Rapport Find Kill

Résolu
Dewi007 -  
 Utilisateur anonyme -
Bonjour,
suite à ce rapport Find Kill, pourriez-vous m'indiquer la procédure à suivre pour nettoyer mon PC ?
J'ai lu attentivement les différents posts sur le forum mais j'ai peur de faire des erreurs.
Merci.
Dewi007
A voir également:

44 réponses

Utilisateur anonyme
 
---> Télécharge ComboFix.exe de sUBs sur ton Bureau :
http://download.bleepingcomputer.com/sUBs/ComboFix.exe

/!\ Déconnecte-toi du net et ferme toutes les applications, antivirus et antispyware y compris /!\

---> Double-clique sur Combofix.exe
Un "pop-up" va apparaître qui dit que "ComboFix est utilisé à vos risques et avec aucune garantie...".
Accepte en cliquant sur "Oui"

---> Mets-le en langue française F
Tape sur la touche 1 (Yes) pour démarrer le scan.

/!\ Ne touche à rien tant que le scan n'est pas terminé. /!\ En fin de scan, il est possible que ComboFix ait besoin de redémarrer le PC pour finaliser la désinfection, laisse-le faire.

Une fois le scan achevé, un rapport va s'afficher : Poste son contenu

/!\ Réactive la protection en temps réel de ton antivirus et de ton antispyware avant de te reconnecter à Internet. /!\

Note : Le rapport se trouve également là : C:\ComboFix.txt
0
Idem
 
Voici le rapport de ComboFix. Je vais arrêter là pour ce soir, en espèrant arriver au bout de la désinfection demain.
Merci pour ton aide.

ComboFix 10-01-04.01 - Compaq_Propriétaire 09/01/2010 0:50.1.1 - x86
Microsoft Windows XP Édition familiale 5.1.2600.3.1252.33.1036.18.1982.1397 [GMT 1:00]
Lancé depuis: c:\documents and settings\Compaq_Propriétaire\Bureau\ComboFix.exe
AV: Kaspersky Internet Security *On-access scanning disabled* (Outdated) {2C4D4BC6-0793-4956-A9F9-E252435469C0}
FW: Kaspersky Internet Security *disabled* {2C4D4BC6-0793-4956-A9F9-E252435469C0}
.

(((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\All Users\Bureau\jeux gratuits sur Jeux-Gratuits.com
c:\documents and settings\All Users\Bureau\jeux gratuits sur Jeux-Gratuits.com
C:\Thumbs.db
c:\windows\g32.txt
c:\windows\pack.epk
c:\windows\regedit.bak.reg
c:\windows\system32\ps2.bat
c:\windows\system32\SIntf16.dll
c:\windows\system32\Thumbs.db
c:\windows\xobglu16.dll

.
((((((((((((((((((((((((((((((((((((((( Pilotes/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_ASPIMGR
-------\Legacy_NDISRD
-------\Service_ndisrd


((((((((((((((((((((((((((((( Fichiers créés du 2009-12-09 au 2010-01-09 ))))))))))))))))))))))))))))))))))))
.

2010-01-08 21:50 . 2010-01-08 22:10 -------- dc----w- C:\UsbFix
2010-01-08 19:21 . 2010-01-08 19:21 -------- d-----w- c:\program files\trend micro
2010-01-08 19:21 . 2010-01-08 22:36 -------- dc----w- C:\rsit
2010-01-08 18:19 . 2010-01-07 15:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-01-08 18:19 . 2010-01-08 18:19 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
2010-01-08 18:18 . 2010-01-08 18:19 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-01-08 18:18 . 2010-01-07 15:07 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-01-08 15:07 . 2010-01-08 15:07 108059 ----a-w- c:\windows\system32\drivers\klin.dat
2010-01-08 15:07 . 2010-01-08 15:07 95259 ----a-w- c:\windows\system32\drivers\klick.dat
2010-01-08 15:05 . 2010-01-09 00:05 -------- d-----w- c:\documents and settings\All Users\Application Data\Kaspersky Lab
2010-01-08 15:05 . 2010-01-08 15:05 -------- d-----w- c:\program files\Kaspersky Lab
2010-01-08 13:00 . 2010-01-08 13:55 -------- dc----w- C:\FindyKill
2010-01-08 10:30 . 2010-01-08 10:30 -------- d-----w- c:\documents and settings\All Users\Application Data\Kaspersky Lab Setup Files
2010-01-08 10:20 . 2010-01-08 11:02 -------- d-----w- c:\windows\BDOSCAN8
2010-01-08 09:33 . 2010-01-08 09:33 -------- d-----w- c:\program files\Microsoft Works
2010-01-08 09:31 . 2010-01-08 09:31 -------- d-----w- c:\program files\Microsoft.NET
2010-01-08 09:28 . 2010-01-08 09:28 -------- d-----w- c:\program files\Microsoft Visual Studio 8
2010-01-07 09:12 . 2010-01-07 09:12 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\Google
2009-12-29 13:20 . 2009-12-29 13:20 -------- d-----w- c:\program files\VTech
2009-12-17 14:45 . 2009-12-17 14:45 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\Apple
2009-12-16 12:36 . 2009-12-16 12:36 -------- d-----w- c:\program files\SAGEM
2009-12-10 15:49 . 2009-12-10 15:49 -------- d-----w- c:\program files\Fichiers communs\Apple
2009-12-10 15:49 . 2009-12-10 15:49 -------- d-----w- c:\program files\Apple Software Update

.
(((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
.
2010-01-08 14:44 . 2007-03-12 19:46 -------- d-----w- c:\program files\Alwil Software
2010-01-08 10:10 . 2006-09-01 20:11 -------- d-----w- c:\documents and settings\All Users\Application Data\Google Updater
2010-01-08 09:35 . 2007-02-26 14:04 -------- d-----w- c:\documents and settings\All Users\Application Data\Microsoft Help
2010-01-08 09:33 . 2009-01-21 19:50 -------- d-----w- c:\program files\MSBuild
2010-01-08 07:42 . 2009-05-14 08:40 -------- d-----w- c:\program files\SPAMfighter
2010-01-07 22:09 . 2008-04-25 13:04 -------- d-----w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2010-01-07 22:07 . 2008-12-13 16:43 -------- d-----w- c:\program files\Microsoft
2010-01-07 09:07 . 2005-01-03 05:34 -------- d-----w- c:\program files\Google
2009-12-29 13:20 . 2005-01-03 05:13 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-12-17 14:49 . 2006-08-18 21:48 -------- d-----w- c:\program files\QuickTime
2009-12-17 14:48 . 2006-08-18 21:48 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple Computer
2009-12-15 17:27 . 2009-11-29 08:39 -------- d-----w- c:\program files\Windows Live
2009-12-09 11:37 . 2006-07-01 15:46 -------- d-----w- c:\program files\orange
2009-12-06 12:46 . 2009-12-06 12:46 0 ----a-w- c:\documents and settings\All Users\Application Data\PKP_DLec.DAT
2009-12-06 12:46 . 2006-06-08 16:34 -------- d-----w- c:\documents and settings\All Users\Application Data\EnterNHelp
2009-11-30 13:21 . 2004-11-23 21:26 80094 ----a-w- c:\windows\system32\perfc00C.dat
2009-11-30 13:21 . 2004-11-23 21:26 499020 ----a-w- c:\windows\system32\perfh00C.dat
2009-11-29 08:43 . 2009-11-29 08:43 -------- d-----w- c:\program files\Microsoft Sync Framework
2009-11-29 08:40 . 2009-11-29 08:40 -------- d-----w- c:\program files\Windows Live SkyDrive
2009-11-28 20:53 . 2009-11-28 20:53 -------- d-----w- c:\program files\Windows Installer Clean Up
2009-11-28 20:52 . 2008-01-19 19:20 -------- d-----w- c:\program files\MSECache
2009-11-28 11:39 . 2009-09-01 10:02 -------- d--h--w- c:\documents and settings\All Users\Application Data\~0
2009-11-28 11:39 . 2005-12-30 21:30 -------- d-----w- c:\documents and settings\All Users\Application Data\4D
2009-11-28 11:39 . 2005-01-03 05:24 -------- d-----w- c:\documents and settings\All Users\Application Data\QuickTime
2009-11-27 13:27 . 2007-06-05 17:22 -------- d-----w- c:\documents and settings\All Users\Application Data\Skype
2009-11-16 11:31 . 2008-04-25 13:04 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-10-29 07:42 . 2004-08-05 18:00 916480 ----a-w- c:\windows\system32\wininet.dll
2009-10-22 12:24 . 2009-10-22 12:24 6688 ----a-w- c:\windows\movexe.exe
2009-10-21 05:39 . 2004-08-05 18:00 75776 ----a-w- c:\windows\system32\strmfilt.dll
2009-10-21 05:39 . 2004-08-05 18:00 25088 ----a-w- c:\windows\system32\httpapi.dll
2009-10-20 18:34 . 2009-10-20 18:34 219664 ----a-w- c:\windows\system32\klogon.dll
2009-10-20 16:20 . 2004-08-05 18:00 265728 ----a-w- c:\windows\system32\drivers\http.sys
2009-10-14 19:18 . 2009-10-14 19:18 36880 ----a-w- c:\windows\system32\drivers\klbg.sys
2009-10-13 10:33 . 2004-08-05 18:00 271360 ----a-w- c:\windows\system32\oakley.dll
2009-10-12 13:39 . 2004-08-05 18:00 79872 ----a-w- c:\windows\system32\raschap.dll
2009-10-12 13:39 . 2004-08-05 18:00 150528 ----a-w- c:\windows\system32\rastls.dll
2006-08-18 12:47 . 2005-12-27 10:59 278528 ----a-w- c:\program files\Fichiers communs\FDEUnInstaller.exe
2008-05-08 15:20 . 2006-11-04 08:08 122880 ----a-w- c:\program files\mozilla firefox\components\GoogleDesktopMozilla.dll
.

