Rediriger apres une recherche google ???????

Bonjour,
j'ai lu plusieurs blog a savoir comment trouver et enlever se problème qui devien de plus en plus fréquent. Souvant je suis redirigé dur les mêmes page web ex: scour.com , result.php?keywords=.......&submit=go , alpaca-production-net.com..

J'ai utiliser les logitiel pc tool spyware Doctor, Pest patrol, avast, Ccleaner, Malwarebyte.

J'ai un rapport avec ZHPDIAG aussi

13 réponses

  1. Contributeur sécurité
    Salut,

    POste le rapport de ZHP diag.
    0
    1. Allo, je suis pas capable de mettre mon rapport il me dit toujours uninspected token
      0
      1. Contributeur sécurité
        Utilise cijoint :

        http://www.cijoint.fr/
        0
        1. Erreur 101 (net::ERR_CONNECTION_RESET) : Erreur inconnue
          il me donne toujours sa il me donne sa aussi quand j'ouvre windows update
          0
        2. Contributeur sécurité
          Essaie en mode sans echec ( tapote F8 ou F5 au démarrage du pc ).
          0
        3. Ça ne marche pas non plus.

          J'ai remarquer que les redirection utilise toujours une forme avec /search.php?
          0
      2. Contributeur sécurité
        Fait ceci :

        >Telecharge Combofix ici et enregistre le sur ton bureau :

        http://download.bleepingcomputer.com/sUBs/ComboFix.exe

        # Ferme toutes les fenêtres de programme ouvertes, y compris celle-ci.

        # Ferme ou désactivez tous les programmes Antivirus, Antispyware, ainsi que tout pare-feu en cours d'exécution car ils pourraient perturber le fonctionnement de ComboFix.

        #Double clic sur l'icône de ComboFix située sur le Bureau. Note bien que, une fois que tu as lancé ComboFix, tu ne dois pas cliquer dans la fenêtre de ComboFix car cela pourrait entraîner un plantage du programme. En fait, lorsque ComboFix tourne, ne touche plus du tout à ton pc. L'analyse peut prendre un certain temps, donc soit patient.

        #Une fenêtre présentant les différents sites autorisés de téléchargement de ComboFix s'affiche. Dans cette fenêtre, clique sur le bouton OK.

        #Après la fin de la sauvegarde du Registre Windows, ComboFix va essayer de savoir si la Console de récupération est installée. Si tu ne l'a pas déja fait accepte.

        #Ceci peut durer un certain temps, donc surtout soit patient. Si tu vois ton Bureau Windows disparaître, ne t'inquiete pas. C'est normal, et ComboFix restaurera votre Bureau avant de se terminer. Finalement, tu verras un nouvel affichage déclarant que le programme a presque fini et vous annonçant que le fichier rapport, ou log, se trouvera dans C:\ComboFix.txt.

        #Poste ce rapport.
        0
        1. Je vien de recevoir sa comme blocage de avast.

          2010-05-28 21:46:32 http://shvaruunoe.com/in.cgi?20&parameter=bank44b&ur=1&HTTP_REFERER=birdaviary.com|>{gzip} [L] HTML:RedirME-inf [Trj] (0)
          0
          1. Contributeur sécurité
            C'est normal, il faut désactiver l'antivirus !
            0
            1. ComboFix 10-05-28.02 - Aamon 2010-05-28 22:21:13.1.1 - x86
              Microsoft Windows XP Professionnel 5.1.2600.3.1252.2.1036.18.2047.1639 [GMT -4:00]
              Lancé depuis: c:\documents and settings\Aamon\Mes documents\ComboFix.exe
              AV: avast! Antivirus *On-access scanning disabled* (Updated) {7591DB91-41F0-48A3-B128-1A293FD8233D}
              AV: Spyware Doctor with AntiVirus *On-access scanning disabled* (Updated) {D3C23B96-C9DC-477F-8EF1-69AF17A6EFF6}
              .

              (((((((((((((((((((((((((((((((((((( Autres suppressions ))))))))))))))))))))))))))))))))))))))))))))))))
              .

              C:\ErrLog.txt
              c:\windows\system32\AbaleZip.dll
              c:\windows\system32\Data

              Une copie infectée de c:\windows\system32\DRIVERS\atapi.sys a été trouvée et désinfectée
              Copie restaurée à partir de - Kitty ate it :p
              Une copie infectée de c:\windows\system32\DRIVERS\atapi.sys a été trouvée et désinfectée
              Copie restaurée à partir de - Kitty ate it :p
              .
              ((((((((((((((((((((((((((((( Fichiers créés du 2010-04-28 au 2010-05-29 ))))))))))))))))))))))))))))))))))))
              .

