Logiciel espion
yugiho
-
jpdeclermont Messages postés 1792 Statut Membre -
jpdeclermont Messages postés 1792 Statut Membre -
bonjour, depuis 1 mois j'ai un message de mon antivirus (trend micro) qui m'affiche un message me signalant que j'ai un fichier infecté avec le virus ADW MYSEARCH 202 j'ai essayer adaware spyshooter cleaner sans succes le message reste comment me débarasser de cela Merci
A voir également:
- Logiciel espion
- Money logiciel - Télécharger - Comptabilité & Facturation
- Logiciel - Guide
- Ce logiciel gratuit répare automatiquement votre PC quand Windows a des problèmes - Guide
- Ce petit logiciel gratuit répare automatiquement votre PC sans aucune connaissance technique - Guide
- Logiciel montage vidéo gratuit windows 10 - Guide
9 réponses
merci pour ta réponse j'ai fais ce que tu as dis mais commetn je le colle ici copier coller ne marche pas
Bonsoir,
télécharge HijackThis ici:
http://www.hijackthis.de/downloads/hijackthis_199.zip
Dézippe le dans un dossier prévu à cet effet.
Par exemple C:\hijackthis < Enregistre le bien dans c : !
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/Hijenr.gif
Lance le puis:
clique sur "do a system scan and save logfile" (cf démo)
faire un copier coller du log entier sur le forum
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/demohijack.htm
Bon courage
A+
télécharge HijackThis ici:
http://www.hijackthis.de/downloads/hijackthis_199.zip
Dézippe le dans un dossier prévu à cet effet.
Par exemple C:\hijackthis < Enregistre le bien dans c : !
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/Hijenr.gif
Lance le puis:
clique sur "do a system scan and save logfile" (cf démo)
faire un copier coller du log entier sur le forum
Démo : (Merci a Balltrap34 pour cette réalisation)
http://pageperso.aol.fr/balltrap34/demohijack.htm
Bon courage
A+
bonjour de bon matin je me prends la tête avec l'ordinateur!!!
16:39:09 : Start of parts extraction
16:39:09 : 67824100.00 extracted to C: Ok
16:39:09 : 67824200.00 extracted to C: Ok
16:39:10 : 68149700.00 extracted to C: Ok
16:39:10 : ABC000DF.XX extracted to C: Ok
16:39:10 : AYU000AB.XX extracted to C: Ok
16:39:48 : BAH000AC.02 extracted to C: Ok
16:39:48 : BAI000AD.02 extracted to C: Ok
16:39:48 : BER001AA.02 extracted to C: Ok
16:40:24 : BES000AA.02 extracted to C: Ok
16:40:25 : BJK002AH.XX extracted to C: Ok
16:40:25 : BMD000DA.XX extracted to C: Ok
16:40:25 : BME000DA.XX extracted to C: Ok
16:40:29 : BMG000DB.02 extracted to C: Ok
16:40:29 : BYI003AC.XX extracted to C: Ok
16:40:29 : BYQ001AA.XX extracted to C: Ok
16:40:29 : DAT001AB.XX extracted to C: Ok
16:40:29 : PEL002GM.XX extracted to C: Ok
16:40:31 : REC000AL.XX extracted to C: Ok
16:40:43 : SON000AD.XX extracted to C: Ok
16:40:43 : AAY004AA.XX extracted to C: Ok
16:40:43 : ABA000AB.XX extracted to C: Ok
16:40:45 : ACE000AD.02 extracted to C: Ok
16:40:45 : ACZ006AC.02 extracted to C: Ok
16:40:46 : AHV000AK.02 extracted to C: Ok
16:40:58 : AHY000AJ.02 extracted to C: Ok
16:40:58 : AKK001PD.02 extracted to C: Ok
16:41:00 : AMH000AD.02 extracted to C: Ok
16:41:01 : BAM006AC.XX extracted to C: Ok
16:41:01 : BBG001AC.02 extracted to C: Ok
16:41:02 : BBX001AC.XX extracted to C: Ok
16:41:03 : BEL000AB.XX extracted to C: Ok
16:41:04 : BFE001AA.02 extracted to C: Ok
16:41:38 : BFO000AA.XX extracted to C: Ok
16:41:38 : BFV003AD.XX extracted to C: Ok
16:41:38 : BPB000AA.02 extracted to C: Ok
16:41:39 : BVB003AA.XX extracted to C: Ok
16:41:49 : CAA000AI.02 extracted to C: Ok
