Explorer s'éteint en streaming
chicane
-
Chicane -
Chicane -
Bonjour,
je dispose d'un amd 3000 sous XP.
Depuis deux jours, lorsque je souhaite écouter la radio ou visionner une emission TV en streaming, explorer ou mozilla s'éteint dès que le son ou l'image est susceptible d'apparaitre....
J'ai passer mon ordi à l'anti-virus mais rien...
Merci de vos réponses
je dispose d'un amd 3000 sous XP.
Depuis deux jours, lorsque je souhaite écouter la radio ou visionner une emission TV en streaming, explorer ou mozilla s'éteint dès que le son ou l'image est susceptible d'apparaitre....
J'ai passer mon ordi à l'anti-virus mais rien...
Merci de vos réponses
A voir également:
- Explorer s'éteint en streaming
- Streaming - Guide
- Fast streaming - Accueil - Guide TV et vidéo
- Explorer patcher - Télécharger - Personnalisation
- Internet explorer - Guide
- Internet explorer 11 - Télécharger - Navigateurs
9 réponses
Salut,
fait ça pour verifier
Télécharge HijackThis:
Téléchargement de HijackThis
Installe le dans son propre dossier:
-clic droit sur le bureau, choisis "nouveau dossier" puis installe le dedans.
Lance le, clic sur "do a system scan and save logfile"
Puis copie et colle le rapport ici stp
fait ça pour verifier
Télécharge HijackThis:
Téléchargement de HijackThis
Installe le dans son propre dossier:
-clic droit sur le bureau, choisis "nouveau dossier" puis installe le dedans.
Lance le, clic sur "do a system scan and save logfile"
Puis copie et colle le rapport ici stp
Logfile of HijackThis v1.99.1
Scan saved at 18:45:24, on 15/09/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Trend Micro\PC-cillin 9\Tmntsrv.exe
C:\WINDOWS\system32\fxssvc.exe
C:\Program Files\Trend Micro\PC-cillin 9\PCCPFW.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\RunDll32.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Trend Micro\PC-cillin 9\pccguide.exe
C:\Program Files\Trend Micro\PC-cillin 9\PCCClient.exe
C:\Program Files\Trend Micro\PC-cillin 9\Pop3trap.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Le Robert\Le Robert & Collins\rcwinHyper.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\LVComS.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\GREGOIRE Philippe\Local Settings\Temporary Internet Files\Content.IE5\5QPG194H\HijackThis[1].exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://accounts.google.com/ServiceLogin?service=mail&passive=true&rm=false&continue=https://mail.google.com/mail/&ss=1&scc=1<mpl=default<mplcache=2&emr=1&osid=1
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.free.fr/freebox/index.html
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_5_7_0.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: askBar BHO - {5A074B21-F830-49de-A31B-5BB9D7F6B407} - C:\Program Files\AskBar\bar\bin\askBar1.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_5_7_0.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Ask Toolbar - {5A074B29-F830-49de-A31B-5BB9D7F6B407} - C:\Program Files\AskBar\bar\bin\askBar1.dll
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe irprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [pccguide.exe ] "C:\Program Files\Trend Micro\PC-cillin 9\pccguide.exe"
O4 - HKLM\..\Run: [PCCClient.exe] "C:\Program Files\Trend Micro\PC-cillin 9\PCCClient.exe"
O4 - HKLM\..\Run: [ Pop3trap.exe] "C:\Program Files\Trend Micro\PC-cillin 9\Pop3trap.exe"
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [adiras] adiras.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [rcwinHyper] C:\Program Files\Le Robert\Le Robert & Collins\rcwinHyper.exe
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Save Image to Folder - res://C:\Program Files\AskBar\bar\bin\askBar.dll/saveimagestofolder.html
O8 - Extra context menu item: &Save Image to MyStuff - res://C:\Program Files\AskBar\bar\bin\askBar.dll/saveimages.html
O8 - Extra context menu item: &Save Link to Folder - res://C:\Program Files\AskBar\bar\bin\askBar.dll/saveltof.html
O8 - Extra context menu item: &Save Link to MyStuff - res://C:\Program Files\AskBar\bar\bin\askBar.dll/savelink.html
O8 - Extra context menu item: &Save Page to Folder... - res://C:\Program Files\AskBar\bar\bin\askBar.dll/savepagetofolder.html
O8 - Extra context menu item: &Save this Page to MyStuff - res://C:\Program Files\AskBar\bar\bin\askBar.dll/savewebpage.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O14 - IERESET.INF: START_PAGE_URL=https://www.free.fr/freebox/index.html
O16 - DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} (Get_ActiveX Control) - https://h17000.www1.hp.com/ewfrf-JAVA/Secure/HPGetDownloadManager.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{2EEB18F6-3AD8-4833-9F20-53BBE3E16B3C}: NameServer = 86.64.145.143 84.103.237.143
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PC-cillin PersonalFirewall (PCCPFW) - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 9\PCCPFW.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Trend NT Realtime Service (Tmntsrv) - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 9\Tmntsrv.exe
Scan saved at 18:45:24, on 15/09/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Trend Micro\PC-cillin 9\Tmntsrv.exe
C:\WINDOWS\system32\fxssvc.exe
C:\Program Files\Trend Micro\PC-cillin 9\PCCPFW.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\RunDll32.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Trend Micro\PC-cillin 9\pccguide.exe