------- Sigcheck -------

[7] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\atapi.sys
[-] 2008-04-13 18:40 . !HASH: COULD NOT OPEN FILE !!!!! . 96512 . . [------] . . c:\windows\system32\drivers\atapi.sys
[7] 2004-08-05 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\system32\ReinstallBackups\0000\DriverFiles\i386\atapi.sys
[7] 2004-08-04 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\atapi.sys
.
((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2010-01-08 866816]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"AVP"="c:\program files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe" [2009-10-20 340456]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-09-07 68856]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"HonorAutoRunSetting"= 0 (0x0)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"HonorAutoRunSetting"= 0 (0x0)

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\OrangeHSS\\Connectivity\\ConnectivityManager.exe"=
"c:\\Program Files\\TrackMania Nations ESWC\\TmNationsESWC.exe"=
"c:\\WINDOWS\\system32\\sessmgr.exe"=
"c:\\WINDOWS\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\WINDOWS\\system32\\dpvsetup.exe"=
"c:\\WINDOWS\\system32\\mmc.exe"=
"c:\\Documents and Settings\\Compaq_Propriétaire\\Mes documents\\eMule0.49b\\emule.exe"=
"c:\\Documents and Settings\\Compaq_Propriétaire\\temp\\TeamViewer\\Version4\\TeamViewer.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=
"c:\\Program Files\\GeneWeb-4.10\\gw\\gwd.exe"=
"c:\\Program Files\\GeneWeb-4.10\\gw\\gwsetup.exe"=
"c:\\Program Files\\Messenger\\msmsgs.exe"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
"c:\\Program Files\\NetMeeting\\conf.exe"=
"c:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"13333:UDP"= 13333:UDP:eMule
"16689:UDP"= 16689:UDP:eMule2
"65091:TCP"= 65091:TCP:*:Disabled:TCP
"6431:UDP"= 6431:UDP:Serveur UDP port

R0 a347bus;a347bus;c:\windows\system32\drivers\a347bus.sys [04/06/2006 10:23 160640]
R0 a347scsi;a347scsi;c:\windows\system32\drivers\a347scsi.sys [04/06/2006 10:23 5248]
R0 klbg;Kaspersky Lab Boot Guard Driver;c:\windows\system32\drivers\klbg.sys [14/10/2009 20:18 36880]
R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [29/11/2009 09:43 54752]
R2 OPTENET_FILTER;Control Parental;c:\program files\Controle Parental\bin\optproxy.exe [29/04/2008 15:40 564400]
R2 SPAMfighter Update Service;SPAMfighter Update Service;c:\program files\SPAMfighter\sfus.exe [12/03/2009 09:44 184968]
R3 klim5;Kaspersky Anti-Virus NDIS Filter;c:\windows\system32\drivers\klim5.sys [14/09/2009 13:42 32272]
R3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\drivers\klmouflt.sys [02/10/2009 18:39 19472]
S2 gupdate;Service Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [07/01/2010 10:07 135664]
S3 fsssvc;Service Windows Live Contrôle parental;c:\program files\Windows Live\Family Safety\fsssvc.exe [05/08/2009 22:48 704864]
S3 GoogleDesktopManager-022208-143751;Google Desktop Manager 5.7.802.22438;c:\program files\Google\Google Desktop Search\GoogleDesktop.exe [01/09/2006 21:11 29744]
S3 SIS163u;SiS163 usb Wireless LAN Adapter Driver;c:\windows\system32\drivers\sis163u.sys [20/06/2005 10:12 215040]
S3 teamviewervpn;TeamViewer VPN Adapter;c:\windows\system32\drivers\teamviewervpn.sys [25/01/2008 10:12 25088]
.
Contenu du dossier 'Tâches planifiées'

2010-01-07 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]

2010-01-09 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2006-12-19 11:45]

2010-01-09 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-07 09:07]

2010-01-09 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-07 09:07]

2010-01-09 c:\windows\Tasks\User_Feed_Synchronization-{1BEB8541-34A2-4DAD-A830-35C9D3A8992F}.job
- c:\windows\system32\msfeedssync.exe [2007-08-13 02:31]
.
.
------- Examen supplémentaire -------
.
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uDefault_Search_URL = hxxp://www.google.com/ie
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Ajouter à l'Anti-bannière - c:\program files\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: E&xporter vers Microsoft Excel - c:\progra~1\MICROS~2\Office12\EXCEL.EXE/3000
IE: Easy-WebPrint Ajouter à la liste d'impressions - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
IE: Easy-WebPrint Impression rapide - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
IE: Easy-WebPrint Imprimer - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
IE: Easy-WebPrint Prévisualiser - c:\program files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
Trusted Zone: google.fr
Trusted Zone: live.com
Trusted Zone: live.com\.sn123w.snt123.mail
Trusted Zone: live.com\by118w.bay118.mail
Trusted Zone: live.com\co122w.col122.mail
Trusted Zone: live.com\sn123w.snt123.mail
Trusted Zone: msn.com\www
Trusted Zone: orange.fr
Trusted Zone: voila.fr\rw.search.ke
Trusted Zone: weborama.fr\orange
Trusted Zone: windows%20live%20hotmail
Trusted Zone: canalplay.com
Trusted Zone: canalplusactive.com
DPF: CabBuilder - hxxp://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
DPF: {09C21411-B9A2-4DE6-8416-4E3B58577BE0} - hxxp://minitelweb.minitel.com/imin_data/ocx/MDM.cab
DPF: {3E82BB3F-ABE4-458D-9281-0187286A4E51} - hxxp://contacts.orange.fr/wfr_webab/VoxsyncX.cab
DPF: {B9907873-6560-4A36-B76B-9DADE84A7F55} - hxxps://www.fnacmusic.com/telechargementFnacmusic/FnacmusicDnl.CAB
DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} - hxxp://game05.zylom.com/activex/zylomgamesplayer.cab
.
- - - - ORPHELINS SUPPRIMES - - - -

WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
HKU-Default-Run-Picasa Media Detector - c:\program files\Picasa2\PicasaMediaDetector.exe



**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-09 01:05
Windows 5.1.2600 Service Pack 3 NTFS

Recherche de processus cachés ...

Recherche d'éléments en démarrage automatique cachés ...

Recherche de fichiers cachés ...

Scan terminé avec succès
Fichiers cachés: 0

**************************************************************************
.
--------------------- CLES DE REGISTRE BLOQUEES ---------------------

[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,59,97,93,f9,99,1c,e2,4d,b8,1a,77,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,59,97,93,f9,99,1c,e2,4d,b8,1a,77,\
"6256FFB019F8FDFBD36745B06F4540E9AEAF222A25"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,59,97,93,f9,99,1c,e2,4d,b8,1a,77,\

[HKEY_USERS\S-1-5-21-429416454-3614646061-2156431227-1008\Software\Microsoft\SystemCertificates\AddressBook*]
@Allowed: (Read) (RestrictedCode)
@Allowed: (Read) (RestrictedCode)

[HKEY_LOCAL_MACHINE\software\Classes\ ¸H   
¼ 2 _ a u t o _ f i l e \shell\edit]
@="&Edit"

[HKEY_LOCAL_MACHINE\software\Classes\ ¸H   
¼ 2 _ a u t o _ f i l e \shell\edit\command]
@="\"c:\\Program Files\\Microsoft Office\\Office10\\WINWORD.EXE\" /n /dde"
"command"=multi:"C84DVn-}f(YR]eAR6.jiWORDFiles>L&rfUmW.cG.e%fI4G}jd /n /dde\00\00"

[HKEY_LOCAL_MACHINE\software\Classes\ ¸H   
¼ 2 _ a u t o _ f i l e \shell\edit\ddeexec]
@="[REM _DDE_Direct][FileOpen(\"%1\")]"

[HKEY_LOCAL_MACHINE\software\Classes\ ¸H   
¼ 2 _ a u t o _ f i l e \shell\edit\ddeexec\Application]
@="WinWord"

[HKEY_LOCAL_MACHINE\software\Classes\ ¸H   
¼ 2 _ a u t o _ f i l e \shell\edit\ddeexec\Topic]
@="System"

[HKEY_LOCAL_MACHINE\software\Classes\ ¸H   
¼ 2 _ a u t o _ f i l e \shell\open\command]
@="\"c:\\Program Files\\Internet Explorer\\IEXPLORE.EXE\" %1"

[HKEY_LOCAL_MACHINE\software\Classes\,HX*+** *{åwïÍ«‰*_*a*u*t*o*_*f*i*l*e*\shell]
@="open"

[HKEY_LOCAL_MACHINE\software\Classes\,HX*+** *{åwïÍ«‰*_*a*u*t*o*_*f*i*l*e*\shell\open]
"CLSID"="{FBF23B40-E3F0-101B-8488-00AA003E56F8}"
"LegacyDisable"=""

[HKEY_LOCAL_MACHINE\software\Classes\,HX*+** *{åwïÍ«‰*_*a*u*t*o*_*f*i*l*e*\shell\open\command]
@="rundll32.exe ieframe.dll,OpenURL %l"
.
--------------------- DLLs chargées dans les processus actifs ---------------------

- - - - - - - > 'winlogon.exe'(644)
c:\windows\system32\Ati2evxx.dll

- - - - - - - > 'explorer.exe'(2564)
c:\windows\system32\eappprxy.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Autres processus actifs ------------------------
.
c:\program files\Google\Update\1.2.183.13\GoogleCrashHandler.exe
c:\program files\IVT Corporation\BlueSoleil\BTNtService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\progra~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\1\FTRTSVC.exe
c:\program files\Java\jre6\bin\jqs.exe
c:\program files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
c:\program files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE
c:\program files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSvcM.exe
c:\windows\system32\wscntfy.exe
c:\windows\system32\wbem\wmiapsrv.exe
.
**************************************************************************
.
Heure de fin: 2010-01-09 01:17:43 - La machine a redémarré
ComboFix-quarantined-files.txt 2010-01-09 00:17

Avant-CF: 44 758 831 104 octets libres
Après-CF: 44 586 082 304 octets libres

- - End Of File - - A2A91C8049C145DC949326D94F87F882
0
Idem
 
Et enfin le rapport de LopSD:




--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) Processor 3200+ )
BIOS : Phoenix - Award BIOS v6.00PG
USER : Compaq_Propriétaire ( Administrator )
BOOT : Normal boot
Antivirus : Kaspersky Internet Security 9.0.0.736 (Not Activated)
Firewall : Kaspersky Internet Security 9.0.0.736 (Not Activated)
C:\ (Local Disk) - NTFS - Total:180 Go (Free:41 Go)
D:\ (Local Disk) - FAT32 - Total:5 Go (Free:2 Go)
E:\ (CD or DVD)
F:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (CD or DVD)
K:\ (CD or DVD)
L:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
P:\ (USB)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [1] ( 09/01/2010| 1:23 )

