Pirater sur msn

Losky Messages postés 120 Statut Membre -  
 king_k@msn.fr -
Bonjour voila mon probleme j'avais 1 compte msn et du jour au lendemain mon mot de passe a été modifié donc j'ai changé le mot de passe mais rebelotte. Le problème a du m'arriver 4 ou 5 fois donc j'ai fais 1 autre adresse et par surprise je vois que mon ancienne adresse a ajouter ma nouvelle. Le pirate m'a parlé et m'a dit que pour avoir le secret il fallait que je lui donne des adresse et mon mot de passe de mon compte skyrock. Maintenant je souhaiterais supprimé cette ancienne adresse pour pas qu'il envoie des choses que je n'enverai pas à mes contacts. Que faire ?
Merci de votre aide
Configuration: Windows XP
Internet Explorer 6.0

18 réponses

  1. raleuboleu Messages postés 5028 Statut Membre 79
     
    re moi

    petite question Boulepate , pourquoi c'est écrit hijack clone?

    merci a toi

    bizz
    0
  2. Utilisateur anonyme
     
    merci.
    Peux tu me confirmer que Kerio, fonctionne bien ; c'est à dire qu'il talerte de temps à autre ce que tu dois accepter ou non.

    Fais ce scan anti-virus en ligne avec Internet Explorer, accepte l'active X; la barre anti-popup du SP2(en haut) va se mettre à clignoter, clique dessus et choisit "accepter l'active X" pour faire fonctionner le scan anti-virus.
    Une fois qu'il a terminé colle le rapport ici stp

    ---> https://www.kaspersky.fr/downloads

    - Kaspersky Online Scanner
    - Accept
    0
  3. Hebergeur Messages postés 8 Statut Membre 4
     
    Salut a toi !
    J'ai un amis qui avait ce probleme et je pense que tu devrai pas lui donner ton mot de pass skyrock.
    Je pense connaitre la tactique qu'il emploi pour changer ton passe enfin bon.
    Deja deconnecte toi et redemarre en mode sans echec fait une analyse antivirus.
    Puis tu change ton mot de pass MSN si il y arrive encore je sais a 100% comment il fait. Tu peux me dire si il c'est connecter a ton compte msn ?

    Je te conseil aussi de changer ta question secrète, metre nimporte quoi.

    Et puis si il t'embete encore prend des screenshot et envoi les a microsoft lol il va... regretter.

    C'est ce que mon amis a fait lol

    @+
    0
    1. Losky Messages postés 120 Statut Membre 1
       
      salut, effectivement il s'est reconnecté a mon ancien compte mais j'y ai supprimé tout les contacts.
      A+
      0
  4. Losky Messages postés 120 Statut Membre 1
     
    Je vois l'icone kerio d&ans la barre des taches mais il ne m'alerte jamais
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. Losky Messages postés 120 Statut Membre 1
     
    Je viens de remodifier le mot de passe et la question secrete de mon ancien compte. J'ai egalement supprimé tout mes contacts.
    0
  7. raleuboleu Messages postés 5028 Statut Membre 79
     
    salut

    1 astuce qu'il m'as été donnée : allez dans demarrage tu vas ensuite sur kério , de la tu fais 1 copier / coller , soit tu colle ce kerio dans demarer> demarrage

    pour moi ca a été magic loool
    tentes et dis

    bizz
    0
  8. Losky Messages postés 120 Statut Membre 1
     
    Rapport Kaspersky :

    Monday, May 07, 2007 11:15:43 PM
    Operating System: Microsoft Windows XP Professional, Service Pack 2 (Build 2600)
    Kaspersky Online Scanner version: 5.0.83.0
    Kaspersky Anti-Virus database last update: 7/05/2007
    Kaspersky Anti-Virus database records: 296224

    Scan Settings
    Scan using the following antivirus database standard
    Scan Archives true
    Scan Mail Bases true