16:41:50 : CAF000AB.02 extracted to C: Ok
16:42:01 : CAH001AB.02 extracted to C: Ok
16:42:07 : CIN003AM.XX extracted to C: Ok
16:42:08 : DSE003AA.XX extracted to C: Ok
16:42:08 : HIS002AA.XX extracted to C: Ok
16:42:08 : HON000AA.XX extracted to C: Ok
16:42:08 : IDC005AA.XX extracted to C: Ok
16:42:08 : MET000AB.02 extracted to C: Ok
16:42:08 : MYC001AC.02 extracted to C: Ok
16:42:24 : MYI000AC.02 extracted to C: Ok
16:42:25 : ODP000AC.XX extracted to C: Ok
16:42:26 : ODP001AB.XX extracted to C: Ok
16:42:26 : PBR000AB.XX extracted to C: Ok
16:42:26 : POP000AA.XX extracted to C: Ok
16:42:27 : SKY001AC.XX extracted to C: Ok
16:42:29 : SMP003AA.02 extracted to C: Ok
16:42:29 : SNP002AA.XX extracted to C: Ok
16:42:30 : SNQ001AA.XX extracted to C: Ok
16:42:30 : TOT001AA.XX extracted to C: Ok
16:42:30 : WAF000AA.XX extracted to C: Ok
16:42:30 : WAS002AA.XX extracted to C: Ok
16:42:30 : WAV000AA.XX extracted to C: Ok
16:42:30 : WAW000AA.XX extracted to C: Ok
16:42:30 : WAX000AA.XX extracted to C: Ok
16:42:35 : WAZ000AA.02 extracted to C: Ok
16:42:35 : WAZ002AA.XX extracted to C: Ok
16:42:35 : WBE000AA.XX extracted to C: Ok
16:42:56 : WBL000AA.XX extracted to C: Ok
16:42:56 : WBM001AA.XX extracted to C: Ok
16:42:56 : WCF000AA.XX extracted to C: Ok
16:42:59 : WMC000AE.XX extracted to C: Ok
16:45:17 : WOA000BC.02 extracted to C: Ok
16:45:29 : WOB000BC.02 extracted to C: Ok
16:45:29 : WPC001AE.XX extracted to C: Ok
16:45:29 : WPF001AB.XX extracted to C: Ok
16:45:29 : WPI000AA.XX extracted to C: Ok
16:45:29 : WPP000AI.02 extracted to C: Ok
16:45:31 : WPP005AI.XX extracted to C: Ok
16:45:33 : WPQ003AG.XX extracted to C: Ok
16:45:33 : WPR000AF.XX extracted to C: Ok
16:45:33 : WPS004AD.XX extracted to C: Ok
16:45:33 : WPU002AA.XX extracted to C: Ok
16:45:33 : WPV001AA.XX extracted to C: Ok
16:45:34 : WPX000AA.02 extracted to C: Ok
16:45:34 : WPX000AD.XX extracted to C: Ok
16:45:34 : WQB001AD.XX extracted to C: Ok
16:45:34 : WQC007AA.XX extracted to C: Ok
16:45:34 : WQE005AD.XX extracted to C: Ok
16:45:34 : WQU003AB.XX extracted to C: Ok
16:45:34 : WQW003AA.XX extracted to C: Ok
16:45:34 : WQZ001AE.XX extracted to C: Ok
16:45:34 : WRB001AB.XX extracted to C: Ok
16:45:34 : WRO000AC.XX extracted to C: Ok
16:45:34 : WRP001AA.XX extracted to C: Ok
16:45:34 : WRQ000AB.XX extracted to C: Ok
16:45:34 : WRS001AA.XX extracted to C: Ok
16:45:35 : WRT000AB.XX extracted to C: Ok
16:45:37 : WRV000AC.02 extracted to C: Ok
16:45:37 : WRY000AB.XX extracted to C: Ok
16:45:37 : XAA002AF.XX extracted to C: Ok
16:45:37 : ZAB004AG.XX extracted to C: Ok
16:45:37 : ZBC001AD.XX extracted to C: Ok
16:45:38 : ZBE003AF.XX extracted to C: Ok
16:45:38 : ZBJ000AO.XX extracted to C: Ok
16:45:38 : ZBM035AA.XX extracted to C: Ok
16:45:39 : ZCF001AH.XX extracted to C: Ok
16:45:40 : ZCG309AA.XX extracted to C: Ok
16:45:40 : ZGW000AA.XX extracted to C: Ok
16:45:40 : VAA002AB.XX extracted to C: Ok
16:45:40 : VAB000AB.XX extracted to C: Ok
16:45:42 : WAM000AH.02 extracted to C: Ok
16:45:44 : WAM000AI.02 extracted to C: Ok
16:45:45 : WAM007AA.XX extracted to C: Ok
16:45:45 : WAN000BC.02 extracted to C: Ok
16:45:46 : WAZ000AC.XX extracted to C: Ok
16:45:48 : WAZ001AB.XX extracted to C: Ok
16:45:48 : WBF000AA.02 extracted to C: Ok
16:45:49 : WBH003AA.XX extracted to C: Ok
16:45:50 : WPE001AE.XX extracted to C: Ok
16:45:50 : WPW004AB.XX extracted to C: Ok
16:45:51 : XGD000AC.XX extracted to C: Ok
16:45:52 : XOS000AJ.XX extracted to C: Ok
16:45:52 : XUP000AP.XX extracted to C: Ok