--------------------\\ Listing des dossiers dans APPLIC~1

[07/10/2009|11:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[28/11/2009|12:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\~0
[01/09/2009|11:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\~1
[28/11/2009|12:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\4D
[20/10/2009|16:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[15/11/2008|14:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[07/10/2009|11:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[17/12/2009|15:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[24/03/2009|17:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[07/05/2008|14:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Bluetooth
[18/08/2008|18:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[28/12/2005|18:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ
[04/06/2009|11:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ConeXware
[20/08/2008|16:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[06/12/2009|13:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EnterNHelp
[30/12/2007|14:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\GameTap
[26/04/2009|20:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[08/01/2010|11:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[03/01/2005|06:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[09/01/2010|01:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab
[08/01/2010|11:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files
[26/12/2008|18:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ma-config.com
[08/01/2010|19:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[03/12/2008|22:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[08/01/2010|10:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[08/01/2010|10:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[20/08/2006|18:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\muvee Technologies
[14/11/2008|17:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[06/04/2007|21:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PlayFirst
[28/11/2009|12:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[09/08/2008|21:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Real
[13/04/2006|17:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sandlot Games
[03/01/2005|06:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[09/12/2006|09:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[27/11/2009|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[25/11/2008|14:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Software4u
[07/01/2010|23:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[28/12/2005|18:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[28/12/2005|18:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanWizard
[27/12/2005|12:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[25/07/2009|20:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Tarma Installer
[08/05/2008|16:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[18/08/2006|18:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
[08/06/2006|17:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ultima_T15
[28/11/2009|21:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[09/10/2008|20:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom


[25/03/2009|16:50] C:\DOCUME~1\COMPAQ~1\APPLIC~1\.#
[18/04/2006|18:33] C:\DOCUME~1\COMPAQ~1\APPLIC~1\7Wonders
[27/02/2008|17:45] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Ace
[19/11/2008|10:10] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Adobe
[17/01/2007|10:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AdobeUM
[28/11/2009|12:39] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AdSigner
[28/11/2009|17:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Ahead
[07/10/2009|11:28] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Apple Computer
[29/09/2009|20:25] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ArcSoft
[24/03/2009|18:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AVS4YOU
[27/11/2009|18:02] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Canon
[12/03/2007|21:49] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Datalayer
[04/01/2010|16:14] C:\DOCUME~1\COMPAQ~1\APPLIC~1\dvdcss
[06/01/2006|22:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\eConf
[25/12/2006|10:30] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Google
[28/11/2009|17:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Help
[18/02/2009|18:35] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HiYo
[28/12/2005|21:49] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HPQ
[28/11/2008|16:50] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Identities
[30/12/2007|14:33] C:\DOCUME~1\COMPAQ~1\APPLIC~1\InstallShield
[28/04/2006|10:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\InterVideo
[28/09/2006|17:59] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Lavasoft
[28/12/2005|12:25] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Leadertech
[19/01/2008|12:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Macromedia
[08/01/2010|19:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Malwarebytes
[09/08/2008|21:30] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Media Player Classic
[11/12/2009|09:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Microsoft
[21/11/2008|16:26] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Mozilla
[25/01/2006|18:59] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MSNInstaller
[20/08/2006|18:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\muvee Technologies
[08/06/2006|17:38] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Nikon
[12/03/2007|21:49] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Nokia
[08/01/2007|13:29] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Opera
[28/11/2009|12:39] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Player Orange
[06/04/2007|21:51] C:\DOCUME~1\COMPAQ~1\APPLIC~1\PlayFirst
[11/08/2008|12:36] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Real
[03/01/2005|06:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\SampleView
[28/12/2005|18:09] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ScanSoft
[28/11/2009|17:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Skype
[13/02/2009|19:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\skypePM
[21/10/2009|17:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Software4u
[13/08/2008|12:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Sonic
[03/06/2008|18:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\SPAMfighter
[15/01/2006|21:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Sun
[03/01/2005|06:37] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Symantec
[23/09/2006|07:56] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Talkback
[29/05/2006|10:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\TaoUSign
[27/12/2008|19:48] C:\DOCUME~1\COMPAQ~1\APPLIC~1\TeamViewer
[28/11/2009|12:39] C:\DOCUME~1\COMPAQ~1\APPLIC~1\TuxPaint
[23/05/2008|18:37] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Uniblue
[28/11/2009|17:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\vlc
[05/02/2009|22:10] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Voxmobili
[10/02/2009|17:30] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Vso
[24/04/2008|08:45] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Windows Live Writer
[08/11/2008|09:30] C:\DOCUME~1\COMPAQ~1\APPLIC~1\WinRAR
[03/02/2009|16:50] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Yahoo!
[28/11/2009|12:41] C:\DOCUME~1\COMPAQ~1\APPLIC~1\yoclient

[03/01/2005|06:24] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer
[25/11/2004|04:26] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[07/08/2008|10:32] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[12/04/2008|20:29] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[03/01/2005|06:27] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[03/01/2005|06:37] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec

[02/11/2008|09:44] C:\DOCUME~1\LOCALS~1\APPLIC~1\agi
[28/11/2009|17:34] C:\DOCUME~1\LOCALS~1\APPLIC~1\Google
[21/09/2009|17:06] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

[08/07/2009|14:03] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[09/01/2010 01:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[09/01/2010 01:02][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[07/01/2010 15:45][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[09/01/2010 01:03][--a------] C:\WINDOWS\tasks\Google Software Updater.job
[09/01/2010 01:22][--ah-----] C:\WINDOWS\tasks\User_Feed_Synchronization-{1BEB8541-34A2-4DAD-A830-35C9D3A8992F}.job
[09/01/2010 01:02][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 19:00][-rah-----] C:\WINDOWS\tasks\desktop.ini

--------------------\\ Listing des dossiers dans C:\Program Files

[20/10/2009|16:56] C:\Program Files\Adobe
[16/11/2008|09:39] C:\Program Files\Ahead
[28/04/2006|15:18] C:\Program Files\Alcohol Soft
[25/04/2009|16:04] C:\Program Files\Alcohol120%
[08/01/2010|15:44] C:\Program Files\Alwil Software
[22/12/2007|09:50] C:\Program Files\Anuman Interactive
[10/12/2009|16:49] C:\Program Files\Apple Software Update
[26/03/2009|08:25] C:\Program Files\AVS4YOU
[07/10/2009|11:23] C:\Program Files\Bonjour
[18/08/2008|18:34] C:\Program Files\Boonty
[18/08/2008|18:52] C:\Program Files\BoontyGames
[28/12/2005|18:06] C:\Program Files\Canon
[05/02/2009|12:04] C:\Program Files\CCleaner
[24/11/2004|02:37] C:\Program Files\ComPlus Applications
[20/08/2008|09:28] C:\Program Files\Conduit
[29/04/2008|15:40] C:\Program Files\Controle Parental
[15/05/2009|16:28] C:\Program Files\Data Design Interactive
[17/08/2006|13:59] C:\Program Files\directx
[31/01/2007|09:44] C:\Program Files\Disney Interactive
[22/09/2006|06:47] C:\Program Files\DivX
[05/11/2009|13:56] C:\Program Files\Duplicate Cleaner
[05/12/2006|19:19] C:\Program Files\DX-Ball
[11/10/2009|15:20] C:\Program Files\Easy Internet signup
[31/12/2008|16:34] C:\Program Files\EMME
[26/01/2009|17:57] C:\Program Files\eMule
[28/02/2008|10:09] C:\Program Files\Executive Software
[09/01/2010|00:57] C:\Program Files\Fichiers communs
[30/12/2007|14:33] C:\Program Files\GameTap
[22/10/2009|13:28] C:\Program Files\GeneWeb Bases
[22/10/2009|13:24] C:\Program Files\GeneWeb-4.10
[07/01/2010|10:07] C:\Program Files\Google
[18/02/2006|11:45] C:\Program Files\Hachette Multimédia
[18/01/2008|17:54] C:\Program Files\HeadOverHeels
[12/07/2009|13:27] C:\Program Files\Hip Games
[01/09/2009|11:24] C:\Program Files\IMBooster4web-en
[29/12/2009|14:20] C:\Program Files\InstallShield Installation Information
[09/12/2009|10:16] C:\Program Files\Internet Explorer
[03/01/2005|06:21] C:\Program Files\InterVideo
[24/02/2006|17:46] C:\Program Files\Inventel
[12/06/2009|13:26] C:\Program Files\ISSI
[07/05/2008|14:13] C:\Program Files\IVT Corporation
[23/11/2008|09:05] C:\Program Files\Java
[08/01/2010|16:05] C:\Program Files\Kaspersky Lab
[27/02/2007|19:41] C:\Program Files\Kirikou
[09/08/2008|21:49] C:\Program Files\K-Lite Codec Pack
[19/02/2006|10:29] C:\Program Files\Knowledge Adventure
[16/11/2007|17:19] C:\Program Files\Lavasoft
[09/06/2008|21:06] C:\Program Files\Lecteur CANALPLAY
[21/01/2009|11:57] C:\Program Files\LeVillage3d
[03/06/2006|20:52] C:\Program Files\Livre Album Fuji Photo
[23/01/2006|19:04] C:\Program Files\Logitech
[26/12/2008|18:11] C:\Program Files\ma-config.com
[09/04/2007|20:51] C:\Program Files\Macrogaming
[08/01/2010|19:19] C:\Program Files\Malwarebytes' Anti-Malware
[06/02/2008|22:20] C:\Program Files\Mario Forever
[03/05/2009|20:21] C:\Program Files\Messenger
[25/11/2008|14:02] C:\Program Files\Micro Application
[07/01/2010|23:07] C:\Program Files\Microsoft
[09/05/2007|12:30] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[25/11/2004|04:27] C:\Program Files\microsoft frontpage
[08/01/2010|10:32] C:\Program Files\Microsoft Office
[10/09/2009|08:33] C:\Program Files\Microsoft Silverlight
[03/12/2007|11:50] C:\Program Files\Microsoft SQL Server Compact Edition
[29/11/2009|09:43] C:\Program Files\Microsoft Sync Framework
[08/01/2010|10:32] C:\Program Files\Microsoft Visual Studio
[08/01/2010|10:28] C:\Program Files\Microsoft Visual Studio 8
[08/01/2010|10:33] C:\Program Files\Microsoft Works
[08/01/2010|10:31] C:\Program Files\Microsoft.NET
[08/10/2008|19:59] C:\Program Files\Movie Maker
[21/11/2008|16:43] C:\Program Files\Mozilla Firefox
[08/01/2010|10:33] C:\Program Files\MSBuild
[28/11/2009|21:52] C:\Program Files\MSECache
[27/08/2007|12:02] C:\Program Files\MSN
[25/11/2004|04:27] C:\Program Files\MSN Gaming Zone
[19/11/2006|00:11] C:\Program Files\MSXML 4.0
[13/04/2009|12:50] C:\Program Files\Multi_Media
[11/03/2009|12:18] C:\Program Files\NetMeeting
[08/06/2006|17:31] C:\Program Files\Nikon
[14/11/2008|17:41] C:\Program Files\NOS
[13/02/2006|15:06] C:\Program Files\Oberon Media
[25/11/2004|04:27] C:\Program Files\Online Services
[09/12/2009|12:37] C:\Program Files\orange
[30/04/2008|17:46] C:\Program Files\OrangeHSS
[28/08/2009|16:20] C:\Program Files\Outlook Express
[18/08/2006|18:25] C:\Program Files\Play at Joe's
[26/02/2006|21:44] C:\Program Files\Pure Pinball
[25/04/2009|16:04] C:\Program Files\QuickMediaConverter
[17/12/2009|15:49] C:\Program Files\QuickTime
[21/01/2009|20:49] C:\Program Files\Reference Assemblies
[15/09/2007|10:13] C:\Program Files\ReflexiveArcade
[26/12/2005|23:37] C:\Program Files\RegCleaner
[16/12/2009|13:36] C:\Program Files\SAGEM
[05/01/2008|17:39] C:\Program Files\Samsung
[28/12/2005|18:08] C:\Program Files\ScanSoft
[16/11/2008|21:35] C:\Program Files\Secured IE
[03/01/2005|06:33] C:\Program Files\Services en ligne
[08/01/2008|16:19] C:\Program Files\Sewer Run
[27/02/2009|18:00] C:\Program Files\Skype
[03/01/2005|06:20] C:\Program Files\Sonic
[08/01/2010|08:42] C:\Program Files\SPAMfighter
[16/11/2009|12:31] C:\Program Files\Spybot - Search & Destroy
[21/04/2009|13:05] C:\Program Files\TeamViewer
[14/02/2008|13:39] C:\Program Files\THQ
[18/04/2009|17:31] C:\Program Files\TrackMania Nations ESWC
[08/01/2010|20:21] C:\Program Files\trend micro
[16/10/2007|08:52] C:\Program Files\TuxPaint
[08/11/2008|09:30] C:\Program Files\Ubisoft
[24/11/2004|02:37] C:\Program Files\Uninstall Information
[12/11/2008|13:25] C:\Program Files\UPS Widget
[11/11/2008|10:04] C:\Program Files\VideoLAN
[03/05/2009|20:48] C:\Program Files\VirginMega
[27/10/2009|17:02] C:\Program Files\VirtualDubMOD
[29/12/2009|14:20] C:\Program Files\VTech
[30/04/2008|08:25] C:\Program Files\Wanadoo
[03/06/2006|20:54] C:\Program Files\Wanadoo Jeux
[28/11/2009|21:53] C:\Program Files\Windows Installer Clean Up
[15/12/2009|18:27] C:\Program Files\Windows Live
[29/11/2009|09:40] C:\Program Files\Windows Live SkyDrive
[26/02/2007|08:12] C:\Program Files\Windows Media Connect 2
[02/06/2009|08:58] C:\Program Files\Windows Media Player
[08/10/2008|19:56] C:\Program Files\Windows NT
[24/11/2004|02:37] C:\Program Files\WindowsUpdate
[09/01/2008|07:03] C:\Program Files\WinRar
[25/11/2004|04:28] C:\Program Files\xerox
[06/02/2009|08:53] C:\Program Files\Yahoo!
[30/12/2005|22:31] C:\Program Files\Yvert & Tellier
[08/11/2008|09:34] C:\Program Files\Zero G Registry

