Couriers sortants auto constatés par avast

pascamax -  
salwa5 Messages postés 7552 Statut Contributeur -
bonjour
c'est dans avast/courier electronique que j'ai constaté que mon pc envoyait sans cesse des email style spam américain

j'ai fait toute la procédure

voici les rapports bitdefender & hijackthis
que dois je virer ?

merci beaucoup


 Status
Infected with: Trojan.Spy.Html.Bankfraud.BR
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Trojan.Spy.Html.Paylap.BG
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Trojan.Spy.HTML.Bankfraud.CM
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Trojan.Spy.HTML.Bankfraud.CM
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Updated
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Updated
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Updated
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Updated
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Updated
Infected with: Trojan.Dropper.Agent.MG
Disinfection failed
Deleted
Updated
Updated
Infected with: Trojan.Dropper.Agent.MG
Disinfection failed
Deleted
Updated
Updated
Infected with: Trojan.Dropper.Agent.MG
Disinfection failed
Deleted
Updated
Updated
Infected with: Trojan.Dropper.Agent.MG
Disinfection failed
Deleted
Updated
Updated
Infected with: Trojan.Dropper.Agent.MG
Disinfection failed
Deleted
Updated
Updated
Infected with: Trojan.Dropper.Agent.MG
Disinfection failed
Deleted
Updated
Updated
Infected with: Trojan.Dropper.Agent.MG
Disinfection failed
Deleted
Updated
Updated
Infected with: Trojan.Dropper.Agent.MG
Disinfection failed
Deleted
Updated
Updated
Infected with: Trojan.Dropper.Agent.MG
Disinfection failed
Deleted
Updated
Updated
Infected with: Trojan.Dropper.Agent.MG
Disinfection failed
Deleted
Updated
Updated
Update failed
Infected with: Trojan.Downloader.HTML.Agent.AE
Disinfection failed
Deleted
Updated
Updated
Update failed
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Updated
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Update failed
Infected with: Exploit.Iframe.Vulnerability.B
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Win32.Netsky.P@mm
Deleted
Updated
Updated
Updated
Updated
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Updated
Updated
Updated
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Update failed
Infected with: Win32.Bagle.AJ@mm
Deleted
Updated
Updated
Update failed
Infected with: Win32.Netsky.P@mm
Deleted
Updated
Updated
Updated
Update failed
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Update failed
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.CM
Disinfection failed
Deleted
Updated
Updated
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.CM
Disinfection failed
Deleted
Updated
Updated
Update failed
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Updated
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Update failed
Infected with: Win32.Bagle.AY@mm
Deleted
Updated
Updated
Update failed
Infected with: Win32.Bagle.AY@mm.damaged
Disinfection failed
Deleted
Updated
Updated
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Update failed
Infected with: Trojan.Spy.Html.Paylap.BG
Disinfection failed
Deleted
Updated
Updated
Update failed
Infected with: Trojan.Spy.Html.Bankfraud.BR
Disinfection failed
Deleted
Updated
Updated
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Updated
Updated
Updated
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Update failed
Infected with: Trojan.Downloader.HTML.Agent.AE
Disinfection failed
Deleted
Updated
Updated
Update failed
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Updated
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Update failed
Infected with: Exploit.Iframe.Vulnerability.B
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Win32.Netsky.P@mm
Deleted
Updated
Updated
Updated
Updated
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Updated
Updated
Updated
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Update failed
Infected with: Win32.Bagle.AJ@mm
Deleted
Updated
Updated
Update failed
Infected with: Win32.Netsky.P@mm
Deleted
Updated
Updated
Updated
Update failed
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.DQ
Disinfection failed
Deleted
Update failed
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.CM
Disinfection failed
Deleted
Updated
Updated
Update failed
Infected with: Trojan.Spy.HTML.Bankfraud.CM
Disinfection failed
Deleted
Updated
Updated
Update failed
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Updated
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Update failed
Infected with: Win32.Bagle.AY@mm
Deleted
Updated
Updated
Update failed
Infected with: Win32.Bagle.AY@mm.damaged
Disinfection failed
Deleted
Updated
Updated
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Updated
Infected with: Win32.NetSky.Q@mm
Deleted
Updated
Updated
Updated
Updated
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Update failed
Infected with: Trojan.Spy.Html.Paylap.BG
Disinfection failed
Deleted
Updated
Updated
Update failed
Infected with: Trojan.Spy.Html.Bankfraud.BR
Disinfection failed
Deleted
Updated
Updated
Update failed
Suspected of: Exploit.Iframe.Vulnerability
Disinfection failed
Deleted
Updated
Updated
Updated
Updated
Updated
Update failed
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Delete failed
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted
Suspected of: BehavesLike:Win32.AV-Killer
Disinfection failed
Deleted