              2010-05-27 22:52 . 2010-05-29 02:21 -------- d-----w- c:\windows\system32\CatRoot2
              2010-05-27 22:17 . 2010-05-27 22:18 -------- dc-h--w- c:\windows\ie8
              2010-05-26 12:00 . 2010-05-26 12:00 -------- d-sh--w- c:\documents and settings\LocalService\IETldCache
              2010-05-25 20:06 . 2010-05-25 20:11 -------- d-----w- C:\Ad-Remover
              2010-05-25 01:58 . 2010-05-25 01:58 -------- d-----w- c:\documents and settings\Aamon\Application Data\Malwarebytes
              2010-05-25 01:58 . 2010-04-29 19:39 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
              2010-05-25 01:58 . 2010-05-25 01:58 -------- d-----w- c:\documents and settings\All Users\Application Data\Malwarebytes
              2010-05-25 01:58 . 2010-04-29 19:39 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
              2010-05-25 01:09 . 2006-10-26 23:56 33104 ----a-w- c:\windows\system32\Spool\prtprocs\w32x86\msonpppr.dll
              2010-05-25 01:09 . 2006-10-26 23:56 32592 ----a-w- c:\windows\system32\msonpmon.dll
              2010-05-24 19:35 . 2010-05-24 19:35 -------- d-----r- c:\documents and settings\NetworkService\Favoris
              2010-05-24 19:27 . 2010-05-24 19:28 -------- d-----w- c:\documents and settings\All Users\Application Data\Yahoo! Companion
              2010-05-24 19:27 . 2010-05-24 19:27 -------- d-----w- c:\documents and settings\Aamon\Application Data\Yahoo!
              2010-05-24 17:19 . 2009-10-30 15:11 233136 ----a-w- c:\windows\system32\drivers\pctgntdi.sys
              2010-05-24 17:18 . 2009-11-09 15:20 207792 ----a-w- c:\windows\system32\drivers\PCTCore.sys
              2010-05-24 17:18 . 2009-10-06 20:31 87784 ----a-w- c:\windows\system32\drivers\PCTAppEvent.sys
              2010-05-24 17:18 . 2009-09-03 13:45 70408 ----a-w- c:\windows\system32\drivers\pctplsg.sys
              2010-05-24 17:18 . 2010-05-25 17:35 -------- d-----w- c:\program files\Spyware Doctor
              2010-05-24 17:18 . 2010-05-24 17:19 -------- d-----w- c:\program files\Fichiers communs\PC Tools
              2010-05-24 17:18 . 2010-05-24 17:18 -------- d-----w- c:\documents and settings\Aamon\Application Data\PC Tools
              2010-05-24 16:52 . 2010-05-06 20:39 164048 ----a-w- c:\windows\system32\drivers\aswSP.sys
              2010-05-24 16:52 . 2010-05-06 20:33 19024 ----a-w- c:\windows\system32\drivers\aswFsBlk.sys
              2010-05-24 16:52 . 2010-05-06 20:34 23376 ----a-w- c:\windows\system32\drivers\aswRdr.sys
              2010-05-24 16:52 . 2010-05-06 20:39 46672 ----a-w- c:\windows\system32\drivers\aswTdi.sys
              2010-05-24 16:52 . 2010-05-06 20:33 100432 ----a-w- c:\windows\system32\drivers\aswmon2.sys
              2010-05-24 16:52 . 2010-05-06 20:33 94800 ----a-w- c:\windows\system32\drivers\aswmon.sys
              2010-05-24 16:52 . 2010-05-06 20:33 28880 ----a-w- c:\windows\system32\drivers\aavmker4.sys
              2010-05-24 16:52 . 2010-05-06 20:59 38848 ----a-w- c:\windows\system32\avastSS.scr
              2010-05-24 16:52 . 2010-05-06 20:59 165032 ----a-w- c:\windows\system32\aswBoot.exe
              2010-05-24 16:51 . 2010-05-24 16:51 -------- d-----w- c:\program files\Alwil Software
              2010-05-24 16:51 . 2010-05-24 16:51 -------- d-----w- c:\documents and settings\All Users\Application Data\Alwil Software
              2010-05-24 12:12 . 2010-05-24 12:12 -------- d-----w- c:\documents and settings\Aamon\Application Data\Windows Search
              2010-05-24 04:16 . 2010-05-24 04:16 -------- d-----w- c:\windows\system32\NtmsData
              2010-05-24 04:15 . 2010-05-24 04:15 128 ----a-w- c:\documents and settings\Aamon\Local Settings\Application Data\fusioncache.dat