16:45:55 : XVG002AV.XX extracted to C: Ok
16:45:59 : XZD003AA.XX extracted to C: Ok
16:45:59 : XZJ000AB.XX extracted to C: Ok
16:45:59 : ZDV205AA.XX extracted to C: Ok
16:45:59 : ZFF026AA.XX extracted to C: Ok
16:45:59 : ZLN003AK.XX extracted to C: Ok
16:45:59 : ZMA000AA.XX extracted to C: Ok
16:45:59 : ZMV013AA.XX extracted to C: Ok
16:45:59 : Ready to upgrade from floppy
16:45:59 : Exec custom.bat:
16:45:59 : E:\custom.batLogfile of HijackThis v1.99.1
Scan saved at 22:09:58, on 21/12/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\wlancfg.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Apps\Powercinema\PCMService.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\system32\sistray.exe
C:\PROGRA~1\EUROBA~1\erobar.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\Trend Micro\Internet Security\tmproxy.exe
C:\Program Files\Trend Micro\Internet Security\Tmntsrv.exe
C:\Program Files\Trend Micro\Internet Security\PCClient.EXE
C:\Program Files\Trend Micro\Internet Security\PCCGUIDE.EXE
C:\Program Files\Trend Micro\Internet Security\TMOAgent.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\chaplain\Local Settings\Temporary Internet Files\Content.IE5\K1Q78XM7\HijackThis[1].exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eurosport.tf1.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ycomp/defaults/su/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: PBFRV2 - {4E7BD74F-2B8D-469E-A0E8-ED6AB685FA7D} - C:\WINDOWS\system32\pbfrv2.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: PBFRV2 - {4E7BD74F-2B8D-469E-A0E8-ED6AB685FA7D} - C:\WINDOWS\system32\pbfrv2.dll (file missing)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32"
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [OPSE reminder] "C:\Program Files\ScanSoft\OmniPageSE2.0\EregFre\Ereg.exe" -r "C:\Program Files\ScanSoft\OmniPageSE2.0\EregFre\ereg.ini"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security\pccguide.exe"
O4 - HKLM\..\Run: [PCClient.exe] "C:\Program Files\Trend Micro\Internet Security\PCClient.exe"
O4 - HKLM\..\Run: [TM Outbreak Agent] "C:\Program Files\Trend Micro\Internet Security\TMOAgent.exe" /run
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Sin Espias] C:\Program Files\SinEspias\No-Spy.exe /autorun
O4 - HKLM\..\Run: [stnospy] C:\Program Files\SinEspias\no-spy.exe /autorun
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [WINSOS VERIFY] "C:\Program Files\Winsos\WINSOS.EXE" MINI
O4 - Startup: Eurobarre.lnk = C:\Program Files\eurobarre\eb.exe
O4 - Startup: Moniteur & Configuration.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la Liste à Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)
O12 - Plugin for .avi: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin.dll
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {56393399-041A-4650-94C7-13DFCB1F4665} (PSFormX Control) - http://www3.ca.com/securityadvisor/pestscan/pestscan.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall.trendmicro.com/housecall/xscan53.cab
O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D38272CB} (F-Secure Online Scanner) - http://support.f-secure.com/ols/fscax.cab
O16 - DPF: {8EC69950-F299-40AC-A004-3BF5176F8F7B} (FlowScan Control) - http://www.checkspy.com/fr/FlowScan.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {E862C832-3A5F-4CEB-BFAA-167B22010A71} (InfosFinder2.InfosFinder) - http://support.packardbell.com/files/activex/InfosFinder2.CAB