    Scan Target My Computer
    A:\
    D:\
    E:\
    F:\

    Scan Statistics
    Total number of scanned objects 39544
    Number of viruses found 0
    Number of infected objects 0 / 0
    Number of suspicious objects 0
    Duration of the scan process 00:43:19

    Infected Object Name Virus Name Last Action
    D:\Documents and Settings\Administrateur\Cookies\index.dat Object is locked skipped

    D:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

    D:\Documents and Settings\Administrateur\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    D:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\index.dat Object is locked skipped

    D:\Documents and Settings\Administrateur\Local Settings\Historique\History.IE5\MSHist012007050720070508\index.dat Object is locked skipped

    D:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

    D:\Documents and Settings\Administrateur\NTUSER.DAT Object is locked skipped

    D:\Documents and Settings\Administrateur\ntuser.dat.LOG Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped

    D:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped

    D:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

    D:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    D:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

    D:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

    D:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

    D:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

    D:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

    D:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

    D:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped

    D:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped

    D:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped

    D:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped

    D:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped

    D:\Program Files\Alwil Software\Avast4\DATA\report\Protection résidente.txt Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\debug.log Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\debug.log.idx Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\error.log Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\error.log.idx Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\hips.log Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\hips.log.idx Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\ids.log Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\ids.log.idx Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\network.log Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\network.log.idx Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\system.log Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\system.log.idx Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\warning.log Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\warning.log.idx Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\web.log Object is locked skipped

    D:\Program Files\Sunbelt Software\Personal Firewall\logs\web.log.idx Object is locked skipped

    D:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

    D:\System Volume Information\_restore{2CC65930-9F23-46CB-87D3-252DB89551BF}\RP45\change.log Object is locked skipped

    D:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

    D:\WINDOWS\SchedLgU.Txt Object is locked skipped

    D:\WINDOWS\SoftwareDistribution\EventCache\{CDEC5664-7EF6-419A-8667-C745B0C7EEF2}.bin Object is locked skipped

    D:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

    D:\WINDOWS\Sti_Trace.log Object is locked skipped

    D:\WINDOWS\system32\CatRoot2\edb.log Object is locked skipped

    D:\WINDOWS\system32\CatRoot2\tmp.edb Object is locked skipped

    D:\WINDOWS\system32\config\Antivirus.Evt Object is locked skipped

    D:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

    D:\WINDOWS\system32\config\default Object is locked skipped

    D:\WINDOWS\system32\config\default.LOG Object is locked skipped

    D:\WINDOWS\system32\config\SAM Object is locked skipped

    D:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

    D:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

    D:\WINDOWS\system32\config\SECURITY Object is locked skipped

    D:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

    D:\WINDOWS\system32\config\software Object is locked skipped

    D:\WINDOWS\system32\config\software.LOG Object is locked skipped

    D:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

    D:\WINDOWS\system32\config\system Object is locked skipped

    D:\WINDOWS\system32\config\system.LOG Object is locked skipped

    D:\WINDOWS\system32\drivers\sptd.sys Object is locked skipped

    D:\WINDOWS\system32\h323log.txt Object is locked skipped

    D:\WINDOWS\system32\LogFiles\WUDF\WUDFTrace.etl Object is locked skipped

    D:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

    D:\WINDOWS\system32\wbem\Repository\FS\INDEX.MAP Object is locked skipped

    D:\WINDOWS\system32\wbem\Repository\FS\MAPPING.VER Object is locked skipped

    D:\WINDOWS\system32\wbem\Repository\FS\MAPPING1.MAP Object is locked skipped

    D:\WINDOWS\system32\wbem\Repository\FS\MAPPING2.MAP Object is locked skipped

    D:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DATA Object is locked skipped

    D:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.MAP Object is locked skipped

    D:\WINDOWS\Temp\Perflib_Perfdata_60c.dat Object is locked skipped

    D:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped

    D:\WINDOWS\wiadebug.log Object is locked skipped

    D:\WINDOWS\wiaservc.log Object is locked skipped

    D:\WINDOWS\WindowsUpdate.log Object is locked skipped

    Scan process completed.
    0
  9. Utilisateur anonyme
     
    Losky, je te déconseille de faire ce qu'a dit raleuboleu tout simplement parce que Kerio est un programme qui se lance seul au démarrage et si ce n'est pas le cas dans ce cas vaut mieux le réinstaller et que ton problème n'a rien à voir avec ça.

