Redémare tout seul
Résolu
vin110
Messages postés
173
Statut
Membre
-
vin110 Messages postés 173 Statut Membre -
vin110 Messages postés 173 Statut Membre -
Bonjour,
une fois sur le bureau apres avoir ouvert ma session mon ordinateur se redemare tt seul au bout de quelque seconde et j'ai une multitude d'erreurs a s'afficher
merci de bien vouloir m'aider
une fois sur le bureau apres avoir ouvert ma session mon ordinateur se redemare tt seul au bout de quelque seconde et j'ai une multitude d'erreurs a s'afficher
merci de bien vouloir m'aider
3 réponses
Salut,
Qu'elle est ton système d'exploitation ???
---------------
Il est important d’effectuer la manip dans sa totalité.
A - ad-aware version 1.06
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo
http://pageperso.aol.fr/balltrap34/adwseflash.zip
B - spybot version 1.4
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo d utilisation
http://pageperso.aol.fr/Balltrap34/demo%20spybot.htm
C - Ccleaner : ( nettoyeur de registre, cookies+temps+tempos+prefetch+historique+etc..)
Télécharge ici :
https://www.ccleaner.com/ccleaner/download
Tutorial ici:
https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php
D - Ewido (download)- gratuit même après 14 jours d’essai
http://perso.wanadoo.fr/entraide-hijackthis/Ewido/
Copie/COLLE le rapport généré sur ce forum
Pour certaines versions de Windows antérieures à XP, Ewido peut ne pas être compatible
Dans ce cas, il te faudra utiliser a-squared free et demander une clef pour son usage gratuit
https://www.emsisoft.com/fr/
E - Scan online avec BitDefender (fonctionne uniquement sous Internet Explorer en acceptant l’ activX)
https://assiste.com/404_La_page_demandee_n_existe_pas.php
http://www.bitdefender.fr/scan8/ie.html
Copie/COLLE le rapport entier
F - Hijackthis - Outil de diagnostic et réparation
lire démo
http://pageperso.aol.fr/balltrap34/Hijenr.gif
http://pageperso.aol.fr/balltrap34/demohijack.htm
Télécharge version française ici
http://telechargement.zebulon.fr/160-patch-francais-pour-hijackthis-1991.html
Copie/colle le rapport
Bon courage
A++
A++
Qu'elle est ton système d'exploitation ???
---------------
Il est important d’effectuer la manip dans sa totalité.
A - ad-aware version 1.06
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo
http://pageperso.aol.fr/balltrap34/adwseflash.zip
B - spybot version 1.4
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo d utilisation
http://pageperso.aol.fr/Balltrap34/demo%20spybot.htm
C - Ccleaner : ( nettoyeur de registre, cookies+temps+tempos+prefetch+historique+etc..)
Télécharge ici :
https://www.ccleaner.com/ccleaner/download
Tutorial ici:
https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php
D - Ewido (download)- gratuit même après 14 jours d’essai
http://perso.wanadoo.fr/entraide-hijackthis/Ewido/
Copie/COLLE le rapport généré sur ce forum
Pour certaines versions de Windows antérieures à XP, Ewido peut ne pas être compatible
Dans ce cas, il te faudra utiliser a-squared free et demander une clef pour son usage gratuit
https://www.emsisoft.com/fr/
E - Scan online avec BitDefender (fonctionne uniquement sous Internet Explorer en acceptant l’ activX)
https://assiste.com/404_La_page_demandee_n_existe_pas.php
http://www.bitdefender.fr/scan8/ie.html
Copie/COLLE le rapport entier
F - Hijackthis - Outil de diagnostic et réparation
lire démo
http://pageperso.aol.fr/balltrap34/Hijenr.gif
http://pageperso.aol.fr/balltrap34/demohijack.htm
Télécharge version française ici
http://telechargement.zebulon.fr/160-patch-francais-pour-hijackthis-1991.html
Copie/colle le rapport
Bon courage
A++
A++
Salut
MARIE comment veux tu qu'il fasse cela , alors que son pc redémare au bout de quelques secondes ????????
C'est joli tes copier /coller mais lis les messages avant
déja quand le pc arrive sur le bureau faire le plus vite possible
Démarrer > executer > et taper shutdown -a
cela peu éviter l'arret du pc seulement ensuite si ton pc ne s'arrte pas tu pourras faire ce que t'as dis Marie
bon courage
MARIE comment veux tu qu'il fasse cela , alors que son pc redémare au bout de quelques secondes ????????