C:\Program Files\Trend Micro\PC-cillin 9\PCCClient.exe
C:\Program Files\Trend Micro\PC-cillin 9\Pop3trap.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Le Robert\Le Robert & Collins\rcwinHyper.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\LVComS.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\GREGOIRE Philippe\Local Settings\Temporary Internet Files\Content.IE5\5QPG194H\HijackThis[1].exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://accounts.google.com/ServiceLogin?service=mail&passive=true&rm=false&continue=https://mail.google.com/mail/&ss=1&scc=1<mpl=default<mplcache=2&emr=1&osid=1
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.free.fr/freebox/index.html
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_5_7_0.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: askBar BHO - {5A074B21-F830-49de-A31B-5BB9D7F6B407} - C:\Program Files\AskBar\bar\bin\askBar1.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_5_7_0.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Ask Toolbar - {5A074B29-F830-49de-A31B-5BB9D7F6B407} - C:\Program Files\AskBar\bar\bin\askBar1.dll
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe irprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [pccguide.exe ] "C:\Program Files\Trend Micro\PC-cillin 9\pccguide.exe"
O4 - HKLM\..\Run: [PCCClient.exe] "C:\Program Files\Trend Micro\PC-cillin 9\PCCClient.exe"
O4 - HKLM\..\Run: [ Pop3trap.exe] "C:\Program Files\Trend Micro\PC-cillin 9\Pop3trap.exe"
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [adiras] adiras.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [rcwinHyper] C:\Program Files\Le Robert\Le Robert & Collins\rcwinHyper.exe
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Save Image to Folder - res://C:\Program Files\AskBar\bar\bin\askBar.dll/saveimagestofolder.html
O8 - Extra context menu item: &Save Image to MyStuff - res://C:\Program Files\AskBar\bar\bin\askBar.dll/saveimages.html
O8 - Extra context menu item: &Save Link to Folder - res://C:\Program Files\AskBar\bar\bin\askBar.dll/saveltof.html
O8 - Extra context menu item: &Save Link to MyStuff - res://C:\Program Files\AskBar\bar\bin\askBar.dll/savelink.html
O8 - Extra context menu item: &Save Page to Folder... - res://C:\Program Files\AskBar\bar\bin\askBar.dll/savepagetofolder.html
O8 - Extra context menu item: &Save this Page to MyStuff - res://C:\Program Files\AskBar\bar\bin\askBar.dll/savewebpage.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O14 - IERESET.INF: START_PAGE_URL=https://www.free.fr/freebox/index.html
O16 - DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} (Get_ActiveX Control) - https://h17000.www1.hp.com/ewfrf-JAVA/Secure/HPGetDownloadManager.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{2EEB18F6-3AD8-4833-9F20-53BBE3E16B3C}: NameServer = 86.64.145.143 84.103.237.143
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PC-cillin PersonalFirewall (PCCPFW) - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 9\PCCPFW.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Trend NT Realtime Service (Tmntsrv) - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 9\Tmntsrv.exe
Salut,
Telecharge, installe puis mets à jour ce logiciel(Ewido), une fois que c'est fait, fais un scan complet de ton système, supprime (delete) tout ce qu'il te trouve puis colle le rapport ici avec un nouveau rapport hijackthis
Ewido: (reste gratuit après la période d'essai)
Télécharger Ewido Security Suite
Telecharge, installe puis mets à jour ce logiciel(Ewido), une fois que c'est fait, fais un scan complet de ton système, supprime (delete) tout ce qu'il te trouve puis colle le rapport ici avec un nouveau rapport hijackthis
Ewido: (reste gratuit après la période d'essai)
Télécharger Ewido Security Suite
Voici les deux rapports:
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 06:24:16 16/09/2006
+ Scan result:
HKLM\SOFTWARE\Classes\MailHook.MailTo -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\MailHook.MailTo.1 -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\MailHook.MailTo\CLSID -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\MailHook.MailTo\CurVer -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\SearchHook.SearchHookObject -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\SearchHook.SearchHookObject.1 -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\SearchHook.SearchHookObject\CLSID -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\SearchHook.SearchHookObject\CurVer -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\ae23.ae23Obj -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\ae23.ae23Obj.1 -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\ae23.ae23Obj\CLSID -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\ae23.ae23Obj\CurVer -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\iefeatsl.ViewSource -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\iefeatsl.ViewSource.1 -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\iefeatsl.ViewSource\CLSID -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\iefeatsl.ViewSource\CurVer -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Submit URL -> Adware.CoolWebSearch : No action taken.
HKU\S-1-5-21-2383853130-4137269730-2270115496-1005\Software\d78ffc13 -> Adware.CoolWebSearch : No action taken.
