Internet

Résolu
bonjour,
a chaque fois que j'ouvre une page internet il y a une autre qui s'ouvre avant et qui m'indique soit que j ai des erreurs systeme ou soit qu'il y a des logiciels infectés. Dans les deux il me demande de faire un scan en telechargeant un fichier .exe. Est ce dangereux ou dois le faire ?
Configuration: Windows XP
Firefox 2.0

15 réponses

Résumé de la discussion

Une navigation sous Windows XP et Firefox 2.0 présente des pop-up affichant des erreurs système ou des infections et incite à télécharger un fichier .exe pour un scan. Des conseils indiquent de ne pas exécuter le fichier et d'utiliser HijackThis ou SmitfraudFix pour analyser le système et générer un rapport à partager. Les rapports mentionnent des éléments suspects dans les journaux et les clés de registre, avec des résultats visibles après l'analyse et le nettoyage par des outils de sécurité. D'autres observations soulignent que ce type de menace provient souvent d'adwares ou de modules de navigateur, et que la sécurité repose sur un antivirus à jour et des outils fiables.

Bobot (l’IA à votre service)
  1. Salut

    Ne le télécharge pas !

    Télécharge HijackThis :
    ---> http://www.infos-du-net.com/telecharger/HijackThis,0301-454.html
    Installe le dans son propre dossier :
    - clic droit sur le bureau, tu choisis "nouveau dossier" puis installe-le à l'intérieur.
    Double-clic sur HijackThis.
    Clic sur "do a system scan and save logfile"
    Puis copie et colle le rapport ici stp
    0
    1. j ai fait la manipulation avec hijackthis :

      Logfile of HijackThis v1.99.1
      Scan saved at 04:25:40, on 15/03/2007
      Platform: Windows XP SP2 (WinNT 5.01.2600)
      MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\system32\Ati2evxx.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\system32\ZONELABS\vsmon.exe
      C:\WINDOWS\system32\Ati2evxx.exe
      C:\WINDOWS\Explorer.EXE
      C:\WINDOWS\system32\spoolsv.exe
      C:\Program Files\acer\Acer eConsole\MediaServerService.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\WINDOWS\system32\svchost.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\WINDOWS\RTHDCPL.EXE
      C:\Program Files\Acer\eRecovery\Monitor.exe
      C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
      C:\Program Files\Acer\Acer eMode Management\AspireService.exe
      C:\Program Files\Acer\Acer eConsole\MediaSync.exe
      C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
      C:\Program Files\QuickTime\qttask.exe
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe
      C:\WINDOWS\V0220Mon.exe
      C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
      C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
      C:\Program Files\eMule\emule.exe
      C:\Program Files\BitComet\BitComet.exe
      C:\WINDOWS\system32\drwtsn32.exe
      C:\WINDOWS\system32\drwtsn32.exe
      C:\Program Files\Mozilla Firefox\firefox.exe
      C:\Program Files\MSN Messenger\msnmsgr.exe
      C:\Documents and Settings\Christophe\Bureau\Nouveau dossier\HijackThis.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
      R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.acer.com/worldwide/selection.html
      R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O1 - Hosts: 66.98.136.25 auto.search.msn.com
      O1 - Hosts: 66.98.136.25 auto.search.msn.es
      O1 - Hosts: 66.98.136.25 auto.search.msn.com
      O1 - Hosts: 66.98.136.25 auto.search.msn.es
      O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
      O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO.dll
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
      O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
      O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
      O4 - HKLM\..\Run: [LaunchApp] Alaunch
      O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
      O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
      O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
      O4 - HKLM\..\Run: [ntiMUI] c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe
      O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
      O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
      O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
      O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
      O4 - HKLM\..\Run: [eRecoveryService] C:\Program Files\Acer\eRecovery\Monitor.exe
      O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
      O4 - HKLM\..\Run: [AspireService] C:\Program Files\Acer\Acer eMode Management\AspireService.exe
      O4 - HKLM\..\Run: [MediaSync] C:\Program Files\Acer\Acer eConsole\MediaSync.exe
      O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE VIMICRO USB PC Camera
      O4 - HKLM\..\Run: [LXCGCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCGtime.dll,_RunDLLEntry@16
      O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
      O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
      O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [AVFX Engine] C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe
      O4 - HKLM\..\Run: [V0220Mon.exe] C:\WINDOWS\V0220Mon.exe
      O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
      O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
      O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
      O4 - HKCU\..\Run: [Creative Live! Cam Manager] "C:\Program Files\Creative\Creative Live! Cam\Live! Cam Manager\CTLCMgr.exe"
      O4 - HKCU\..\Run: [updateMgr] c:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
      O4 - Startup: Y'z ToolBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
      O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
      O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
      O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
      O8 - Extra context menu item: Download all videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
      O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
      O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
      O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
      O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
      O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
      O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
      O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
      O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
      O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
      O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
      O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
      O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
      O23 - Service: lxcg_device - Unknown owner - C:\WINDOWS\system32\lxcgcoms.exe
      O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZONELABS\vsmon.exe
      0
    2. et voila l'erreur!
      "ne pas ecouter boulepate."

      pour se plaidre, c'est le meilleur, mais pour les conseils...
      0
    3. @pépéJe me doute de qui se cache la dessous :-)

      Sache que le problème est résolu alors avant de dire des merdes de la taille que tu es apprends à lire ;-)
      0
  2. cette page ki veut te dire ke tu est infécté et bien c elle ki t'infectera
    mieux avoir un antivirus mis a jour recement et encore fait ce ke t'a demandé boulepate62
    copie coller de ton rapport analyse hijackthis

    bon courage!!!
    0
    1. Pourquoi tu fais des fautes exprés quand tu écris?
      ;)
      0
  3. voila je viens de faire la manipulation avec Hijackthis : voila ce que ca a donné :