C'est joli tes copier /coller mais lis les messages avant
déja quand le pc arrive sur le bureau faire le plus vite possible
Démarrer > executer > et taper shutdown -a
cela peu éviter l'arret du pc seulement ensuite si ton pc ne s'arrte pas tu pourras faire ce que t'as dis Marie
bon courage
merci de m'aider c sympa
voila le rapport de bitdefender:
C:\Documents and Settings\fujitsu-siemens\Local Settings\Temp\Del3.tmp
Suspected of: Generic.Malware.Yk.CE024371
C:\Documents and Settings\fujitsu-siemens\Local Settings\Temp\Del3.tmp
Disinfection failed
C:\Documents and Settings\fujitsu-siemens\Local Settings\Temp\Del3.tmp
Deleted
C:\Documents and Settings\kevin\Local Settings\Temporary Internet Files\Content.IE5\A3Y3292J\SysWebTelecomInt[1].cab=>SysWebTelecomInt.dll
Infected with: Trojan.Dialer.FU
C:\Documents and Settings\kevin\Local Settings\Temporary Internet Files\Content.IE5\A3Y3292J\SysWebTelecomInt[1].cab=>SysWebTelecomInt.dll
Deleted
C:\Documents and Settings\kevin\Local Settings\Temporary Internet Files\Content.IE5\A3Y3292J\SysWebTelecomInt[1].cab
Update failed
C:\Program Files\LocalProxy\proxy4free.exe
Infected with: Trojan.Dialer.DW
C:\Program Files\LocalProxy\proxy4free.exe
Disinfection failed
C:\Program Files\LocalProxy\proxy4free.exe
Deleted
C:\Program Files\MailSkinner\MailSkinner.exe
Infected with: Trojan.Mailskinner.A
C:\Program Files\MailSkinner\MailSkinner.exe
Disinfection failed
C:\Program Files\MailSkinner\MailSkinner.exe
Delete failed
C:\Program Files\REAL\realjbox.exe
Infected with: Trojan.Dialer.DW
C:\Program Files\REAL\realjbox.exe
Disinfection failed
C:\Program Files\REAL\realjbox.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP241\A0070442.dll
Infected with: Trojan.Wintrim.E
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP241\A0070442.dll
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP241\A0070442.dll
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP245\A0072616.dll
Infected with: Trojan.Wintrim.E
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP245\A0072616.dll
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP245\A0072616.dll
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073589.exe
Infected with: Trojan.Swizzor.AX
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073589.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073589.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073590.exe
Infected with: Trojan.Swizzor.AX
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073590.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073590.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073591.exe
Infected with: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073591.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073591.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073592.exe
Infected with: Trojan.Downloader.Swizzor.DE
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073592.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073592.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073593.exe
Infected with: GenPack:Trojan.Downloader.Swizzor.DB
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073593.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073593.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073594.exe
Infected with: Trojan.Downloader.Swizzor.DV
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073594.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073594.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073595.exe
Infected with: GenPack:Trojan.Swizzor.BF
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073595.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073595.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073596.exe
Infected with: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073596.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073596.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073597.exe
Infected with: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073597.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073597.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073598.exe
Infected with: Trojan.Swizzor.BA
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073598.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073598.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073599.exe
Infected with: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073599.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073599.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073600.exe
Infected with: GenPack:Trojan.Swizzor.BF
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073600.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073600.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073601.exe
Infected with: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073601.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073601.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073602.exe
Infected with: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073602.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073602.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073603.exe
Infected with: Trojan.Swizzor.CZ
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073603.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073603.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073604.exe
Infected with: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073604.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073604.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073605.exe
Infected with: Trojan.Swizzor.CK
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073605.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073605.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073606.exe
Infected with: GenPack:Trojan.Swizzor.GI
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073606.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP247\A0073606.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP260\A0093027.exe