HKU\S-1-5-21-2383853130-4137269730-2270115496-1005\Software\d78ffc13\red81542 -> Adware.CoolWebSearch : No action taken.
C:\Program Files\Submit\submithook.dll -> Adware.FreeComm : No action taken.
C:\Program Files\AVPersonal\INFECTED\0.EXE.VIR.VIR -> Dialer.Generic : No action taken.
C:\Program Files\AVPersonal\INFECTED\GD-DIAL.VIR.VIR -> Dialer.Generic : No action taken.
HKU\S-1-5-21-2383853130-4137269730-2270115496-1005\Software\Webdialer -> Dialer.Generic : No action taken.
HKU\S-1-5-21-2383853130-4137269730-2270115496-1005\Software\Webdialer\od-stnd174 -> Dialer.Generic : No action taken.
C:\Program Files\Windows Media Player\wmplayer.exe.tmp -> Downloader.Agent.fw : No action taken.
C:\WINDOWS\system32\wuclient.exe -> Downloader.Agent.fw : No action taken.
C:\WINDOWS\system32\xpsp2fw.exe -> Downloader.Agent.fw : No action taken.
C:\WINDOWS\telnet.exe -> Downloader.Agent.fw : No action taken.
C:\Documents and Settings\GREGOIRE Philippe\Application Data\mswl\msiesh.dll -> Downloader.WinShow.n : No action taken.
C:\WINDOWS\system32\edcfudaom.dll -> Hijacker.StartPage.sc : No action taken.
:mozilla.14:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.247realmedia : No action taken.
:mozilla.15:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@247realmedia[1].txt -> TrackingCookie.247realmedia : No action taken.
:mozilla.32:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@adtech[2].txt -> TrackingCookie.Adtech : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@advertising[1].txt -> TrackingCookie.Advertising : No action taken.
:mozilla.13:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Profiles\default\3ereeojx.slt\cookies.txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@bluestreak[2].txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@casalemedia[1].txt -> TrackingCookie.Casalemedia : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@fl01.ct2.comclick[2].txt -> TrackingCookie.Comclick : No action taken.
:mozilla.9:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@doubleclick[2].txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.28:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@estat[1].txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@ehg-lasamaritaine.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@ehg-neuftelecom.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.29:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@overture[2].txt -> TrackingCookie.Overture : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@revenue[2].txt -> TrackingCookie.Revenue : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@serving-sys[2].txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.10:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.11:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.12:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.7:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.8:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@statcounter[2].txt -> TrackingCookie.Statcounter : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@weborama[2].txt -> TrackingCookie.Weborama : No action taken.
Logfile of HijackThis v1.99.1
Scan saved at 06:29:05, on 16/09/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\fxssvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\RunDll32.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\WINDOWS\System32\LVComS.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Le Robert\Le Robert & Collins\rcwinHyper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\Trend Micro\PC-cillin 9\Tmntsrv.exe
C:\Program Files\Trend Micro\PC-cillin 9\PCCPFW.exe
C:\Program Files\Trend Micro\PC-cillin 9\PCCCLIENT.EXE
C:\Program Files\Trend Micro\PC-cillin 9\PCCGUIDE.EXE
C:\Program Files\Trend Micro\PC-cillin 9\POP3TRAP.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft Office\Office\WINWORD.EXE
C:\WINDOWS\msagent\AgentSvr.exe
C:\Documents and Settings\GREGOIRE Philippe\Bureau\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://accounts.google.com/ServiceLogin?service=mail&passive=true&rm=false&continue=https://mail.google.com/mail/&ss=1&scc=1<mpl=default<mplcache=2&emr=1&osid=1
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.free.fr/freebox/index.html
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_5_7_0.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: askBar BHO - {5A074B21-F830-49de-A31B-5BB9D7F6B407} - C:\Program Files\AskBar\bar\bin\askBar1.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_5_7_0.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Ask Toolbar - {5A074B29-F830-49de-A31B-5BB9D7F6B407} - C:\Program Files\AskBar\bar\bin\askBar1.dll
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe irprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\PC-cillin 9\pccguide.exe"
O4 - HKLM\..\Run: [PCCClient.exe] "C:\Program Files\Trend Micro\PC-cillin 9\PCCClient.exe"
O4 - HKLM\..\Run: [Pop3trap.exe] "C:\Program Files\Trend Micro\PC-cillin 9\Pop3trap.exe"
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [adiras] adiras.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [rcwinHyper] C:\Program Files\Le Robert\Le Robert & Collins\rcwinHyper.exe
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Save Image to Folder - res://C:\Program Files\AskBar\bar\bin\askBar.dll/saveimagestofolder.html
O8 - Extra context menu item: &Save Image to MyStuff - res://C:\Program Files\AskBar\bar\bin\askBar.dll/saveimages.html
O8 - Extra context menu item: &Save Link to Folder - res://C:\Program Files\AskBar\bar\bin\askBar.dll/saveltof.html
O8 - Extra context menu item: &Save Link to MyStuff - res://C:\Program Files\AskBar\bar\bin\askBar.dll/savelink.html
O8 - Extra context menu item: &Save Page to Folder... - res://C:\Program Files\AskBar\bar\bin\askBar.dll/savepagetofolder.html