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: MysqlInventime - Unknown owner - C:\Apps\INVENT~1\mysql\bin\mysqld-nt.exe
O23 - Service: Trend NT Realtime Service (Tmntsrv) - Trend Micro Incorporated. - C:\Program Files\Trend Micro\Internet Security\Tmntsrv.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Incorporated. - C:\Program Files\Trend Micro\Internet Security\tmproxy.exe
O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\WINDOWS\wlancfg.exe
voici le rapport demandé merci d'avoir répondu je ne suis pas douée
16:39:09 : Start of parts extraction
16:39:09 : 67824100.00 extracted to C: Ok
16:39:09 : 67824200.00 extracted to C: Ok
16:39:10 : 68149700.00 extracted to C: Ok
16:39:10 : ABC000DF.XX extracted to C: Ok
16:39:10 : AYU000AB.XX extracted to C: Ok
16:39:48 : BAH000AC.02 extracted to C: Ok
16:39:48 : BAI000AD.02 extracted to C: Ok
16:39:48 : BER001AA.02 extracted to C: Ok
16:40:24 : BES000AA.02 extracted to C: Ok
16:40:25 : BJK002AH.XX extracted to C: Ok
16:40:25 : BMD000DA.XX extracted to C: Ok
16:40:25 : BME000DA.XX extracted to C: Ok
16:40:29 : BMG000DB.02 extracted to C: Ok
16:40:29 : BYI003AC.XX extracted to C: Ok
16:40:29 : BYQ001AA.XX extracted to C: Ok
16:40:29 : DAT001AB.XX extracted to C: Ok
16:40:29 : PEL002GM.XX extracted to C: Ok
16:40:31 : REC000AL.XX extracted to C: Ok
16:40:43 : SON000AD.XX extracted to C: Ok
16:40:43 : AAY004AA.XX extracted to C: Ok
16:40:43 : ABA000AB.XX extracted to C: Ok
16:40:45 : ACE000AD.02 extracted to C: Ok
16:40:45 : ACZ006AC.02 extracted to C: Ok
16:40:46 : AHV000AK.02 extracted to C: Ok
16:40:58 : AHY000AJ.02 extracted to C: Ok
16:40:58 : AKK001PD.02 extracted to C: Ok
16:41:00 : AMH000AD.02 extracted to C: Ok
16:41:01 : BAM006AC.XX extracted to C: Ok
16:41:01 : BBG001AC.02 extracted to C: Ok
16:41:02 : BBX001AC.XX extracted to C: Ok
16:41:03 : BEL000AB.XX extracted to C: Ok
16:41:04 : BFE001AA.02 extracted to C: Ok
16:41:38 : BFO000AA.XX extracted to C: Ok
16:41:38 : BFV003AD.XX extracted to C: Ok
16:41:38 : BPB000AA.02 extracted to C: Ok
16:41:39 : BVB003AA.XX extracted to C: Ok
16:41:49 : CAA000AI.02 extracted to C: Ok
16:41:50 : CAF000AB.02 extracted to C: Ok
16:42:01 : CAH001AB.02 extracted to C: Ok
16:42:07 : CIN003AM.XX extracted to C: Ok
16:42:08 : DSE003AA.XX extracted to C: Ok
16:42:08 : HIS002AA.XX extracted to C: Ok
16:42:08 : HON000AA.XX extracted to C: Ok
16:42:08 : IDC005AA.XX extracted to C: Ok
16:42:08 : MET000AB.02 extracted to C: Ok
16:42:08 : MYC001AC.02 extracted to C: Ok
16:42:24 : MYI000AC.02 extracted to C: Ok
16:42:25 : ODP000AC.XX extracted to C: Ok
16:42:26 : ODP001AB.XX extracted to C: Ok
16:42:26 : PBR000AB.XX extracted to C: Ok
16:42:26 : POP000AA.XX extracted to C: Ok
16:42:27 : SKY001AC.XX extracted to C: Ok
16:42:29 : SMP003AA.02 extracted to C: Ok
16:42:29 : SNP002AA.XX extracted to C: Ok
16:42:30 : SNQ001AA.XX extracted to C: Ok
16:42:30 : TOT001AA.XX extracted to C: Ok
16:42:30 : WAF000AA.XX extracted to C: Ok
16:42:30 : WAS002AA.XX extracted to C: Ok
16:42:30 : WAV000AA.XX extracted to C: Ok
16:42:30 : WAW000AA.XX extracted to C: Ok
16:42:30 : WAX000AA.XX extracted to C: Ok
16:42:35 : WAZ000AA.02 extracted to C: Ok
16:42:35 : WAZ002AA.XX extracted to C: Ok
16:42:35 : WBE000AA.XX extracted to C: Ok
16:42:56 : WBL000AA.XX extracted to C: Ok
16:42:56 : WBM001AA.XX extracted to C: Ok
16:42:56 : WCF000AA.XX extracted to C: Ok
16:42:59 : WMC000AE.XX extracted to C: Ok
16:45:17 : WOA000BC.02 extracted to C: Ok
16:45:29 : WOB000BC.02 extracted to C: Ok