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[20/10/2009|16:56] C:\Program Files\Fichiers communs\Adobe
[15/12/2006|21:43] C:\Program Files\Fichiers communs\Ahead
[10/12/2009|16:49] C:\Program Files\Fichiers communs\Apple
[14/05/2009|09:40] C:\Program Files\Fichiers communs\Application
[26/03/2009|08:25] C:\Program Files\Fichiers communs\AVSMedia
[08/01/2010|10:32] C:\Program Files\Fichiers communs\DESIGNER
[01/03/2007|11:43] C:\Program Files\Fichiers communs\France Telecom
[30/12/2005|22:30] C:\Program Files\Fichiers communs\InstallShield
[03/01/2005|06:06] C:\Program Files\Fichiers communs\Java
[23/01/2006|19:04] C:\Program Files\Fichiers communs\Labtec
[08/01/2010|10:33] C:\Program Files\Fichiers communs\Microsoft Shared
[25/11/2004|04:26] C:\Program Files\Fichiers communs\MSSoap
[08/06/2006|17:32] C:\Program Files\Fichiers communs\muvee Technologies
[08/06/2006|17:38] C:\Program Files\Fichiers communs\Nikon
[06/04/2007|21:51] C:\Program Files\Fichiers communs\Oberon Media
[25/11/2004|04:26] C:\Program Files\Fichiers communs\ODBC
[28/12/2005|18:09] C:\Program Files\Fichiers communs\ScanSoft Shared
[15/12/2009|12:24] C:\Program Files\Fichiers communs\Services
[03/06/2008|18:30] C:\Program Files\Fichiers communs\Skype
[03/01/2005|06:19] C:\Program Files\Fichiers communs\Sonic Shared
[25/11/2004|04:26] C:\Program Files\Fichiers communs\SpeechEngines
[03/01/2005|06:19] C:\Program Files\Fichiers communs\SureThing Shared
[20/03/2009|09:13] C:\Program Files\Fichiers communs\SWF Studio
[02/02/2008|08:52] C:\Program Files\Fichiers communs\Symantec Shared
[08/01/2010|10:27] C:\Program Files\Fichiers communs\System
[03/01/2005|06:20] C:\Program Files\Fichiers communs\TiVo Shared
[09/12/2008|15:42] C:\Program Files\Fichiers communs\Windows Live
[03/12/2007|11:49] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[16/11/2007|17:19] C:\Program Files\Fichiers communs\Wise Installation Wizard

--------------------\\ Process

( 34 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

C:\Program Files\Multi_Media
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@advertstream[1].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@advertstream[2].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@d2.advertserve[1].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@partygaming.122.2o7[1].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@fr.partypoker[1].txt
C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@partypoker[1].txt

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-09 01:25:13
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 656

--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\COMPAQ~1\Application Data\yoclient\rsrc\bundles\tiles\outdoors\structures\bundle\jettyedge_crack.raw
C:\DOCUME~1\COMPAQ~1\Mes documents\Jeux enfants\Adibou et l'ombre verte (crack)


[F:204][D:0]-> C:\DOCUME~1\COMPAQ~1\Cookies
[F:2][D:0]-> C:\DOCUME~1\COMPAQ~1\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 09/01/2010| 1:31 - Option : [1]

--------------------\\ Fin du rapport a 1:31:09






A demain !!!
0
Dewi007 Messages postés 132 Date d'inscription   Statut Membre Dernière intervention  
 
Bonjour archet9,

si tu as un peu de temps à me consacrer, je suis prêt à suivre tes instructions.

Merci de ton aide.
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
Utilisateur anonyme
 
Re....

Relances Lop's option :2 cette fois....
Colles le rapport.

>Télécharge HiJackThis : https://www.commentcamarche.net/telecharger/securite/11747-hijackthis/
- Lance le programme, puis sélectionne < do a system scan and save a logfile >
- Enregistre le rapport sur ton bureau.
Et envoie, par copier/coller, ton rapport Hijackthis sur le forum,


A+
0
Dewi007 Messages postés 132 Date d'inscription   Statut Membre Dernière intervention  
 
Voilà pour Lop's option 2:


--------------------\\ Lop S&D 4.2.5-0 XP/Vista

Microsoft Windows XP Édition familiale ( v5.1.2600 ) Service Pack 3
X86-based PC ( Uniprocessor Free : AMD Sempron(tm) Processor 3200+ )
BIOS : Phoenix - Award BIOS v6.00PG
USER : Compaq_Propriétaire ( Administrator )
BOOT : Normal boot
Antivirus : Kaspersky Internet Security 9.0.0.736 (Not Activated)
Firewall : Kaspersky Internet Security 9.0.0.736 (Not Activated)
C:\ (Local Disk) - NTFS - Total:180 Go (Free:41 Go)
D:\ (Local Disk) - FAT32 - Total:5 Go (Free:2 Go)
E:\ (CD or DVD)
F:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
G:\ (USB)
H:\ (USB)
I:\ (USB)
J:\ (CD or DVD)
K:\ (CD or DVD)
L:\ (CD or DVD) - CDFS - Total:0 Go (Free:0 Go)
P:\ (USB)

"C:\Lop SD" ( MAJ : 19-12-2008|23:40 )
Option : [2] ( 09/01/2010|11:38 )


\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\ SUPPRESSION

Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@advertstream[1].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@advertstream[2].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@d2.advertserve[1].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@partygaming.122.2o7[1].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@fr.partypoker[1].txt
Supprime! - C:\DOCUME~1\COMPAQ~1\Cookies\compaq_propriétaire@partypoker[1].txt
Supprime! - C:\Program Files\Multi_Media