              2010-05-24 00:44 . 2010-05-24 00:46 -------- d-----w- c:\documents and settings\All Users\Application Data\regid.1986-12.com.adobe
              2010-05-24 00:29 . 2010-05-24 00:29 -------- d-----w- c:\documents and settings\All Users\Application Data\ALM
              2010-05-23 22:33 . 2010-05-23 22:33 10134 ----a-r- c:\documents and settings\Aamon\Application Data\Microsoft\Installer\{024521CF-C07E-4F8E-8481-0D75695E03AF}\ARPPRODUCTICON.exe
              2010-05-23 22:33 . 2010-05-23 22:33 -------- d-----w- c:\program files\My Company Name
              2010-05-23 22:30 . 2010-05-23 22:30 38784 ----a-w- c:\documents and settings\Default User\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
              2010-05-23 22:30 . 2010-05-23 22:30 -------- d-----w- c:\program files\Fichiers communs\Adobe AIR
              2010-05-21 15:02 . 2010-05-24 16:32 -------- d-----w- c:\program files\TuneUp Utilities 2010
              2010-05-21 01:12 . 2010-05-21 01:12 -------- d--h--r- c:\documents and settings\Aamon\Application Data\SecuROM
              2010-05-21 01:10 . 2007-10-22 07:37 17928 ----a-w- c:\windows\system32\X3DAudio1_2.dll
              2010-05-21 01:09 . 2008-03-05 19:56 1420824 ----a-w- c:\windows\system32\D3DCompiler_37.dll
              2010-05-21 01:09 . 2008-02-06 03:07 462864 ----a-w- c:\windows\system32\d3dx10_37.dll
              2010-05-21 01:09 . 2008-03-05 19:56 3786760 ----a-w- c:\windows\system32\D3DX9_37.dll
              2010-05-21 01:09 . 2007-04-04 22:53 81768 ----a-w- c:\windows\system32\xinput1_3.dll
              2010-05-21 01:09 . 2010-05-21 01:09 -------- d-----w- c:\windows\system32\xlive
              2010-05-21 01:09 . 2010-05-21 01:09 -------- d-----w- c:\program files\Microsoft Games for Windows - LIVE
              2010-05-21 00:19 . 2004-04-30 13:37 160640 ----a-w- c:\windows\system32\drivers\a347bus.sys
              2010-05-21 00:19 . 2004-04-30 13:33 5248 ----a-w- c:\windows\system32\drivers\a347scsi.sys
              2010-05-20 23:49 . 2010-05-20 23:49 2331776 ----a-w- c:\windows\system32\TUKernel.exe
              2010-05-20 23:38 . 2010-05-20 23:38 -------- d-----w- c:\documents and settings\Aamon\Application Data\TuneUp Software
              2010-05-20 23:38 . 2010-05-24 16:32 -------- d-----w- c:\documents and settings\All Users\Application Data\TuneUp Software
              2010-05-20 23:38 . 2010-05-20 23:38 -------- d-sh--w- c:\documents and settings\All Users\Application Data\{D3742F82-1C1A-4DCC-ABBD-0E7C3C0185CC}
              2010-05-20 14:51 . 2010-05-20 14:51 -------- d-----w- c:\documents and settings\All Users\Application Data\DVD Shrink
              2010-05-20 14:51 . 2010-05-20 14:51 -------- d-----w- c:\program files\DVD Shrink
              2010-05-20 04:08 . 2010-05-20 04:09 -------- d-----w- c:\documents and settings\Aamon\Local Settings\Application Data\Cyberlink
              2010-05-20 04:08 . 2010-05-20 04:08 -------- d-----w- c:\documents and settings\Aamon\Application Data\CyberLink
              2010-05-20 04:06 . 2010-05-20 04:08 -------- d-----w- c:\documents and settings\All Users\Application Data\CyberLink
              2010-05-20 04:06 . 2010-05-20 04:06 -------- d-----w- c:\program files\Cyberlink
              2010-05-20 04:05 . 2010-05-20 04:05 -------- d-----w- c:\program files\Fichiers communs\CyberLink
              2010-05-20 04:04 . 2010-05-25 17:35 -------- d---a-w- c:\documents and settings\All Users\Application Data\Temp
              2010-05-20 04:04 . 2010-05-20 04:03 53319 ----a-w- c:\documents and settings\All Users\Application Data\Temp\{A8516AC9-AAF1-47F9-9766-03E2D4CDBCF8}\PostBuild.exe