16:45:29 : WPC001AE.XX extracted to C: Ok
16:45:29 : WPF001AB.XX extracted to C: Ok
16:45:29 : WPI000AA.XX extracted to C: Ok
16:45:29 : WPP000AI.02 extracted to C: Ok
16:45:31 : WPP005AI.XX extracted to C: Ok
16:45:33 : WPQ003AG.XX extracted to C: Ok
16:45:33 : WPR000AF.XX extracted to C: Ok
16:45:33 : WPS004AD.XX extracted to C: Ok
16:45:33 : WPU002AA.XX extracted to C: Ok
16:45:33 : WPV001AA.XX extracted to C: Ok
16:45:34 : WPX000AA.02 extracted to C: Ok
16:45:34 : WPX000AD.XX extracted to C: Ok
16:45:34 : WQB001AD.XX extracted to C: Ok
16:45:34 : WQC007AA.XX extracted to C: Ok
16:45:34 : WQE005AD.XX extracted to C: Ok
16:45:34 : WQU003AB.XX extracted to C: Ok
16:45:34 : WQW003AA.XX extracted to C: Ok
16:45:34 : WQZ001AE.XX extracted to C: Ok
16:45:34 : WRB001AB.XX extracted to C: Ok
16:45:34 : WRO000AC.XX extracted to C: Ok
16:45:34 : WRP001AA.XX extracted to C: Ok
16:45:34 : WRQ000AB.XX extracted to C: Ok
16:45:34 : WRS001AA.XX extracted to C: Ok
16:45:35 : WRT000AB.XX extracted to C: Ok
16:45:37 : WRV000AC.02 extracted to C: Ok
16:45:37 : WRY000AB.XX extracted to C: Ok
16:45:37 : XAA002AF.XX extracted to C: Ok
16:45:37 : ZAB004AG.XX extracted to C: Ok
16:45:37 : ZBC001AD.XX extracted to C: Ok
16:45:38 : ZBE003AF.XX extracted to C: Ok
16:45:38 : ZBJ000AO.XX extracted to C: Ok
16:45:38 : ZBM035AA.XX extracted to C: Ok
16:45:39 : ZCF001AH.XX extracted to C: Ok
16:45:40 : ZCG309AA.XX extracted to C: Ok
16:45:40 : ZGW000AA.XX extracted to C: Ok
16:45:40 : VAA002AB.XX extracted to C: Ok
16:45:40 : VAB000AB.XX extracted to C: Ok
16:45:42 : WAM000AH.02 extracted to C: Ok
16:45:44 : WAM000AI.02 extracted to C: Ok
16:45:45 : WAM007AA.XX extracted to C: Ok
16:45:45 : WAN000BC.02 extracted to C: Ok
16:45:46 : WAZ000AC.XX extracted to C: Ok
16:45:48 : WAZ001AB.XX extracted to C: Ok
16:45:48 : WBF000AA.02 extracted to C: Ok
16:45:49 : WBH003AA.XX extracted to C: Ok
16:45:50 : WPE001AE.XX extracted to C: Ok
16:45:50 : WPW004AB.XX extracted to C: Ok
16:45:51 : XGD000AC.XX extracted to C: Ok
16:45:52 : XOS000AJ.XX extracted to C: Ok
16:45:52 : XUP000AP.XX extracted to C: Ok
16:45:55 : XVG002AV.XX extracted to C: Ok
16:45:59 : XZD003AA.XX extracted to C: Ok
16:45:59 : XZJ000AB.XX extracted to C: Ok
16:45:59 : ZDV205AA.XX extracted to C: Ok
16:45:59 : ZFF026AA.XX extracted to C: Ok
16:45:59 : ZLN003AK.XX extracted to C: Ok
16:45:59 : ZMA000AA.XX extracted to C: Ok
16:45:59 : ZMV013AA.XX extracted to C: Ok
16:45:59 : Ready to upgrade from floppy
16:45:59 : Exec custom.bat:
16:45:59 : E:\custom.batLogfile of HijackThis v1.99.1
Scan saved at 22:09:58, on 21/12/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
c:\APPS\HIDSERVICE\HIDSERVICE.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\wlancfg.exe
c:\APPS\Powercinema\Kernel\TV\CLSched.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Apps\Powercinema\PCMService.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\WINDOWS\system32\sistray.exe
C:\PROGRA~1\EUROBA~1\erobar.exe
C:\Program Files\eMule\emule.exe
C:\Program Files\Trend Micro\Internet Security\tmproxy.exe
C:\Program Files\Trend Micro\Internet Security\Tmntsrv.exe
C:\Program Files\Trend Micro\Internet Security\PCClient.EXE
C:\Program Files\Trend Micro\Internet Security\PCCGUIDE.EXE
C:\Program Files\Trend Micro\Internet Security\TMOAgent.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\chaplain\Local Settings\Temporary Internet Files\Content.IE5\K1Q78XM7\HijackThis[1].exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://eurosport.tf1.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ycomp/defaults/su/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Packard Bell