O8 - Extra context menu item: &Save this Page to MyStuff - res://C:\Program Files\AskBar\bar\bin\askBar.dll/savewebpage.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O14 - IERESET.INF: START_PAGE_URL=https://www.free.fr/freebox/index.html
O16 - DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} (Get_ActiveX Control) - https://h17000.www1.hp.com/ewfrf-JAVA/Secure/HPGetDownloadManager.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{2EEB18F6-3AD8-4833-9F20-53BBE3E16B3C}: NameServer = 86.64.145.145 84.103.237.145
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PC-cillin PersonalFirewall (PCCPFW) - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 9\PCCPFW.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Trend NT Realtime Service (Tmntsrv) - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 9\Tmntsrv.exe
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 06:24:16 16/09/2006
+ Scan result:
HKLM\SOFTWARE\Classes\MailHook.MailTo -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\MailHook.MailTo.1 -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\MailHook.MailTo\CLSID -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\MailHook.MailTo\CurVer -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\SearchHook.SearchHookObject -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\SearchHook.SearchHookObject.1 -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\SearchHook.SearchHookObject\CLSID -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\SearchHook.SearchHookObject\CurVer -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\ae23.ae23Obj -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\ae23.ae23Obj.1 -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\ae23.ae23Obj\CLSID -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\ae23.ae23Obj\CurVer -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\iefeatsl.ViewSource -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\iefeatsl.ViewSource.1 -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\iefeatsl.ViewSource\CLSID -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Classes\iefeatsl.ViewSource\CurVer -> Adware.CoolWebSearch : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Submit URL -> Adware.CoolWebSearch : No action taken.
HKU\S-1-5-21-2383853130-4137269730-2270115496-1005\Software\d78ffc13 -> Adware.CoolWebSearch : No action taken.
HKU\S-1-5-21-2383853130-4137269730-2270115496-1005\Software\d78ffc13\red81542 -> Adware.CoolWebSearch : No action taken.
C:\Program Files\Submit\submithook.dll -> Adware.FreeComm : No action taken.
C:\Program Files\AVPersonal\INFECTED\0.EXE.VIR.VIR -> Dialer.Generic : No action taken.
C:\Program Files\AVPersonal\INFECTED\GD-DIAL.VIR.VIR -> Dialer.Generic : No action taken.
HKU\S-1-5-21-2383853130-4137269730-2270115496-1005\Software\Webdialer -> Dialer.Generic : No action taken.
HKU\S-1-5-21-2383853130-4137269730-2270115496-1005\Software\Webdialer\od-stnd174 -> Dialer.Generic : No action taken.
C:\Program Files\Windows Media Player\wmplayer.exe.tmp -> Downloader.Agent.fw : No action taken.
C:\WINDOWS\system32\wuclient.exe -> Downloader.Agent.fw : No action taken.
C:\WINDOWS\system32\xpsp2fw.exe -> Downloader.Agent.fw : No action taken.
C:\WINDOWS\telnet.exe -> Downloader.Agent.fw : No action taken.
C:\Documents and Settings\GREGOIRE Philippe\Application Data\mswl\msiesh.dll -> Downloader.WinShow.n : No action taken.
C:\WINDOWS\system32\edcfudaom.dll -> Hijacker.StartPage.sc : No action taken.
:mozilla.14:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.247realmedia : No action taken.
:mozilla.15:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@247realmedia[1].txt -> TrackingCookie.247realmedia : No action taken.
:mozilla.32:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@adtech[2].txt -> TrackingCookie.Adtech : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@advertising[1].txt -> TrackingCookie.Advertising : No action taken.
:mozilla.13:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Profiles\default\3ereeojx.slt\cookies.txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@bluestreak[2].txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@casalemedia[1].txt -> TrackingCookie.Casalemedia : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@fl01.ct2.comclick[2].txt -> TrackingCookie.Comclick : No action taken.
:mozilla.9:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@doubleclick[2].txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.28:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@estat[1].txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@ehg-lasamaritaine.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@ehg-neuftelecom.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.29:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@mediaplex[1].txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@overture[2].txt -> TrackingCookie.Overture : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@revenue[2].txt -> TrackingCookie.Revenue : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@serving-sys[2].txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.10:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.11:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.12:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.7:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.8:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@www.smartadserver[2].txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@statcounter[2].txt -> TrackingCookie.Statcounter : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@tradedoubler[2].txt -> TrackingCookie.Tradedoubler : No action taken.
C:\Documents and Settings\cécile\Cookies\cécile@weborama[2].txt -> TrackingCookie.Weborama : No action taken.