\\\\\\\\\\\\\\\\\\\\\\\\\\\\\\


--------------------\\ Listing des dossiers dans APPLIC~1

[07/10/2009|11:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[28/11/2009|12:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\~0
[01/09/2009|11:23] C:\DOCUME~1\ALLUSE~1\APPLIC~1\~1
[28/11/2009|12:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\4D
[20/10/2009|16:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Adobe
[15/11/2008|14:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ahead
[07/10/2009|11:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple
[17/12/2009|15:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Apple Computer
[24/03/2009|17:59] C:\DOCUME~1\ALLUSE~1\APPLIC~1\AVS4YOU
[07/05/2008|14:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Bluetooth
[18/08/2008|18:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\BOONTY
[28/12/2005|18:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\CanonBJ
[04/06/2009|11:01] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ConeXware
[20/08/2008|16:22] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Downloaded Installations
[06/12/2009|13:46] C:\DOCUME~1\ALLUSE~1\APPLIC~1\EnterNHelp
[30/12/2007|14:33] C:\DOCUME~1\ALLUSE~1\APPLIC~1\GameTap
[26/04/2009|20:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google
[08/01/2010|11:10] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Google Updater
[03/01/2005|06:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\InstallShield
[09/01/2010|11:36] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab
[08/01/2010|11:30] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Kaspersky Lab Setup Files
[26/12/2008|18:11] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ma-config.com
[08/01/2010|19:19] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Malwarebytes
[03/12/2008|22:18] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Messenger Plus!
[08/01/2010|10:31] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft
[08/01/2010|10:35] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Microsoft Help
[20/08/2006|18:05] C:\DOCUME~1\ALLUSE~1\APPLIC~1\muvee Technologies
[14/11/2008|17:41] C:\DOCUME~1\ALLUSE~1\APPLIC~1\NOS
[06/04/2007|21:51] C:\DOCUME~1\ALLUSE~1\APPLIC~1\PlayFirst
[28/11/2009|12:39] C:\DOCUME~1\ALLUSE~1\APPLIC~1\QuickTime
[09/08/2008|21:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Real
[13/04/2006|17:48] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Sandlot Games
[03/01/2005|06:04] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SBSI
[09/12/2006|09:56] C:\DOCUME~1\ALLUSE~1\APPLIC~1\ScanSoft
[27/11/2009|14:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Skype
[25/11/2008|14:06] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Software4u
[07/01/2010|23:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Spybot - Search & Destroy
[28/12/2005|18:17] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanAppDataDir
[28/12/2005|18:09] C:\DOCUME~1\ALLUSE~1\APPLIC~1\SSScanWizard
[27/12/2005|12:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Symantec
[25/07/2009|20:50] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Tarma Installer
[08/05/2008|16:32] C:\DOCUME~1\ALLUSE~1\APPLIC~1\TEMP
[18/08/2006|18:25] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
[08/06/2006|17:34] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Ultima_T15
[28/11/2009|21:37] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Windows Genuine Advantage
[09/10/2008|20:27] C:\DOCUME~1\ALLUSE~1\APPLIC~1\Zylom


[25/03/2009|16:50] C:\DOCUME~1\COMPAQ~1\APPLIC~1\.#
[18/04/2006|18:33] C:\DOCUME~1\COMPAQ~1\APPLIC~1\7Wonders
[27/02/2008|17:45] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Ace
[19/11/2008|10:10] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Adobe
[17/01/2007|10:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AdobeUM
[28/11/2009|12:39] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AdSigner
[28/11/2009|17:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Ahead
[07/10/2009|11:28] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Apple Computer
[29/09/2009|20:25] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ArcSoft
[24/03/2009|18:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\AVS4YOU
[27/11/2009|18:02] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Canon
[12/03/2007|21:49] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Datalayer
[04/01/2010|16:14] C:\DOCUME~1\COMPAQ~1\APPLIC~1\dvdcss
[06/01/2006|22:18] C:\DOCUME~1\COMPAQ~1\APPLIC~1\eConf
[25/12/2006|10:30] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Google
[28/11/2009|17:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Help
[18/02/2009|18:35] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HiYo
[28/12/2005|21:49] C:\DOCUME~1\COMPAQ~1\APPLIC~1\HPQ
[28/11/2008|16:50] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Identities
[30/12/2007|14:33] C:\DOCUME~1\COMPAQ~1\APPLIC~1\InstallShield
[28/04/2006|10:54] C:\DOCUME~1\COMPAQ~1\APPLIC~1\InterVideo
[28/09/2006|17:59] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Lavasoft
[28/12/2005|12:25] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Leadertech
[19/01/2008|12:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Macromedia
[08/01/2010|19:19] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Malwarebytes
[09/08/2008|21:30] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Media Player Classic
[11/12/2009|09:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Microsoft
[21/11/2008|16:26] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Mozilla
[25/01/2006|18:59] C:\DOCUME~1\COMPAQ~1\APPLIC~1\MSNInstaller
[20/08/2006|18:06] C:\DOCUME~1\COMPAQ~1\APPLIC~1\muvee Technologies
[08/06/2006|17:38] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Nikon
[12/03/2007|21:49] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Nokia
[08/01/2007|13:29] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Opera
[28/11/2009|12:39] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Player Orange
[06/04/2007|21:51] C:\DOCUME~1\COMPAQ~1\APPLIC~1\PlayFirst
[11/08/2008|12:36] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Real
[03/01/2005|06:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\SampleView
[28/12/2005|18:09] C:\DOCUME~1\COMPAQ~1\APPLIC~1\ScanSoft
[28/11/2009|17:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Skype
[13/02/2009|19:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\skypePM
[21/10/2009|17:27] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Software4u
[13/08/2008|12:47] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Sonic
[03/06/2008|18:16] C:\DOCUME~1\COMPAQ~1\APPLIC~1\SPAMfighter
[15/01/2006|21:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Sun
[03/01/2005|06:37] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Symantec
[23/09/2006|07:56] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Talkback
[29/05/2006|10:00] C:\DOCUME~1\COMPAQ~1\APPLIC~1\TaoUSign
[27/12/2008|19:48] C:\DOCUME~1\COMPAQ~1\APPLIC~1\TeamViewer
[28/11/2009|12:39] C:\DOCUME~1\COMPAQ~1\APPLIC~1\TuxPaint
[23/05/2008|18:37] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Uniblue
[28/11/2009|17:34] C:\DOCUME~1\COMPAQ~1\APPLIC~1\vlc
[05/02/2009|22:10] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Voxmobili
[10/02/2009|17:30] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Vso
[24/04/2008|08:45] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Windows Live Writer
[08/11/2008|09:30] C:\DOCUME~1\COMPAQ~1\APPLIC~1\WinRAR
[03/02/2009|16:50] C:\DOCUME~1\COMPAQ~1\APPLIC~1\Yahoo!
[28/11/2009|12:41] C:\DOCUME~1\COMPAQ~1\APPLIC~1\yoclient

[03/01/2005|06:24] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Apple Computer
[25/11/2004|04:26] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Identities
[07/08/2008|10:32] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Macromedia
[12/04/2008|20:29] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Microsoft
[03/01/2005|06:27] C:\DOCUME~1\DEFAUL~1\APPLIC~1\SampleView
[03/01/2005|06:37] C:\DOCUME~1\DEFAUL~1\APPLIC~1\Symantec

[02/11/2008|09:44] C:\DOCUME~1\LOCALS~1\APPLIC~1\agi
[28/11/2009|17:34] C:\DOCUME~1\LOCALS~1\APPLIC~1\Google
[21/09/2009|17:06] C:\DOCUME~1\LOCALS~1\APPLIC~1\Microsoft

[08/07/2009|14:03] C:\DOCUME~1\NETWOR~1\APPLIC~1\Microsoft

--------------------\\ Tâches planifiées dans C:\WINDOWS\tasks

[09/01/2010 08:12][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job
[09/01/2010 11:34][--a------] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
[07/01/2010 15:45][--a------] C:\WINDOWS\tasks\AppleSoftwareUpdate.job
[09/01/2010 11:34][--a------] C:\WINDOWS\tasks\Google Software Updater.job
[09/01/2010 08:08][--ah-----] C:\WINDOWS\tasks\User_Feed_Synchronization-{1BEB8541-34A2-4DAD-A830-35C9D3A8992F}.job
[09/01/2010 11:33][--ah-----] C:\WINDOWS\tasks\SA.DAT
[05/08/2004 19:00][-rah-----] C:\WINDOWS\tasks\desktop.ini