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: PBFRV2 - {4E7BD74F-2B8D-469E-A0E8-ED6AB685FA7D} - C:\WINDOWS\system32\pbfrv2.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: PBFRV2 - {4E7BD74F-2B8D-469E-A0E8-ED6AB685FA7D} - C:\WINDOWS\system32\pbfrv2.dll (file missing)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [SiSPower] Rundll32.exe SiSPower.dll,ModeAgent
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [PCMService] "c:\Apps\Powercinema\PCMService.exe"
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32"
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [OPSE reminder] "C:\Program Files\ScanSoft\OmniPageSE2.0\EregFre\Ereg.exe" -r "C:\Program Files\ScanSoft\OmniPageSE2.0\EregFre\ereg.ini"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security\pccguide.exe"
O4 - HKLM\..\Run: [PCClient.exe] "C:\Program Files\Trend Micro\Internet Security\PCClient.exe"
O4 - HKLM\..\Run: [TM Outbreak Agent] "C:\Program Files\Trend Micro\Internet Security\TMOAgent.exe" /run
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Sin Espias] C:\Program Files\SinEspias\No-Spy.exe /autorun
O4 - HKLM\..\Run: [stnospy] C:\Program Files\SinEspias\no-spy.exe /autorun
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [WINSOS VERIFY] "C:\Program Files\Winsos\WINSOS.EXE" MINI
O4 - Startup: Eurobarre.lnk = C:\Program Files\eurobarre\eb.exe
O4 - Startup: Moniteur & Configuration.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
O8 - Extra context menu item: &Traduire à partir de l'anglais - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Ajouter à la Liste à Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint Impression rapide - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Imprimer - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Easy-WebPrint Prévisualiser - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Pages liées - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Pages similaires - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Recherche &Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Version de la page actuelle disponible dans le cache Google - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)
O12 - Plugin for .avi: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin.dll
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {56393399-041A-4650-94C7-13DFCB1F4665} (PSFormX Control) - http://www3.ca.com/securityadvisor/pestscan/pestscan.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall.trendmicro.com/housecall/xscan53.cab
O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D38272CB} (F-Secure Online Scanner) - http://support.f-secure.com/ols/fscax.cab
O16 - DPF: {8EC69950-F299-40AC-A004-3BF5176F8F7B} (FlowScan Control) - http://www.checkspy.com/fr/FlowScan.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {E862C832-3A5F-4CEB-BFAA-167B22010A71} (InfosFinder2.InfosFinder) - http://support.packardbell.com/files/activex/InfosFinder2.CAB
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - c:\APPS\Powercinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: Generic Service for HID Keyboard Input Collections (GenericHidService) - Unknown owner - c:\APPS\HIDSERVICE\HIDSERVICE.exe
O23 - Service: MysqlInventime - Unknown owner - C:\Apps\INVENT~1\mysql\bin\mysqld-nt.exe
