Aide pour system doctor
melanie
-
^^Marie^^ Messages postés 126523 Date d'inscription Statut Membre Dernière intervention -
^^Marie^^ Messages postés 126523 Date d'inscription Statut Membre Dernière intervention -
bonjour, comme beaucoup de monde je vois, j'ai un problème avec systm doctor, je ne peux pas visualiser cetaines page car j'ai un message d'erreur. je n'arrive pas a m'en débarrasser et je ne sais pas quoi faire. j'aimerai bien que quelqu'un m'aide s'il sait comment faire. merci beaucoup.
A voir également:
- Aide pour system doctor
- Reboot system now - Guide
- Pc doctor - Télécharger - Optimisation
- Spyware doctor - Télécharger - Antivirus & Antimalwares
- Cette action ne peut pas être réalisée car le fichier est ouvert dans system - Guide
- Disk doctor - Télécharger - Récupération de données
6 réponses
Salut melanie
Télécharge Blacklight (de F-Secure) a l’une des 2 adresses :
https://www.f-secure.com/en
https://www.f-secure.com/en
et sauvegarde le sur ton Bureau.
Double-clique blbeta.exe et accepte la licence ; laisse [X]scan through Windows Explorer activé ; clique Scan puis Next
Tu verras une liste de fichiers détectés apparaître. Tu verras également un rapport, sur ton Bureau, nommé fsbl.xxxxxxx.log (les xxxxxxx sont des chiffres).
Copie et colle le contenu de ce rapport dans ta prochaine réponse
a+
Télécharge Blacklight (de F-Secure) a l’une des 2 adresses :
https://www.f-secure.com/en
https://www.f-secure.com/en
et sauvegarde le sur ton Bureau.
Double-clique blbeta.exe et accepte la licence ; laisse [X]scan through Windows Explorer activé ; clique Scan puis Next
Tu verras une liste de fichiers détectés apparaître. Tu verras également un rapport, sur ton Bureau, nommé fsbl.xxxxxxx.log (les xxxxxxx sont des chiffres).
Copie et colle le contenu de ce rapport dans ta prochaine réponse
a+
Salut,
Beaucoup de cookies, donc pas grave
Ewido == > no action taken ==> faut le refaire
Fais ce qui suit
C - Ccleaner : ( nettoyeur de registre, cookies+temps+tempos+prefetch+historique+etc..)
Télécharge ici :
https://www.ccleaner.com/ccleaner/download
Tutorial ici:
https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php
D – Ewido
https://www.malekal.com/tutorial-et-guide-ewido-v4/
ou
http://www.infos-du-net.com/telecharger/Ewido-Anti-Malware.html
Mets le à jour en cliquant update now.
Fais un "complete system scan".
A la fin du scan, vérifie qu'il y est bien marqué "delete à côté de chaque malware et clique seulement sur : "Apply all actions"
Ensuite, clique sur "Save Report " puis "Save report as" et sauve le rapport dans tes documents.
Copie/colle le rapport
A++
Beaucoup de cookies, donc pas grave
Ewido == > no action taken ==> faut le refaire
Fais ce qui suit
C - Ccleaner : ( nettoyeur de registre, cookies+temps+tempos+prefetch+historique+etc..)
Télécharge ici :
https://www.ccleaner.com/ccleaner/download
Tutorial ici:
https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php
D – Ewido
https://www.malekal.com/tutorial-et-guide-ewido-v4/
ou
http://www.infos-du-net.com/telecharger/Ewido-Anti-Malware.html
Mets le à jour en cliquant update now.
Fais un "complete system scan".
A la fin du scan, vérifie qu'il y est bien marqué "delete à côté de chaque malware et clique seulement sur : "Apply all actions"
Ensuite, clique sur "Save Report " puis "Save report as" et sauve le rapport dans tes documents.
Copie/colle le rapport
A++
voila le scan avec ewido:
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 20:16:24 28/08/2006
+ Scan result:
C:\Program Files\Safety Bar -> Adware.Generic : Cleaned.
C:\Program Files\Safety Bar\Uninstall.bat -> Adware.Generic : Error during cleaning.
HKLM\SOFTWARE\Classes\CLSID\{052b12f7-86fa-4921-8482-26c42316b522} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Classes\CLSID\{873eb32d-ae1a-4183-89bd-45a77f761be4} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{052b12f7-86fa-4921-8482-26c42316b522} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{873eb32d-ae1a-4183-89bd-45a77f761be4} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Safety Bar -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ISTbarISTbar -> Adware.HotBar : Cleaned.
C:\Program Files\ISTbar -> Adware.ISTBar : Cleaned.
C:\Program Files\ISTbar\istbar.dll -> Adware.ISTBar : Error during cleaning.
C:\Program Files\ISTbar\navmain.bmp -> Adware.ISTBar : Cleaned.
C:\Program Files\ISTbar\search.bmp -> Adware.ISTBar : Cleaned.
C:\Program Files\ISTbar\version_xml.php -> Adware.ISTBar : Cleaned.
C:\Program Files\ISTbar\xml_istbar.php -> Adware.ISTBar : Cleaned.
C:\Program Files\ISTsvc -> Adware.ISTBar : Cleaned.
HKLM\SOFTWARE\Classes\Pugi.PugiObj -> Adware.ISTBar : Cleaned.
HKLM\SOFTWARE\Classes\Pugi.PugiObj.1 -> Adware.ISTBar : Cleaned.
HKLM\SOFTWARE\Classes\Pugi.PugiObj\CLSID -> Adware.ISTBar : Cleaned.