Logfile of HijackThis v1.99.1
Scan saved at 06:29:05, on 16/09/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\fxssvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\RunDll32.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\WINDOWS\System32\LVComS.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
C:\Program Files\Le Robert\Le Robert & Collins\rcwinHyper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.exe
C:\Program Files\OpenOffice.org 2.0\program\soffice.BIN
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\Trend Micro\PC-cillin 9\Tmntsrv.exe
C:\Program Files\Trend Micro\PC-cillin 9\PCCPFW.exe
C:\Program Files\Trend Micro\PC-cillin 9\PCCCLIENT.EXE
C:\Program Files\Trend Micro\PC-cillin 9\PCCGUIDE.EXE
C:\Program Files\Trend Micro\PC-cillin 9\POP3TRAP.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft Office\Office\WINWORD.EXE
C:\WINDOWS\msagent\AgentSvr.exe
C:\Documents and Settings\GREGOIRE Philippe\Bureau\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://accounts.google.com/ServiceLogin?service=mail&passive=true&rm=false&continue=https://mail.google.com/mail/&ss=1&scc=1<mpl=default<mplcache=2&emr=1&osid=1
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.free.fr/freebox/index.html
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_5_7_0.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: askBar BHO - {5A074B21-F830-49de-A31B-5BB9D7F6B407} - C:\Program Files\AskBar\bar\bin\askBar1.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\fr\msntb.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_5_7_0.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Ask Toolbar - {5A074B29-F830-49de-A31B-5BB9D7F6B407} - C:\Program Files\AskBar\bar\bin\askBar1.dll
O4 - HKLM\..\Run: [BluetoothAuthenticationAgent] rundll32.exe irprops.cpl,,BluetoothAuthenticationAgent
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\PC-cillin 9\pccguide.exe"
O4 - HKLM\..\Run: [PCCClient.exe] "C:\Program Files\Trend Micro\PC-cillin 9\PCCClient.exe"
O4 - HKLM\..\Run: [Pop3trap.exe] "C:\Program Files\Trend Micro\PC-cillin 9\Pop3trap.exe"
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [adiras] adiras.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NVMCTRAY.DLL,NvTaskbarInit
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [rcwinHyper] C:\Program Files\Le Robert\Le Robert & Collins\rcwinHyper.exe
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - Startup: OpenOffice.org 2.0.lnk = C:\Program Files\OpenOffice.org 2.0\program\quickstart.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Save Image to Folder - res://C:\Program Files\AskBar\bar\bin\askBar.dll/saveimagestofolder.html
O8 - Extra context menu item: &Save Image to MyStuff - res://C:\Program Files\AskBar\bar\bin\askBar.dll/saveimages.html
O8 - Extra context menu item: &Save Link to Folder - res://C:\Program Files\AskBar\bar\bin\askBar.dll/saveltof.html
O8 - Extra context menu item: &Save Link to MyStuff - res://C:\Program Files\AskBar\bar\bin\askBar.dll/savelink.html
O8 - Extra context menu item: &Save Page to Folder... - res://C:\Program Files\AskBar\bar\bin\askBar.dll/savepagetofolder.html
O8 - Extra context menu item: &Save this Page to MyStuff - res://C:\Program Files\AskBar\bar\bin\askBar.dll/savewebpage.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O14 - IERESET.INF: START_PAGE_URL=https://www.free.fr/freebox/index.html
O16 - DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} (Get_ActiveX Control) - https://h17000.www1.hp.com/ewfrf-JAVA/Secure/HPGetDownloadManager.ocx
O17 - HKLM\System\CCS\Services\Tcpip\..\{2EEB18F6-3AD8-4833-9F20-53BBE3E16B3C}: NameServer = 86.64.145.145 84.103.237.145
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PC-cillin PersonalFirewall (PCCPFW) - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 9\PCCPFW.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Trend NT Realtime Service (Tmntsrv) - Trend Micro Inc. - C:\Program Files\Trend Micro\PC-cillin 9\Tmntsrv.exe
Ci-joint le rapport
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 20:40:52 16/09/2006
+ Scan result:
:mozilla.7:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.247realmedia : No action taken.
:mozilla.8:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\GREGOIRE Philippe\Cookies\gregoire philippe@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.28:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.29:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.21:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\GREGOIRE Philippe\Cookies\gregoire philippe@estat[1].txt -> TrackingCookie.Estat : No action taken.
:mozilla.12:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.13:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.14:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\GREGOIRE Philippe\Cookies\gregoire philippe@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.33:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
C:\Documents and Settings\GREGOIRE Philippe\Cookies\gregoire philippe@weborama[2].txt -> TrackingCookie.Weborama : No action taken.
::Report end
ewido anti-spyware - Scan Report
---------------------------------------------------------
+ Created at: 20:40:52 16/09/2006
+ Scan result:
:mozilla.7:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.247realmedia : No action taken.
:mozilla.8:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.247realmedia : No action taken.
C:\Documents and Settings\GREGOIRE Philippe\Cookies\gregoire philippe@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.28:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.29:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.21:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Estat : No action taken.