    Ton pare-feu sert à rien son but et de t'envoyer des alertes.
    Désinstalle-le, redémarre ton PC.
    Réinstalle le ici, avec la version 4.2
    https://kerio.probb.fr/t4-tlcharger-sunbelt-kerio-personal-firewall

    * Mets à jour ton PC (démarrer, tous les programmes, tout en haut Windows Update)

    * Crée toi une nouvelle adresse msn, ne te connecte plus sur les anciennes sessions et ton adresse mail, ne la laisse pas trainer partout comme sur skyrock et méfie toi à qui tu l'a donnes, suffit que la personne en question à une connaissance avec qui tu parles pas compliqué pour elle de te réentrer dans msn ;-)
    0
  10. Losky Messages postés 120 Statut Membre 1
     
    Je te remercie boulepate62. Je fais ce que tu m'as dis.
    0
  11. raleuboleu Messages postés 5028 Statut Membre 79
     
    merci boulepate d'avoir suivi tout cela !!

    bizoux
    0
  12. Utilisateur anonyme
     
    Salut

    Avant de faire quoi que ce soit.
    Qu'as-tu comme anti-virus, anti-spywares et pare-feu ?
    -1
  13. Losky Messages postés 120 Statut Membre 1
     
    Merci de vos reponses j'ai avast, avg anti-spyware,A²free, Kerio,spybot et voila.
    -1
  14. Utilisateur anonyme
     
    Kerio est bien paramétré ?

    Fais ceci pour vérifier

    Télécharge ComboScan sur ton Bureau.
    ---> http://www.techsupportforum.com/sectools/Deckard/comboscan.exe

    Ferme toutes les applications en cours ; antivirus, pare-feu, etc ..
    Double-clic sur comboscan.exe A la fenêtre qui s'affiche, clic sur OK.
    Soit patient ..
    Le rapport Comboscan.txt s'affichera, copie et colle le contenu de ce fichier ici.
    -1
  15. Losky Messages postés 120 Statut Membre 1
     
    desolé mais ton lien donne sur : Page not found
    -1
  16. Utilisateur anonyme
     
    http://www.techsupportforum.com/sectools/Deckard/dss.exe
    -1
  17. Losky Messages postés 120 Statut Membre 1
     
    voici le fichier main.txt :

    Deckard's System Scanner v20070426.43
    Run by Administrateur on 2007-05-07 at 20:49:38
    Computer is in Normal Mode.
    --------------------------------------------------------------------------------

    -- System Restore --------------------------------------------------------------

    Successfully created a Deckard's System Scanner Restore Point.

    -- Last 5 Restore Point(s) --
    45: 2007-05-07 18:49:46 UTC - RP45 - Deckard's System Scanner Restore Point
    44: 2007-05-05 17:59:40 UTC - RP44 - Point de vérification système
    43: 2007-05-02 07:12:41 UTC - RP43 - Supprimé J2SE Runtime Environment 5.0 Update 11
    42: 2007-05-01 17:36:47 UTC - RP42 - Installé Java(TM) SE Runtime Environment 6 Update 1
    41: 2007-05-01 17:22:07 UTC - RP41 - Supprimé Encyclopédie Standard Microsoft Encarta 2002

    -- First Restore Point --
    1: 2007-02-18 17:41:40 UTC - RP1 - Point de vérification système

    Backed up registry hives.

    Performed disk cleanup.