--------------------\\ Listing des dossiers dans C:\Program Files

[20/10/2009|16:56] C:\Program Files\Adobe
[16/11/2008|09:39] C:\Program Files\Ahead
[28/04/2006|15:18] C:\Program Files\Alcohol Soft
[25/04/2009|16:04] C:\Program Files\Alcohol120%
[08/01/2010|15:44] C:\Program Files\Alwil Software
[22/12/2007|09:50] C:\Program Files\Anuman Interactive
[10/12/2009|16:49] C:\Program Files\Apple Software Update
[26/03/2009|08:25] C:\Program Files\AVS4YOU
[07/10/2009|11:23] C:\Program Files\Bonjour
[18/08/2008|18:34] C:\Program Files\Boonty
[18/08/2008|18:52] C:\Program Files\BoontyGames
[28/12/2005|18:06] C:\Program Files\Canon
[05/02/2009|12:04] C:\Program Files\CCleaner
[24/11/2004|02:37] C:\Program Files\ComPlus Applications
[20/08/2008|09:28] C:\Program Files\Conduit
[29/04/2008|15:40] C:\Program Files\Controle Parental
[15/05/2009|16:28] C:\Program Files\Data Design Interactive
[17/08/2006|13:59] C:\Program Files\directx
[31/01/2007|09:44] C:\Program Files\Disney Interactive
[22/09/2006|06:47] C:\Program Files\DivX
[05/11/2009|13:56] C:\Program Files\Duplicate Cleaner
[05/12/2006|19:19] C:\Program Files\DX-Ball
[11/10/2009|15:20] C:\Program Files\Easy Internet signup
[31/12/2008|16:34] C:\Program Files\EMME
[26/01/2009|17:57] C:\Program Files\eMule
[28/02/2008|10:09] C:\Program Files\Executive Software
[09/01/2010|00:57] C:\Program Files\Fichiers communs
[30/12/2007|14:33] C:\Program Files\GameTap
[22/10/2009|13:28] C:\Program Files\GeneWeb Bases
[22/10/2009|13:24] C:\Program Files\GeneWeb-4.10
[07/01/2010|10:07] C:\Program Files\Google
[18/02/2006|11:45] C:\Program Files\Hachette Multim‚dia
[18/01/2008|17:54] C:\Program Files\HeadOverHeels
[12/07/2009|13:27] C:\Program Files\Hip Games
[01/09/2009|11:24] C:\Program Files\IMBooster4web-en
[29/12/2009|14:20] C:\Program Files\InstallShield Installation Information
[09/12/2009|10:16] C:\Program Files\Internet Explorer
[03/01/2005|06:21] C:\Program Files\InterVideo
[24/02/2006|17:46] C:\Program Files\Inventel
[12/06/2009|13:26] C:\Program Files\ISSI
[07/05/2008|14:13] C:\Program Files\IVT Corporation
[23/11/2008|09:05] C:\Program Files\Java
[08/01/2010|16:05] C:\Program Files\Kaspersky Lab
[27/02/2007|19:41] C:\Program Files\Kirikou
[09/08/2008|21:49] C:\Program Files\K-Lite Codec Pack
[19/02/2006|10:29] C:\Program Files\Knowledge Adventure
[16/11/2007|17:19] C:\Program Files\Lavasoft
[09/06/2008|21:06] C:\Program Files\Lecteur CANALPLAY
[21/01/2009|11:57] C:\Program Files\LeVillage3d
[03/06/2006|20:52] C:\Program Files\Livre Album Fuji Photo
[23/01/2006|19:04] C:\Program Files\Logitech
[26/12/2008|18:11] C:\Program Files\ma-config.com
[09/04/2007|20:51] C:\Program Files\Macrogaming
[08/01/2010|19:19] C:\Program Files\Malwarebytes' Anti-Malware
[06/02/2008|22:20] C:\Program Files\Mario Forever
[03/05/2009|20:21] C:\Program Files\Messenger
[25/11/2008|14:02] C:\Program Files\Micro Application
[07/01/2010|23:07] C:\Program Files\Microsoft
[09/05/2007|12:30] C:\Program Files\Microsoft CAPICOM 2.1.0.2
[25/11/2004|04:27] C:\Program Files\microsoft frontpage
[08/01/2010|10:32] C:\Program Files\Microsoft Office
[10/09/2009|08:33] C:\Program Files\Microsoft Silverlight
[03/12/2007|11:50] C:\Program Files\Microsoft SQL Server Compact Edition
[29/11/2009|09:43] C:\Program Files\Microsoft Sync Framework
[08/01/2010|10:32] C:\Program Files\Microsoft Visual Studio
[08/01/2010|10:28] C:\Program Files\Microsoft Visual Studio 8
[08/01/2010|10:33] C:\Program Files\Microsoft Works
[08/01/2010|10:31] C:\Program Files\Microsoft.NET
[08/10/2008|19:59] C:\Program Files\Movie Maker
[21/11/2008|16:43] C:\Program Files\Mozilla Firefox
[08/01/2010|10:33] C:\Program Files\MSBuild
[28/11/2009|21:52] C:\Program Files\MSECache
[27/08/2007|12:02] C:\Program Files\MSN
[25/11/2004|04:27] C:\Program Files\MSN Gaming Zone
[19/11/2006|00:11] C:\Program Files\MSXML 4.0
[11/03/2009|12:18] C:\Program Files\NetMeeting
[08/06/2006|17:31] C:\Program Files\Nikon
[14/11/2008|17:41] C:\Program Files\NOS
[13/02/2006|15:06] C:\Program Files\Oberon Media
[25/11/2004|04:27] C:\Program Files\Online Services
[09/12/2009|12:37] C:\Program Files\orange
[30/04/2008|17:46] C:\Program Files\OrangeHSS
[28/08/2009|16:20] C:\Program Files\Outlook Express
[18/08/2006|18:25] C:\Program Files\Play at Joe's
[26/02/2006|21:44] C:\Program Files\Pure Pinball
[25/04/2009|16:04] C:\Program Files\QuickMediaConverter
[17/12/2009|15:49] C:\Program Files\QuickTime
[21/01/2009|20:49] C:\Program Files\Reference Assemblies
[15/09/2007|10:13] C:\Program Files\ReflexiveArcade
[26/12/2005|23:37] C:\Program Files\RegCleaner
[16/12/2009|13:36] C:\Program Files\SAGEM
[05/01/2008|17:39] C:\Program Files\Samsung
[28/12/2005|18:08] C:\Program Files\ScanSoft
[16/11/2008|21:35] C:\Program Files\Secured IE
[03/01/2005|06:33] C:\Program Files\Services en ligne
[08/01/2008|16:19] C:\Program Files\Sewer Run
[27/02/2009|18:00] C:\Program Files\Skype
[03/01/2005|06:20] C:\Program Files\Sonic
[08/01/2010|08:42] C:\Program Files\SPAMfighter
[16/11/2009|12:31] C:\Program Files\Spybot - Search & Destroy
[21/04/2009|13:05] C:\Program Files\TeamViewer
[14/02/2008|13:39] C:\Program Files\THQ
[18/04/2009|17:31] C:\Program Files\TrackMania Nations ESWC
[08/01/2010|20:21] C:\Program Files\trend micro
[16/10/2007|08:52] C:\Program Files\TuxPaint
[08/11/2008|09:30] C:\Program Files\Ubisoft
[24/11/2004|02:37] C:\Program Files\Uninstall Information
[12/11/2008|13:25] C:\Program Files\UPS Widget
[11/11/2008|10:04] C:\Program Files\VideoLAN
[03/05/2009|20:48] C:\Program Files\VirginMega
[27/10/2009|17:02] C:\Program Files\VirtualDubMOD
[29/12/2009|14:20] C:\Program Files\VTech
[30/04/2008|08:25] C:\Program Files\Wanadoo
[03/06/2006|20:54] C:\Program Files\Wanadoo Jeux
[28/11/2009|21:53] C:\Program Files\Windows Installer Clean Up
[15/12/2009|18:27] C:\Program Files\Windows Live
[29/11/2009|09:40] C:\Program Files\Windows Live SkyDrive
[26/02/2007|08:12] C:\Program Files\Windows Media Connect 2
[02/06/2009|08:58] C:\Program Files\Windows Media Player
[08/10/2008|19:56] C:\Program Files\Windows NT
[24/11/2004|02:37] C:\Program Files\WindowsUpdate
[09/01/2008|07:03] C:\Program Files\WinRar
[25/11/2004|04:28] C:\Program Files\xerox
[06/02/2009|08:53] C:\Program Files\Yahoo!
[30/12/2005|22:31] C:\Program Files\Yvert & Tellier
[08/11/2008|09:34] C:\Program Files\Zero G Registry

--------------------\\ Listing des dossiers dans C:\Program Files\Fichiers communs

[20/10/2009|16:56] C:\Program Files\Fichiers communs\Adobe
[15/12/2006|21:43] C:\Program Files\Fichiers communs\Ahead
[10/12/2009|16:49] C:\Program Files\Fichiers communs\Apple
[14/05/2009|09:40] C:\Program Files\Fichiers communs\Application
[26/03/2009|08:25] C:\Program Files\Fichiers communs\AVSMedia
[08/01/2010|10:32] C:\Program Files\Fichiers communs\DESIGNER
[01/03/2007|11:43] C:\Program Files\Fichiers communs\France Telecom
[30/12/2005|22:30] C:\Program Files\Fichiers communs\InstallShield
[03/01/2005|06:06] C:\Program Files\Fichiers communs\Java
[23/01/2006|19:04] C:\Program Files\Fichiers communs\Labtec
[08/01/2010|10:33] C:\Program Files\Fichiers communs\Microsoft Shared
[25/11/2004|04:26] C:\Program Files\Fichiers communs\MSSoap
[08/06/2006|17:32] C:\Program Files\Fichiers communs\muvee Technologies
[08/06/2006|17:38] C:\Program Files\Fichiers communs\Nikon
[06/04/2007|21:51] C:\Program Files\Fichiers communs\Oberon Media
[25/11/2004|04:26] C:\Program Files\Fichiers communs\ODBC
[28/12/2005|18:09] C:\Program Files\Fichiers communs\ScanSoft Shared
[15/12/2009|12:24] C:\Program Files\Fichiers communs\Services
[03/06/2008|18:30] C:\Program Files\Fichiers communs\Skype
[03/01/2005|06:19] C:\Program Files\Fichiers communs\Sonic Shared
[25/11/2004|04:26] C:\Program Files\Fichiers communs\SpeechEngines
[03/01/2005|06:19] C:\Program Files\Fichiers communs\SureThing Shared
[20/03/2009|09:13] C:\Program Files\Fichiers communs\SWF Studio
[02/02/2008|08:52] C:\Program Files\Fichiers communs\Symantec Shared
[08/01/2010|10:27] C:\Program Files\Fichiers communs\System
[03/01/2005|06:20] C:\Program Files\Fichiers communs\TiVo Shared
[09/12/2008|15:42] C:\Program Files\Fichiers communs\Windows Live
[03/12/2007|11:49] C:\Program Files\Fichiers communs\WindowsLiveInstaller
[16/11/2007|17:19] C:\Program Files\Fichiers communs\Wise Installation Wizard

--------------------\\ Process

( 36 Processes )

... OK !

--------------------\\ Recherche avec S_Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Recherche de Fichiers / Dossiers Lop

Aucun fichier / dossier Lop trouvé !

--------------------\\ Verification du Registre

..... OK !

--------------------\\ Verification du fichier Hosts

Fichier Hosts PROPRE


--------------------\\ Recherche de fichiers avec Catchme

catchme 0.3.1353 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2010-01-09 11:40:39
Windows 5.1.2600 Service Pack 3 NTFS
scanning hidden processes ...
scanning hidden files ...
scan completed successfully
hidden processes: 0
hidden files: 656

--------------------\\ Recherche d'autres infections

--------------------\\ Cracks & Keygens ..

C:\DOCUME~1\COMPAQ~1\Application Data\yoclient\rsrc\bundles\tiles\outdoors\structures\bundle\jettyedge_crack.raw
C:\DOCUME~1\COMPAQ~1\Mes documents\Jeux enfants\Adibou et l'ombre verte (crack)


[F:1][D:1]-> C:\DOCUME~1\COMPAQ~1\LOCALS~1\Temp
[F:198][D:0]-> C:\DOCUME~1\COMPAQ~1\Cookies
[F:2][D:0]-> C:\DOCUME~1\COMPAQ~1\LOCALS~1\TEMPOR~1\content.IE5

1 - "C:\Lop SD\LopR_1.txt" - 09/01/2010| 1:31 - Option : [1]
2 - "C:\Lop SD\LopR_2.txt" - 09/01/2010|11:47 - Option : [2]

--------------------\\ Fin du rapport a 11:47:47
0
Utilisateur anonyme
 
Ok...