C:\Documents and Settings\GREGOIRE Philippe\Cookies\gregoire philippe@estat[1].txt -> TrackingCookie.Estat : No action taken.
:mozilla.12:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.13:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.14:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
C:\Documents and Settings\GREGOIRE Philippe\Cookies\gregoire philippe@www.smartadserver[1].txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.33:C:\Documents and Settings\GREGOIRE Philippe\Application Data\Mozilla\Firefox\Profiles\m90p6zwj.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
C:\Documents and Settings\GREGOIRE Philippe\Cookies\gregoire philippe@weborama[2].txt -> TrackingCookie.Weborama : No action taken.
::Report end
Fais ce nettoyage: (à faire réguliérement)
¤Telecharges et installes ceci:
CCleaner:
Télécharger Ccleaner
dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
Les sauvegardes que tu aura faites tu pourra les supprimer si ton ordinateur n'a plus de problémes
¤Relance Ccleaner, vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"
Puis
Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2 (en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp
https://www.bitdefender.com/toolbox/
¤Telecharges et installes ceci:
CCleaner:
Télécharger Ccleaner
dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, cliques sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
Les sauvegardes que tu aura faites tu pourra les supprimer si ton ordinateur n'a plus de problémes
¤Relance Ccleaner, vas dans l'onglet "nettoyeur" present sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"
Puis
Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2 (en haut) va se mettre à clignoter, clic dessus et choisis "accepter l'active X" pour faire fonctionner le scan anti-virus.
Une fois qu'il a terminé colle le rapport ici stp
https://www.bitdefender.com/toolbox/
Vous n’avez pas trouvé la réponse que vous recherchez ?
Posez votre question
le rapport bitdefender:
BitDefender Online Scanner
Scan report generated at: Mon, Sep 18, 2006 - 01:39:05
Scan path: C:\;D:\;E:\;G:\;H:\;I:\;J:\;
Statistics
Time
01:13:46
Files
387225
Folders
6302
Boot Sectors
3
Archives
15907
Packed Files
43613
Results
Identified Viruses
15
Infected Files
26
Suspect Files
2
Warnings
0
Disinfected
0
Deleted Files
47
Engines Info
Virus Definitions
455091
Engine build
AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)
Scan plugins
13
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Documents and Settings\GREGOIRE Philippe\Application Data\mswl\submit2.exe
Infected with: Trojan.Downloader.Agent.AZ
C:\Documents and Settings\GREGOIRE Philippe\Application Data\mswl\submit2.exe
Disinfection failed
C:\Documents and Settings\GREGOIRE Philippe\Application Data\mswl\submit2.exe
Deleted
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\31.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Agent.FX
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\31.tmp=>(Quarantine-4)
Disinfection failed
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\31.tmp=>(Quarantine-4)
Deleted
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\32.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Agent.FX
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\32.tmp=>(Quarantine-4)
Disinfection failed
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\32.tmp=>(Quarantine-4)
Deleted
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\33.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Agent.FX
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\33.tmp=>(Quarantine-4)
Disinfection failed
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\33.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\10.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Xoad
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\10.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\10.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\11.tmp=>(Quarantine-4)
Infected with: Trojan.Movidl.A
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\11.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\11.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\12.tmp=>(Quarantine-4)
Suspected of: BehavesLike:Trojan.StartPage
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\12.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\12.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\13.tmp=>(Quarantine-4)
Suspected of: BehavesLike:Trojan.StartPage
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\13.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\13.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\14.tmp=>(Quarantine-4)
Infected with: Trojan.StartPage.IH
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\14.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\14.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\2.tmp=>(Quarantine-4)
Infected with: Win32.Worm.Welchia.G
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\2.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\2.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\26.tmp=>(Quarantine-4)
Infected with: Trojan.StartPage.IH
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\26.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\26.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\3.tmp=>(Quarantine-4)
Infected with: Trojan.Java.Classloader.C
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\3.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\3.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\5.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Agent.Z
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\5.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\5.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\7.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Agent.Z
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\7.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\7.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\8.tmp=>(Quarantine-4)
Infected with: Trojan.Win32.Winshow.A
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\8.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\9.tmp=>(Quarantine-4)
Infected with: Trojan.Java.Classloader.C
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\9.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\9.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\B.tmp=>(Quarantine-4)
Infected with: Worm.Padobot.M
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\B.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\B.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\C.tmp=>(Quarantine-4)
Infected with: Worm.Padobot.M
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\C.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\C.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\D.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Gres.A
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\D.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\D.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\E.tmp=>(Quarantine-4)=>loader.exe
Infected with: Trojan.Downloader.Small.ON
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\E.tmp=>(Quarantine-4)=>loader.exe
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\E.tmp=>(Quarantine-4)=>loader.exe
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\E.tmp=>(Quarantine-4)
Update failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\F.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Winjj.A
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\F.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\F.tmp=>(Quarantine-4)
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239218.dll
Infected with: Trojan.Downloader.Winjj.A
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239218.dll
Disinfection failed
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239218.dll
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239219.exe
Infected with: Trojan.Downloader.Agent.FW
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239219.exe
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239220.exe
Infected with: Trojan.Downloader.Agent.FW
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239220.exe
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239221.exe
Infected with: Trojan.Downloader.Agent.FW
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239221.exe
