Porbleme virus

johncena83 Messages postés 148 Statut Membre -  
johncena83 Messages postés 148 Statut Membre -
Bonjour,

Apparemment j'ai plusieurs virus dans mon ordi!!!

Pouvez vous m'aider a les enelver svp
A voir également:

70 réponses

Destrio5 Messages postés 99820 Statut Modérateur 10 304
 
"ca t'es deja arriver mon probleme?"
--> Oui.

"Parce que tu t'y connais bien"
--> Cela fait plus d'un an que je désinfecte les PC ;)
0
johncena83 Messages postés 148 Statut Membre
 
ok et j'ai vu un logiciel rogueremover c bien ou pas?
0
Destrio5 Messages postés 99820 Statut Modérateur 10 304
 
RogueRemover n'est plus à jour, c'est Malwarebytes' Anti-Malware qui le remplace.
0
johncena83 Messages postés 148 Statut Membre
 
ben ouais mais il a pas reussi a me l'enlever n'empeche
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Destrio5 Messages postés 99820 Statut Modérateur 10 304
 
C'est un nouveau rogue, MBAM ne le reconnaît pas encore.

C:\Program Files\SaveDefense Software

Supprime ce dossier "SaveDefense Software" tout simplement.

Ou sinon je te fais une procédure pour le virer.
0
johncena83 Messages postés 148 Statut Membre
 
il n'y a aucun safedense --'

enfin j'ai regarder ya pas de safedense softaware

donc je veux bien ta procedure :)

stp
0
Destrio5 Messages postés 99820 Statut Modérateur 10 304
 
---> Télécharge OTM (OldTimer) sur ton Bureau.

---> Clique droit sur OTM.exe et choisis Exécuter en tant qu'administrateur.

---> Copie (Ctrl+C) le texte suivant ci-dessous :





:processes
explorer.exe

:services
aksfridge

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"[webwiz]"=-
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"0qlse65r.exe"=-
[-HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{420c3cc6-2a7c-11dd-a45c-001b7786c536}]