Infected with: Trojan.Dialer.DW
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP260\A0093027.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP260\A0093027.exe
Deleted
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP260\A0093028.exe
Infected with: Trojan.Dialer.DW
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP260\A0093028.exe
Disinfection failed
C:\System Volume Information\_restore{6ACEE61E-4F08-4B2C-98C7-E8990A342611}\RP260\A0093028.exe
Deleted
C:\System Volume Information\_restore{A0B8E2F5-8ECA-4AA3-9B80-74034D69BBAA}\RP122\A0090488.exe
Infected with: Trojan.Lazar.A
C:\System Volume Information\_restore{A0B8E2F5-8ECA-4AA3-9B80-74034D69BBAA}\RP122\A0090488.exe
Disinfection failed
C:\System Volume Information\_restore{A0B8E2F5-8ECA-4AA3-9B80-74034D69BBAA}\RP122\A0090488.exe
Deleted
C:\System Volume Information\_restore{A0B8E2F5-8ECA-4AA3-9B80-74034D69BBAA}\RP122\A0090489.exe
Infected with: Trojan.Lazar.A
C:\System Volume Information\_restore{A0B8E2F5-8ECA-4AA3-9B80-74034D69BBAA}\RP122\A0090489.exe
Disinfection failed
C:\System Volume Information\_restore{A0B8E2F5-8ECA-4AA3-9B80-74034D69BBAA}\RP122\A0090489.exe
Deleted
C:\System Volume Information\_restore{A0B8E2F5-8ECA-4AA3-9B80-74034D69BBAA}\RP122\A0091209.exe
Infected with: Trojan.Lazar.A
C:\System Volume Information\_restore{A0B8E2F5-8ECA-4AA3-9B80-74034D69BBAA}\RP122\A0091209.exe
Disinfection failed
C:\System Volume Information\_restore{A0B8E2F5-8ECA-4AA3-9B80-74034D69BBAA}\RP122\A0091209.exe
Deleted
C:\WINDOWS\zip1.tmp=>(BASE64)
Infected with: Win32.Netsky.P@mm
C:\WINDOWS\zip1.tmp=>(BASE64)
Deleted
C:\WINDOWS\zip2.tmp=>(BASE64)
Infected with: Win32.Netsky.P@mm
C:\WINDOWS\zip2.tmp=>(BASE64)
Deleted
C:\WINDOWS\zip3.tmp=>(BASE64)
Infected with: Win32.Netsky.P@mm
C:\WINDOWS\zip3.tmp=>(BASE64)
Deleted
et le rapport hijackthis:
C:\WINDOWS.0\System32\smss.exe
C:\WINDOWS.0\System32\winlogon.exe
C:\WINDOWS.0\system32\services.exe
C:\WINDOWS.0\system32\lsass.exe
C:\WINDOWS.0\system32\svchost.exe
C:\WINDOWS.0\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
C:\WINDOWS.0\system32\spoolsv.exe
C:\WINDOWS.0\Explorer.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS.0\system32\slserv.exe
C:\WINDOWS.0\SOUNDMAN.EXE
C:\WINDOWS.0\System32\spool\DRIVERS\W32X86\3\E_FATI9BE.EXE
C:\Program Files\MessengerPlus! 3\MsgPlus.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\SurfAccuracy\SAcc.exe
C:\Program Files\Java\jre1.5.0\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\windows.0\system32\etgrsmdh.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Wanadoo\TaskBarIcon.exe
C:\WINDOWS.0\System32\svchost.exe
C:\program files\mailskinner\mailskinner.exe
C:\PROGRA~1\PANICW~1\POP-UP~1\PSFree.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\wkcalrem.exe
C:\PROGRA~1\Wanadoo\EspaceWanadoo.exe
C:\PROGRA~1\Wanadoo\ComComp.exe
C:\PROGRA~1\Wanadoo\PollingModule.exe
C:\PROGRA~1\Wanadoo\Watch.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS.0\System32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS.0\System32\dwwin.exe
C:\Program Files\Star Downloader\stardown.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.mfzqidmixwjjpobhakilmw.org/DCJV1OCO40gQTdbf4PB27bDoAk0_hId44e7CQqKkcOT...
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.htwvaanebpfbitqudjy.com/DCJV1OCO40gUarv1nF_kaWmVPlsQxfYXHXvChC4amZE.cgi
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Wanadoo
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Search Class - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - C:\PROGRA~1\Wanadoo\SEARCH~1.DLL
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_5_7_0.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - C:\Program Files\Microsoft Money\System\mnyviewer.dll
O2 - BHO: (no name) - {FFFFFEF0-5B30-21D4-945D-000000000000} - C:\PROGRA~1\STARDO~1\SDIEInt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS.0\System32\msdxm.ocx
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_5_7_0.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [WinProfile] sndcfg16.exe
O4 - HKLM\..\Run: [ATIPTA] atiptaxx.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [EPSON Stylus CX3600 Series] C:\WINDOWS.0\System32\spool\DRIVERS\W32X86\3\E_FATI9BE.EXE /P26 "EPSON Stylus CX3600 Series" /O6 "USB001" /M "Stylus CX3600"
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [SCANINICIO] "C:\Program Files\Panda Software\Panda Antivirus Platinum\Inicio.exe"
O4 - HKLM\..\Run: [APVXDWIN] "C:\Program Files\Panda Software\Panda Antivirus Platinum\APVXDWIN.EXE" /s
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS.0\system32\NeroCheck.exe
O4 - HKLM\..\Run: [WorksFUD] C:\Program Files\Microsoft Works\wkfud.exe
O4 - HKLM\..\Run: [Microsoft Works Portfolio] C:\Program Files\Microsoft Works\WksSb.exe /AllUsers
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Fichiers communs\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [MoneyStartUp10.0] "C:\Program Files\Microsoft Money\System\Activation.exe"
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Fichiers communs\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [SurfAccuracy] C:\Program Files\SurfAccuracy\SAcc.exe
O4 - HKLM\..\Run: [WOOWATCH] C:\PROGRA~1\Wanadoo\Watch.exe
O4 - HKLM\..\Run: [WOOTASKBARICON] C:\PROGRA~1\Wanadoo\GestMaj.exe TaskBarIcon.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0\bin\jusched.exe
O4 - HKLM\..\Run: [BearShare] "C:\Program Files\BearShare\BearShare.exe" /pause
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [etgrsmdh] c:\windows.0\system32\etgrsmdh.exe etgrsmdh
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\RunServices: [WinProfile] sndcfg16.exe
O4 - HKCU\..\Run: [Army heart] C:\DOCUME~1\SYLVAI~1\APPLIC~1\MFCDTH~1\Bin Trust.exe
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [Instant Access] rundll32.exe p2esocks_1047.dll,InstantAccess
O4 - HKCU\..\Run: [Registry Cleaner] "C:\Program Files\TPT Registry_Cleaner (Trial)\regclean.exe"
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Rappels du Calendrier Microsoft Works.lnk = ?