              2010-05-20 03:47 . 2010-05-20 21:38 717296 ----a-w- c:\windows\system32\drivers\sptd.sys
              2010-05-20 03:18 . 2010-05-20 03:18 -------- d-----w- c:\documents and settings\Aamon\Application Data\Nero
              2010-05-20 02:44 . 2010-05-20 02:44 -------- d-----w- c:\program files\Windows Sidebar
              2010-05-20 02:33 . 2010-05-20 02:43 -------- d-----w- c:\program files\Nero
              2010-05-20 02:32 . 2010-05-20 02:45 -------- d-----w- c:\program files\Fichiers communs\Nero
              2010-05-20 02:32 . 2010-05-20 02:35 -------- d-----w- c:\documents and settings\All Users\Application Data\Nero
              2010-05-19 18:37 . 2010-05-19 18:38 -------- d-----w- c:\documents and settings\All Users\Application Data\Norton
              2010-05-19 18:37 . 2010-05-19 18:37 -------- d-----w- c:\documents and settings\All Users\Application Data\NortonInstaller
              2010-05-19 18:20 . 2010-05-19 18:35 -------- d-----w- c:\documents and settings\Aamon\Application Data\Media Player Classic
              2010-05-19 18:18 . 2010-03-15 09:31 165376 ----a-w- c:\windows\system32\unrar.dll
              2010-05-19 18:15 . 2010-05-19 18:36 57344 ----a-w- c:\documents and settings\All Users\Application Data\DivX\RunAsUser\RUNASUSERPROCESS.dll
              2010-05-19 18:14 . 2010-05-19 18:09 1180952 ----a-w- c:\documents and settings\All Users\Application Data\DivX\Setup\DivXSetup.exe
              2010-05-19 18:14 . 2010-05-19 18:14 -------- d-----w- c:\documents and settings\Aamon\Application Data\DivX
              2010-05-19 18:10 . 2010-05-20 21:15 -------- d-----w- c:\program files\DivX
              2010-05-19 18:09 . 2010-05-19 18:34 -------- d-----w- c:\documents and settings\All Users\Application Data\DivX
              2010-05-19 18:05 . 2008-04-14 02:33 26624 ----a-w- c:\documents and settings\LocalService\Application Data\Microsoft\UPnP Device Host\upnphost\udhisapi.dll
              2010-05-18 22:14 . 2010-05-18 22:14 664 ----a-w- c:\windows\system32\d3d9caps.dat
              2010-05-18 17:53 . 2010-05-24 01:13 -------- d-----w- c:\documents and settings\Aamon\Application Data\BitTorrent
              2010-05-18 11:17 . 2010-05-24 04:16 -------- d-----w- c:\documents and settings\Aamon\Local Settings\Application Data\ApplicationHistory
              2010-05-16 16:45 . 2010-05-16 16:45 -------- d-----w- c:\documents and settings\Aamon\Local Settings\Application Data\Identities
              2010-05-16 16:45 . 2010-05-16 16:45 -------- d-----w- c:\documents and settings\Aamon\Application Data\Windows Desktop Search
              2010-05-16 16:13 . 2010-05-18 03:41 -------- d-----w- c:\program files\Windows Desktop Search
              2010-05-16 16:13 . 2010-05-16 16:13 -------- d-----w- c:\windows\system32\GroupPolicy
              2010-05-16 16:12 . 2008-03-07 17:02 98304 -c----w- c:\windows\system32\dllcache\nlhtml.dll
              2010-05-16 16:12 . 2008-03-07 17:02 29696 -c----w- c:\windows\system32\dllcache\mimefilt.dll
              2010-05-16 16:12 . 2008-03-07 17:02 192000 -c----w- c:\windows\system32\dllcache\offfilt.dll
              2010-05-16 16:12 . 2010-05-20 23:32 -------- d-----w- c:\program files\Windows Media Connect 2
              2010-05-16 16:11 . 2010-05-16 16:11 -------- d-----w- c:\windows\system32\drivers\UMDF
              2010-05-16 16:09 . 2010-05-16 16:09 -------- d-----w- c:\windows\system32\URTTEMP
              2010-05-16 14:45 . 2010-05-16 14:45 -------- d-----w- c:\windows\system32\fr
              2010-05-16 14:45 . 2010-05-16 14:45 -------- d-----w- c:\windows\l2schemas
              2010-05-16 14:32 . 2010-05-16 14:32 -------- d-----w- c:\documents and settings\Aamon\Local Settings\Application Data\PCHealth