:files
C:\Program Files\SaveDefense Software
C:\Windows\system32\0qlse65r.exe
C:\Windows\25546sp931z5.exe
C:\Windows\z193s9ywa5e584.dll
C:\Windows\29110wor579z.dll
C:\Windows\45939iz2051.dll
C:\Windows\18745not-a-v9rus78z.dll
C:\Windows\system32\225az5arse999.exe
C:\Windows\27405sz957c.dll
C:\Windows\246z9spy53b.exe
C:\Windows\system32\757evir2z539.dll
C:\Windows\9zeethief2265.dll
C:\Windows\7zb2download9r785.dll
C:\Windows\z0955pyw9re2955.dll
C:\Windows\25097not-a5viruz47e.exe
C:\Windows\system32\32570wo5z5ff9.exe
C:\Windows\5bz75te9l3077.exe
C:\Windows\1519backdozr1611.dll
C:\Windows\system32\4e60ba95dzor114.exe
C:\Windows\system32\7ez7sp9ware2395.dll
C:\Windows\system32\109395pambot5dz.dll
C:\Windows\262595ackzool7e69.exe
C:\Windows\system32\558969irus2f8z.exe
C:\Windows\z997downloader5222.exe
C:\Windows\system32\23055troz95e.dll
C:\Windows\3219z5acktool5bf.exe
C:\Windows\system32\12z5vi97515.exe
C:\Windows\19thie5z3779.exe
C:\Windows\system32\220z8vir9s557.dll
C:\Windows\system32\13149wor955z.exe
C:\Windows\system32\7d729zywa5e520.exe
C:\Windows\system32\7254down5ozder9262.dll
C:\Windows\system32\13827s95mbot73z.exe
C:\Windows\50fcs5yware997z.dll
C:\Windows\z9e99hie52896.exe
C:\Windows\system32\5b0dspyw9re5z5.exe
C:\Windows\57c9t59ef65z.exe
C:\Windows\451cdo9nload5rz931.exe
C:\Windows\30835hreat51z09.dll
C:\Windows\system32\6815notza-viru5982.dll
C:\Windows\1791zspa5bot487.dll
C:\Windows\system32\49ectzrea512069.exe
C:\Windows\1z311sp52339.dll
C:\Windows\system32\7azesp5rse969.exe
C:\Windows\system32\63cbbackdoo5495z.dll
C:\Windows\system32\2695za5kdoor292.dll
C:\Windows\29z90spy34d5.dll
C:\Windows\z05bthre9t57588.dll
C:\Windows\system32\3953zworm42f.exe
C:\Windows\9355notz9-virus6545.dll
C:\Windows\20769hackzo5l987.dll
C:\Windows\17845hackzo9l655.exe
C:\Windows\system32\91abzc9d5or2700.exe
C:\Windows\system32\20597vir5s5z0.exe
C:\Windows\72c0bazkdo5r3109.dll
C:\Windows\system32\5474not-a5virusz9.dll
C:\Windows\26dza9d5are1072.dll
C:\Windows\z15aspa5se26519.dll
C:\Windows\system32\7858hacz9ool4d2.exe
C:\Windows\system32\27fcspzr5e1978.exe
C:\Windows\system32\26e9threz913165.exe
C:\Windows\55655w9rz34.dll
C:\Windows\2aeethze93258.exe
C:\Windows\23485not-a9virus58z.dll
C:\Windows\16094not5a-9zrus617.dll
C:\Windows\14edad5zare1969.exe
C:\Windows\system32\766z5i92253.exe
C:\Windows\system32\2563vi9988z.dll
C:\Windows\3z435h9cktoo55d0.exe
C:\Windows\25859sz9mbot5315.dll
C:\Windows\system32\9400zot-a-vi5us9f.dll
C:\Windows\4z9b5ckdoor69.dll
C:\Windows\295915orz4b09.dll
C:\Windows\system32\5b529hreat3z635.dll
C:\Windows\4970t9reatz6523.dll
C:\Windows\system32\3z709s95mbot2aa.exe
C:\Windows\4zf6spywa9e2385.exe
C:\Windows\1365n5t-a-vizus499.dll
C:\Windows\system32\29655szambo5565.dll
C:\Windows\system32\453ztroj592.exe
C:\Windows\2053thrzat29102.exe
C:\Windows\1b1bspywa9e2589z.exe
C:\Windows\16539hac9tooz795.dll
C:\Windows\2a78thr5a911z42.dll
C:\Windows\system32\DRIVERS\aksfridge.sys

:commands
[purity]
[emptytemp]
[reboot]





---> Colle (Ctrl+V) le texte précédemment copié dans le cadre Paste Instructions for Items to be Moved.

---> Clique maintenant sur le bouton MoveIt! puis ferme OTM.

Si un fichier ou dossier ne peut pas être supprimé immédiatement, le logiciel te demandera de redémarrer.
Accepte en cliquant sur YES.

---> Poste le rapport situé dans ce dossier : C:\_OTM\MovedFiles\
Le nom du rapport correspond au moment de sa création : date_heure.log
0
johncena83 Messages postés 148 Statut Membre
 