HKLM\SOFTWARE\Classes\Pugi.PugiObj\CurVer -> Adware.ISTBar : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ISTbarISTbar -> Adware.ISTBar : Cleaned.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\IST -> Adware.ISTBar : Cleaned.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\ISTbar -> Adware.ISTBar : Cleaned.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\ISTbar\ISTbar -> Adware.ISTBar : Cleaned.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\ISTbar\ISTbar\Historyfiles -> Adware.ISTBar : Cleaned.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\ISTbar\ISTbar\Historys1 -> Adware.ISTBar : Cleaned.
C:\Documents and Settings\aaa\Menu Démarrer\Programmes\Power Scan -> Adware.PowerScan : Cleaned.
C:\Documents and Settings\aaa\Menu Démarrer\Programmes\Power Scan\Power Scan.lnk -> Adware.PowerScan : Cleaned.
C:\Program Files\Power Scan -> Adware.PowerScan : Cleaned.
C:\Program Files\Power Scan\powerscan.exe -> Adware.PowerScan : Cleaned.
C:\Program Files\Power Scan\uninstall.exe -> Adware.PowerScan : Cleaned.
HKLM\SOFTWARE\PowerScan -> Adware.PowerScan : Cleaned.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\PowerScan -> Adware.PowerScan : Cleaned.
C:\Program Files\SpyQuake2.com -> Adware.SpywareQuake : Cleaned.
C:\Program Files\SpyQuake2.com\sq.ini -> Adware.SpywareQuake : Cleaned.
C:\Program Files\Fichiers communs\WinFixer 2005\FCrXML.dll -> Adware.Winfixer : Cleaned.
HKLM\SOFTWARE\Classes\YSBactivex.Installer -> Adware.YourSiteBar : Cleaned.
HKLM\SOFTWARE\Classes\YSBactivex.Installer\CLSID -> Adware.YourSiteBar : Cleaned.
C:\WINDOWS\Downloaded Program Files\UERSV_0001_LPNetInstaller.exe -> Not-A-Virus.Downloader.Win32.Agent.d : Cleaned.
C:\WINDOWS\Downloaded Program Files\UWFX5V_0001_N57M1412NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.b : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@247realmedia[2].txt -> TrackingCookie.247realmedia : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@microsofteup.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@pinnaclesystems.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@redcats.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@sfr.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@rotator.adjuggler[1].txt -> TrackingCookie.Adjuggler : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@z1.adserver[1].txt -> TrackingCookie.Adserver : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@advertising[2].txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\aaa\Local Settings\Temp\Cookies\aaa@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@www.belstat[3].txt -> TrackingCookie.Belstat : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@bfast[1].txt -> TrackingCookie.Bfast : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@iv2.bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@casalemedia[2].txt -> TrackingCookie.Casalemedia : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@casinotropez[2].txt -> TrackingCookie.Casinotropez : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@clickbank[1].txt -> TrackingCookie.Clickbank : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@cz11.clickzs[1].txt -> TrackingCookie.Clickzs : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@cz4.clickzs[1].txt -> TrackingCookie.Clickzs : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@cz9.clickzs[2].txt -> TrackingCookie.Clickzs : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@vip.clickzs[1].txt -> TrackingCookie.Clickzs : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@com[2].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wfk4umcjigo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wflokjczmho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wflosmdjwko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wfmyokazoco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wgkyclc5gcq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wgl4okczklq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wgmialcjikp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wgmigidpaho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wjkoaic5ado.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wjkywoajseo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wjmiokazgho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wjmygic5oko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@estat[1].txt -> TrackingCookie.Estat : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@banner.goldenpalace[2].txt -> TrackingCookie.Goldenpalace : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@goldenpalace[1].txt -> TrackingCookie.Goldenpalace : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@www.goldenpalace[1].txt -> TrackingCookie.Goldenpalace : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-dig.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-francetel.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-noven.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-playboy.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-sonyesolutions.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@hg1.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ivwbox[1].txt -> TrackingCookie.Ivwbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@server.iad.liveperson[1].txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@image.masterstats[1].txt -> TrackingCookie.Masterstats : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@mediaplex[2].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@overture[2].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@qksrv[1].txt -> TrackingCookie.Qksrv : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@bs.serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@cs.sexcounter[2].txt -> TrackingCookie.Sexcounter : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@sexlist[1].txt -> TrackingCookie.Sexlist : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@counter14.sextracker[1].txt -> TrackingCookie.Sextracker : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@counter2.sextracker[1].txt -> TrackingCookie.Sextracker : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@login.tracking101[1].txt -> TrackingCookie.Tracking101 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@trafficmp[2].txt -> TrackingCookie.Trafficmp : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@valueclick[2].txt -> TrackingCookie.Valueclick : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@vegasred[1].txt -> TrackingCookie.Vegasred : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@blackbox.weborama[1].txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@weborama[1].txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\aaa\Local Settings\Temp\Cookies\aaa@weborama[2].txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
::Report end
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 20:16:24 28/08/2006
+ Scan result:
C:\Program Files\Safety Bar -> Adware.Generic : Cleaned.
C:\Program Files\Safety Bar\Uninstall.bat -> Adware.Generic : Error during cleaning.
HKLM\SOFTWARE\Classes\CLSID\{052b12f7-86fa-4921-8482-26c42316b522} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Classes\CLSID\{873eb32d-ae1a-4183-89bd-45a77f761be4} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{052b12f7-86fa-4921-8482-26c42316b522} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{873eb32d-ae1a-4183-89bd-45a77f761be4} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Safety Bar -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ISTbarISTbar -> Adware.HotBar : Cleaned.
C:\Program Files\ISTbar -> Adware.ISTBar : Cleaned.