La suite....

a+
0
Dewi007 Messages postés 132 Date d'inscription   Statut Membre Dernière intervention  
 
Rapport Hijackthis:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:56:24, on 09/01/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\1\FTRTSVC.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Controle Parental\bin\optproxy.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\SPAMfighter\sfus.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (file missing)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll
O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Messenger\wlchtc.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-18\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: Ajouter à l'Anti-bannière - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Clavier &virtuel - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Analyse des &liens - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O15 - Trusted Zone: http://by118w.bay118.mail.live.com
O15 - Trusted Zone: http://co122w.col122.mail.live.com
O15 - Trusted Zone: http://sn123w.snt123.mail.live.com
O15 - Trusted Zone: *.live.com
O15 - Trusted Zone: http://*.orange.fr
O15 - Trusted Zone: http://rw.search.ke.voila.fr
O15 - Trusted Zone: http://orange.weborama.fr
O15 - Trusted Zone: *.windows%20live%20hotmail
O15 - Trusted Zone: *.canalplay.com (HKLM)
O15 - Trusted Zone: *.canalplusactive.com (HKLM)
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {09C21411-B9A2-4DE6-8416-4E3B58577BE0} (France Telecom MDM ActiveX Control) - http://minitelweb.minitel.com/imin_data/ocx/MDM.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {22492231-AEF0-49FC-9180-CE8969AB1273} (F-Secure Online Scanner Launcher) - http://download.sp.f-secure.com/ols/f-secure-rtm/resources/fslauncher.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {3E82BB3F-ABE4-458D-9281-0187286A4E51} (VoxsyncCtrl Class) - https://login.orange.fr/captcha?return_url=https%3A%2F%2Fmescontacts.orange.fr
O16 - DPF: {474F00F5-3853-492C-AC3A-476512BBC336} (UploadListView Class) - http://picasaweb.google.fr/s/v/e/38.09/f-6tcHDGwoY/uploader2.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab
O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.extrafilm.fr/ImageUploader4.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - https://dgguillerez.wordpress.com/
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - https://www.touslesdrivers.com/index.php?v_page=29
O16 - DPF: {B9907873-6560-4A36-B76B-9DADE84A7F55} (FnacmusicDnl.DnlManager) - https://www.fnacmusic.com/telechargementFnacmusic/FnacmusicDnl.CAB
O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox Plug-in) - http://bmm.imgag.com/imgag/cp/install/crusher-fr.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game05.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D821DC4A-0814-435E-9820-661C543A4679} (CRLDownloadWrapper Class) - http://drmlicense.one.microsoft.com/crlupdate/en/crlocx.ocx
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\1\FTRTSVC.exe
O23 - Service: Google Desktop Manager 5.7.802.22438 (GoogleDesktopManager-022208-143751) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Control Parental (OPTENET_FILTER) - Contrôle Parental - C:\Program Files\Controle Parental\bin\optproxy.exe
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe
O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe (file missing)
O24 - Desktop Component 0: (no name) - http://i5.woopic.com/I/Header/logoOrange.gif
0
Utilisateur anonyme
 
Ca avance bien.....

Télécharges AD-REMOVER
ou
AD-REMOVER

(de Cyrildu17 / C_XX) sur ton Bureau.

Déconnectes-toi et ferme toutes applications en cours

Double-clique sur le programme d'installation, installe-le dans son emplacement par défaut (C:\Program files).
Double-clique sur l'icône [AD-Remover située sur ton Bureau.
Au menu principal, choisis l'option L.
Postes le rapport qui apparaît à la fin.

(Le rapport est sauvegardé aussi sous C:\Ad-report(date).log)

(CTRL+A pour tout sélectionner, CTRL+C pour copier et CTRL+V pour coller)

Note : "Process.exe", une composante de l'outil, est détecté par certains antivirus comme une infection, ne pas en tenir compte, il s'agit d'un faux positif, continue la procédure


a+
0
Dewi007 Messages postés 132 Date d'inscription   Statut Membre Dernière intervention  
 
Rapport de AD-REMOVER:

.
======= RAPPORT D'AD-REMOVER 1.1.4.6_G | UNIQUEMENT XP/VISTA/7 =======
.
Mis à jour par C_XX le 05.01.2010 à 18:50
Contact: AdRemover.contact@gmail.com
Site web: http://pagesperso-orange.fr/NosTools/ad_remover.html
.
Lancé à: 12:13:27, 09/01/2010 | Mode Normal | Option: CLEAN
Exécuté de: C:\PROGRA~1\AD-REM~1\
Système d'exploitation: Microsoft® Windows XP™ Service Pack 3 v5.1.2600
Nom du PC: GERARD-DANY | Utilisateur actuel: Compaq_Propri‚taire

.
============== ÉLÉMENT(S) NEUTRALISÉ(S) ==============
.

C:\DOCUME~1\COMPAQ~1\APPLIC~1\Mozilla\FireFox\Profiles\qfanm4qx.default\extensions\{346de098-61f9-4b42-89da-6dfba7091bb6}
C:\WINDOWS\Installer\{E1B94435-241E-4519-B1C3-C4DD9EB352A2}
C:\Program Files\Mozilla FireFox\Components\AskSearch.js
C:\Program Files\IMBooster4web-en
C:\Program Files\Macrogaming
C:\DOCUME~1\ALLUSE~1\APPLIC~1\Trymedia
C:\Documents and Settings\Compaq_Propri‚taire\Local Settings\Application Data\Kiwee Toolbar
C:\Documents and Settings\LocalService\Application Data\agi

(!) -- Fichiers temporaires supprimés.

.
HKCU\software\Iminent
HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{BC4FFE41-DE9F-46FA-B455-AAD49B9F9938}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1A0AADCD-3A72-4B5F-900F-E3BB5A838E2A}
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BC4FFE41-DE9F-46fa-B455-AAD49B9F9938}
HKCU\software\SWEETIE
HKLM\software\AskBarDis
HKLM\Software\Classes\CLSID\{4260e0cc-0f75-462e-88a3-1e05c248bf4c}
HKLM\software\Iminent
HKLM\Software\Microsoft\Code Store Database\Distribution Units\CabBuilder
HKLM\software\microsoft\internet explorer\searchscopes\{CF739809-1C6C-47C0-85B9-569DBB141420}
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
HKLM\software\microsoft\windows\currentversion\installer\userdata\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
HKLM\software\Trymedia Systems
.
============== Scan additionnel ==============
.
.
* Mozilla FireFox Version [Impossible d'obtenir la version] *
.
Nom du profil: qfanm4qx.default (Compaq_Propri‚taire)
.
(COMPAQ~1, prefs.js) Browser.search.defaultenginename, Google
(COMPAQ~1, prefs.js) Browser.search.defaulturl, hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
(COMPAQ~1, prefs.js) Browser.search.selectedEngine, Live Search
(COMPAQ~1, prefs.js) Browser.startup.homepage, hxxp://fr.msn.com/
(COMPAQ~1, prefs.js) Extensions.enabledItems, {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}:6.0.03,{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}:6.0.05,{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}:6.0.07,{972ce4c6-7e08-4474-a285-3208198ce6fd}:3.0.1
(COMPAQ~1, prefs.js) Keyword.URL, hxxp://search.live.com/results.aspx?mkt=fr-fr&FORM=MIMWA1&q=
(COMPAQ~1, prefs.js) Browser.startup.homepage, hxxp://www.msn.fr/
(COMPAQ~1, prefs.js) Keyword.URL, hxxp://search.live.com/results.aspx?mkt=fr-FR&FORM=MIMWA1&q=
(COMPAQ~1, prefs.js) Browser.search.selectedEngine, Live Search
(COMPAQ~1, prefs.js) Browser.startup.homepage, hxxp://www.msn.fr/
(COMPAQ~1, prefs.js) Keyword.URL, hxxp://search.live.com/results.aspx?mkt=fr-FR&FORM=MIMWA1&q=
(COMPAQ~1, prefs.js) Browser.search.selectedEngine, Live Search
(COMPAQ~1, prefs.js) Browser.startup.homepage, hxxp://fr.msn.com/
(COMPAQ~1, prefs.js) Keyword.URL, hxxp://www.google.com/search?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&q=
(COMPAQ~1, prefs.js) Keyword.URL, hxxp://www.google.com/search?ie=UTF-8&oe=UTF-8&sourceid=navclient&gfns=1&q=
.
.
* Internet Explorer Version 8.0.6001.18702 *
.
[HKEY_CURRENT_USER\..\Internet Explorer\Main]
.
Do404Search: 01000000
Local Page: C:\WINDOWS\system32\blank.htm
Show_ToolBar: yes
Use Search Asst: no
Start Page: hxxp://fr.msn.com/
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Start Page Redirect Cache: hxxp://fr.msn.com/?ocid=iehp
Start Page Redirect Cache_TIMESTAMP: 22e0bfaaf6dac901
Start Page Redirect Cache AcceptLangs: fr,fr-FR;q=0.5
Enable Browser Extensions: yes
Default_page_url: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Search bar: hxxp://go.microsoft.com/fwlink/?linkid=54896
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\Main]
.
Default_Page_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&pver=6&ar=msnhome
Default_Search_URL: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Search Page: hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
Delete_Temp_Files_On_Exit: yes
Local Page: C:\WINDOWS\system32\blank.htm
Start Page: hxxp://fr.msn.com/
Search bar: hxxp://search.msn.com/spbasic.htm
.
[HKEY_LOCAL_MACHINE\..\Internet Explorer\ABOUTURLS]
.
Tabs: res://ieframe.dll/tabswelcome.htm
.
===================================
.
4795 Octet(s) - C:\Ad-Report-CLEAN[1].log
.
0 Fichier(s) - C:\DOCUME~1\COMPAQ~1\LOCALS~1\Temp
1 Fichier(s) - C:\WINDOWS\Temp
0 Fichier(s) - C:\WINDOWS\Prefetch
.
17 Fichier(s) - C:\PROGRA~1\AD-REM~1\BACKUP
49 Fichier(s) - C:\PROGRA~1\AD-REM~1\QUARANTINE
.
Fin à: 12:39:50 | 09/01/2010 - CLEAN[1]
.
============== E.O.F ==============
.
0
Utilisateur anonyme
 
Apres tout cela....Comment se comporte le pc ?