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239222.dll
Infected with: Trojan.Startpage.SC
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239222.dll
Disinfection failed
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239222.dll
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239223.dll
Infected with: Trojan.Downloader.Agent.AZ
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239223.dll
Disinfection failed
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239223.dll
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239777.exe
Infected with: Trojan.Downloader.Agent.AZ
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239777.exe
Disinfection failed
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239777.exe
Deleted
BitDefender Online Scanner
Scan report generated at: Mon, Sep 18, 2006 - 01:39:05
Scan path: C:\;D:\;E:\;G:\;H:\;I:\;J:\;
Statistics
Time
01:13:46
Files
387225
Folders
6302
Boot Sectors
3
Archives
15907
Packed Files
43613
Results
Identified Viruses
15
Infected Files
26
Suspect Files
2
Warnings
0
Disinfected
0
Deleted Files
47
Engines Info
Virus Definitions
455091
Engine build
AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)
Scan plugins
13
Archive plugins
38
Unpack plugins
6
E-mail plugins
6
System plugins
1
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Documents and Settings\GREGOIRE Philippe\Application Data\mswl\submit2.exe
Infected with: Trojan.Downloader.Agent.AZ
C:\Documents and Settings\GREGOIRE Philippe\Application Data\mswl\submit2.exe
Disinfection failed
C:\Documents and Settings\GREGOIRE Philippe\Application Data\mswl\submit2.exe
Deleted
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\31.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Agent.FX
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\31.tmp=>(Quarantine-4)
Disinfection failed
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\31.tmp=>(Quarantine-4)
Deleted
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\32.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Agent.FX
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\32.tmp=>(Quarantine-4)
Disinfection failed
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\32.tmp=>(Quarantine-4)
Deleted
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\33.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Agent.FX
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\33.tmp=>(Quarantine-4)
Disinfection failed
C:\Documents and Settings\GREGOIRE Philippe\Mes documents\corbeillebisàverifier\33.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\10.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Xoad
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\10.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\10.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\11.tmp=>(Quarantine-4)
Infected with: Trojan.Movidl.A
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\11.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\11.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\12.tmp=>(Quarantine-4)
Suspected of: BehavesLike:Trojan.StartPage
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\12.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\12.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\13.tmp=>(Quarantine-4)
Suspected of: BehavesLike:Trojan.StartPage
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\13.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\13.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\14.tmp=>(Quarantine-4)
Infected with: Trojan.StartPage.IH
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\14.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\14.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\2.tmp=>(Quarantine-4)
Infected with: Win32.Worm.Welchia.G
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\2.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\2.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\26.tmp=>(Quarantine-4)
Infected with: Trojan.StartPage.IH
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\26.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\26.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\3.tmp=>(Quarantine-4)
Infected with: Trojan.Java.Classloader.C
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\3.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\3.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\5.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Agent.Z
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\5.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\5.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\7.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Agent.Z
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\7.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\7.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\8.tmp=>(Quarantine-4)
Infected with: Trojan.Win32.Winshow.A
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\8.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\9.tmp=>(Quarantine-4)
Infected with: Trojan.Java.Classloader.C
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\9.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\9.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\B.tmp=>(Quarantine-4)
Infected with: Worm.Padobot.M
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\B.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\B.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\C.tmp=>(Quarantine-4)
Infected with: Worm.Padobot.M
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\C.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\C.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\D.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Gres.A
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\D.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\D.tmp=>(Quarantine-4)
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\E.tmp=>(Quarantine-4)=>loader.exe
Infected with: Trojan.Downloader.Small.ON
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\E.tmp=>(Quarantine-4)=>loader.exe
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\E.tmp=>(Quarantine-4)=>loader.exe
Deleted
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\E.tmp=>(Quarantine-4)
Update failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\F.tmp=>(Quarantine-4)
Infected with: Trojan.Downloader.Winjj.A
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\F.tmp=>(Quarantine-4)
Disinfection failed
C:\Program Files\Trend Micro\PC-cillin 9\QUARANTINE\F.tmp=>(Quarantine-4)
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239218.dll
Infected with: Trojan.Downloader.Winjj.A
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239218.dll
Disinfection failed
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239218.dll
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239219.exe
Infected with: Trojan.Downloader.Agent.FW
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239219.exe
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239220.exe
Infected with: Trojan.Downloader.Agent.FW
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239220.exe
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239221.exe
Infected with: Trojan.Downloader.Agent.FW
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239221.exe
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239222.dll
Infected with: Trojan.Startpage.SC
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239222.dll
Disinfection failed
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239222.dll
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239223.dll
Infected with: Trojan.Downloader.Agent.AZ
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239223.dll
Disinfection failed
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239223.dll
Deleted
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239777.exe
Infected with: Trojan.Downloader.Agent.AZ
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239777.exe
Disinfection failed
C:\System Volume Information\_restore{43789835-CF0A-4280-A2F1-921BB0372F95}\RP292\A0239777.exe
Deleted
ok, c'est bon, fais juste ces deux choses pour finir
Alors ceci; C:\System Volume Information\_restore indique que ta restauration du systeme etait infecté ou est infecté, pour être sûr, nous allons créer un point propre.
