[Hijack this log] qu'est ce qui ne va pas?

Ibarrategui -  
 Ibarrategui -
Bonjour à tous

J'ai éliminé toute une série de trojans en suivant les procédures habituelles. Le problème est que je me retrouve,a u bout de 30 minutes avec du trafic sortant non désiré, ce qui ralentit ma connexion internet. Ad-aware n'a rien trouvé, spybot non plus, bitdefender non plus, clamwin non plus, tout comme a² et cwshredder (tous en mode sans échec, sauf bitdefender qui se lance pas en sans échec)

Alors je poste mon hijackthis, des fois que vous y voyiez un problème

Logfile of HijackThis v1.99.1
Scan saved at 06:45:32, on 15/03/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Executive Software\DiskeeperServer\DKService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\System32\rmctrl.exe
C:\Program Files\Softwin\BitDefender8\bdoesrv.exe
C:\Program Files\Softwin\BitDefender8\bdswitch.exe
C:\PROGRA~1\Wanadoo\CnxMon.exe
C:\PROGRA~1\MESSAG~1\StartMessager.exe
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
C:\Program Files\ClamWin\bin\ClamTray.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mmjb.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\MMDiag.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_director.exe
C:\PROGRA~1\MUSICM~1\MUSICM~2\MM_TDM~1.EXE
C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
C:\Program Files\Softwin\BitDefender8\vsserv.exe
c:\progra~1\softwin\bitdef~1\bdmcon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Carlier\Bureau\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [Ins3DT] D:\INSTALL4\INS3DT.EXE
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
O4 - HKLM\..\Run: [BDMCon] c:\progra~1\softwin\bitdef~1\bdmcon.exe
O4 - HKLM\..\Run: [BDOESRV] C:\Program Files\Softwin\BitDefender8\\bdoesrv.exe
O4 - HKLM\..\Run: [BDNewsAgent] c:\progra~1\softwin\bitdef~1\bdnagent.exe
O4 - HKLM\..\Run: [BDSwitchAgent] C:\Program Files\Softwin\BitDefender8\\bdswitch.exe
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
O4 - HKLM\..\Run: [MessagerStarter Wanadoo] C:\PROGRA~1\MESSAG~1\StartMessager.exe Messager Wanadoo
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [Ujs] C:\WINDOWS\system32\Vcu.exe
O4 - HKLM\..\Run: [Uci] C:\WINDOWS\system32\Tqb.exe
O4 - HKLM\..\Run: [Hun] C:\WINDOWS\system32\Ngt.exe
O4 - HKLM\..\Run: [Mii] C:\WINDOWS\system32\Skf.exe
O4 - HKLM\..\Run: [Koo] C:\WINDOWS\system32\Hgj.exe
O4 - HKLM\..\Run: [Rae] C:\WINDOWS\system32\Lsp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [ClamWin] "C:\Program Files\ClamWin\bin\ClamTray.exe" --logon
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Ujs] C:\WINDOWS\system32\Vcu.exe
O4 - HKCU\..\Run: [Uci] C:\WINDOWS\system32\Tqb.exe
O4 - HKCU\..\Run: [Hun] C:\WINDOWS\system32\Ngt.exe
O4 - HKCU\..\Run: [Mii] C:\WINDOWS\system32\Skf.exe
O4 - HKCU\..\Run: [Koo] C:\WINDOWS\system32\Hgj.exe
O4 - HKCU\..\Run: [Rae] C:\WINDOWS\system32\Lsp.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra button: eBay - Homepage - {EF79EAC5-3452-4E02-B8BD-BA4C89F1AC7A} - C:\Program Files\IrfanView\Ebay\Ebay.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)
O16 - DPF: Interface Chat Voila - http://chat4.x-echo.com/version5/Applet/vchatsign.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1103296909718
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{820AA53A-7BE2-4F08-86C5-3A11956419F6}: NameServer = 80.10.246.130 80.10.246.3
O17 - HKLM\System\CS1\Services\Tcpip\..\{820AA53A-7BE2-4F08-86C5-3A11956419F6}: NameServer = 80.10.246.130 80.10.246.3
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\DiskeeperServer\DKService.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender8\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - Softwin - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe

26 réponses

Ibarrategui
 
Yep je viens de voir ça... c'est grave grave, ou pas trop (je viens de l'arrêter)?