    -- HijackThis Clone ------------------------------------------------------------

    Emulating logfile of HijackThis v1.99.1
    Scan saved at 2007-05-07 20:51:13
    Platform: Windows XP Service Pack 2 (5.01.2600)
    MSIE: Internet Explorer (6.0.2900.2180)

    Running processes:
    D:\WINDOWS\system32\smss.exe
    D:\WINDOWS\system32\winlogon.exe
    D:\WINDOWS\system32\services.exe
    D:\WINDOWS\system32\lsass.exe
    D:\WINDOWS\system32\ati2evxx.exe
    D:\WINDOWS\system32\svchost.exe
    D:\WINDOWS\system32\svchost.exe
    D:\WINDOWS\system32\svchost.exe
    D:\WINDOWS\system32\ati2evxx.exe
    D:\WINDOWS\explorer.exe
    D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    D:\Program Files\Alwil Software\Avast4\ashServ.exe
    D:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe
    D:\Program Files\Alwil Software\Avast4\ashDisp.exe
    D:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
    D:\WINDOWS\system32\spoolsv.exe
    D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    D:\WINDOWS\system32\CTSVCCDA.EXE
    D:\WINDOWS\system32\svchost.exe
    D:\WINDOWS\system32\MsPMSPSv.exe
    D:\Program Files\MSN Messenger\usnsvc.exe
    D:\Documents and Settings\Administrateur\Local Settings\Temporary Internet Files\Content.IE5\FZ7LY5H9\dss[1].exe
    D:\WINDOWS\system32\wscntfy.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.fr/toolbar/ie8/sidebar.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.google.com/?gws_rd=ssl
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.fr/?gws_rd=ssl
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - D:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - D:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O4 - HKLM\..\Run: [UpdReg] D:\WINDOWS\UpdReg.EXE
    O4 - HKLM\..\Run: [CTSysVol] D:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe /r
    O4 - HKLM\..\Run: [avast!] "D:\Program Files\Alwil Software\Avast4\ashDisp.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "D:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
    O4 - Global Startup: Adobe Reader Synchronizer.lnk = D:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
    O4 - Global Startup: Lancement rapide d'Adobe Reader.lnk = D:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
    O8 - Extra context menu item: Add to AMV Convert Tool... - D:\Program Files\MP3 Player Utilities 3.75\AMVConverter\grab.html
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://D:\PROGRA~1\Microsoft Office\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: MediaManager tool grab multimedia file - D:\Program Files\MP3 Player Utilities 3.75\MediaManager\grab.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - D:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (file missing)
    O9 - Extra 'Tools' menuitem: (no name) - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - (file missing)
    O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
    O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://www.apple.com/qtactivex/qtplugin.cab
    O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} (Shockwave ActiveX Control) - http://fpdownload.macromedia.com/pub/shockwave/cabs/director/sw.cab
    O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
    O16 - DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} () - http://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://messenger.zone.msn.com/binary/ZIntro.cab56649.cab
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - D:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - D:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll
    O18 - Protocol: mso-offdap - {3D9F03FA-7A94-11D3-BE81-0050048385D1} - D:\Program Files\Fichiers communs\Microsoft Shared\Web Components\10\OWC10.DLL
    O18 - Protocol: mso-offdap11 - {32505114-5902-49B2-880A-1F7738E5A384} - D:\Program Files\Fichiers communs\Microsoft Shared\Web Components\11\OWC11.DLL
    O18 - Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} - D:\Program Files\Fichiers communs\Microsoft Shared\OFFICE11\MSOXMLMF.DLL
    O20 - Winlogon Notify: AtiExtEvent - D:\WINDOWS\system32\Ati2evxx.dll
    O20 - Winlogon Notify: WgaLogon - D:\WINDOWS\system32\WgaLogon.dll
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - D:\WINDOWS\system32\WPDShServiceObj.dll
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - "D:\Program Files\Alwil Software\Avast4\aswUpdSv.exe"
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - D:\WINDOWS\system32\ati2evxx.exe
    O23 - Service: ATI Smart - Unknown owner - D:\WINDOWS\system32\ati2sgag.exe
    O23 - Service: avast! Antivirus - ALWIL Software - "D:\Program Files\Alwil Software\Avast4\ashServ.exe"
    O23 - Service: avast! Mail Scanner - ALWIL Software - "D:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service
    O23 - Service: avast! Web Scanner - ALWIL Software - "D:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - D:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - D:\WINDOWS\system32\CTSVCCDA.EXE
    O23 - Service: Service d'administration du Gestionnaire de disque logique (dmadmin) - Microsoft Corp., Veritas Software - D:\WINDOWS\System32\dmadmin.exe /com
    O23 - Service: Google Updater Service (gusvc) - Unknown owner - "D:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"
    O23 - Service: Sunbelt Kerio Personal Firewall 4 (KPF4) - Sunbelt Software - "D:\Program Files\Sunbelt Software\Personal Firewall\kpf4ss.exe"
    O23 - Service: ServiceLayer - Nokia. - "D:\Program Files\PC Connectivity Solution\ServiceLayer.exe"