C:\Program Files\ISTbar\istbar.dll -> Adware.ISTBar : Error during cleaning.
C:\Program Files\ISTbar\navmain.bmp -> Adware.ISTBar : Cleaned.
C:\Program Files\ISTbar\search.bmp -> Adware.ISTBar : Cleaned.
C:\Program Files\ISTbar\version_xml.php -> Adware.ISTBar : Cleaned.
C:\Program Files\ISTbar\xml_istbar.php -> Adware.ISTBar : Cleaned.
C:\Program Files\ISTsvc -> Adware.ISTBar : Cleaned.
HKLM\SOFTWARE\Classes\Pugi.PugiObj -> Adware.ISTBar : Cleaned.
HKLM\SOFTWARE\Classes\Pugi.PugiObj.1 -> Adware.ISTBar : Cleaned.
HKLM\SOFTWARE\Classes\Pugi.PugiObj\CLSID -> Adware.ISTBar : Cleaned.
HKLM\SOFTWARE\Classes\Pugi.PugiObj\CurVer -> Adware.ISTBar : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ISTbarISTbar -> Adware.ISTBar : Cleaned.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\IST -> Adware.ISTBar : Cleaned.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\ISTbar -> Adware.ISTBar : Cleaned.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\ISTbar\ISTbar -> Adware.ISTBar : Cleaned.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\ISTbar\ISTbar\Historyfiles -> Adware.ISTBar : Cleaned.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\ISTbar\ISTbar\Historys1 -> Adware.ISTBar : Cleaned.
C:\Documents and Settings\aaa\Menu Démarrer\Programmes\Power Scan -> Adware.PowerScan : Cleaned.
C:\Documents and Settings\aaa\Menu Démarrer\Programmes\Power Scan\Power Scan.lnk -> Adware.PowerScan : Cleaned.
C:\Program Files\Power Scan -> Adware.PowerScan : Cleaned.
C:\Program Files\Power Scan\powerscan.exe -> Adware.PowerScan : Cleaned.
C:\Program Files\Power Scan\uninstall.exe -> Adware.PowerScan : Cleaned.
HKLM\SOFTWARE\PowerScan -> Adware.PowerScan : Cleaned.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\PowerScan -> Adware.PowerScan : Cleaned.
C:\Program Files\SpyQuake2.com -> Adware.SpywareQuake : Cleaned.
C:\Program Files\SpyQuake2.com\sq.ini -> Adware.SpywareQuake : Cleaned.
C:\Program Files\Fichiers communs\WinFixer 2005\FCrXML.dll -> Adware.Winfixer : Cleaned.
HKLM\SOFTWARE\Classes\YSBactivex.Installer -> Adware.YourSiteBar : Cleaned.
HKLM\SOFTWARE\Classes\YSBactivex.Installer\CLSID -> Adware.YourSiteBar : Cleaned.
C:\WINDOWS\Downloaded Program Files\UERSV_0001_LPNetInstaller.exe -> Not-A-Virus.Downloader.Win32.Agent.d : Cleaned.
C:\WINDOWS\Downloaded Program Files\UWFX5V_0001_N57M1412NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.b : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@247realmedia[2].txt -> TrackingCookie.247realmedia : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@microsofteup.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@pinnaclesystems.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@redcats.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@sfr.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@rotator.adjuggler[1].txt -> TrackingCookie.Adjuggler : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@z1.adserver[1].txt -> TrackingCookie.Adserver : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@advertising[2].txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\aaa\Local Settings\Temp\Cookies\aaa@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@www.belstat[3].txt -> TrackingCookie.Belstat : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@bfast[1].txt -> TrackingCookie.Bfast : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@iv2.bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@casalemedia[2].txt -> TrackingCookie.Casalemedia : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@casinotropez[2].txt -> TrackingCookie.Casinotropez : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@clickbank[1].txt -> TrackingCookie.Clickbank : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@cz11.clickzs[1].txt -> TrackingCookie.Clickzs : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@cz4.clickzs[1].txt -> TrackingCookie.Clickzs : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@cz9.clickzs[2].txt -> TrackingCookie.Clickzs : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@vip.clickzs[1].txt -> TrackingCookie.Clickzs : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@com[2].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wfk4umcjigo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wflokjczmho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wflosmdjwko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wfmyokazoco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wgkyclc5gcq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wgl4okczklq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wgmialcjikp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wgmigidpaho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wjkoaic5ado.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wjkywoajseo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wjmiokazgho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wjmygic5oko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@estat[1].txt -> TrackingCookie.Estat : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@banner.goldenpalace[2].txt -> TrackingCookie.Goldenpalace : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@goldenpalace[1].txt -> TrackingCookie.Goldenpalace : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@www.goldenpalace[1].txt -> TrackingCookie.Goldenpalace : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-dig.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-francetel.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-noven.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-playboy.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-sonyesolutions.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@hg1.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ivwbox[1].txt -> TrackingCookie.Ivwbox : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@server.iad.liveperson[1].txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@image.masterstats[1].txt -> TrackingCookie.Masterstats : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@mediaplex[2].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@overture[2].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@qksrv[1].txt -> TrackingCookie.Qksrv : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@bs.serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@cs.sexcounter[2].txt -> TrackingCookie.Sexcounter : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@sexlist[1].txt -> TrackingCookie.Sexlist : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@counter14.sextracker[1].txt -> TrackingCookie.Sextracker : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@counter2.sextracker[1].txt -> TrackingCookie.Sextracker : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@login.tracking101[1].txt -> TrackingCookie.Tracking101 : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@trafficmp[2].txt -> TrackingCookie.Trafficmp : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@valueclick[2].txt -> TrackingCookie.Valueclick : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@vegasred[1].txt -> TrackingCookie.Vegasred : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@blackbox.weborama[1].txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@weborama[1].txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\aaa\Local Settings\Temp\Cookies\aaa@weborama[2].txt -> TrackingCookie.Weborama : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
::Report end
bonjour marie merci a toi aussi de m'aider... j'ai fait update dans ewido mais aucune mise a jour se fait c'est la version 4.0 qui est installée. je suis en train de faire l'analyse complète a nouveau. a tout a l'heure merci....