ça change quelque chose à mon problème?

je viens d'aller avec regcleaner pour voir ce que j'avais dans la machine, mais je suis pas capable de tout évaluer:

RegCleaner 4.3 by Jouni Vuorio
Software registered to the Registry. You should delete every program's entries you know you've had, but don't have anymore
[syntax: Author, Software, Age ]

Mozilla, Desktop, New
[Unknown], ClamWin, Old
[Unknown], Via4in1Driver, Old
[Unknown], CodecPack, Old
[Unknown], WinRAR SFX, Old
[Unknown], XnView, Old
AC3Filter, Delay, Old
AC3Filter, Equalizer, Old
AC3Filter, Matrix, Old
AC3Filter, Preset, Old
Adobe, CommonFiles, Old
Adobe, Repair, Old
Adobe, Acrobat Reader, Old
Adobe, Adobe Acrobat, Old
Adobe, Photoshop Album, Old
Adobe, Acrobat, Old
Ahead, InCD, Old
Ahead, Nero BackItUp, Old
Ahead, Nero SoundTrax, Old
Ahead, Nero Toolkit, Old
Ahead, Nero Wave Editor, Old
Ahead, Shared, Old
Ahead, Aac, Old
Ahead, Cover Designer, Old
Ahead, Nero - Burning Rom, Old
Ahead, Nero ShowTime, Old
Ahead, Nero StartSmart, Old
Ahead, NeroCBUI, Old
Ahead, NeroMediaPlayer, Old
Ahead, NeroVision, Old
Ahead, NeroWebEngine, Old
Alcatel, Alcatel SpeedTouch USB Software, Old
Alcatel, SpeedTouchUSB, Old
Andreas Haak, A-squared, Old
Andreas Haak, A², Old
Apple Computer, Inc., QuickTime, Old
ASProtect, SpecData, Old
Black Cactus, Warrior Kings Battles, Old
C.o.r.e., C.o.r.e., Old
C07ft5Y, Fm2005, Old
C07ft5Y, Sims, Old
C07ft5Y, Warrior_Kings_Battles, Old
C07ft5Y, WinXP, Old
Cddb, Control, Old
CodecPack, Allin1, Old
Cyberlink, Common, Old
CyberLink, PowerDVD, Old
Cygnus Solutions, Cygwin, Old
DivXNetworks, DivX4Windows, Old
Drempels, SzTexPath, Old
Dynasoft, 8226865503857153, Old
Ea Games, The Sims 2, Old
Electronic Arts, EA Games, Old
Electronic Arts, Maxis, Old
Empire Interactive, Warrior Kings - Battles, Old
EU2Map, TEU2Map, Old
EvolutionComputing, CampaignCartographer, Old
Executive Software, Diskeeper, Old
Fmediting.co.uk, English Superpack, Old
France Telecom, Messager Wanadoo, Old
France Telecom, Minitel, Old
France Telecom, Wanadoo, Old
Gabest, DVobSub, Old
Gemplus, Cryptography, Old
Golem Labs, SuperPower 2, Old
GolemLabs, Superpower2, Old
Google, NavClient, Old
InterMute, CWShredder, Old
JavaSoft, Java Plug-in, Old
JavaSoft, Java Update, Old
JavaSoft, Java Web Start, Old
JavaSoft, Java Runtime Environment, Old
JavaSoft, Java2D, Old
Lake, DolbyHph, Old
Lake, LakeControl, Old
Lavasoft, Ad-Aware SE, Old
LeaderTech, PowerRegister, Old
LeaderTech, Product Registration, Old
Local AppWizard-Generated Applications, MMDiag, Old
Local AppWizard-Generated Applications, RtlRack, Old
Macromedia, FlashPlayer, Old
Maxis, SimCity 3000, Old
Mozilla, Mozilla, Old
Mozilla, Mozilla Firefox, Old
Mozilla, Mozilla Firefox 1.0, Old
Mozilla, Mozilla Firefox 1.0.1, Old
Mozilla.org, Mozilla, Old
MozillaPlugins, @real.com/nppl3260;version=6.0.11.2027, Old
MozillaPlugins, @real.com/nprjplug;version=1.0.2.2088, Old
MozillaPlugins, @real.com/nprpjplug;version=6.0.12.1040, Old
MozillaPlugins, @real.com/nsJSRealPlayerPlugin;version=, Old
Msi, Drivers, Old
MusicMatch, MUSICMATCH Burning, Old
MusicMatch, MusicMatch Jukebox, Old
MusicMatch, Musicmatch Update, Old
MusicMatch, Tdm, Old
Netscape, Netscape Navigator, Old
Nullsoft, Winamp, Old
NVIDIA Corporation, Riva Tnt, Old
NVIDIA Corporation, Global, Old
Paradox Entertainment, Crusader Kings, Old
Paradox Entertainment, Europa Universalis 2, Old
Paradox Entertainment, Hearts Of Iron, Old
Paradox Entertainment, Victoria, Old
Paradox Interactive, HOI2 - Demo Version, Old
PepiMK Software, SpybotSnD, Old
RealNetworks, Rnadmin, Old
RealNetworks, Visualizations, Old
RealNetworks, Gemini, Old
RealNetworks, Msg, Old
RealNetworks, Preferences, Old
RealNetworks, RealJukebox, Old
RealNetworks, RealMediaSDK, Old
RealNetworks, RealPlayer, Old
RealNetworks, RealSystemMP, Old
RealNetworks, UninstallDoFolderScan, Old
RealNetworks, Update, Old
Realtek, AC97 Audio, Old
Realtek Semiconductor Corp., Realtek AC'97 Audio, Old
RichFX, Player, Old
Schlumberger, Smart Cards And Terminals, Old
Slayton Software, Ft160, Old
Soeperman Enterprises Ltd., HijackThis, Old
Softwin, Bd_upg, Old
Softwin, BitDefender Desktop, Old
Softwin, BitDefender Desktop 7, Old
Softwin, BitDefender Desktop 8, Old
Softwrap, 3211a1549cfad1185a1d9c0b11a684a2a86c38e2, Old
Softwrap, Adtracker________, Old
Softwrap, Lang, Old
Softwrap, Ver1.0, Old
Sports Interactive Ltd, FM 2005 Data Editor, Old
Sports Interactive Ltd, Football Manager 2005, Old
Sports Interactive Ltd, Installs, Old
Ulead Systems, Info, Old
Ulead Systems, Ulead GIF Animator, Old
VB And VBA Program Settings, Euro Add-in, Old
Winamp, In_vorbis, Old
WinRAR, ArcHistory, Old
WinRAR, DialogEditHistory, Old
WinRAR, FileList, Old
WinRAR, Formats, Old
WinRAR, General, Old
WinRAR, Interface, Old
WinRAR, Profiles, Old
WinRAR, Setup, Old
Xing Technology Corp., SharedDlls, Old
0
balltrap34 Messages postés 16241 Statut Contributeur sécurité 332
 