Logfile of HijackThis v1.99.1
Scan saved at 09:58:37, on 27/01/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\RunDll32.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb07.exe
C:\WINDOWS\zHotkey.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\PROGRA~1\NUMERI~1\MONASS~1\SMARTB~1\MotiveSB.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\3M\PSNLite\PsnLite.exe
c:\Program Files\Numericable\Mon Assistant Internet\bin\mad.exe
C:\Nokia\Update_Manager\bin\UMScheduler.exe
c:\Program Files\Numericable\Mon Assistant Internet\bin\mpbtn.exe
C:\PROGRA~1\3M\PSNLite\PSNGive.exe
C:\PROGRA~1\Motive\ASSTCO~1\MOTIVE~1.EXE
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLService.exe
C:\WINDOWS\$NtUninstallKB890859$\IEXPLORE.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLSched.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Hijackthis Version Française\VERSION TRADUITE ORIGINALE.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.lemonde.fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer par NUMERICABLE
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: (no name) - {08C06D61-F1F3-4799-86F8-BE1A89362C85} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar avec bloqueur de fenêtres pop-up - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb07.exe
O4 - HKLM\..\Run: [CHotkey] zHotkey.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Workflow] F:\Workflow.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\NUMERI~1\MONASS~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [tcactive] C:\Program Files\The Cleaner\tca.exe
O4 - HKLM\..\Run: [tcmonitor] C:\Program Files\The Cleaner\tcm.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_8 -reboot 1
O4 - Startup: UMScheduler 2.0.lnk = C:\Nokia\Update_Manager\bin\UMScheduler.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Fichiers communs\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Mon Assistant Internet.lnk = C:\Program Files\Numericable\Mon Assistant Internet\bin\matcli.exe
O4 - Global Startup: Post-it® Software Notes Lite.lnk = C:\Program Files\3M\PSNLite\PsnLite.exe
O8 - Extra context menu item: &Recherche AOL Toolbar - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: Sothink SWF Catcher - C:\Program Files\Fichiers communs\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Fichiers communs\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra 'Tools' menuitem: Sothink SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Fichiers communs\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://www.carrefour.fr/
O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} - 
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Fichiers communs\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\Home Cinema\PowerCinema\Kernel\TV\CLSched.exe
O23 - Service: CyberLink Media Library Service - Cyberlink - C:\Program Files\CyberLink\Shared Files\CLML_NTService\CLMLServer.exe
O23 - Service: DirectX Service (DirectJobj) - Unknown owner - c:\windows\system32\directx.exe (file missing)
O23 - Service: Macromedia Licensing Service - Macromedia - C:\Program Files\Fichiers communs\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe



A voir également:

1 réponse

salwa5 Messages postés 7552 Statut Contributeur 1 670
 
bonsoir

Télécharge SDFix sur ton bureau

http://downloads.andymanchesta.com/RemovalTools/SDFix.exe

Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau.
Redémarre ton ordinateur en mode sans échec (redemarrage + tapotte sans arret sur F8 desque l'ordi s'allume)
Ouvre le dossier SDFix qui vient d'être créé sur le Bureau et double clique sur RunThis.bat pour lancer le script.
Appuie sur Y pour commencer le processus de nettoyage.
Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
Appuie sur une touche pour redémarrer le PC.
Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.

Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum, avec un nouveau log Hijackthis !

a++
1