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
Re,
Pour Ewido tu l'as au <3>, n'oublies pas de faire CCleaner avant. Merci
F - Hijackthis - Outil de diagnostic et réparation
lire démo
http://pageperso.aol.fr/balltrap34/Hijenr.gif
http://pageperso.aol.fr/balltrap34/demohijack.htm
Télécharge version française ici
http://telechargement.zebulon.fr/160-patch-francais-pour-hijackthis-1991.html
Copie/colle le rapport
Bon courage
A++
Pour Ewido tu l'as au <3>, n'oublies pas de faire CCleaner avant. Merci
F - Hijackthis - Outil de diagnostic et réparation
lire démo
http://pageperso.aol.fr/balltrap34/Hijenr.gif
http://pageperso.aol.fr/balltrap34/demohijack.htm
Télécharge version française ici
http://telechargement.zebulon.fr/160-patch-francais-pour-hijackthis-1991.html
Copie/colle le rapport
Bon courage
A++
voici mon hijackthis:
Logfile of HijackThis v1.99.1
Scan saved at 11:38:55, on 30/08/2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Autodata Limited Shared\Service\ADCDLicSvc.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\VeriSign\NAVI\naviagent.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINDOWS\System32\rmctrl.exe
C:\Program Files\Softwin\BitDefender9\bdoesrv.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\program files\softwin\bitdefender9\bdswitch.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
C:\Program Files\Softwin\BitDefender9\vsserv.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\CCleaner\ccleaner.exe
C:\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://portail.free.fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://portail.free.fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: i-Nav IDN SearchHook - {CE000994-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {873eb32d-ae1a-4183-89bd-45a77f761be4} - C:\WINDOWS\System32\ixt0.dll (file missing)
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: i-Nav IDN Resolver - {CE000992-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: ISTbar - {5F1ABCDB-A875-46c1-8345-B72A4567E486} - C:\Program Files\ISTbar\istbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Safety Bar - {052b12f7-86fa-4921-8482-26c42316b522} - C:\Program Files\Safety Bar\Safety Bar.dll (file missing)
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
O4 - HKLM\..\Run: [BDOESRV] "C:\Program Files\Softwin\BitDefender9\bdoesrv.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [BDSwitchAgent] "c:\program files\softwin\bitdefender9\bdswitch.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [WinFixer2005] "C:\Program Files\WinFixer 2005\uwfx5.exe" /min
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_7
O4 - Global Startup: Accélérateur de démarrage AutoCAD.lnk = C:\Program Files\Fichiers communs\Autodesk Shared\acstart16.exe
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O9 - Extra 'Tools' menuitem: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O9 - Extra button: (no name) - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O9 - Extra 'Tools' menuitem: Options i-Nav - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O12 - Plugin for .mid: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin2.dll
O12 - Plugin for .mpeg: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin3.dll
O12 - Plugin for .mpg: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin3.dll
O12 - Plugin for .PNG: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin5.dll
O16 - DPF: {09F1ADAC-76D8-4D0F-99A5-5C907DADB988} - http://fr.systemdoctor.com/download/2006/cab/SystemDoctor2006FreeInstall_fr.cab
O16 - DPF: {42F2C9BA-614F-47C0-B3E3-ECFD34EED658} (Installer Class) - http://www.tbcode.com/ist/softwares/v4.0/ysb_regular.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by103fd.bay103.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O21 - SSODL: hubbsi - {7b1eeccd-0a6d-4ad5-8ac1-4af5722b3885} - C:\WINDOWS\System32\vwlummc.dll (file missing)
O23 - Service: Autodata Limited License Service - Unknown owner - C:\Program Files\Fichiers communs\Autodata Limited Shared\Service\ADCDLicSvc.exe
O23 - Service: Autodesk Licensing Service - Autodesk, Inc. - C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - SOFTWIN S.R.L. - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
O23 - Service: VeriSign Updater (navi) - VeriSign, Inc. - C:\Program Files\VeriSign\NAVI\naviagent.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - SOFTWIN S.R.L. - C:\Program Files\Softwin\BitDefender9\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - Softwin - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
Logfile of HijackThis v1.99.1
Scan saved at 11:38:55, on 30/08/2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2600.0000)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Fichiers communs\Autodata Limited Shared\Service\ADCDLicSvc.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\VeriSign\NAVI\naviagent.exe
C:\WINDOWS\system32\pctspk.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINDOWS\System32\rmctrl.exe
C:\Program Files\Softwin\BitDefender9\bdoesrv.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\program files\softwin\bitdefender9\bdswitch.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
C:\Program Files\Softwin\BitDefender9\vsserv.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\CCleaner\ccleaner.exe
C:\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://portail.free.fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = https://portail.free.fr/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: i-Nav IDN SearchHook - {CE000994-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {873eb32d-ae1a-4183-89bd-45a77f761be4} - C:\WINDOWS\System32\ixt0.dll (file missing)