    Logfile of HijackThis v1.99.1
    Scan saved at 04:25:40, on 15/03/2007
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\ZONELABS\vsmon.exe
    C:\WINDOWS\system32\Ati2evxx.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\acer\Acer eConsole\MediaServerService.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\WINDOWS\RTHDCPL.EXE
    C:\Program Files\Acer\eRecovery\Monitor.exe
    C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
    C:\Program Files\Acer\Acer eMode Management\AspireService.exe
    C:\Program Files\Acer\Acer eConsole\MediaSync.exe
    C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe
    C:\WINDOWS\V0220Mon.exe
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
    C:\Program Files\eMule\emule.exe
    C:\Program Files\BitComet\BitComet.exe
    C:\WINDOWS\system32\drwtsn32.exe
    C:\WINDOWS\system32\drwtsn32.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\Documents and Settings\Christophe\Bureau\Nouveau dossier\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.acer.com/worldwide/selection.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = https://www.bing.com/?FORM=TOOLBR&cc=fr&toHttps=1&redig=4527FFF1C12746FC9EDB535C75E80ECC
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O1 - Hosts: 66.98.136.25 auto.search.msn.com
    O1 - Hosts: 66.98.136.25 auto.search.msn.es
    O1 - Hosts: 66.98.136.25 auto.search.msn.com
    O1 - Hosts: 66.98.136.25 auto.search.msn.es
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O4 - HKLM\..\Run: [LaunchApp] Alaunch
    O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
    O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
    O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
    O4 - HKLM\..\Run: [ntiMUI] c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe
    O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
    O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
    O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
    O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
    O4 - HKLM\..\Run: [eRecoveryService] C:\Program Files\Acer\eRecovery\Monitor.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
    O4 - HKLM\..\Run: [AspireService] C:\Program Files\Acer\Acer eMode Management\AspireService.exe
    O4 - HKLM\..\Run: [MediaSync] C:\Program Files\Acer\Acer eConsole\MediaSync.exe
    O4 - HKLM\..\Run: [BigDogPath] C:\WINDOWS\VM_STI.EXE VIMICRO USB PC Camera
    O4 - HKLM\..\Run: [LXCGCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCGtime.dll,_RunDLLEntry@16
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Fichiers communs\Ahead\Lib\NeroCheck.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [AVFX Engine] C:\Program Files\Creative\Creative Live! Cam\VideoFX\StartFX.exe
    O4 - HKLM\..\Run: [V0220Mon.exe] C:\WINDOWS\V0220Mon.exe
    O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Fichiers communs\Ahead\Lib\NMBgMonitor.exe"
    O4 - HKCU\..\Run: [Creative Live! Cam Manager] "C:\Program Files\Creative\Creative Live! Cam\Live! Cam Manager\CTLCMgr.exe"
    O4 - HKCU\..\Run: [updateMgr] c:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
    O4 - Startup: Y'z ToolBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
    O8 - Extra context menu item: Download all videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
    O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
    O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
    O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
    O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
    O23 - Service: lxcg_device - Unknown owner - C:\WINDOWS\system32\lxcgcoms.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZONELABS\vsmon.exe
    0
    1. Salut

      ¤ Télécharge SmitfraudFix (enregistre le sur le "bureau")
      http://siri.urz.free.fr/Fix/SmitfraudFix.zip

      décompresse SmitfraudFix
      Lance le fichier SmitfraudFix ou SmitfraudFix.cmd et choisit l option 1 copie le rapport ici stp

      ¤ Télécharge et installe AVG anti-spyware :
      Tu fais un scan complet de ton système, dès qu'il a fini.
      Si il te trouve des espions, supprime les. Enregistre le rapport et colle le ici stp

      AVG anti-spyware : reste gratuit après la période d'essai en français
      ---->http://www.infos-du-net.com/telecharger/Anti-Spyware-AVG,0301-7063.html

      Si tu as besoin d'aide avec Ewido(devenu AVG-antispyware) regarde ce tutoriel:
      --> http://www.kachouri.com/tuto/tuto-161-avg-anti-spyware-75-pour-votre-securite.html
      0
      1. Salut ,
        Voici ce que donne SmitfraudFix :

        SmitFraudFix v2.148

        Rapport fait à 20:25:47,75, 15/03/2007
        Executé à partir de C:\Documents and Settings\Christophe\Bureau\Nouveau dossier (2)\SmitfraudFix
        OS: Microsoft Windows XP [version 5.1.2600] - Windows_NT
        Le type du système de fichiers est FAT32
        Fix executé en mode normal

        »»»»»»»»»»»»»»»»»»»»»»»» hosts

        »»»»»»»»»»»»»»»»»»»»»»»» C:\

        »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS

        »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system

        »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web

        »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32

        »»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles

        »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Christophe

        »»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Christophe\Application Data

        »»»»»»»»»»»»»»»»»»»»»»»» Menu Démarrer

        »»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\CHRIST~1\FAVORIS

        »»»»»»»»»»»»»»»»»»»»»»»» Bureau

        »»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files

        »»»»»»»»»»»»»»»»»»»»»»»» Clés corrompues

        »»»»»»»»»»»»»»»»»»»»»»»» Eléments du bureau

        [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
        "Source"="About:Home"
        "SubscribedURL"="About:Home"
        "FriendlyName"="Ma page d'accueil"

        »»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
        !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

        SrchSTS.exe by S!Ri
        Search SharedTaskScheduler's .dll

        »»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
        !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
        "AppInit_DLLs"=""

        »»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
        !!!Attention, les clés qui suivent ne sont pas forcément infectées!!!