              .
              (((((((((((((((((((((((((((((((((( Compte-rendu de Find3M ))))))))))))))))))))))))))))))))))))))))))))))))
              .
              2010-05-29 02:06 . 2010-04-20 04:30 -------- d-----w- c:\program files\PestPatrol
              2010-05-29 01:45 . 2010-04-20 04:56 -------- d-----w- c:\documents and settings\Aamon\Application Data\HPAppData
              2010-05-29 01:43 . 2010-04-20 03:45 -------- d-----w- c:\program files\Windows Live
              2010-05-29 01:36 . 2010-04-20 03:02 70536 ----a-w- c:\documents and settings\Aamon\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
              2010-05-25 01:14 . 2010-04-20 03:24 -------- d-----w- c:\documents and settings\All Users\Application Data\Microsoft Help
              2010-05-25 01:10 . 2010-04-20 03:30 -------- d-----w- c:\program files\MSBuild
              2010-05-24 23:07 . 2010-04-20 03:46 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
              2010-05-24 19:27 . 2010-04-20 04:40 -------- d-----w- c:\program files\Yahoo!
              2010-05-24 17:20 . 2010-04-20 02:57 -------- d-----w- c:\documents and settings\All Users\Application Data\Google Updater
              2010-05-24 15:08 . 2010-04-21 05:02 -------- d-----w- c:\program files\Fichiers communs\Symantec Shared
              2010-05-24 15:08 . 2010-04-21 05:02 -------- d-----w- c:\program files\Symantec
              2010-05-24 13:45 . 2010-04-21 05:02 -------- d-----w- c:\documents and settings\All Users\Application Data\Symantec
              2010-05-24 12:31 . 2001-09-28 12:00 94010 ----a-w- c:\windows\system32\perfc00C.dat
              2010-05-24 12:31 . 2001-09-28 12:00 532728 ----a-w- c:\windows\system32\perfh00C.dat
              2010-05-24 00:27 . 2010-04-20 04:18 -------- d-----w- c:\program files\Fichiers communs\Adobe
              2010-05-21 03:47 . 2010-04-20 02:39 -------- d--h--w- c:\program files\InstallShield Installation Information
              2010-05-21 00:13 . 2010-04-20 04:36 -------- d-----w- c:\program files\HP
              2010-05-20 23:32 . 2010-04-20 02:20 -------- d-----w- c:\program files\WinTV
              2010-05-20 04:03 . 2010-04-23 02:35 29480 ----a-w- c:\windows\system32\msxml3a.dll
              2010-05-16 14:47 . 2010-04-20 01:59 86327 ----a-w- c:\windows\PCHEALTH\HELPCTR\OfflineCache\index.dat
              2010-05-13 23:35 . 2010-04-20 04:12 -------- d-----w- c:\documents and settings\Aamon\Application Data\Creative
              2010-05-13 23:33 . 2010-04-20 04:08 -------- d-----w- c:\documents and settings\All Users\Application Data\Creative
              2010-04-27 10:06 . 2010-04-27 10:06 -------- d-----w- c:\program files\Tracker Software
              2010-04-26 21:04 . 2010-04-20 04:35 164852 ----a-w- c:\windows\hpoins36.dat
              2010-04-26 21:04 . 2010-04-26 21:04 -------- d-----w- c:\documents and settings\All Users\Application Data\WEBREG
              2010-04-26 21:03 . 2010-04-20 04:37 -------- d-----w- c:\documents and settings\All Users\Application Data\HP
              2010-04-26 21:03 . 2010-04-20 06:39 -------- d-----w- c:\documents and settings\Aamon\Application Data\HP
              2010-04-25 01:17 . 2010-04-24 01:56 -------- d-----w- c:\program files\ma-config.com
              2010-04-23 02:39 . 2010-04-23 02:35 -------- d-----w- c:\documents and settings\Aamon\Application Data\BudgetExpress 3
              2010-04-23 02:35 . 2010-04-23 02:35 -------- d-----w- c:\program files\BudgetExpress 3
              2010-04-22 01:57 . 2010-04-22 01:53 -------- d-----w- c:\documents and settings\All Users\Application Data\Pure Networks
              2010-04-22 01:56 . 2010-04-22 01:56 -------- d-----w- c:\program files\Pure Networks
              2010-04-22 01:55 . 2010-04-22 01:55 -------- d-----w- c:\program files\WebEx
              2010-04-22 01:55 . 2010-04-22 01:55 8892928 ----a-w- c:\documents and settings\All Users\Application Data\atscie.msi
              2010-04-22 01:55 . 2010-04-22 01:55 -------- d-----w- c:\program files\Fichiers communs\Pure Networks Shared
              2010-04-22 01:54 . 2010-04-22 01:54 34226736 ----a-w- c:\documents and settings\All Users\Application Data\Pure Networks\Setup\nmsetup.exe
              2010-04-21 07:01 . 2010-04-21 07:01 -------- d-----w- c:\program files\MSXML 4.0
              2010-04-21 05:36 . 2010-04-21 05:36 -------- d-----w- c:\documents and settings\LocalService\Application Data\Symantec
              2010-04-21 05:17 . 2010-04-21 05:16 23797 ----a-w- c:\windows\hpqins15.dat
              2010-04-21 05:16 . 2010-04-21 05:13 78334 ----a-w- c:\windows\hpqins05.dat
              2010-04-21 05:15 . 2010-04-21 05:15 -------- d-----w- c:\documents and settings\All Users\Application Data\HP Product Assistant
              2010-04-21 05:07 . 2010-04-21 05:02 -------- d-----w- c:\documents and settings\Aamon\Application Data\Symantec
              2010-04-20 16:07 . 2010-04-20 16:07 -------- d-----w- c:\documents and settings\All Users\Application Data\FLEXnet
              2010-04-20 15:58 . 2010-04-20 15:58 -------- d-----w- c:\program files\Adobe Media Player
              2010-04-20 15:40 . 2010-04-20 04:44 -------- d-----w- c:\program files\NVIDIA Corporation
              2010-04-20 11:53 . 2010-04-20 11:53 -------- d-----w- c:\program files\Reference Assemblies