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O2 - BHO: i-Nav IDN Resolver - {CE000992-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: ISTbar - {5F1ABCDB-A875-46c1-8345-B72A4567E486} - C:\Program Files\ISTbar\istbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Safety Bar - {052b12f7-86fa-4921-8482-26c42316b522} - C:\Program Files\Safety Bar\Safety Bar.dll (file missing)
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Fichiers communs\Logitech\QCDriver2\LVCOMS.EXE
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\System32\rmctrl.exe
O4 - HKLM\..\Run: [BDOESRV] "C:\Program Files\Softwin\BitDefender9\bdoesrv.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [BDSwitchAgent] "c:\program files\softwin\bitdefender9\bdswitch.exe"
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [WOOKIT] C:\PROGRA~1\Wanadoo\Shell.exe appLaunchClientZone.shl|DEFAULT=cnx|PARAM=
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [WinFixer2005] "C:\Program Files\WinFixer 2005\uwfx5.exe" /min
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_7
O4 - Global Startup: Accélérateur de démarrage AutoCAD.lnk = C:\Program Files\Fichiers communs\Autodesk Shared\acstart16.exe
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O9 - Extra 'Tools' menuitem: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O9 - Extra button: (no name) - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O9 - Extra 'Tools' menuitem: Options i-Nav - {CE000996-A58C-4441-8938-744CD72AB27F} - C:\Program Files\VeriSign\i-Nav\i-nav_4_2_1.dll
O12 - Plugin for .mid: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin2.dll
O12 - Plugin for .mpeg: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin3.dll
O12 - Plugin for .mpg: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin3.dll
O12 - Plugin for .PNG: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin5.dll
O16 - DPF: {09F1ADAC-76D8-4D0F-99A5-5C907DADB988} - http://fr.systemdoctor.com/download/2006/cab/SystemDoctor2006FreeInstall_fr.cab
O16 - DPF: {42F2C9BA-614F-47C0-B3E3-ECFD34EED658} (Installer Class) - http://www.tbcode.com/ist/softwares/v4.0/ysb_regular.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by103fd.bay103.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O21 - SSODL: hubbsi - {7b1eeccd-0a6d-4ad5-8ac1-4af5722b3885} - C:\WINDOWS\System32\vwlummc.dll (file missing)
O23 - Service: Autodata Limited License Service - Unknown owner - C:\Program Files\Fichiers communs\Autodata Limited Shared\Service\ADCDLicSvc.exe
O23 - Service: Autodesk Licensing Service - Autodesk, Inc. - C:\Program Files\Fichiers communs\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: BitDefender Scan Server (bdss) - Unknown owner - C:\Program Files\Fichiers communs\Softwin\BitDefender Scan Server\bdss.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: BitDefender Desktop Update Service (LIVESRV) - SOFTWIN S.R.L. - C:\Program Files\Fichiers communs\Softwin\BitDefender Update Service\livesrv.exe
O23 - Service: VeriSign Updater (navi) - VeriSign, Inc. - C:\Program Files\VeriSign\NAVI\naviagent.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - PCtel, Inc. - C:\WINDOWS\system32\pctspk.exe
O23 - Service: BitDefender Virus Shield (VSSERV) - SOFTWIN S.R.L. - C:\Program Files\Softwin\BitDefender9\vsserv.exe
O23 - Service: BitDefender Communicator (XCOMM) - Softwin - C:\Program Files\Fichiers communs\Softwin\BitDefender Communicator\xcommsvr.exe
voici mon dernier rapport ewido (apèrs ccleaner):
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 12:56:00 30/08/2006
+ Scan result:
C:\Program Files\Safety Bar -> Adware.Generic : Cleaned.
C:\Program Files\Safety Bar\Uninstall.bat -> Adware.Generic : Error during cleaning.
C:\Program Files\Safety Bar\__delete_on_reboot__S_a_f_e_t_y_ _B_a_r_._d_l_l_ -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Classes\CLSID\{052b12f7-86fa-4921-8482-26c42316b522} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Classes\CLSID\{873eb32d-ae1a-4183-89bd-45a77f761be4} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{052b12f7-86fa-4921-8482-26c42316b522} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{873eb32d-ae1a-4183-89bd-45a77f761be4} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Safety Bar -> Adware.Generic : Cleaned.
C:\Program Files\ISTbar -> Adware.ISTBar : Cleaned.
C:\Program Files\ISTbar\istbar.dll -> Adware.ISTBar : Error during cleaning.
C:\WINDOWS\system32\ismon.exe -> Downloader.Zlob.adx : Cleaned.
C:\WINDOWS\system32\__delete_on_reboot__i_x_t_0_._d_l_l_ -> Not-A-Virus.Hoax.Win32.Renos.eg : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@247realmedia[1].txt -> TrackingCookie.247realmedia : Cleaned.
::Report end
merci
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 12:56:00 30/08/2006
+ Scan result:
C:\Program Files\Safety Bar -> Adware.Generic : Cleaned.
C:\Program Files\Safety Bar\Uninstall.bat -> Adware.Generic : Error during cleaning.
C:\Program Files\Safety Bar\__delete_on_reboot__S_a_f_e_t_y_ _B_a_r_._d_l_l_ -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Classes\CLSID\{052b12f7-86fa-4921-8482-26c42316b522} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Classes\CLSID\{873eb32d-ae1a-4183-89bd-45a77f761be4} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{052b12f7-86fa-4921-8482-26c42316b522} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{873eb32d-ae1a-4183-89bd-45a77f761be4} -> Adware.Generic : Cleaned.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Safety Bar -> Adware.Generic : Cleaned.
C:\Program Files\ISTbar -> Adware.ISTBar : Cleaned.
C:\Program Files\ISTbar\istbar.dll -> Adware.ISTBar : Error during cleaning.