    -- File Associations -----------------------------------------------------------

    All associations okay.

    -- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

    R0 sisidex - d:\windows\system32\drivers\sisidex.sys <Not Verified; Windows (R) 2000 DDK provider; Windows (R) 2000 DDK driver>
    R0 sisperf (Add Performance Filter Driver) - d:\windows\system32\drivers\sisperf.sys <Not Verified; Silicon Integrated Systems Corp.; SiS Filer Driver>

    S3 SQTECH9150 (Mini Cam) - d:\windows\system32\drivers\capt9150.sys <Not Verified; ; SQ915D>

    -- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

    S3 gusvc (Google Updater Service) - "d:\program files\google\common\google updater\googleupdaterservice.exe" (file missing)
    S3 ServiceLayer - "d:\program files\pc connectivity solution\servicelayer.exe" <Not Verified; Nokia.; PC Connectivity Solution>

    -- Files created between 2007-04-07 and 2007-05-07 -----------------------------

    2007-05-07 20:19:13 0 dr-h----- D:\Documents and Settings\Administrateur\Recent
    2007-05-05 19:28:58 0 d-------- D:\Program Files\Audacity
    2007-05-01 19:38:01 0 d-------- D:\Documents and Settings\Administrateur\Application Data\NCH Swift Sound
    2007-05-01 19:37:31 0 d-------- D:\Program Files\NCH Swift Sound
    2007-04-29 20:25:50 0 d-------- D:\Program Files\a-squared Free
    2007-04-26 17:32:49 0 d-------- D:\Program Files\QuickTime
    2007-04-21 12:45:05 0 d-a------ D:\Documents and Settings\All Users\Application Data\TEMP
    2007-04-18 12:18:48 0 d-------- D:\Documents and Settings\Administrateur\Application Data\Google
    2007-04-17 13:22:09 0 d-------- D:\Documents and Settings\All Users\Application Data\Google