        [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
        "System"=""

        »»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32-huy32

        »»»»»»»»»»»»»»»»»»»»»»»» Recherche infection wininet.dll

        »»»»»»»»»»»»»»»»»»»»»»»» Fin
        0
      2. salut
        voici le rapport AVG :

        AVG Anti-Spyware - Rapport d'analyse
        ---------------------------------------------------------

        + Créé à: 00:52:47 16/03/2007

        + Résultat de l'analyse:

        :mozilla.18:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
        :mozilla.20:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
        :mozilla.86:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
        :mozilla.87:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
        :mozilla.88:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
        :mozilla.46:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
        :mozilla.47:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
        C:\Documents and Settings\Christophe\Cookies\christophe@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyé.
        :mozilla.104:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé.
        C:\Documents and Settings\Christophe\Cookies\christophe@bluestreak[1].txt -> TrackingCookie.Bluestreak : Nettoyé.
        :mozilla.100:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
        :mozilla.101:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
        :mozilla.99:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
        :mozilla.118:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Cpvfeed : Nettoyé.
        :mozilla.119:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Cpvfeed : Nettoyé.
        :mozilla.120:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Cpvfeed : Nettoyé.
        :mozilla.121:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Cpvfeed : Nettoyé.
        :mozilla.12:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé.
        C:\Documents and Settings\Christophe\Cookies\christophe@doubleclick[1].txt -> TrackingCookie.Doubleclick : Nettoyé.
        :mozilla.114:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
        :mozilla.115:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
        :mozilla.116:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
        :mozilla.117:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
        :mozilla.89:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
        :mozilla.90:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
        :mozilla.91:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
        :mozilla.33:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé.
        C:\Documents and Settings\Christophe\Cookies\christophe@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Nettoyé.
        :mozilla.23:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.24:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.25:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.26:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.27:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.28:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.29:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.30:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.122:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
        :mozilla.123:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
        :mozilla.124:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
        :mozilla.125:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
        :mozilla.126:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
        :mozilla.127:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
        :mozilla.10:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
        :mozilla.11:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
        :mozilla.9:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
        :mozilla.102:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
        :mozilla.103:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
        C:\Documents and Settings\Christophe\Cookies\christophe@weborama[2].txt -> TrackingCookie.Weborama : Nettoyé.
        :mozilla.77:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.78:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.79:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.80:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.81:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.82:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.83:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.84:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.85:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.72:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Zedo : Nettoyé.
        :mozilla.73:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Zedo : Nettoyé.
        :mozilla.74:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Zedo : Nettoyé.
        :mozilla.75:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Zedo : Nettoyé.
        :mozilla.76:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Zedo : Nettoyé.

        Fin du rapport
        0
      3. Salut,
        j'ai fais le scan avec AVG apparemment il a du resoudre le problème, car les pages n'apparaissent plus
        Je te remercie pour ton aide ; au pire si ça recommence je te contacterai sur le forum
        0
    2. Tu peux jeter SmitfraudFix c'est ok ;-)
      0
      1. salut
        voici le rapport AVG :

        AVG Anti-Spyware - Rapport d'analyse
        ---------------------------------------------------------

        + Créé à: 00:52:47 16/03/2007

        + Résultat de l'analyse:

        :mozilla.18:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
        :mozilla.20:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.247realmedia : Nettoyé.
        :mozilla.86:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
        :mozilla.87:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
        :mozilla.88:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Adbrite : Nettoyé.
        :mozilla.46:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
        :mozilla.47:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Advertising : Nettoyé.
        C:\Documents and Settings\Christophe\Cookies\christophe@atdmt[2].txt -> TrackingCookie.Atdmt : Nettoyé.
        :mozilla.104:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Bluestreak : Nettoyé.
        C:\Documents and Settings\Christophe\Cookies\christophe@bluestreak[1].txt -> TrackingCookie.Bluestreak : Nettoyé.
        :mozilla.100:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
        :mozilla.101:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
        :mozilla.99:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Comclick : Nettoyé.
        :mozilla.118:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Cpvfeed : Nettoyé.
        :mozilla.119:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Cpvfeed : Nettoyé.
        :mozilla.120:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Cpvfeed : Nettoyé.
        :mozilla.121:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Cpvfeed : Nettoyé.
        :mozilla.12:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Doubleclick : Nettoyé.
        C:\Documents and Settings\Christophe\Cookies\christophe@doubleclick[1].txt -> TrackingCookie.Doubleclick : Nettoyé.
        :mozilla.114:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
        :mozilla.115:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
        :mozilla.116:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
        :mozilla.117:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Falkag : Nettoyé.
        :mozilla.89:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
        :mozilla.90:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
        :mozilla.91:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Fastclick : Nettoyé.
        :mozilla.33:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Mediaplex : Nettoyé.
        C:\Documents and Settings\Christophe\Cookies\christophe@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Nettoyé.
        :mozilla.23:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.24:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.25:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.26:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.27:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.28:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.29:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.30:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Reliablestats : Nettoyé.
        :mozilla.122:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
        :mozilla.123:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
        :mozilla.124:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
        :mozilla.125:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
        :mozilla.126:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
        :mozilla.127:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Serving-sys : Nettoyé.
        :mozilla.10:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
        :mozilla.11:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
        :mozilla.9:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Smartadserver : Nettoyé.
        :mozilla.102:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
        :mozilla.103:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Weborama : Nettoyé.
        C:\Documents and Settings\Christophe\Cookies\christophe@weborama[2].txt -> TrackingCookie.Weborama : Nettoyé.
        :mozilla.77:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.78:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.79:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.80:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.81:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.82:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.83:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.84:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.85:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Yieldmanager : Nettoyé.
        :mozilla.72:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Zedo : Nettoyé.
        :mozilla.73:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Zedo : Nettoyé.
        :mozilla.74:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Zedo : Nettoyé.
        :mozilla.75:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Zedo : Nettoyé.
        :mozilla.76:C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt -> TrackingCookie.Zedo : Nettoyé.

        Fin du rapport
        0
    3. Salut

      Comme tu veux, mais ton PC ne respire pas la santé !