C:\WINDOWS\system32\ismon.exe -> Downloader.Zlob.adx : Cleaned.
C:\WINDOWS\system32\__delete_on_reboot__i_x_t_0_._d_l_l_ -> Not-A-Virus.Hoax.Win32.Renos.eg : Cleaned.
C:\Documents and Settings\aaa\Cookies\aaa@247realmedia[1].txt -> TrackingCookie.247realmedia : Cleaned.
::Report end
merci
Bonjour,
Méthode à suivre dans l'ordre...
----------------------------------------------------------------------------
Télécharger ces logiciels (sauf si tu les as)
A utiliser plus tard
A - ad-aware version 1.06
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo
http://pageperso.aol.fr/balltrap34/adwseflash.zip
B - spybot version 1.4
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo d utilisation
http://pageperso.aol.fr/Balltrap34/demo%20spybot.htm
C - Ccleaner : ( nettoyeur de registre, cookies+temps+tempos+prefetch+historique+etc..)
Télécharge ici :
https://www.ccleaner.com/ccleaner/download
Tutorial ici:
https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php
D - Ewido
https://www.malekal.com/tutorial-et-guide-ewido-v4/
----------------------------------------------------------------------------
¤Affiche tous les fichiers et dossiers :
Clique sur démarrer/panneau de configuration/outil/option des dossiers/affichage
Coche « afficher les fichiers et dossiers cachés »
Décoche la case "Masquer les fichiers protégés du système d'exploitation (recommandé)"
Décoche « masquer les extensions dont le type est connu »
Puis fais «Ok» pour valider les changements.
Et appliquer !
=================================
Relance HijackThis, choisis " do a scan only" coche la case devant les lignes ci-dessous et clique en bas sur "fix checked"
O2 - BHO: (no name) - {873eb32d-ae1a-4183-89bd-45a77f761be4} - C:\WINDOWS\System32\ixt0.dll (file missing
O3 - Toolbar: ISTbar - {5F1ABCDB-A875-46c1-8345-B72A4567E486} - C:\Program Files\ISTbar\istbar.dll
O3 - Toolbar: Safety Bar - {052b12f7-86fa-4921-8482-26c42316b522} - C:\Program Files\Safety Bar\Safety Bar.dll (file missing)
O9 - Extra button: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O9 - Extra 'Tools' menuitem: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O16 - DPF: {09F1ADAC-76D8-4D0F-99A5-5C907DADB988} - http://fr.systemdoctor.com/download/2006/cab/SystemDoctor2006FreeInstall_fr.cab
O16 - DPF: {42F2C9BA-614F-47C0-B3E3-ECFD34EED658} (Installer Class) - http://www.tbcode.com/ist/softwares/v4.0/ysb_regular.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by103fd.bay103.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
Supprimes ce qui est en gras
C:\Program Files\Safety Bar\
============ ============================
¤Démarre en mode sans échec :
Pour cela, tu tapotes la touche F8 dès le début de l’allumage du pc sans t’arrêter
Une fenêtre va s’ouvrir tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape entrée.
Une fois sur le bureau s’il n’y a pas toutes les couleurs et autres c’est normal !
(Si F8 ne marche pas utilise la touche F5).
----------------------------------------------------------------------------
¤Vide tes fichiers temps et temporary internet file:
Maintenant tu lances
A/ Ad-Aware supprime quarantaine
B/ Spybot Supprime quarantaine
C/ Ccleaner Ewido Copier/coller le rapport
D/
----------------------------------------------------------------------------
¤ Vide ta Corbeille.
----------------------------------------------------------------------------
¤ Redémarre en mode normal, relance Hijackthis et copie/colle un nouveau rapport sur le forum.
Tiens nous au courant
A+
Méthode à suivre dans l'ordre...
----------------------------------------------------------------------------
Télécharger ces logiciels (sauf si tu les as)
A utiliser plus tard
A - ad-aware version 1.06
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo
http://pageperso.aol.fr/balltrap34/adwseflash.zip
B - spybot version 1.4
(ici) http://www.florensac-chasse-trap.com/ section virus/logiciel de securite
voir demo d utilisation
http://pageperso.aol.fr/Balltrap34/demo%20spybot.htm
C - Ccleaner : ( nettoyeur de registre, cookies+temps+tempos+prefetch+historique+etc..)
Télécharge ici :
https://www.ccleaner.com/ccleaner/download
Tutorial ici:
https://www.vulgarisation-informatique.com/nettoyer-windows-ccleaner.php
D - Ewido
https://www.malekal.com/tutorial-et-guide-ewido-v4/
----------------------------------------------------------------------------
¤Affiche tous les fichiers et dossiers :
Clique sur démarrer/panneau de configuration/outil/option des dossiers/affichage
Coche « afficher les fichiers et dossiers cachés »
Décoche la case "Masquer les fichiers protégés du système d'exploitation (recommandé)"
Décoche « masquer les extensions dont le type est connu »
Puis fais «Ok» pour valider les changements.
Et appliquer !