Relances Hijack et colles le rapport stp...


a+
0
Dewi007 Messages postés 132 Date d'inscription   Statut Membre Dernière intervention  
 
Le PC semble parfaitement fonctionner.

Par contre, il est impossible de se connecter à internet. Diagnostic:"le modem n'est pas installé".
Rapport d'erreur: "le périphérique USB wirless lan adaptater paramètré pour la connection Wifi n'est pas disponible".

Le rapport Hijackthis:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 14:06:19, on 09/01/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
C:\Program Files\Google\Update\1.2.183.13\GoogleCrashHandler.exe
C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\1\FTRTSVC.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Controle Parental\bin\optproxy.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files\SPAMfighter\sfus.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wbem\wmiapsrv.exe
C:\WINDOWS\explorer.exe
C:\Program Files\OrangeHSS\Launcher\Launcher.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\AlertModule\1\AlertModule.exe
C:\Program Files\OrangeHSS\connectivity\connectivitymanager.exe
C:\Program Files\OrangeHSS\systray\systrayapp.exe
C:\Program Files\OrangeHSS\Deskboard\deskboard.exe
C:\Program Files\OrangeHSS\connectivity\CoreCom\CoreCom.exe
C:\Program Files\OrangeHSS\connectivity\CoreCom\OraConfigRecover.exe
C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTCOMModule\0\FTCOMModule.exe
C:\Program Files\trend micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://go.microsoft.com/fwlink/?linkid=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://fr.msn.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll (file missing)
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll
O2 - BHO: Click-to-Call BHO - {5C255C8A-E604-49b4-9D64-90988571CECB} - C:\Program Files\Windows Live\Messenger\wlchtc.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKUS\S-1-5-18\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (User 'Default user')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la liste d'impressions - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O9 - Extra button: Ajout Direct - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Ajout Direct dans Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Clavier &virtuel - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Analyse des &liens - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Aide à la connexion - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Orange - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - http://www.orange.fr (file missing) (HKCU)
O15 - Trusted Zone: http://by118w.bay118.mail.live.com
O15 - Trusted Zone: http://co122w.col122.mail.live.com
O15 - Trusted Zone: http://sn123w.snt123.mail.live.com
O15 - Trusted Zone: *.live.com
O15 - Trusted Zone: http://*.orange.fr
O15 - Trusted Zone: http://rw.search.ke.voila.fr
O15 - Trusted Zone: http://orange.weborama.fr
O15 - Trusted Zone: *.windows%20live%20hotmail
O15 - Trusted Zone: *.canalplay.com (HKLM)
O15 - Trusted Zone: *.canalplusactive.com (HKLM)
O16 - DPF: {09C21411-B9A2-4DE6-8416-4E3B58577BE0} (France Telecom MDM ActiveX Control) - http://minitelweb.minitel.com/imin_data/ocx/MDM.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {22492231-AEF0-49FC-9180-CE8969AB1273} (F-Secure Online Scanner Launcher) - http://download.sp.f-secure.com/ols/f-secure-rtm/resources/fslauncher.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {3E82BB3F-ABE4-458D-9281-0187286A4E51} (VoxsyncCtrl Class) - http://contacts.orange.fr/wfr_webab/VoxsyncX.cab
O16 - DPF: {474F00F5-3853-492C-AC3A-476512BBC336} (UploadListView Class) - http://picasaweb.google.fr/s/v/e/38.09/f-6tcHDGwoY/uploader2.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/resources/MSNPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab
O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.extrafilm.fr/ImageUploader4.cab
O16 - DPF: {7FC1B346-83E6-4774-8D20-1A6B09B0E737} (Windows Live Photo Upload Control) - http://cid-332884dc4b0cdcf5.spaces.live.com/PhotoUpload/MsnPUpld.cab
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} - http://fichiers.touslesdrivers.com/...
O16 - DPF: {B9907873-6560-4A36-B76B-9DADE84A7F55} (FnacmusicDnl.DnlManager) - https://www.fnacmusic.com/telechargementFnacmusic/FnacmusicDnl.CAB
O16 - DPF: {BD8667B7-38D8-4C77-B580-18C3E146372C} (Creative Toolbox Plug-in) - http://bmm.imgag.com/imgag/cp/install/crusher-fr.cab
O16 - DPF: {BFF1950D-B1B4-4AE8-B842-B2CCF06D9A1B} (Zylom Games Player) - http://game05.zylom.com/activex/zylomgamesplayer.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D821DC4A-0814-435E-9820-661C543A4679} (CRLDownloadWrapper Class) - http://drmlicense.one.microsoft.com/crlupdate/en/crlocx.ocx
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O20 - AppInit_DLLs: C:\PROGRA~1\KASPER~1\KASPER~1\kloehk.dll
O23 - Service: Kaspersky Internet Security (AVP) - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
O23 - Service: BlueSoleil Hid Service - Unknown owner - C:\Program Files\IVT Corporation\BlueSoleil\BTNtService.exe
O23 - Service: Service Bonjour (Bonjour Service) - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: France Telecom Routing Table Service (FTRTSVC) - France Telecom SA - C:\PROGRA~1\FICHIE~1\France Telecom\Shared Modules\FTRTSVC\1\FTRTSVC.exe
O23 - Service: Google Desktop Manager 5.7.802.22438 (GoogleDesktopManager-022208-143751) - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
O23 - Service: Service Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Control Parental (OPTENET_FILTER) - Contrôle Parental - C:\Program Files\Controle Parental\bin\optproxy.exe
O23 - Service: SPAMfighter Update Service - SPAMfighter ApS - C:\Program Files\SPAMfighter\sfus.exe
O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe (file missing)
O24 - Desktop Component 0: (no name) - http://i5.woopic.com/I/Header/logoOrange.gif
0
Utilisateur anonyme
 
Pour ton WIFI c'est "bagle" qui l'a shooté....

Soit tu le reconfigures à partir de ton CD d'installation
Soit :
https://www.commentcamarche.net/faq/7223-configurer-sa-connexion-wifi-avec-windows

Donnes des nouvelles et je pense que l'on pourra finir.


a+
0
Dewi007 Messages postés 132 Date d'inscription   Statut Membre Dernière intervention  
 
Ouf ! Internet fonctionne à nouveau. Kaspersky se met à jour.

Etape suivante ?
0
Utilisateur anonyme
 
Concernant Kapersky,
je suppose que c'est la version d'eval que tu as chargé ?
Elle n'est valable que trois mois si mes souvenirs sont bons.....
Comptes-tu l'acheter ou souhaites-tu un bon AV gratuit ?

a+






0
Dewi007 Messages postés 132 Date d'inscription   Statut Membre Dernière intervention  
 
Oui c'est bien la version d'éval que je ne compte pas acheter.
Je vais mettre antivir + comodo, qu'en penses-tu ?
0
Dewi007 Messages postés 132 Date d'inscription   Statut Membre Dernière intervention  
 
Certains programmes ne fonctionnent plus. Est-il possible de les récupérer, ou faut-il les réinstaller ?
0
Utilisateur anonyme
 
Excuses pour le retard....
J'étais en train de déneiger devant chez moi ....
20cm de neige en finistère....on n'a pas l'habitude !!!!!


Je vais mettre antivir + comodo, qu'en penses-tu ?

==> Très bonne initiative !

Certains programmes ne fonctionnent plus. Est-il possible de les récupérer, ou faut-il les réinstaller ?

==> Il te faudra réinstaller....

Pour desinstaller les outils utilisés

Telecharge ToolsCleaner2--> http://pc-system.fr/
-Une fois téléchargé, installe-le et lance-le
-Clique sur Recherche et laisse le scan se terminer
-Clique sur SUPPRESSION
-Clique sur Quitter pour que le rapport puisse se créer
-Poste moi le rapport se trouvant ici--> C:\TCleaner.txt


puis

---> Télécharge et installe CCleaner (N'installe pas la Yahoo Toolbar) :
https://www.01net.com/telecharger/windows/Utilitaire/nettoyeurs_et_installeurs/fiches/32599.html

* Lance-le. Va dans Options puis Avancé et décoche la case Effacer uniquement les fichiers etc....
* Va dans Nettoyeur, choisis Analyse. Une fois terminé, lance le nettoyage.
* Ensuite, choisis Registre, puis Chercher des erreurs. Une fois terminé, répare toutes les erreurs tant de fois qu il en trouve a l analyse(Sauvegarde la base de registre).
* Décoche la case plus vieux que 24 h

TRES IMPORTANT:

---> Il est nécessaire de désactiver,redémarrer puis réactiver la restauration système pour la purger :
XP:
https://www.tayo.fr/desactiver-restauration-systeme-sur-windows-xp-tutoriel.php
VISTA:
https://www.tayo.fr/desactiver-restauration-windows-vista-tutoriel.php

---> Je te conseille de créer un point de restauration que tu pourras utiliser plus tard si tu as un problème :
https://www.vulgarisation-informatique.com/creer-point-restauration.php


---> Changes le statut de ce topic :
et mets le en "résolu"
https://www.commentcamarche.net/infos/25917-marquer-un-fil-de-discussion-comme-etant-resolu/



a+
0
Dewi007 Messages postés 132 Date d'inscription   Statut Membre Dernière intervention  
 
Avant d'entreprendre ces derniers ajustements, que je n'aurais peut-être pas le temps de faire, je voulais te remercier pour ton aide précieuse.
C'est le PC de mes parents qui était infecté et ils étaient dépités de se retrouver sans ordi et sans internet.
Nous habitons loin de la France, internet est vital pour la communication familiale !
Alors merci beaucoup et continuer à faire du bon boulot sur le site.
Dewi007
0
Utilisateur anonyme
 
Nous habitons loin de la France

Sans être tres précis , si tu ne le souhaites pas....Donnes moi une idée du lieu...
Cela fait toujours rêver....

==> Je suis en bretagne....et pas très habitué à la neige....malgré 20 cm en ce moment....



a+
0