      Fait au moins ça :

      Fait ce nettoyage: à faire réguliérement

      ¤ Télécharge et installe CCleaner (n'installe pas la barre d'outil Yahoo)
      ---> http://www.infos-du-net.com/telecharger/CCleaner,0301-1039.html

      - Dans la colonne de gauche clic sur "erreurs" coches toutes les cases, puis cliques en bas sur "chercher des erreurs" une fois finit, clic sur "reparer les erreurs" et tu aura un message pour sauvegarder ta base de registre tu dis "oui" puis tu recommences jusqu'a ce qu'il te trouve plus d'erreurs.
      Les sauvegardes que tu aura faites, tu pourra les supprimer si ton ordinateur n'a plus de problémes.

      - Relance Ccleaner, vas dans l'onglet "nettoyeur" présent sur la gauche, decoches la derniere case (Avancé si elle est cochée) puis clic sur "lancer le nettoyage"

      Si tu as besoin d'aide avec Ccleaner, regarde ce tutoriel :
      https://kerio.probb.fr/t242-tuto-ccleaner-v-2
      0
      1. salut
        apparemment je me suis planté tu as raison le probleme n'est pas résolu
        J'ai utilisé ccleaner et il y a une erreur qu'il narrive pas a reparer et pour le nettoyage il ya 4 ou 5 fichiers qu'il narrive pas a supprimer
        0
    4. Fait ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2(en haut) va se mettre à clignoter, clique dessus et choisit "accepter l'active X" pour faire fonctionner le scan anti-virus.
      Une fois qu'il a terminé colle le rapport ici stp

      ---> https://www.kaspersky.fr/downloads

      - Kaspersky Online Scanner
      - Accept
      0
      1. re salut
        une petite question avant de lancer le scan dois je fermer mon antivirus ?
        0
    5. Non, ne le ferme pas ;-)
      0
      1. Voila ce qu'a donne le scan on line
        J ai cru voir ecrit trojan j espere que ce n'est pas tres grave

        KASPERSKY ONLINE SCANNER REPORT
        Friday, March 16, 2007 6:56:25 PM
        Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
        Kaspersky Online Scanner version: 5.0.83.0
        Kaspersky Anti-Virus database last update: 16/03/2007
        Kaspersky Anti-Virus database records: 266348
        -------------------------------------------------------------------------------

        Scan Settings:
        Scan using the following antivirus database: standard
        Scan Archives: true
        Scan Mail Bases: true

        Scan Target - My Computer:
        C:\
        D:\
        E:\
        F:\
        G:\
        H:\
        I:\
        J:\

        Scan Statistics:
        Total number of scanned objects: 85359
        Number of viruses found: 1
        Number of infected objects: 4 / 0
        Number of suspicious objects: 0
        Duration of the scan process: 00:46:14

        Infected Object Name / Virus Name / Last Action
        C:\WINDOWS\system32\config\system.LOG Object is locked skipped
        C:\WINDOWS\system32\config\software.LOG Object is locked skipped
        C:\WINDOWS\system32\config\default.LOG Object is locked skipped
        C:\WINDOWS\system32\config\SECURITY Object is locked skipped
        C:\WINDOWS\system32\config\SAM Object is locked skipped
        C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped
        C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped
        C:\WINDOWS\system32\config\SYSTEM Object is locked skipped
        C:\WINDOWS\system32\config\SOFTWARE Object is locked skipped
        C:\WINDOWS\system32\config\DEFAULT Object is locked skipped
        C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped
        C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped
        C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped
        C:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped
        C:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped
        C:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped
        C:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped
        C:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped
        C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped
        C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped
        C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped
        C:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped
        C:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped
        C:\WINDOWS\Temp\ZLT07f1b.TMP Object is locked skipped
        C:\WINDOWS\Temp\ZLT07f25.TMP Object is locked skipped
        C:\WINDOWS\Temp\JETC294.tmp Object is locked skipped
        C:\WINDOWS\Temp\Perflib_Perfdata_44c.dat Object is locked skipped
        C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped
        C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
        C:\WINDOWS\Sti_Trace.log Object is locked skipped
        C:\WINDOWS\wiaservc.log Object is locked skipped
        C:\WINDOWS\wiadebug.log Object is locked skipped
        C:\WINDOWS\WindowsUpdate.log Object is locked skipped
        C:\WINDOWS\SchedLgU.Txt Object is locked skipped
        C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
        C:\WINDOWS\SoftwareDistribution\EventCache\{21AFBAC7-2F0F-4525-9022-CAA73FED0D48}.bin Object is locked skipped
        C:\WINDOWS\Internet Logs\tvDebug.log Object is locked skipped
        C:\WINDOWS\Internet Logs\fwpktlog.txt Object is locked skipped
        C:\WINDOWS\Internet Logs\ACER-A38B4A0260.ldb Object is locked skipped
        C:\WINDOWS\Internet Logs\IAMDB.RDB Object is locked skipped
        C:\WINDOWS\Internet Logs\fwdbglog.txt Object is locked skipped
        C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
        C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
        C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
        C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
        C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
        C:\Documents and Settings\LocalService\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
        C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
        C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
        C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
        C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
        C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat Object is locked skipped
        C:\Documents and Settings\LocalService\Local Settings\Temp\Historique\History.IE5\index.dat Object is locked skipped
        C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped
        C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
        C:\Documents and Settings\Christophe\NTUSER.DAT Object is locked skipped
        C:\Documents and Settings\Christophe\ntuser.dat.LOG Object is locked skipped
        C:\Documents and Settings\Christophe\Local Settings\Temp\JET9FF4.tmp Object is locked skipped
        C:\Documents and Settings\Christophe\Local Settings\Temp\~DFBB51.tmp Object is locked skipped
        C:\Documents and Settings\Christophe\Local Settings\Temp\~DFBB66.tmp Object is locked skipped
        C:\Documents and Settings\Christophe\Local Settings\Temp\~DFC9FE.tmp Object is locked skipped
        C:\Documents and Settings\Christophe\Local Settings\Temp\~DFCA22.tmp Object is locked skipped
        C:\Documents and Settings\Christophe\Local Settings\Historique\History.IE5\index.dat Object is locked skipped
        C:\Documents and Settings\Christophe\Local Settings\Historique\History.IE5\MSHist012007031620070317\index.dat Object is locked skipped
        C:\Documents and Settings\Christophe\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
        C:\Documents and Settings\Christophe\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
        C:\Documents and Settings\Christophe\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
        C:\Documents and Settings\Christophe\Local Settings\Application Data\Microsoft\Windows Live Contacts\omfanatic62@hotmail.fr\real\members.stg Object is locked skipped
        C:\Documents and Settings\Christophe\Local Settings\Application Data\Microsoft\Windows Live Contacts\omfanatic62@hotmail.fr\shadow\members.stg Object is locked skipped
        C:\Documents and Settings\Christophe\Cookies\index.dat Object is locked skipped
        C:\Program Files\acer\Acer eConsole\AcerDB.mdb Object is locked skipped
        C:\Program Files\acer\Acer eConsole\AcerDB.ldb Object is locked skipped
        C:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped
        C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
        C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped
        C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped
        C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
        C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
        C:\System Volume Information\_restore{E27BA98E-2CFC-424E-BDA2-9BF88577901F}\RP124\A0057124.exe/data0012 Infected: Trojan.Win32.Inject.ba skipped
        C:\System Volume Information\_restore{E27BA98E-2CFC-424E-BDA2-9BF88577901F}\RP124\A0057124.exe Inno: infected - 1 skipped
        C:\System Volume Information\_restore{E27BA98E-2CFC-424E-BDA2-9BF88577901F}\RP138\A0066742.exe/data0012 Infected: Trojan.Win32.Inject.ba skipped
        C:\System Volume Information\_restore{E27BA98E-2CFC-424E-BDA2-9BF88577901F}\RP138\A0066742.exe Inno: infected - 1 skipped
        C:\System Volume Information\_restore{E27BA98E-2CFC-424E-BDA2-9BF88577901F}\RP175\change.log Object is locked skipped
        D:\System Volume Information\_restore{E27BA98E-2CFC-424E-BDA2-9BF88577901F}\RP175\change.log Object is locked skipped