=================================
Relance HijackThis, choisis " do a scan only" coche la case devant les lignes ci-dessous et clique en bas sur "fix checked"
O2 - BHO: (no name) - {873eb32d-ae1a-4183-89bd-45a77f761be4} - C:\WINDOWS\System32\ixt0.dll (file missing
O3 - Toolbar: ISTbar - {5F1ABCDB-A875-46c1-8345-B72A4567E486} - C:\Program Files\ISTbar\istbar.dll
O3 - Toolbar: Safety Bar - {052b12f7-86fa-4921-8482-26c42316b522} - C:\Program Files\Safety Bar\Safety Bar.dll (file missing)
O9 - Extra button: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O9 - Extra 'Tools' menuitem: Aide i-Nav - {CE000992-A58C-4441-8938-744CD72AB27F} - http://idn.verisign-grs.com/plug-in/support/index.jsp (file missing)
O16 - DPF: {09F1ADAC-76D8-4D0F-99A5-5C907DADB988} - http://fr.systemdoctor.com/download/2006/cab/SystemDoctor2006FreeInstall_fr.cab
O16 - DPF: {42F2C9BA-614F-47C0-B3E3-ECFD34EED658} (Installer Class) - http://www.tbcode.com/ist/softwares/v4.0/ysb_regular.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by103fd.bay103.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
Supprimes ce qui est en gras
C:\Program Files\Safety Bar\
============ ============================
¤Démarre en mode sans échec :
Pour cela, tu tapotes la touche F8 dès le début de l’allumage du pc sans t’arrêter
Une fenêtre va s’ouvrir tu te déplaces avec les flèches du clavier sur démarrer en mode sans échec puis tape entrée.
Une fois sur le bureau s’il n’y a pas toutes les couleurs et autres c’est normal !
(Si F8 ne marche pas utilise la touche F5).
----------------------------------------------------------------------------
¤Vide tes fichiers temps et temporary internet file:
Maintenant tu lances
A/ Ad-Aware supprime quarantaine
B/ Spybot Supprime quarantaine
C/ Ccleaner Ewido Copier/coller le rapport
D/
----------------------------------------------------------------------------
¤ Vide ta Corbeille.
----------------------------------------------------------------------------
¤ Redémarre en mode normal, relance Hijackthis et copie/colle un nouveau rapport sur le forum.
Tiens nous au courant
A+
08/28/06 17:58:58 [Info]: BlackLight Engine 1.0.46 initialized
08/28/06 17:58:58 [Info]: OS: 5.1 build 2600 ()
08/28/06 17:58:59 [Note]: 7019 4
08/28/06 17:58:59 [Note]: 7005 0
08/28/06 17:59:04 [Note]: 7006 0
08/28/06 17:59:04 [Note]: 7011 452
08/28/06 17:59:04 [Note]: 7026 0
08/28/06 17:59:04 [Note]: 7026 0
08/28/06 17:59:18 [Note]: FSRAW library version 1.7.1019
08/28/06 18:05:28 [Note]: 7007 0
sinon j'ai fait un scan avec le logiciel ewido et voici le rapport:
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 13:53:41 28/08/2006
+ Scan result:
C:\Program Files\Safety Bar -> Adware.Generic : No action taken.
C:\Program Files\Safety Bar\Uninstall.bat -> Adware.Generic : No action taken.
C:\Program Files\Safety Bar\__delete_on_reboot__S_a_f_e_t_y_ _B_a_r_._d_l_l_ -> Adware.Generic : No action taken.
HKLM\SOFTWARE\Classes\CLSID\{052b12f7-86fa-4921-8482-26c42316b522} -> Adware.Generic : No action taken.
HKLM\SOFTWARE\Classes\CLSID\{873eb32d-ae1a-4183-89bd-45a77f761be4} -> Adware.Generic : No action taken.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{052b12f7-86fa-4921-8482-26c42316b522} -> Adware.Generic : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{873eb32d-ae1a-4183-89bd-45a77f761be4} -> Adware.Generic : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Safety Bar -> Adware.Generic : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\ISTbarISTbar -> Adware.HotBar : No action taken.
C:\Program Files\ISTbar -> Adware.ISTBar : No action taken.
C:\Program Files\ISTbar\istbar.dll -> Adware.ISTBar : No action taken.
C:\Program Files\ISTbar\navmain.bmp -> Adware.ISTBar : No action taken.
C:\Program Files\ISTbar\search.bmp -> Adware.ISTBar : No action taken.
C:\Program Files\ISTbar\version_xml.php -> Adware.ISTBar : No action taken.
C:\Program Files\ISTbar\xml_istbar.php -> Adware.ISTBar : No action taken.
C:\Program Files\ISTsvc -> Adware.ISTBar : No action taken.
HKLM\SOFTWARE\Classes\Pugi.PugiObj -> Adware.ISTBar : No action taken.
HKLM\SOFTWARE\Classes\Pugi.PugiObj.1 -> Adware.ISTBar : No action taken.
HKLM\SOFTWARE\Classes\Pugi.PugiObj\CLSID -> Adware.ISTBar : No action taken.
HKLM\SOFTWARE\Classes\Pugi.PugiObj\CurVer -> Adware.ISTBar : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\ISTbarISTbar -> Adware.ISTBar : No action taken.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\IST -> Adware.ISTBar : No action taken.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\ISTbar -> Adware.ISTBar : No action taken.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\ISTbar\ISTbar -> Adware.ISTBar : No action taken.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\ISTbar\ISTbar\Historyfiles -> Adware.ISTBar : No action taken.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\ISTbar\ISTbar\Historys1 -> Adware.ISTBar : No action taken.
C:\Documents and Settings\aaa\Menu Démarrer\Programmes\Power Scan -> Adware.PowerScan : No action taken.
C:\Documents and Settings\aaa\Menu Démarrer\Programmes\Power Scan\Power Scan.lnk -> Adware.PowerScan : No action taken.
C:\Program Files\Power Scan -> Adware.PowerScan : No action taken.
C:\Program Files\Power Scan\powerscan.exe -> Adware.PowerScan : No action taken.
C:\Program Files\Power Scan\uninstall.exe -> Adware.PowerScan : No action taken.