All processes killed
========== PROCESSES ==========
No active process named explorer.exe was found!
========== SERVICES/DRIVERS ==========
Service\Driver aksfridge stopped successfully.
Service\Driver aksfridge deleted successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{7E853D72-626A-48EC-A868-BA8D5E23E045}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\[webwiz] deleted successfully.
Registry value HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\0qlse65r.exe deleted successfully.
Registry key HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{420c3cc6-2a7c-11dd-a45c-001b7786c536}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{420c3cc6-2a7c-11dd-a45c-001b7786c536}\ not found.
========== FILES ==========
C:\Windows\system32\0qlse65r.exe moved successfully.
File/Folder C:\Windows\25546sp931z5.exe not found.
LoadLibrary failed for C:\Windows\z193s9ywa5e584.dll
C:\Windows\z193s9ywa5e584.dll NOT unregistered.
C:\Windows\z193s9ywa5e584.dll moved successfully.
File/Folder C:\Windows\29110wor579z.dll not found.
LoadLibrary failed for C:\Windows\45939iz2051.dll
C:\Windows\45939iz2051.dll NOT unregistered.
C:\Windows\45939iz2051.dll moved successfully.
File/Folder C:\Windows\18745not-a-v9rus78z.dll not found.
C:\Windows\system32\225az5arse999.exe moved successfully.
File/Folder C:\Windows\27405sz957c.dll not found.
File/Folder C:\Windows\246z9spy53b.exe not found.
LoadLibrary failed for C:\Windows\system32\757evir2z539.dll
C:\Windows\system32\757evir2z539.dll NOT unregistered.
C:\Windows\system32\757evir2z539.dll moved successfully.
LoadLibrary failed for C:\Windows\9zeethief2265.dll
C:\Windows\9zeethief2265.dll NOT unregistered.
C:\Windows\9zeethief2265.dll moved successfully.
LoadLibrary failed for C:\Windows\7zb2download9r785.dll
C:\Windows\7zb2download9r785.dll NOT unregistered.
C:\Windows\7zb2download9r785.dll moved successfully.
LoadLibrary failed for C:\Windows\z0955pyw9re2955.dll
C:\Windows\z0955pyw9re2955.dll NOT unregistered.
C:\Windows\z0955pyw9re2955.dll moved successfully.
File/Folder C:\Windows\25097not-a5viruz47e.exe not found.
C:\Windows\system32\32570wo5z5ff9.exe moved successfully.
C:\Windows\5bz75te9l3077.exe moved successfully.
File/Folder C:\Windows\1519backdozr1611.dll not found.
C:\Windows\system32\4e60ba95dzor114.exe moved successfully.
LoadLibrary failed for C:\Windows\system32\7ez7sp9ware2395.dll
C:\Windows\system32\7ez7sp9ware2395.dll NOT unregistered.
C:\Windows\system32\7ez7sp9ware2395.dll moved successfully.
LoadLibrary failed for C:\Windows\system32\109395pambot5dz.dll
C:\Windows\system32\109395pambot5dz.dll NOT unregistered.
C:\Windows\system32\109395pambot5dz.dll moved successfully.
File/Folder C:\Windows\262595ackzool7e69.exe not found.
C:\Windows\system32\558969irus2f8z.exe moved successfully.
C:\Windows\z997downloader5222.exe moved successfully.
LoadLibrary failed for C:\Windows\system32\23055troz95e.dll
C:\Windows\system32\23055troz95e.dll NOT unregistered.
C:\Windows\system32\23055troz95e.dll moved successfully.
File/Folder C:\Windows\3219z5acktool5bf.exe not found.
C:\Windows\system32\12z5vi97515.exe moved successfully.
File/Folder C:\Windows\19thie5z3779.exe not found.
LoadLibrary failed for C:\Windows\system32\220z8vir9s557.dll
C:\Windows\system32\220z8vir9s557.dll NOT unregistered.
C:\Windows\system32\220z8vir9s557.dll moved successfully.
C:\Windows\system32\13149wor955z.exe moved successfully.
C:\Windows\system32\7d729zywa5e520.exe moved successfully.
LoadLibrary failed for C:\Windows\system32\7254down5ozder9262.dll
C:\Windows\system32\7254down5ozder9262.dll NOT unregistered.
C:\Windows\system32\7254down5ozder9262.dll moved successfully.
C:\Windows\system32\13827s95mbot73z.exe moved successfully.
LoadLibrary failed for C:\Windows\50fcs5yware997z.dll
C:\Windows\50fcs5yware997z.dll NOT unregistered.
C:\Windows\50fcs5yware997z.dll moved successfully.
C:\Windows\z9e99hie52896.exe moved successfully.
C:\Windows\system32\5b0dspyw9re5z5.exe moved successfully.
C:\Windows\57c9t59ef65z.exe moved successfully.
C:\Windows\451cdo9nload5rz931.exe moved successfully.
File/Folder C:\Windows\30835hreat51z09.dll not found.
LoadLibrary failed for C:\Windows\system32\6815notza-viru5982.dll
C:\Windows\system32\6815notza-viru5982.dll NOT unregistered.