Clic sur "demarrer", cliques droit sur "poste de travail", "propriétés", onglet "restauration du systeme"
¤ coches la case "desactiver la Restauration du systéme sur tous les lecteurs", puis clic ur "appliquer"
¤ decoches la case et clic sur "appliquer" puis "ok".
Maintenant, que l'ont à effacés les point infectés, nous allons créer un point propre:
Clic sur "demarrer", "tous les programmes", "accessoires", "outils système", "restauration du système", choisis "créer un point de restauration" nommes le " ccm" par exemple, cliques sur "créer" puis "ok".
Voilà, maintenant le point de restauration est créer si un jour tu décides tu pourra revenir en arriere à la date que tu l'as créer donc à ce jour; en fesant la marche arriére tu pourra remettre ton ordinateur à la date ou l'on à créer ce point de restauration mais tu perdra les modifications que tu aura faites entre deux.
Puis:
Redemarres ton pc, dès l'allumage de celui-ci tapote la touche F8 (ou F5 si F8 ne fonctionne pas), à l'écran qui va apparaitre choisis "mode sans echec" attends un peu.. puis refais un nettoyage avec Ccleaner
dis moi ou en est ton probléme
A++
Alors ceci; C:\System Volume Information\_restore indique que ta restauration du systeme etait infecté ou est infecté, pour être sûr, nous allons créer un point propre.
Clic sur "demarrer", cliques droit sur "poste de travail", "propriétés", onglet "restauration du systeme"
¤ coches la case "desactiver la Restauration du systéme sur tous les lecteurs", puis clic ur "appliquer"
¤ decoches la case et clic sur "appliquer" puis "ok".
Maintenant, que l'ont à effacés les point infectés, nous allons créer un point propre:
Clic sur "demarrer", "tous les programmes", "accessoires", "outils système", "restauration du système", choisis "créer un point de restauration" nommes le " ccm" par exemple, cliques sur "créer" puis "ok".
Voilà, maintenant le point de restauration est créer si un jour tu décides tu pourra revenir en arriere à la date que tu l'as créer donc à ce jour; en fesant la marche arriére tu pourra remettre ton ordinateur à la date ou l'on à créer ce point de restauration mais tu perdra les modifications que tu aura faites entre deux.
Puis:
Redemarres ton pc, dès l'allumage de celui-ci tapote la touche F8 (ou F5 si F8 ne fonctionne pas), à l'écran qui va apparaitre choisis "mode sans echec" attends un peu.. puis refais un nettoyage avec Ccleaner
dis moi ou en est ton probléme
A++
Bonjour,
je n'arrive pas à voir ce qu'il faut faire pour faire ( pour aller sur le dos ?):
"Alors ceci; C:\System Volume Information\_restore indique que ta restauration du systeme etait infecté ou est infecté, pour être sûr, nous allons créer un point propre."
Merci pour ta réponse.
je n'arrive pas à voir ce qu'il faut faire pour faire ( pour aller sur le dos ?):
"Alors ceci; C:\System Volume Information\_restore indique que ta restauration du systeme etait infecté ou est infecté, pour être sûr, nous allons créer un point propre."
Merci pour ta réponse.
Ok merci, ça marche.
"Voilà, maintenant le point de restauration est créer si un jour tu décides tu pourra revenir en arriere à la date que tu l'as créer donc à ce jour; en fesant la marche arriére tu pourra remettre ton ordinateur à la date ou l'on à créer ce point de restauration mais tu perdra les modifications que tu aura faites entre deux. "
Il faut que je laisse le point de restauration, sans y toucher. Cela ne modifie pas le fonctionnement de l'ordinateur? Quel est le rôle du point de restauration?
Merci encore, mon problème est résolu.
"Voilà, maintenant le point de restauration est créer si un jour tu décides tu pourra revenir en arriere à la date que tu l'as créer donc à ce jour; en fesant la marche arriére tu pourra remettre ton ordinateur à la date ou l'on à créer ce point de restauration mais tu perdra les modifications que tu aura faites entre deux. "
Il faut que je laisse le point de restauration, sans y toucher. Cela ne modifie pas le fonctionnement de l'ordinateur? Quel est le rôle du point de restauration?
Merci encore, mon problème est résolu.
non ça modifie en rien le fonctionnement de l'ordi, regarde ici pour un peu plus d'explications
https://kerio.probb.fr/t15-la-restauration-du-systme-sous-xp-et-vista
https://kerio.probb.fr/t15-la-restauration-du-systme-sous-xp-et-vista