HKLM\SOFTWARE\PowerScan -> Adware.PowerScan : No action taken.
HKU\S-1-5-21-1659004503-920026266-1060284298-1003\Software\PowerScan -> Adware.PowerScan : No action taken.
C:\Program Files\SpyQuake2.com -> Adware.SpywareQuake : No action taken.
C:\Program Files\SpyQuake2.com\sq.ini -> Adware.SpywareQuake : No action taken.
C:\Program Files\Fichiers communs\WinFixer 2005\FCrXML.dll -> Adware.Winfixer : No action taken.
HKLM\SOFTWARE\Classes\YSBactivex.Installer -> Adware.YourSiteBar : No action taken.
HKLM\SOFTWARE\Classes\YSBactivex.Installer\CLSID -> Adware.YourSiteBar : No action taken.
C:\WINDOWS\system32\ismon.exe -> Downloader.Zlob.adx : No action taken.
C:\WINDOWS\Downloaded Program Files\UERSV_0001_LPNetInstaller.exe -> Not-A-Virus.Downloader.Win32.Agent.d : No action taken.
C:\WINDOWS\Downloaded Program Files\UWFX5V_0001_N57M1412NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.b : No action taken.
C:\WINDOWS\system32\__delete_on_reboot__v_w_l_u_m_m_c_._d_l_l_ -> Not-A-Virus.Hoax.Win32.Renos.du : No action taken.
[1152] C:\WINDOWS\System32\vwlummc.dll -> Not-A-Virus.Hoax.Win32.Renos.du : No action taken.
C:\WINDOWS\system32\__delete_on_reboot__i_x_t_0_._d_l_l_ -> Not-A-Virus.Hoax.Win32.Renos.eg : No action taken.
[2164] C:\WINDOWS\System32\ixt0.dll -> Not-A-Virus.Hoax.Win32.Renos.eg : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@247realmedia[1].txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@2o7[2].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@microsofteup.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@pinnaclesystems.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@redcats.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@sfr.122.2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@rotator.adjuggler[1].txt -> TrackingCookie.Adjuggler : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@z1.adserver[1].txt -> TrackingCookie.Adserver : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@adtech[2].txt -> TrackingCookie.Adtech : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@advertising[2].txt -> TrackingCookie.Advertising : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\aaa\Local Settings\Temp\Cookies\aaa@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@www.belstat[3].txt -> TrackingCookie.Belstat : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@bfast[1].txt -> TrackingCookie.Bfast : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@bluestreak[2].txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@iv2.bluestreak[1].txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@casalemedia[2].txt -> TrackingCookie.Casalemedia : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@casinotropez[2].txt -> TrackingCookie.Casinotropez : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@clickbank[1].txt -> TrackingCookie.Clickbank : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@cz11.clickzs[1].txt -> TrackingCookie.Clickzs : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@cz4.clickzs[1].txt -> TrackingCookie.Clickzs : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@cz9.clickzs[2].txt -> TrackingCookie.Clickzs : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@vip.clickzs[1].txt -> TrackingCookie.Clickzs : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@com[2].txt -> TrackingCookie.Com : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@fl01.ct2.comclick[1].txt -> TrackingCookie.Comclick : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wfk4umcjigo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wflokjczmho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wflosmdjwko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wfmyokazoco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wgkyclc5gcq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wgl4okczklq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wgmialcjikp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wgmigidpaho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wjkoaic5ado.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wjkywoajseo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wjmiokazgho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@e-2dj6wjmygic5oko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@estat[1].txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@fastclick[2].txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@banner.goldenpalace[2].txt -> TrackingCookie.Goldenpalace : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@goldenpalace[1].txt -> TrackingCookie.Goldenpalace : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@www.goldenpalace[1].txt -> TrackingCookie.Goldenpalace : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-dig.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-francetel.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-noven.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-playboy.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@ehg-sonyesolutions.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@hg1.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@ivwbox[1].txt -> TrackingCookie.Ivwbox : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@server.iad.liveperson[1].txt -> TrackingCookie.Liveperson : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@image.masterstats[1].txt -> TrackingCookie.Masterstats : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@mediaplex[2].txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@overture[2].txt -> TrackingCookie.Overture : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@ads.pointroll[2].txt -> TrackingCookie.Pointroll : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@qksrv[1].txt -> TrackingCookie.Qksrv : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@bs.serving-sys[2].txt -> TrackingCookie.Serving-sys : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@serving-sys[2].txt -> TrackingCookie.Serving-sys : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@cs.sexcounter[2].txt -> TrackingCookie.Sexcounter : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@sexlist[1].txt -> TrackingCookie.Sexlist : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@counter14.sextracker[1].txt -> TrackingCookie.Sextracker : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@counter2.sextracker[1].txt -> TrackingCookie.Sextracker : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@tacoda[2].txt -> TrackingCookie.Tacoda : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@login.tracking101[1].txt -> TrackingCookie.Tracking101 : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@trafficmp[2].txt -> TrackingCookie.Trafficmp : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@valueclick[2].txt -> TrackingCookie.Valueclick : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@vegasred[1].txt -> TrackingCookie.Vegasred : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@blackbox.weborama[1].txt -> TrackingCookie.Weborama : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@weborama[1].txt -> TrackingCookie.Weborama : No action taken.
C:\Documents and Settings\aaa\Local Settings\Temp\Cookies\aaa@weborama[2].txt -> TrackingCookie.Weborama : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : No action taken.
C:\Documents and Settings\aaa\Cookies\aaa@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run\\kernel32.dll -> Trojan.Small : No action taken.
::Report end
vraiment merci.....