        Scan process completed.
        0
    6. Fait ceci pour régler le problème

      Alors ceci : C:\System Volume Information\_restore (voir rapport Kaspersky)
      Indique que ta restauration du système etait infecté ou est infecté, pour être sûr, nous allons créer un point propre.

      Clic sur "demarrer", cliques droit sur "poste de travail", "propriétés", onglet "restauration du système"

      ¤ coches la case "desactiver la restauration du systéme sur tous les lecteurs", puis clic ur "appliquer"
      ¤ décoches la case et clic sur "appliquer" puis "ok".

      Maintenant, que l'ont à effacés les point infectés, nous allons créer un point propre :

      Clic sur "demarrer", "tous les programmes", "accessoires", "outils système", "restauration du système", choisis "créer un point de restauration" nommes le " ccm" par exemple, clic sur "créer" puis "ok".
      Voilà, maintenant le point de restauration est créer
      Si un jour tu le décides, tu pourra revenir en arrière à la date que tu as créér ce point de restauration.
      En exécutant la restauration du système tu pourra remettre ton ordinateur à la date ou l'on à créer ce point de restauration mais tu perdra les modifications que tu aura faites entre deux.
      0
      1. salut
        je viens de creer un point de restauration et la normalement le probleme devrait etre resolu si j'ai bien compris ?
        0
      2. salut
        j ai toujours ces pages web qui s ouvrent intempestivement ; est ce qu'il est possible de ne plus les voir
        merci
        0
    7. ¤ Fait un clic droit sur hijackthis, choisis "renommer" marque : abcde.exe
      Puis remet un rapport hijackthis.

      ¤ Prècise tous les logiciels anti-spywares que tu as stp.
      0
      1. salut voila le rapport hijackthis :

        Logfile of Trend Micro HijackThis v2.0.0 (BETA)
        Scan saved at 08:21:34, on 17/03/2007
        Platform: Windows XP SP2 (WinNT 5.01.2600)
        Boot mode: Normal

        Running processes:
        C:\WINDOWS\System32\smss.exe
        C:\WINDOWS\system32\winlogon.exe
        C:\WINDOWS\system32\services.exe
        C:\WINDOWS\system32\lsass.exe
        C:\WINDOWS\system32\Ati2evxx.exe
        C:\WINDOWS\system32\svchost.exe
        C:\WINDOWS\System32\svchost.exe
        C:\WINDOWS\system32\ZONELABS\vsmon.exe
        C:\WINDOWS\system32\Ati2evxx.exe
        C:\WINDOWS\Explorer.EXE
        C:\WINDOWS\system32\spoolsv.exe
        C:\Program Files\acer\Acer eConsole\MediaServerService.exe
        C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        C:\Program Files\Alwil Software\Avast4\ashServ.exe
        C:\WINDOWS\system32\svchost.exe
        C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        C:\WINDOWS\RTHDCPL.EXE
        C:\Program Files\Acer\eRecovery\Monitor.exe
        C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
        C:\Program Files\Acer\Acer eMode Management\AspireService.exe
        C:\Program Files\Acer\Acer eConsole\MediaSync.exe
        C:\Program Files\QuickTime\qttask.exe
        C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        C:\WINDOWS\V0220Mon.exe
        C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
        C:\Program Files\MSN Messenger\MsnMsgr.Exe
        C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
        C:\Program Files\Mozilla Firefox\firefox.exe
        C:\Documents and Settings\Christophe\Bureau\Nouveau dossier\abcde.exe.exe

