exécute-le.
Laisse le travailler et poste moi le rapport à la fin.
voila le rapport de Genproc:
Rapport GenProc 2.574 [1]
@ 04/06/2009 à 21:05:22
@ Windows XP Service Pack 3
@ Internet Explorer (8.0.6001.18702) [Navigateur par défaut]
~~ "C:\WINDOWS\sed.exe" a été renommé sed.exe_RenameGenProc ~~
~~ "C:\WINDOWS\grep.exe" a été renommé grep.exe_RenameGenProc ~~
GenProc n'a détecté aucune infection caractéristique et suggère de suivre la procédure suivante :
Poste un rapport Nod32 https://www.eset.com/ (il faut utiliser Internet Explorer)
- coche toutes les cases à chaque fois, et lorsque c'est terminé, colle le rapport :
- C:\Program Files\EsetOnlineScanner\log.txt
----------------------------------------------------------------------
Sites officiels GenProc : www.alt-shift-return.org et www.genproc.com
----------------------------------------------------------------------
Rapport GenProc 2.574 [1]
@ 04/06/2009 à 21:05:22
@ Windows XP Service Pack 3
@ Internet Explorer (8.0.6001.18702) [Navigateur par défaut]
~~ "C:\WINDOWS\sed.exe" a été renommé sed.exe_RenameGenProc ~~
~~ "C:\WINDOWS\grep.exe" a été renommé grep.exe_RenameGenProc ~~
GenProc n'a détecté aucune infection caractéristique et suggère de suivre la procédure suivante :
Poste un rapport Nod32 https://www.eset.com/ (il faut utiliser Internet Explorer)
- coche toutes les cases à chaque fois, et lorsque c'est terminé, colle le rapport :
- C:\Program Files\EsetOnlineScanner\log.txt
----------------------------------------------------------------------
Sites officiels GenProc : www.alt-shift-return.org et www.genproc.com
----------------------------------------------------------------------