C:\Windows\system32\6815notza-viru5982.dll moved successfully.
File/Folder C:\Windows\1791zspa5bot487.dll not found.
C:\Windows\system32\49ectzrea512069.exe moved successfully.
File/Folder C:\Windows\1z311sp52339.dll not found.
C:\Windows\system32\7azesp5rse969.exe moved successfully.
LoadLibrary failed for C:\Windows\system32\63cbbackdoo5495z.dll
C:\Windows\system32\63cbbackdoo5495z.dll NOT unregistered.
C:\Windows\system32\63cbbackdoo5495z.dll moved successfully.
LoadLibrary failed for C:\Windows\system32\2695za5kdoor292.dll
C:\Windows\system32\2695za5kdoor292.dll NOT unregistered.
C:\Windows\system32\2695za5kdoor292.dll moved successfully.
File/Folder C:\Windows\29z90spy34d5.dll not found.
LoadLibrary failed for C:\Windows\z05bthre9t57588.dll
C:\Windows\z05bthre9t57588.dll NOT unregistered.
C:\Windows\z05bthre9t57588.dll moved successfully.
C:\Windows\system32\3953zworm42f.exe moved successfully.
LoadLibrary failed for C:\Windows\9355notz9-virus6545.dll
C:\Windows\9355notz9-virus6545.dll NOT unregistered.
C:\Windows\9355notz9-virus6545.dll moved successfully.
File/Folder C:\Windows\20769hackzo5l987.dll not found.
File/Folder C:\Windows\17845hackzo9l655.exe not found.
C:\Windows\system32\91abzc9d5or2700.exe moved successfully.
C:\Windows\system32\20597vir5s5z0.exe moved successfully.
LoadLibrary failed for C:\Windows\72c0bazkdo5r3109.dll
C:\Windows\72c0bazkdo5r3109.dll NOT unregistered.
C:\Windows\72c0bazkdo5r3109.dll moved successfully.
LoadLibrary failed for C:\Windows\system32\5474not-a5virusz9.dll
C:\Windows\system32\5474not-a5virusz9.dll NOT unregistered.
C:\Windows\system32\5474not-a5virusz9.dll moved successfully.
File/Folder C:\Windows\26dza9d5are1072.dll not found.
LoadLibrary failed for C:\Windows\z15aspa5se26519.dll
C:\Windows\z15aspa5se26519.dll NOT unregistered.
C:\Windows\z15aspa5se26519.dll moved successfully.
C:\Windows\system32\7858hacz9ool4d2.exe moved successfully.
C:\Windows\system32\27fcspzr5e1978.exe moved successfully.
C:\Windows\system32\26e9threz913165.exe moved successfully.
LoadLibrary failed for C:\Windows\55655w9rz34.dll
C:\Windows\55655w9rz34.dll NOT unregistered.
C:\Windows\55655w9rz34.dll moved successfully.
File/Folder C:\Windows\2aeethze93258.exe not found.
File/Folder C:\Windows\23485not-a9virus58z.dll not found.
File/Folder C:\Windows\16094not5a-9zrus617.dll not found.
File/Folder C:\Windows\14edad5zare1969.exe not found.
C:\Windows\system32\766z5i92253.exe moved successfully.
LoadLibrary failed for C:\Windows\system32\2563vi9988z.dll
C:\Windows\system32\2563vi9988z.dll NOT unregistered.
C:\Windows\system32\2563vi9988z.dll moved successfully.
C:\Windows\3z435h9cktoo55d0.exe moved successfully.
File/Folder C:\Windows\25859sz9mbot5315.dll not found.
LoadLibrary failed for C:\Windows\system32\9400zot-a-vi5us9f.dll
C:\Windows\system32\9400zot-a-vi5us9f.dll NOT unregistered.
C:\Windows\system32\9400zot-a-vi5us9f.dll moved successfully.
LoadLibrary failed for C:\Windows\4z9b5ckdoor69.dll
C:\Windows\4z9b5ckdoor69.dll NOT unregistered.
C:\Windows\4z9b5ckdoor69.dll moved successfully.
File/Folder C:\Windows\295915orz4b09.dll not found.
LoadLibrary failed for C:\Windows\system32\5b529hreat3z635.dll
C:\Windows\system32\5b529hreat3z635.dll NOT unregistered.
C:\Windows\system32\5b529hreat3z635.dll moved successfully.
LoadLibrary failed for C:\Windows\4970t9reatz6523.dll
C:\Windows\4970t9reatz6523.dll NOT unregistered.
C:\Windows\4970t9reatz6523.dll moved successfully.
C:\Windows\system32\3z709s95mbot2aa.exe moved successfully.
C:\Windows\4zf6spywa9e2385.exe moved successfully.
File/Folder C:\Windows\1365n5t-a-vizus499.dll not found.
LoadLibrary failed for C:\Windows\system32\29655szambo5565.dll
C:\Windows\system32\29655szambo5565.dll NOT unregistered.
C:\Windows\system32\29655szambo5565.dll moved successfully.
C:\Windows\system32\453ztroj592.exe moved successfully.
File/Folder C:\Windows\2053thrzat29102.exe not found.
File/Folder C:\Windows\1b1bspywa9e2589z.exe not found.
File/Folder C:\Windows\16539hac9tooz795.dll not found.
File/Folder C:\Windows\2a78thr5a911z42.dll not found.
C:\Windows\system32\DRIVERS\aksfridge.sys moved successfully.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: anthony
->Temp folder emptied: 1269623 bytes
->Java cache emptied: 18000287 bytes
->FireFox cache emptied: 73600236 bytes