        R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
        R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://global.acer.com
        R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://fr.yahoo.com/
        R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://fr.rd.yahoo.com/customize/ie/defaults/su/msgr8/*https://fr.search.yahoo.com/
        R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
        R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
        O1 - Hosts: 66.98.136.25 auto.search.msn.com
        O1 - Hosts: 66.98.136.25 auto.search.msn.es
        O1 - Hosts: 66.98.136.25 auto.search.msn.com
        O1 - Hosts: 66.98.136.25 auto.search.msn.es
        O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
        O2 - BHO: BitComet Helper - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO.dll
        O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
        O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
        O4 - HKLM\..\Run: [LaunchApp] Alaunch
        O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
        O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
        O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
        O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
        O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
        O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
        O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
        O4 - HKLM\..\Run: [eRecoveryService] C:\Program Files\Acer\eRecovery\Monitor.exe
        O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
        O4 - HKLM\..\Run: [AspireService] C:\Program Files\Acer\Acer eMode Management\AspireService.exe
        O4 - HKLM\..\Run: [MediaSync] C:\Program Files\Acer\Acer eConsole\MediaSync.exe
        O4 - HKLM\..\Run: [LXCGCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCGtime.dll,_RunDLLEntry@16
        O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
        O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
        O4 - HKLM\..\Run: [V0220Mon.exe] C:\WINDOWS\V0220Mon.exe
        O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
        O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
        O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
        O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
        O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
        O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
        O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
        O4 - Startup: Y'z ToolBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
        O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
        O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
        O8 - Extra context menu item: Download all links using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
        O8 - Extra context menu item: Download all videos using BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
        O8 - Extra context menu item: Download link using &BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
        O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
        O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
        O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
        O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
        O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/default/kavwebscan_unicode.cab
        O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
        O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
        O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
        O22 - SharedTaskScheduler: Pré-chargeur Browseui - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
        O22 - SharedTaskScheduler: Démon de cache des catégories de composant - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
        O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe
        O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
        O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
        O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
        O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
        O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
        O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
        O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Unknown owner - C:\WINDOWS\System32\dmadmin.exe
        O23 - Service: Journal des événements (Eventlog) - Unknown owner - C:\WINDOWS\system32\services.exe
        O23 - Service: Fax - Unknown owner - C:\WINDOWS\system32\fxssvc.exe
        O23 - Service: Service COM de gravage de CD IMAPI (ImapiService) - Unknown owner - C:\WINDOWS\system32\imapi.exe
        O23 - Service: lxcg_device - Unknown owner - C:\WINDOWS\system32\lxcgcoms.exe
        O23 - Service: Partage de Bureau à distance NetMeeting (mnmsrvc) - Unknown owner - C:\WINDOWS\system32\mnmsrvc.exe
        O23 - Service: Plug-and-Play (PlugPlay) - Unknown owner - C:\WINDOWS\system32\services.exe
        O23 - Service: Gestionnaire de session d'aide sur le Bureau à distance (RDSessMgr) - Unknown owner - C:\WINDOWS\system32\sessmgr.exe
        O23 - Service: Carte à puce (SCardSvr) - Unknown owner - C:\WINDOWS\System32\SCardSvr.exe
        O23 - Service: Journaux et alertes de performance (SysmonLog) - Unknown owner - C:\WINDOWS\system32\smlogsvc.exe
        O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZONELABS\vsmon.exe
        O23 - Service: Cliché instantané de volume (VSS) - Unknown owner - C:\WINDOWS\System32\vssvc.exe
        O23 - Service: Carte de performance WMI (WmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\wmiapsrv.exe
        O23 - Service: Service Partage réseau du Lecteur Windows Media (WMPNetworkSvc) - Unknown owner - C:\Program Files\Windows Media Player\WMPNetwk.exe
        0
    8. ¤ Désactive le pare-feu de Windows (SP2) il ne sert à rien puis installe celui-ci pour plus de sécurité

      Kerio (pare-feu) : reste gratuit après la période d'essai en français
      ----> http://www.infos-du-net.com/telecharger/Firewall-Kerio-Personal,0301-390.html

      Regarde ce tutoriel si tu as besoin d'aide pour l'installation, la configuration et compréhension de Kerio
      --> http://kerio.probb.fr/Systemesd-exploitation-c1/Logiciels-et-tutoriels-gratuits-tries-par-categorie-f6/Tutoriel-pour-Kerio-43635-t248.htm

      Plus d'info :
      ->https://kerio.probb.fr/

      ¤ Relance HijackThis, choisis "do a scan only" coche la case devant les lignes ci-dessous et clic en bas sur "fix checked"

      R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://runonce.msn.com/?v=msgrv75
      R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
      O1 - Hosts: 66.98.136.25 auto.search.msn.com
      O1 - Hosts: 66.98.136.25 auto.search.msn.es
      O1 - Hosts: 66.98.136.25 auto.search.msn.com
      O1 - Hosts: 66.98.136.25 auto.search.msn.es
      O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
      O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/default/kavwebscan_unicode.cab
      O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
      O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
      O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab

      ¤ Tu peux jeter Avast Cleaner il ne t'es pas utile sachant que tu as déjà Avast ;-)

      ¤ Télécharge et installe ces logiciels anti-spywares. Mts les à jour, scanne complétement ton PC et supprime tout ce qu'ils pourraient te ttrouver.