              2010-04-20 11:51 . 2010-04-20 11:51 -------- d-----w- c:\program files\MSXML 6.0
              2010-04-20 07:43 . 2010-04-20 03:50 -------- d-----w- c:\program files\Microsoft Silverlight
              2010-04-20 06:52 . 2010-04-20 06:52 -------- d-----w- c:\program files\Realtek
              2010-04-20 06:37 . 2010-04-20 04:44 -------- d-----w- c:\documents and settings\All Users\Application Data\NVIDIA Corporation
              2010-04-20 05:16 . 2010-04-20 05:16 -------- d-----w- c:\program files\PC Drivers HeadQuarters
              2010-04-20 05:04 . 2010-04-20 05:04 -------- d-----w- c:\documents and settings\All Users\Application Data\PC Drivers HeadQuarters
              2010-04-20 04:49 . 2010-04-20 04:06 -------- d-----w- c:\program files\Creative
              2010-04-20 04:48 . 2010-04-20 04:09 -------- d--h--w- c:\program files\Creative Installation Information
              2010-04-20 04:36 . 2010-04-20 04:36 -------- d-----w- c:\program files\Fichiers communs\HP
              2010-04-20 04:36 . 2010-04-20 04:36 -------- d-----w- c:\program files\Fichiers communs\Hewlett-Packard
              2010-04-20 04:36 . 2010-04-20 04:36 -------- d-----w- c:\program files\Hewlett-Packard
              2010-04-20 04:09 . 2010-04-20 04:09 -------- d-----w- c:\program files\Fichiers communs\Creative
              2010-04-20 04:08 . 2010-04-20 04:08 86016 ----a-w- c:\windows\system32\OpenAL32.dll
              2010-04-20 04:08 . 2010-04-20 04:08 409600 ----a-w- c:\windows\system32\wrap_oal.dll
              2010-04-20 04:05 . 2010-04-20 02:39 -------- d-----w- c:\program files\Fichiers communs\InstallShield
              2010-04-20 03:49 . 2010-04-20 03:49 -------- d-----w- c:\program files\Microsoft Office Outlook Connector
              2010-04-20 03:45 . 2010-04-20 03:45 -------- d-----w- c:\program files\Microsoft
              2010-04-20 03:45 . 2010-04-20 03:45 -------- d-----w- c:\program files\Windows Live SkyDrive
              2010-04-20 03:34 . 2010-04-20 03:34 -------- d-----w- c:\program files\Fichiers communs\Windows Live
              2010-04-20 02:58 . 2010-04-20 02:57 -------- d-----w- c:\program files\Google
              2010-04-20 02:39 . 2010-04-20 02:39 -------- d-----w- c:\program files\ANI
              2010-04-20 02:39 . 2010-04-20 02:39 -------- d-----w- c:\program files\D-Link
              2010-04-20 02:39 . 2010-04-20 02:39 -------- d-----w- c:\documents and settings\Aamon\Application Data\InstallShield
              2010-04-20 02:22 . 2010-04-20 02:22 -------- d-----w- c:\program files\nanocosmos
              2010-04-20 02:11 . 2010-04-20 02:11 2232 ----a-w- c:\windows\java\Packages\Data\RP3JZZBZ.DAT
              2010-04-20 02:11 . 2010-04-20 02:11 155995 ----a-w- c:\windows\java\Packages\0INB7F1N.ZIP
              2010-04-20 02:11 . 2010-04-20 02:11 2678 ----a-w- c:\windows\java\Packages\Data\6DFHBN9R.DAT
              2010-04-20 02:11 . 2010-04-20 02:11 2678 ----a-w- c:\windows\java\Packages\Data\XRBTVNJN.DAT
              2010-04-20 02:11 . 2010-04-20 02:11 2678 ----a-w- c:\windows\java\Packages\Data\O17F7LV5.DAT
              2010-04-20 02:11 . 2010-04-20 02:11 2678 ----a-w- c:\windows\java\Packages\Data\DRLZ9NFV.DAT
              2010-04-20 02:11 . 2010-04-20 02:11 2678 ----a-w- c:\windows\java\Packages\Data\VNH3JBVX.DAT
              2010-04-20 02:07 . 2010-04-20 01:57 -------- d-----w- c:\program files\Services en ligne
              2010-04-20 02:00 . 2010-04-20 02:00 -------- d-----w- c:\program files\microsoft frontpage
              2010-04-20 01:58 . 2010-04-20 01:58 21892 ----a-w- c:\windows\system32\emptyregdb.dat
              2010-04-17 05:28 . 2010-04-17 05:28 307056 ----a-w- c:\windows\WLXPGSS.SCR
              2010-04-17 02:12 . 2010-04-17 02:12 48464 ----a-w- c:\windows\system32\sirenacm.dll
              2010-04-03 23:23 . 2010-04-03 23:23 278120 ----a-w- c:\windows\system32\nvmccs.dll
              2010-04-03 23:23 . 2010-04-03 23:23 154216 ----a-w- c:\windows\system32\nvsvc32.exe
              2010-04-03 23:23 . 2010-04-03 23:23 145000 ----a-w- c:\windows\system32\nvcolor.exe
              2010-04-03 23:23 . 2010-04-03 23:23 13670504 ----a-w- c:\windows\system32\nvcpl.dll
              2010-04-03 23:23 . 2010-04-03 23:23 110696 ----a-w- c:\windows\system32\nvmctray.dll
              2010-04-03 23:23 . 2010-04-03 23:23 229376 ----a-w- c:\windows\system32\nvrszhc.dll
              2010-04-03 23:23 . 2010-04-03 23:23 126976 ----a-w- c:\windows\system32\nvrszht.dll
              2010-04-03 22:55 . 2010-04-20 06:36 600680 ----a-w- c:\windows\system32\nvudisp.exe
              2010-03-24 21:57 . 2010-04-20 06:52 191008 ----a-w- c:\windows\system32\drivers\RtsUStor.sys
              2010-03-04 20:30 . 2010-04-20 06:52 9112096 ----a-w- c:\windows\system32\RtsUStoricon.dll
              2010-03-04 20:30 . 2010-04-20 06:52 313888 ----a-w- c:\windows\system32\RtsUStor.dll
              2010-03-04 19:01 . 2008-10-16 23:29 503808 ----a-w- c:\windows\system32\MSVCP71.DLL
              2010-03-04 19:01 . 2008-10-16 23:15 348160 ----a-w- c:\windows\system32\MSVCR71.DLL
              2010-03-04 19:01 . 2003-03-18 21:20 1060864 ----a-w- c:\windows\system32\MFC71.DLL
              .
              0
              1. ------- Sigcheck -------