User: Default
->Temp folder emptied: 0 bytes

User: Default User
->Temp folder emptied: 0 bytes

User: Incomplete

User: Public

%systemdrive% .tmp files removed: 0 bytes
C:\Windows\msdownld.tmp folder deleted successfully.
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
File delete failed. C:\Windows\temp\hlktmp scheduled to be deleted on reboot.
Windows Temp folder emptied: 8424813 bytes
RecycleBin emptied: 1254280 bytes

Total Files Cleaned = 97,80 mb


OTM by OldTimer - Version 3.0.0.6 log created on 08302009_002626

Files moved on Reboot...
C:\Windows\temp\hlktmp moved successfully.

Registry entries deleted on Reboot...




Super nouvelle au redemarrage de mon ordi le truc de vient plus!!!!!!!!!!!!!!!!!!!!!!!!!!

Tu penses que c'est bon?
0
Destrio5 Messages postés 99820 Statut Modérateur 10 304
 
--> Refais un scan RSIT et poste le rapport log.
0
johncena83 Messages postés 148 Statut Membre
 
ok je le fais demain ok? ca te derange pas?
0
Destrio5 Messages postés 99820 Statut Modérateur 10 304
 
Pas de problème.
0
johncena83 Messages postés 148 Statut Membre
 
voila:


Logfile of random's system information tool 1.06 (written by random/random)
Run by anthony at 2009-08-31 22:28:27
Microsoft® Windows Vista™ Édition Familiale Premium
System drive C: has 3 GB (4%) free of 71 GB
Total RAM: 2045 MB (44% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:36:39, on 28/08/2009
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16711)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Launch Manager\LManager.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Acer\Empowering Technology\eDataSecurity\eDSLoader.exe
C:\Acer\Empowering Technology\eAudio\eAudio.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\PacksecuriteNumericable\Common\FSM32.EXE
C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Windows\System32\0qlse65r.exe
C:\Program Files\CPUCooL\CPUCooL.exe
C:\Program Files\PacksecuriteNumericable\FSGUI\fsguidll.exe
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Windows\system32\conime.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Windows\ehome\ehmsas.exe
C:\Users\anthony\AppData\Local\Temp\RtkBtMnt.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\anthony\Videos\Downloads\RSIT.exe
C:\Program Files\trend micro\anthony.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://fr.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
R3 - URLSearchHook: SeeToo for Justin.tv Toolbar - {c0766b46-82cf-4d08-b47e-a4b85928028b} - C:\Program Files\SeeToo_for_Justin.tv\tbSeeT.dll
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\1.bin\A5SRCHAS.DLL
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll
O2 - BHO: SeeToo for Justin.tv Toolbar - {c0766b46-82cf-4d08-b47e-a4b85928028b} - C:\Program Files\SeeToo_for_Justin.tv\tbSeeT.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll
O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
O3 - Toolbar: Acer eDataSecurity Management - {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - C:\Windows\system32\eDStoolbar.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\1.bin\ASKTBAR.DLL
O3 - Toolbar: IsoBuster Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O3 - Toolbar: SeeToo for Justin.tv Toolbar - {c0766b46-82cf-4d08-b47e-a4b85928028b} - C:\Program Files\SeeToo_for_Justin.tv\tbSeeT.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [WarReg_PopUp] C:\Acer\WR_PopUp\WarReg_PopUp.exe
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [PLFSetL] C:\Windows\PLFSetL.exe
O4 - HKLM\..\Run: [PlayMovie] "C:\Program Files\Acer Arcade Deluxe\Play Movie\PMVService.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\LManager.exe
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [eDataSecurity Loader] C:\Acer\Empowering Technology\eDataSecurity\eDSloader.exe
O4 - HKLM\..\Run: [eAudio] "C:\Acer\Empowering Technology\eAudio\eAudio.exe"
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [Acer Tour Reminder] C:\Acer\AcerTour\Reminder.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: webwiz "C:\Program Files\[webwiz]\Webwiz_eval.exe"
O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\PacksecuriteNumericable\Common\FSM32.EXE" /splash
O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\PacksecuriteNumericable\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
O4 - HKLM\..\Run: [YSearchProtection] "C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe"
O4 - HKLM\..\RunOnce: [NSSInstallation] C:\Windows\System32\Adobe\Shockwave 11\nssstub.exe /RunOnce
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Search Protection] C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
O4 - HKCU\..\Run: [YSearchProtection] C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [0qlse65r.exe] C:\Windows\system32\0qlse65r.exe
O4 - HKCU\..\RunOnce: [Shockwave Updater] C:\Windows\System32\Adobe\SHOCKW~1\SWHELP~1.EXE -Update -1103472 -"Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0; SLCC1; .NET CLR 2.0.50727; Media Center PC 5.0; .NET CLR 3.0.04506; .NET CLR 1.1.4322)" -"https://www.habbo.fr/client?forwardId=2&roomId=6992013"
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background (User 'Default user')
O4 - Startup: CPUCooL.lnk = C:\Program Files\CPUCooL\CPUCooL.exe
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O16 - DPF: Justin.tv Publisher - https://www.twitch.tv/plugins/justintv_publisher.CAB
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} - http://download.divx.com/player/DivXBrowserPlugin.cab
O20 - AppInit_DLLs: eNetHook.dll
O23 - Service: ALaunch Service (ALaunchService) - Unknown owner - C:\Acer\ALaunch\ALaunchSvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: CPUCooLServer Service (CPUCooLServer) - Unknown owner - C:\Program Files\CPUCooL\CooLSrv.exe
O23 - Service: eDSService.exe (eDataSecurity Service) - HiTRSUT - C:\Acer\Empowering Technology\eDataSecurity\eDSService.exe
O23 - Service: eLock Service (eLockService) - Acer Inc. - C:\Acer\Empowering Technology\eLock\Service\eLockServ.exe
O23 - Service: eNet Service - Acer Inc. - C:\Acer\Empowering Technology\eNet\eNet Service.exe
O23 - Service: eRecovery Service (eRecoveryService) - Acer Inc. - C:\Acer\Empowering Technology\eRecovery\eRecoveryService.exe
O23 - Service: eSettings Service (eSettingsService) - Unknown owner - C:\Acer\Empowering Technology\eSettings\Service\capuserv.exe
O23 - Service: FSGKHS (F-Secure Gatekeeper Handler Starter) - F-Secure Corporation - C:\Program Files\PacksecuriteNumericable\Anti-Virus\fsgk32st.exe
O23 - Service: F-Secure Automatic Update Agent (FSAUA) - F-Secure Corporation - C:\Program Files\PacksecuriteNumericable\FSAUA\program\fsaua.exe
O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - F-Secure Corporation - C:\Program Files\PacksecuriteNumericable\FWES\Program\fsdfwd.exe
O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\PacksecuriteNumericable\Common\FSMA32.EXE
O23 - Service: F-Secure ORSP Client (FSORSPClient) - F-Secure Corporation - C:\Program Files\PacksecuriteNumericable\ORSP Client\fsorsp.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HASP License Manager (hasplms) - Aladdin Knowledge Systems Ltd. - C:\Windows\system32\hasplms.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: MobilityService - Unknown owner - C:\Acer\Mobility Center\MobilityService.exe
O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: [webwiz] - webcam via ftp - [RUELEPIC] (webwiz) - [ruelepic] - C:\Program Files\[webwiz]\Webwizsvc.exe
O23 - Service: ePower Service (WMIService) - acer - C:\Acer\Empowering Technology\ePower\ePowerSvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
0
Destrio5 Messages postés 99820 Statut Modérateur 10 304
 