la je peut pas te dire refait un nouvel hijack et met le ici
et dit moi exactement ou en est ton probleme
histoire de se mettre a jour
0
Ibarrategui
 
Au bout de 35-40 minutes, alors que je ne fais rien sur le net, ma quantité de fichiers envoyés augmente jusqu'à 300 - 400 kb/s, ce qui bouffe mon débit de connexion... Bloquer la connexion internet avec le firewall ne change rien, le débit continue sur le même rythme. Et la seule solution est de déconnecter, se reconnecter...

Logfile of HijackThis v1.99.1
Scan saved at 14:56:46, on 15/03/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Executive Software\DiskeeperServer\DKService.exe
C:\Program Files\Fichiers communs\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\System32\rmctrl.exe
C:\Program Files\Softwin\BitDefender8\bdoesrv.exe
C:\Program Files\Softwin\BitDefender8\bdswitch.exe
C:\PROGRA~1\Wanadoo\CnxMon.exe
C:\PROGRA~1\MESSAG~1\StartMessager.exe
C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mmjb.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\MMDiag.exe
C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_director.exe
C:\PROGRA~1\MUSICM~1\MUSICM~2\MM_TDM~1.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
C:\Program Files\Softwin\BitDefender8\vsserv.exe
c:\progra~1\softwin\bitdef~1\bdmcon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Carlier\Bureau\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.wanadoo.fr/go/page_recherche/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.wanadoo.fr
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
O4 - HKLM\..\Run: [BDMCon] c:\progra~1\softwin\bitdef~1\bdmcon.exe
O4 - HKLM\..\Run: [BDOESRV] C:\Program Files\Softwin\BitDefender8\\bdoesrv.exe
O4 - HKLM\..\Run: [BDNewsAgent] c:\progra~1\softwin\bitdef~1\bdnagent.exe
O4 - HKLM\..\Run: [BDSwitchAgent] C:\Program Files\Softwin\BitDefender8\\bdswitch.exe
O4 - HKLM\..\Run: [WooCnxMon] C:\PROGRA~1\Wanadoo\CnxMon.exe
O4 - HKLM\..\Run: [MessagerStarter Wanadoo] C:\PROGRA~1\MESSAG~1\StartMessager.exe Messager Wanadoo
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\TaskbarIcon.exe
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [ClamWin] "C:\Program Files\ClamWin\bin\ClamTray.exe" --logon
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra button: eBay - Homepage - {EF79EAC5-3452-4E02-B8BD-BA4C89F1AC7A} - C:\Program Files\IrfanView\Ebay\Ebay.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.wanadoo.fr (file missing) (HKCU)
O16 - DPF: Interface Chat Voila - http://chat4.x-echo.com/version5/Applet/vchatsign.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{820AA53A-7BE2-4F08-86C5-3A11956419F6}: NameServer = 80.10.246.130 80.10.246.3
O17 - HKLM\System\CS1\Services\Tcpip\..\{820AA53A-7BE2-4F08-86C5-3A11956419F6}: NameServer = 80.10.246.130 80.10.246.3
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\DiskeeperServer\DKService.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - Unknown owner - C:\Program Files\Softwin\BitDefender8\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - Softwin - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
0
balltrap34 Messages postés 16241 Statut Contributeur sécurité 332
 
clamwin est toujours lancer
fait ceci
demarrer/executer et tape msconfig
recherche clam decoche applque et redemarre
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Ibarrategui
 
J'ai dégagé clamwin mais ça change pas mon problème...

Vous avez des idées?
0
Ibarrategui
 
Bon, j'ai refait un adware (smart scan) en sans échec, et j'ai trouvé une dizaine de cochonneries bien planquées...
Je les ai dégagées des registres et pour l'instant, après 40 minutes de connexion, je n'ai plus ce problème de transfert de données.

Merci à vous pour votre aide
0