                [-] 2008-04-14 02:40 . !HASH: COULD NOT OPEN FILE !!!!! . 96512 . . [------] . . c:\windows\system32\drivers\atapi.sys
                [7] 2008-04-13 . 9F3A2F5AA6875C72BF062C712CFA2674 . 96512 . . [5.1.2600.5512] . . c:\windows\ServicePackFiles\i386\atapi.sys
                [7] 2004-08-04 . CDFE4411A69C224BD1D11B2DA92DAC51 . 95360 . . [5.1.2600.2180] . . c:\windows\$NtServicePackUninstall$\atapi.sys
                .
                ((((((((((((((((((((((((((((((((( Points de chargement Reg ))))))))))))))))))))))))))))))))))))))))))))))))
                .
                .
                *Note* les éléments vides & les éléments initiaux légitimes ne sont pas listés
                REGEDIT4

                [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                "avast5"="c:\progra~1\ALWILS~1\Avast5\avastUI.exe" [2010-05-06 2815192]
                "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2010-04-03 13670504]

                [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
                "{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\program files\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-25 304128]

                [HKLM\~\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^AutoStart IR.lnk]
                path=c:\documents and settings\All Users\Menu Démarrer\Programmes\Démarrage\AutoStart IR.lnk
                backup=c:\windows\pss\AutoStart IR.lnkCommon Startup

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ANIWZCS2Service]
                2009-10-19 23:53 102400 ----a-w- c:\program files\ANI\ANIWZCS2 Service\WZCSLDR2.exe

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CookiePatrol]
                2005-01-10 13:35 73728 ----a-w- c:\progra~1\PESTPA~1\CookiePatrol.exe

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
                2008-04-14 02:33 15360 ----a-w- c:\windows\system32\ctfmon.exe

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\D-Link D-Link Xtreme N Dual Band DWA-160]
                2009-12-28 15:01 1000768 ----a-w- c:\program files\D-Link\DWA-160\AirNCFG.exe

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Quick Search Box]
                2010-04-20 02:58 126976 ----a-w- c:\program files\Google\Quick Search Box\GoogleQuickSearchBox.exe

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
                2010-04-17 02:12 3872080 ----a-w- c:\program files\Windows Live\Messenger\msnmsgr.exe

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nmapp]
                2010-04-22 02:00 472112 ----a-w- c:\program files\Pure Networks\Network Magic\nmapp.exe

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nmctxth]
                2009-07-07 18:48 647216 ----a-w- c:\program files\Fichiers communs\Pure Networks Shared\Platform\nmctxth.exe

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
                2010-04-03 23:23 13670504 ----a-w- c:\windows\system32\nvcpl.dll

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
                2010-04-03 23:23 110696 ----a-w- c:\windows\system32\nvmctray.dll

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P17Helper]
                2006-07-03 04:43 10752 ----a-w- c:\windows\system32\SPIRun.dll

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PestPatrol Control Center]
                2004-11-15 15:49 98304 ----a-w- c:\progra~1\PESTPA~1\PPControl.exe

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PPMemCheck]
                2003-04-19 11:53 148480 ----a-w- c:\progra~1\PESTPA~1\PPMemCheck.exe

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
                2010-04-20 02:57 39408 ----a-w- c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VolPanel]
                2006-07-28 13:56 122880 ------w- c:\program files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe

                [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
                "TuneUp.UtilitiesSvc"=2 (0x2)
                "TuneUp.Defrag"=3 (0x3)
                "SPBBCSvc"=2 (0x2)
                "SNDSrvc"=2 (0x2)
                "NPFMntor"=2 (0x2)
                "navapsvc"=2 (0x2)
                "ccSetMgr"=2 (0x2)
                "ccPwdSvc"=3 (0x3)
                "ccEvtMgr"=2 (0x2)

                [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
                "RGSC"=d:\rockstar games\Rockstar Games Social Club\RGSCLauncher.exe /silent
                "Windows"="c:\windows\System32\windows.exe"
                "ctfmon.exe"=c:\windows\system32\ctfmon.exe
                "Google Update"="c:\documents and settings\Aamon\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c

                [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
                "PestPatrolCL"=
                "WZCSLDR2"=c:\program files\D-Link\DWA-160\WZCSLDR2.exe
                "AdobeCS5ServiceManager"="c:\program files\Fichiers communs\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
                "AdobeAAMUpdater-1.0"="c:\program files\Fichiers communs\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
                "Application Layer Gateway"=c:\program files\Fichiers communs\alg.exe
                "SwitchBoard"=c:\program files\Fichiers communs\Adobe\SwitchBoard\SwitchBoard.exe
                "BDRegion"=c:\program files\Cyberlink\Shared Files\brs.exe
                "hpqSRMon"=c:\program files\HP\Digital Imaging\bin\hpqSRMon.exe
                "BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
                "RemoteControl9"=e:\powerdvd9\PowerDVD9\PDVD9Serv.exe
                "PDVD9LanguageShortcut"=e:\powerdvd9\PowerDVD9\Language\Language.exe
                "HP Software Update"=c:\program files\HP\HP Software Update\HPWuSchd2.exe