    -- Find3M Report ---------------------------------------------------------------

    2007-05-06 17:12:00 0 d-------- D:\Program Files\LimeWire
    2007-05-02 09:00:41 0 d-------- D:\Program Files\Java
    2007-05-01 19:23:19 0 d-------- D:\Program Files\Jeux Video
    2007-05-01 19:22:24 0 d-------- D:\Program Files\Fichiers communs\Microsoft Shared
    2007-04-25 19:24:53 0 d-------- D:\Program Files\MSN Messenger
    2007-04-21 20:00:58 0 d--h----- D:\Program Files\InstallShield Installation Information
    2007-04-04 09:10:10 0 d-------- D:\Program Files\Fichiers communs
    2007-04-02 14:59:13 0 d-------- D:\Documents and Settings\Administrateur\Application Data\Emjysoft
    2007-03-25 10:46:23 368076 --a------ D:\WINDOWS\system32\perfh00C.dat
    2007-03-25 10:46:23 48856 --a------ D:\WINDOWS\system32\perfc00C.dat
    2007-03-21 10:49:08 0 d-------- D:\Documents and Settings\Administrateur\Application Data\Nokia Multimedia Player
    2007-03-13 14:35:50 8 --a------ D:\Documents and Settings\Administrateur\Application Data\NMM-MetaData.db
    2007-03-07 18:17:47 0 d-------- D:\Program Files\DVD Shrink
    2007-03-01 12:58:22 49664 --a------ D:\Program Files\ATF-Cleaner.exe <Not Verified; Atribune.org; ATF Cleaner>
    2007-02-24 15:18:20 664 --a------ D:\WINDOWS\system32\d3d9caps.dat
    2007-02-24 12:47:45 98304 --a------ D:\WINDOWS\system32\CmdLineExt.dll <Not Verified; Sony DADC Austria AG.; >

    -- Registry Dump ---------------------------------------------------------------

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
    {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} D:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
    "UpdReg"="D:\\WINDOWS\\UpdReg.EXE"
    "CTSysVol"="D:\\Program Files\\Creative\\SB Live! 24-bit\\Surround Mixer\\CTSysVol.exe /r"
    "avast!"="\"D:\\Program Files\\Alwil Software\\Avast4\\ashDisp.exe\""
    "SunJavaUpdateSched"="\"D:\\Program Files\\Java\\jre1.6.0_01\\bin\\jusched.exe\""

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonce]

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonce\Setup]
    "Registrando Panda ActiveX"="D:\\WINDOWS\\system32\\regsvr32.exe /s D:\\WINDOWS\\system32\\ActiveScan\\as.dll"
    "Registrando Panda Almacen"="D:\\WINDOWS\\system32\\regsvr32.exe /s D:\\WINDOWS\\system32\\ActiveScan\\pavpz.dll"

    [HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
    "PcSync"="D:\\Program Files\\Nokia\\Nokia PC Suite 6\\PcSync2.exe /NoDialog"

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
    "DisableRegistryTools"=dword:00000000

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
    "NoLowDiskSpaceChecks"=dword:00000000

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
    "ClearDocsOnExit"=dword:00000040
    "NoRecentDocsMenu"=dword:00000001
    "NoCDBurning"=dword:00000001
    "NoLowDiskSpaceChecks"=dword:00000000
    "NoStartBanner"=hex:01,00,00,00
    "NoSMHelp"=dword:00000001
    "ClearRecentDocsOnExit"=dword:00000001
    "MemCheckBoxInRunDlg"=dword:00000001
    "NoSMBalloonTip"=dword:00000001
    "NoDesktopCleanupWizard"=dword:00000001
    "NoWelcomeScreen"=dword:00000001
    "NoAutoUpdate"=dword:00000001

    [HKEY_USERS\.default\software\microsoft\windows\currentversion\policies\explorer]
    "ClearDocsOnExit"=dword:00000040
    "NoRecentDocsMenu"=dword:00000001
    "NoCDBurning"=dword:00000001
    "NoLowDiskSpaceChecks"=dword:00000001
    "NoStartBanner"=hex:01,00,00,00
    "NoSMHelp"=dword:00000001
    "ClearRecentDocsOnExit"=dword:00000001
    "MemCheckBoxInRunDlg"=dword:00000001
    "NoSMBalloonTip"=dword:00000001
    "NoDesktopCleanupWizard"=dword:00000001
    "NoWelcomeScreen"=dword:00000001
    "NoAutoUpdate"=dword:00000001

    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
    "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"

    HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa
    Authentication Packages REG_MULTI_SZ msv1_0\0\0
    Security Packages REG_MULTI_SZ kerberos\0msv1_0\0schannel\0wdigest\0\0
    Notification Packages REG_MULTI_SZ scecli\0\0