      SpyBot-Search & Destroy : gratuit en français
      ----> http://www.infos-du-net.com/telecharger/Destroy-Search-Spybot,0301-324.html

      Si tu as besoin d'aide avec Sybot regarde ce tutoriel :
      --> http://www.tutoriaux-excalibur.com/spybot.htm

      A² squared : gratuit en français (fait un scan rusé et colle le rapport ici stp)
      ----> http://www.infos-du-net.com/telecharger/a-squared,0301-1233.html

      Si tu as besoin d'aide avec A-squared regarde ce tutoriel :
      --> https://kerio.probb.fr/t223-tuto-pour-a-squared-free

      Ad-Aware SE Personal : gratuit en anglais disponible en français voir tutoriel
      ----> http://www.infos-du-net.com/telecharger/Ad-aware-Personal,0301-244.html

      Si tu as besoin d'aide pour Ad-aware regarde ce tutoriel :
      --> https://kerio.probb.fr/t207-tutoriel-pour-ad-aware-anti-spyware

      Télécharge Spywareblaster
      ----> spyware blaster

      Puis exécute le logiciel pour lui appliquer les protections.
      Si tu as besoin d'aide, regarde ce tutoriel pour Spywareblaster
      https://kerio.probb.fr/t241-tuto-spywareblaster

      ¤ Pour terminer :

      Télécharge ceci sur ton bureau :
      http://perso.orange.fr/il.mafioso/Navifix/navilog1.zip

      Fait un clic droit sur navilog1.zip et choisis "tout extraire"
      Ensuite double clic sur navilog1.bat
      Laisse toi guidé. Au menu principal, choisis 1 et valide

      Patiente jusqu'au message :
      Analyse Termine le .....
      Appuye sur une touche, comme demandé, le bloc note va s'ouvrir
      Copie-colle l'intégralité puis poste le contenu ici
      Le rapport est aussi sauvegardé à la racine du disque (fixnavi.txt)
      0
      1. j ai le pare window qui est desactivé car j utilise le pare feu zone alarm c'est bon ? ou dois je installer celui que tu m'a conseillé
        merci
        0
      2. voici le rapport de A2 squared :

        Version - a-squared Free 2.1

        Réglages Scan:

        Objets: Mémoire, Traces, Cookies, C:\WINDOWS\, C:\Program Files
        Scan archives: Marche
        Heuristiques: Marche
        Scan ADS: Marche

        Début du scan: 17/03/2007 12:38:06

        Value: HKEY_CLASSES_ROOT\CLSID\{41FAF0F4-DCEC-4F6A-82D2-56E100F2A8E5}\InprocServer32 --> ThreadingModel Détecter: Trace.Registry.Radlight
        Value: HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{41FAF0F4-DCEC-4F6A-82D2-56E100F2A8E5}\InprocServer32 --> ThreadingModel Détecter: Trace.Registry.Radlight
        C:\Documents and Settings\Christophe\Cookies\christophe@weborama[2].txt Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:55 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:56 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:57 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:58 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:59 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:60 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:62 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:63 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:71 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:72 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:73 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:74 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:81 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:82 Détecter: Trace.TrackingCookie
        C:\Documents and Settings\Christophe\Application Data\Mozilla\Firefox\Profiles\pw7w07wx.default\cookies.txt:83 Détecter: Trace.TrackingCookie
        C:\WINDOWS\system32\Process.exe Détecter: Riskware.RiskTool.Win32.Processor.20

        Scanné

        Fichiers: 75175
        Traces: 102116
        Cookies: 111
        Processus: 33

        Trouver

        Fichiers: 1
        Traces: 2
        Cookies: 16
        Processus: 0
        Clés de Registre: 0

        Fin du Scan: 17/03/2007 13:00:06
        Temps du Scan: 00:22:00
        0
    9. Salut

      Non garde ZoneAlarm c'est ok, pas vu (*_*)

      TU peux tout supprimer ce que t'a trouvé a-squared ainsi que les autres ;-)
      J'attends la suite

      A++
      0
      1. Salut
        voici le rapprt de navilog.1 :

        Search Navipromo version 1.0.7 commencé le 18/03/2007 à 10:34:22,21

        !!! Attention,ce rapport peut indiquer des fichiers/programmes légitimes!!!
        !!! Poster ce rapport sur le forum pour le faire analyser !!!
        !!! Ne pas lancer la partie désinfection sans l'avis d'un spécialiste !!!

        Fix lancé depuis C:\Documents and Settings\Christophe\Bureau
        Mise a jour le 12.03.2007 a 18h00 by IL-MAFIOSO

        Executé en mode normal

        *** Recherche Programmes installes ***

        *** Recherche dossiers dans C:\WINDOWS ***

        *** Recherche dossiers dans C:\Program Files ***

        *** Recherche dossiers dans C:\Documents and Settings\All Users\Application Data ***

        *** Recherche dossiers dans C:\Documents and Settings\Christophe\Application Data ***

        ...\Application Data\MessengerSkinner trouvé !

        *** Recherche avec BlackLight Engine/F-secure ***
        BlackLight Engine est un produit de F-secure, pour + d'infos :
        https://www.f-secure.com/en

        Fichier(s) caché(s) dans C:\WINDOWS\system32 :

        Processus caché(s) dans C:\WINDOWS\system32 :

        C:\windows\system32\qnjswfzkx.exe

        *** Recherche fichiers ***

        C:\WINDOWS\pack.epk trouvé !
        C:\WINDOWS\system32\nvs2.inf trouvé !

        *** Recherche cles registre ***

        Recharche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs]

        Recharche dans [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage]

        Recherche Clé Magic Control

        HKEY_CURRENT_USER\Software\Lanconfig trouvé !

        *** Module de recherche complémentaire ***
        (recherche fichiers spécifiques)

        1)Recherche fichiers connus:

        2)Recherche Heuristique :
        *
        C:\WINDOWS\system32\qnjswfzkx.dat trouvé !
        **
        C:\WINDOWS\system32\qnjswfzkx.dat trouvé !
        ***
        ****
        C:\WINDOWS\system32\qnjswfzkx_navps.dat trouvé !
        *****
        ******
        *******
        ********
        C:\WINDOWS\system32\qnjswfzkx.exe trouvé !