● Télécharge Ad-Remover (de Cyrildu17 / C_XX) sur ton Bureau.

/!\ Déconnecte-toi d'Internet et ferme toutes applications en cours. /!\

● Double-clique sur le programme d'installation, installe-le dans son emplacement par défaut (C:\Program Files).
● Double-clique sur le raccourci d'Ad-Remover située sur ton Bureau.
(Sous Vista, il faut cliquer droit sur le raccourci d'Ad-Remover et choisir Exécuter en tant qu'administrateur)
● Au menu principal, choisis l'option L.
● Poste le rapport généré (C:\Ad-Report-CLEAN.log).

(CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)

Note : "Process.exe", une composante de l'outil, est détectée par certains antivirus (AntiVir, Dr.Web, Kaspersky Anti-Virus) comme étant un RiskTool.
0
johncena83 Messages postés 148 Statut Membre
 
Salut,

Désolé de pas avoir repondu avant mais avec la rentrée je n'ai pas pus

Mais malheuresement j'ai un probleme plus grave maintenant!!!


Quand j'ai allumer mon pc portable, j'ai jouer un peu et il y a eu comme des traits de couleurs et l'ecran et devenu noir et j'ai du l'eteindre et maintenant quand j'allume mon pc l'ecran est bizarre mais je ne sais pas comment t'expliquer il y a des traits de couleurs et apres ca part progressivement et ca redevient blanc...

Enfin bref mon ordi s'allume mais je vois pas le truc de d'habitudeet je peux rien faire!!!

Tu peux m'aider
0
Destrio5 Messages postés 99820 Statut Modérateur 10 304
 
En mode sans échec, l'affichage est correct ?
0
johncena83 Messages postés 148 Statut Membre
 
Bne j'en sais rien puisque j'arrive pas a voir le truc du debut!!!!!

Quand j'allume normalement ya un ecran blanc avec ACER apres ecran noir avec ecris window et une barre de chargement et la rien des traits de couleurs ca me gave!!
0
Destrio5 Messages postés 99820 Statut Modérateur 10 304
 
Tu ne vois pas l'écran Acer ?
0
johncena83 Messages postés 148 Statut Membre
 
ben non!!
0
Destrio5 Messages postés 99820 Statut Modérateur 10 304
 
Je pense à un problème matériel.
0
johncena83 Messages postés 148 Statut Membre
 
A ouais et comment??

Ca me la fait hier la d'un coup alors que j'etais sur le net!
0