                [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
                "%windir%\\system32\\sessmgr.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqtra08.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqste08.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hposid01.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqkygrp.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpfcCopy.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpoews01.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpiscnapp.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqsudi.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpsapp.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqpse.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqgplgtupl.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqgpc01.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqusgm.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\bin\\hpqusgh.exe"=
                "c:\\Program Files\\HP\\HP Software Update\\HPWUCli.exe"=
                "c:\\Program Files\\HP\\Digital Imaging\\Smart Web Printing\\SmartWebPrintExe.exe"=
                "%windir%\\Network Diagnostic\\xpnetdiag.exe"=
                "e:\\film\\BitTorrent\\bittorrent.exe"=
                "e:\\PowerDVD9\\PowerDVD9\\PowerDVD9.exe"=
                "c:\\WINDOWS\\system32\\winver.exe"=
                "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
                "c:\\Program Files\\Windows Live\\Sync\\WindowsLiveSync.exe"=
                "c:\program files\Fichiers communs\Pure Networks Shared\Platform\nmsrvc.exe"= c:\program files\Fichiers communs\Pure Networks Shared\Platform\nmsrvc.exe:LocalSubNet,0.0.0.0/255.255.255.255:Enabled:Pure Networks Platform Service

                R0 a347bus;a347bus;c:\windows\system32\drivers\a347bus.sys [2010-05-20 160640]
                R0 a347scsi;a347scsi;c:\windows\system32\drivers\a347scsi.sys [2010-05-20 5248]
                R0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore.sys [2010-05-24 207792]
                R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2010-05-24 164048]
                R2 {B154377D-700F-42cc-9474-23858FBDF4BD};Power Control [2010/05/20 00:06];e:\powerdvd9\PowerDVD9\000.fcl [2009-09-01 16:59 87536]
                R2 ANIWConnService;ANIWConn Service;c:\windows\system32\ANIWConnService.exe [2010-04-19 151552]
                R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2010-05-24 19024]
                R3 arusb(Atheros);D-Link Wireless Network Adapter Service;c:\windows\system32\drivers\dwarusb.sys [2010-04-19 592384]
                R3 hcw18bda;Hauppauge WinTV 418 Driver;c:\windows\system32\drivers\hcw18bda.sys [2010-04-19 391296]
                R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\drivers\RtsUStor.sys [2010-04-20 191008]
                S2 gupdate;Service Google Update (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [2010-04-19 135664]
                S3 sdAuxService;PC Tools Auxiliary Service;c:\program files\Spyware Doctor\pctsAuxs.exe [2010-05-24 359624]
                S3 SwitchBoard;Adobe SwitchBoard;c:\program files\Fichiers communs\Adobe\SwitchBoard\SwitchBoard.exe [2009-12-15 515560]
                S4 sptd;sptd;c:\windows\system32\drivers\sptd.sys [2010-05-19 717296]

                [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost]
                HPZ12 REG_MULTI_SZ Pml Driver HPZ12 Net Driver HPZ12
                hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
                .
                Contenu du dossier 'Tâches planifiées'

                2010-05-27 c:\windows\Tasks\AdobeAAMUpdater-1.0-DANIEL-Aamon.job
                - c:\program files\Fichiers communs\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [2010-05-23 07:44]

                2010-05-29 c:\windows\Tasks\Google Software Updater.job
                - c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2010-04-20 02:57]

                2010-05-29 c:\windows\Tasks\User_Feed_Synchronization-{1253F771-1447-4368-97C4-AE6BD7A1A0FD}.job
                - c:\windows\system32\msfeedssync.exe [2009-03-08 08:31]
                .
                .
                0
                1. il veut pas au complet je vais essayer un autre tento pour la fin du rapport
                  0
                  1. Contributeur sécurité
                    Salut,

                    La suite :

                    Télécharges Zhpdiag ici : https://www.zebulon.fr/telechargements/securite/systeme/zhpdiag.html

                    Une fois le téléchargement achevé, dézippes le fichier obtenu et place ZHPDiag.exe sur ton Bureau.

                    Double-clique sur l'icône pour lancer le programme.

                    Clique sur Tous pour cocher toutes les cases des options.

                    Clique sur la loupe pour lancer l'analyse.

                    A la fin de l'analyse, clique sur l'appareil photo et enregistre le rapport sur ton Bureau.

                    Ouvre le fichier sauvegardé (ZHPDiag.txt)avec le Bloc-Notes et copie son contenu dans ta réponse.

                    Rends toi sur http://www.cijoint.fr clic sur Parcourir, choisis le rapport sur ton bureau et clic sur Créer le lien,
                    Un lien te sera généré, postes le dans ta prochaine réponse .
                    0
                    1. Voici le rapport mais j'ai pas eu le choix de le mettre en pdf si je voulais que sa marche. Demande moi pas pourquoi en txt il ne voulais pas.

                      http://www.cijoint.fr/cjlink.php?file=cj201005/cij3zNO10r.pdf
                      0
                      1. Voici celui de combofix

                        http://www.cijoint.fr/cjlink.php?file=cj201005/cijrD66C4f.pdf
                        0
                        1. Contributeur sécurité
                          Je ne veux pas de PDF.
                          Je le veut au format texte normal...
                          0
                          1. J'aimerais bien mais je suis incapable de l'uploader sur le site quand il est en format .txt il y a toujours une erreur.

                            Il marque erreur sur la page
                            0
                          2. Merci de ton aide mais j'ai pogner les nerf et format réinstalle plus de problème
                            0