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O8 - Extra context menu item: Télécharger avec Star Downloader - C:\Program Files\Star Downloader\sdie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0\bin\npjpi150.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyviewer.dll
O9 - Extra button: Wanadoo - {1462651F-F4BA-4C76-A001-C4284D0FE16E} - https://www.orange.fr/portail (file missing) (HKCU)
O16 - DPF: Interface Chat Wanadoo - http://chat10.x-echo.com/version6/Applet/wchatsign.cab
O16 - DPF: teleir_cert - https://static.ir.dgi.minefi.gouv.fr/secure/connexion/archives/ie4n4/teleir_cert.cab
O16 - DPF: Yahoo! Dominoes - http://download.games.yahoo.com/games/clients/y/dot8_x.cab
O16 - DPF: Yahoo! Pool 2 - http://download.games.yahoo.com/games/clients/y/pote_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {04CCFF26-7D52-4E42-BF6A-F8ECE0896EB7} - https://www.afternic.com/domains/downloadv3.com
O16 - DPF: {127698E4-E730-4E5C-A2B1-21490A70C8A1} (CEnroll Class) - https://static.impots.gouv.fr/abos/securite/xenroll.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {24311111-1111-1121-1111-111191113457} - file://c:\eied_s7.cab
O16 - DPF: {31DDC1FD-CEA3-4837-A6DC-87E67015ADC9} - https://www.afternic.com/domains/downloadv3.com
O16 - DPF: {33331111-1111-1111-1111-611111193457} - file://c:\ex.cab
O16 - DPF: {3DAD912E-D2B9-4323-B7C9-7F2C5CC0C57B} - https://www.afternic.com/domains/downloadv3.com
O16 - DPF: {43331111-1111-1111-1111-611111195622} - file://c:\ex.cab
O16 - DPF: {511F9316-771B-4953-A268-1C36DA667FE9} (SponsorAdulto Class) - http://ip.sponsoradulto.com/cab/3/fr/SysWebTelecomInt.cab
O16 - DPF: {54C75FB0-6B8B-4278-BF7B-77036F15A69E} - https://www.afternic.com/domains/downloadv3.com
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6AA85413-165C-4200-8154-71166077B22E} - https://www.afternic.com/domains/downloadv3.com
O16 - DPF: {71CBDCD9-0830-4470-A890-35D364DA352C} - https://www.afternic.com/domains/downloadv3.com
O16 - DPF: {867E13F2-7F31-44FB-AC97-CD38E0DC46EF} (HardwareDetection Control) - http://drivers1.free.fr/hardwaredetection.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {9059F30F-4EB1-4BD2-9FDC-36F43A218F4A} (Microsoft RDP Client Control (redist)) - http://tsweb.mhcpc.com/tsweb/msrdp.cab
O16 - DPF: {B2B0AEDF-7CDF-4792-BB67-7654AD1E1B13} - https://www.afternic.com/domains/downloadv3.com
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - https://zone.msn.com/en/utility/handler404.aspx?404;http://zone.msn.com:80/binFramework/v10/ZIntro.cab34246.cab
O16 - DPF: {DECEAAA2-370A-49BB-9362-68C3A58DDC62} (SAIX) - http://static.zangocash.com/cab/Seekmo/ie/bridge-c9.cab?ae1c4527a33a11031c936f548...
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSetMgr.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Panda Firewall Service (PAVFIRES) - Panda Software - C:\Program Files\Panda Software\Panda Antivirus Platinum\Firewall\PavFires.exe
O23 - Service: Panda anti-virus service (PAVSRV) - Panda Software - C:\Program Files\Panda Software\Panda Antivirus Platinum\pavsrv51.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS.0\SYSTEM32\slserv.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Service de lancement de WlanCfg (Wlancfg) - Inventel - C:\Program Files\Inventel\Gateway\wlancfg.exe