    [HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
    HTTPFilter REG_MULTI_SZ HTTPFilter\0\0
    LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
    NetworkService REG_MULTI_SZ DnsCache\0\0
    DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0
    rpcss REG_MULTI_SZ RpcSs\0\0
    imgsvc REG_MULTI_SZ StiSvc\0\0
    termsvcs REG_MULTI_SZ TermService\0\0
    WudfServiceGroup REG_MULTI_SZ WUDFSvc\0\0

    -- End of Deckard's System Scanner: finished at 2007-05-07 at 20:52:07 ---------

    et le fichier extra.txt:

    Deckard's System Scanner v20070426.43
    Extra logfile - please post this as an attachment with your post.
    --------------------------------------------------------------------------------

    -- System Information ----------------------------------------------------------

    Microsoft Windows XP Professionnel (build 2600) SP 2.0
    Architecture: X86; Language: French

    CPU 0: Intel(R) Celeron(R) CPU 2.00GHz
    Percentage of Memory in Use: 43%
    Physical Memory (total/avail): 511.53 MiB / 287.02 MiB
    Pagefile Memory (total/avail): 2401.67 MiB / 2177.53 MiB
    Virtual Memory (total/avail): 2047.88 MiB / 1962.45 MiB

    A: is Removable (No Media)
    D: is Fixed (NTFS) - 111.78 GiB total, 92.22 GiB free.
    E: is CDROM (No Media)
    F: is CDROM (No Media)

    -- Security Center -------------------------------------------------------------

    AUOptions is set to notify before install.
    Windows Internal Firewall is disabled.

    FirstRunDisabled is set.

    FW: Sunbelt Kerio Personal Firewall v4.3.268 T (Sunbelt Kerio) [COLOR=RED]Disabled[/COLOR]
    AV: avast! antivirus 4.7.1001 [VPS 000738-4] v4.7.1001 (ALWIL Software) [COLOR=RED]Disabled[/COLOR]

    -- Environment Variables -------------------------------------------------------

    ALLUSERSPROFILE=D:\Documents and Settings\All Users
    APPDATA=D:\Documents and Settings\Administrateur\Application Data
    CLIENTNAME=Console
    CommonProgramFiles=D:\Program Files\Fichiers communs
    COMPUTERNAME=ORDI-XPSP2
    ComSpec=D:\WINDOWS\system32\cmd.exe
    FP_NO_HOST_CHECK=NO
    HOMEDRIVE=D:
    HOMEPATH=\Documents and Settings\Administrateur
    LOGONSERVER=\\ORDI-XPSP2
    NUMBER_OF_PROCESSORS=1
    OS=Windows_NT
    Path=D:\Program Files\Internet Explorer;;D:\Program Files\PC Connectivity Solution\;D:\WINDOWS\system32;D:\WINDOWS;D:\WINDOWS\System32\Wbem
    PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
    PROCESSOR_ARCHITECTURE=x86
    PROCESSOR_IDENTIFIER=x86 Family 15 Model 2 Stepping 9, GenuineIntel
    PROCESSOR_LEVEL=15
    PROCESSOR_REVISION=0209
    ProgramFiles=D:\Program Files
    PROMPT=$P$G
    SESSIONNAME=Console
    SystemDrive=D:
    SystemRoot=D:\WINDOWS
    TEMP=D:\DOCUME~1\Administrateur\Local Settings\Temp
    TMP=D:\DOCUME~1\Administrateur\Local Settings\Temp
    USERDOMAIN=ORDI-XPSP2
    USERNAME=Administrateur
    USERPROFILE=D:\Documents and Settings\Administrateur
    windir=D:\WINDOWS

    -- User Profiles ---------------------------------------------------------------

    Administrateur [I](admin)[/I]

    -- Add/Remove Programs ---------------------------------------------------------

    -- End of Deckard's System Scanner: finished at 2007-05-07 at 20:52:07 ---------
    -1