O23 - Service: Trend NT Realtime Service (Tmntsrv) - Trend Micro Incorporated. - C:\Program Files\Trend Micro\Internet Security\Tmntsrv.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Incorporated. - C:\Program Files\Trend Micro\Internet Security\tmproxy.exe
O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\WINDOWS\wlancfg.exe
voici le rapport demandé merci d'avoir répondu je ne suis pas douée
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
bjr
fixe ceci pour commencer
O16 - DPF: {56393399-041A-4650-94C7-13DFCB1F4665} (PSFormX Control) - http://www3.ca.com/securityadvisor/pestscan/pestscan.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall.trendmicro.com/housecall/xscan53.cab
O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D38272CB} (F-Secure Online Scanner) - http://support.f-secure.com/ols/fscax.cab
O16 - DPF: {8EC69950-F299-40AC-A004-3BF5176F8F7B} (FlowScan Control) - http://www.checkspy.com/fr/FlowScan.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {E862C832-3A5F-4CEB-BFAA-167B22010A71} (InfosFinder2.InfosFinder) - http://support.packardbell.com/files/activex/InfosFinder2.CAB
fixe ceci pour commencer
O16 - DPF: {56393399-041A-4650-94C7-13DFCB1F4665} (PSFormX Control) - http://www3.ca.com/securityadvisor/pestscan/pestscan.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://www.bitdefender.fr/scan8/oscan8.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2005111401/housecall.trendmicro.com/housecall/xscan53.cab
O16 - DPF: {8EB3FF4E-86A1-4717-884D-7BA2D38272CB} (F-Secure Online Scanner) - http://support.f-secure.com/ols/fscax.cab
O16 - DPF: {8EC69950-F299-40AC-A004-3BF5176F8F7B} (FlowScan Control) - http://www.checkspy.com/fr/FlowScan.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {E862C832-3A5F-4CEB-BFAA-167B22010A71} (InfosFinder2.InfosFinder) - http://support.packardbell.com/files/activex/InfosFinder2.CAB
merci cela va me servir a quoi de fixer (comment on fixe je suis nul en informatique) et que dois je faire après. Apparemment mon virus est dans un fichier du système de restauration mais je ne peux pas restaurer. Peux tu m'aider Merci
Ok,
Scanne en ligne avec bitdefender
http://www.bitdefender.fr/bd/site/page.php
et colle le rapport ici.
Bon App
A+
Scanne en ligne avec bitdefender
http://www.bitdefender.fr/bd/site/page.php
et colle le rapport ici.
Bon App
A+
re
si tu n'arrives pas à faire fonctionner BitDef
tu as d'autres choix ici
http://assiste.free.fr/p/antivirus_gratuits_en_ligne/antivirus_en_ligne.php
si tu n'arrives pas à faire fonctionner BitDef
tu as d'autres choix ici
http://assiste.free.fr/p/antivirus_gratuits_en_ligne/antivirus_en_ligne.php
bonjour,
aranjuez ne doit pas être bien loin ....
j'ai trouvé ça dans ton hijack :
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
sais-tu si ça correspond à quelque prog que tu as installé ?
parce que ça pourrait être une des sources de problèmes, mais je voudrais une confirmation par les spécialistes maison :))
-------------------------------
... WinErr 01B : Erreur illégale - Windows ne vous a pas autorisé à avoir cette erreur
aranjuez ne doit pas être bien loin ....
j'ai trouvé ça dans ton hijack :
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
sais-tu si ça correspond à quelque prog que tu as installé ?
parce que ça pourrait être une des sources de problèmes, mais je voudrais une confirmation par les spécialistes maison :))
-------------------------------
... WinErr 01B : Erreur illégale - Windows ne vous a pas autorisé à avoir cette erreur