        *** Analyse Terminé le 18/03/2007 à 10:35:24,80 ***
        0
      2. salut
        je viens de lire un tutoriaux concernant le compte administrateur
        moi je suis sur un compte administrateur est ce que c'est vraiment dangeureux pour le pc ?
        0
      3. salut,

        si cela peut t'aider ;
        j ai noté les adresses des sites qui s ouvrent a chaque et qui m'indiquent que mon pc est infecté :
        -spyware-secure.com
        -errorsafe.com
        -amaena.com
        0
    10. Salut

      Pour répondre à ta question, dangereux, tu vas pas en mourir, mais ça peut l'être selon tes habitudes de surf ; payement en ligne, mot de passe, ect ..
      Je ne sais pas ce que tu as vu, regarde ici pour avoir un avis peut-être différent
      https://kerio.probb.fr/t231-compte-administrateur-danger-xp-et-vista

      ¤ Redémarre ton PC. Dès l'allumage de celui-ci tapote la touche F8 (ou F5 si F8 ne fonctionne pas), à l'écran qui va apparaître choisis "mode sans echec" attends un peu..

      Double clic sur navilog1.bat
      Au menu principal, choisis 2 et valide
      A la question posée, choisis "mode automatique" en tapant A ou a puis valide

      Laisse toi guider et répond aux éventuelles questions.
      Votre bureau va disparaître, c'est normal.
      Patientez jusqu'au message :
      Nettoyage Termine le .....

      Appuyez sur une touche comme demandé, le bloc note va s'ouvrir.
      Sauvegarde le rapport de manière à le retrouver.
      Refermezle bloc note. Ton bureau va réapparaître.
      Le rapport est aussi sauvegardé à la racine du disque (cleannavi.txt)

      Redémarre normalement puis copie-colle le contenu du rapport cleannavi.txt ici stp
      0
      1. re salut
        voila le rapport :

        Clean Navipromo version 1.0.7 commencé le 18/03/2007 à 19:52:05,10

        Fix lancé depuis C:\Documents and Settings\Christophe\Bureau\navilog1
        Mise a jour le 12.03.2007 a 18h00 by IL-MAFIOSO

        Executé en mode sans echec

        Mode suppression automatique avec prise en charge résultats Blacklight

        ** 2ème passage **

        C:\WINDOWS\system32\qnjswfzkx_navup.dat absent !
        C:\WINDOWS\system32\qnjswfzkx_navtmp.dat absent !
        C:\WINDOWS\system32\qnjswfzkx_m2s.xml absent !

        C:\WINDOWS\system32\qnjswfzkx.dat trouvé !
        Copie C:\WINDOWS\system32\qnjswfzkx.dat réalisé avec succès !
        C:\WINDOWS\system32\qnjswfzkx.dat supprimé !

        C:\WINDOWS\system32\qnjswfzkx_nav.dat trouvé !
        Copie C:\WINDOWS\system32\qnjswfzkx_nav.dat réalisé avec succès !
        C:\WINDOWS\system32\qnjswfzkx_nav.dat supprimé !

        C:\WINDOWS\system32\qnjswfzkx_navps.dat trouvé !
        Copie C:\WINDOWS\system32\qnjswfzkx_navps.dat réalisé avec succès !
        C:\WINDOWS\system32\qnjswfzkx_navps.dat supprimé !

        C:\WINDOWS\prefetch\qnjswfzkx*.pf trouvé !
        Copie C:\WINDOWS\prefetch\qnjswfzkx*.pf réalisé avec succès !
        C:\WINDOWS\prefetch\qnjswfzkx*.pf supprimé !

        C:\WINDOWS\system32\qnjswfzkx.exe trouvé !
        Copie C:\WINDOWS\system32\qnjswfzkx.exe réalisé avec succès !
        C:\WINDOWS\system32\qnjswfzkx.exe supprimé !

        *** Suppression dossiers dans C:\WINDOWS ***

        *** Suppression dossiers dans C:\Program Files ***

        *** Suppression dossiers dans C:\Documents and Settings\All Users\Application Data ***

        *** Suppression dossiers dans C:\Documents and Settings\Christophe\Application Data ***

        ...\Application Data\MessengerSkinner ...suppression...
        ...\Application Data\MessengerSkinner supprimé !

        *** Suppression fichiers ***

        C:\WINDOWS\pack.epk supprimé !
        C:\WINDOWS\system32\nvs2.inf supprimé !

        *** Suppression fichiers temporaires ***

        Nettoyage contenu C:\WINDOWS\Temp effectué !
        Nettoyage contenu C:\Documents and Settings\Christophe\Local Settings\Temp effectué !

        *** Sauvegarde du registre vers dossier Backupnavi***

        sauvegarde du registre réalisée avec succès !

        *** Nettoyage registre ***

        Nettoyage registre Ok

        *** Traitement Recherche complémentaire ***

        1)Recherche fichiers connus:

        2)Recherche et Suppression Heuristique :

        *
        **
        ***
        ****
        *****
        ******
        *******
        ********

        *** Nettoyage termine le 18/03/2007 à 19:52:17,68 ***
        0
    11. ¤ Très bien tu peux jeter NaviLog.

      ¤ Désactive le pare-feu de Windows (SP2) il ne sert à rien puis installe celui-ci pour plus de sécurité

      Kerio (pare-feu) : reste gratuit après la période d'essai en français
      ----> http://www.infos-du-net.com/telecharger/Firewall-Kerio-Personal,0301-390.html

      Regarde ce tutoriel si tu as besoin d'aide pour l'installation, la configuration et compréhension de Kerio
      --> http://kerio.probb.fr/Systemesd-exploitation-c1/Logiciels-et-tutoriels-gratuits-tries-par-categorie-f6/Tutoriel-pour-Kerio-43635-t248.htm

      Plus d'info :
      ->https://kerio.probb.fr/

      ¤ Recommence ce que l'on a fait au message < 18 >

      Ton problème devrait être réglé ;-)
      0
      1. Apparemment le probleme est réglé
        Je te remercie pour ton aide
        cela m'a évité de formater et permis de découvrir les armes utiles pour proteger son pc et de voir comment eradiquer un virus sans formater.
        0
    12. De rien ;-)

      Hésite pas en cas de souci

      A++
      0