Petit problème

anthony -  
moK´s@ Messages postés 4410 Statut Membre -
bonjour à tous,
je voudrais savoir si quelqu'un pourrait m'aider et me dire si mon scan est bon(effectuer avec hijackthis) ?? et si non que dois-je faire??
merci d'avance
voici mon scan
Logfile of HijackThis v1.99.1
Scan saved at 19:28:11, on 18/07/2007
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\Documents and Settings\martin\Mes documents\Ma musique\Nouveau dossier\Scanner.exe.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {B6C43182-63AE-4F13-9980-714EB0A6CB3F} - C:\WINDOWS\System32\pmnmmnl.dll
O2 - BHO: (no name) - {D908CDF3-F5E2-480F-8C7E-CCFB07A17831} - C:\WINDOWS\System32\awtqr.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [adiras] adiras.exe
O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [Office Monitor Word Exel R] C:\WINDOWS\System32\u.exe
O4 - HKLM\..\Run: [Windows Logon Application] C:\WINDOWS\System32\logon.exe
O4 - HKLM\..\Run: [icq.com] rundll32.exe "C:\WINDOWS\System32\prafesyg.dll",forkonce
O4 - HKLM\..\Run: [Ashampoo FireWall] "C:\Program Files\Ashampoo\Ashampoo FireWall\FireWall.exe" -TRAY
O4 - HKLM\..\Run: [SvcManager] smik5.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE
O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll
O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll
O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll
O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll
O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll
O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.mail.live.com/mail/w1/resources/MSNPUpld.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: awtqr - C:\WINDOWS\System32\awtqr.dll
O20 - Winlogon Notify: pmnmmnl - C:\WINDOWS\SYSTEM32\pmnmmnl.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\DiskeeperLite\DKService.exe
O23 - Service: Diskeeper Administrator - Diskeeper® Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKSAdmin.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: USB Driver Manager - Unknown owner - C:\WINDOWS\iTunes.exe
Configuration: Windows XP
Firefox 2.0.0.4

10 réponses

  1. moK´s@ Messages postés 4410 Statut Membre 89
     
    salut anthony,

    petit probleme...

    Télécharge VundoFix.exe (par Atribune) sur ton Bureau.
    http://www.atribune.org/ccount/click.php?id=4
    * Double-clique VundoFix.exe afin de le lancer
    * Clique sur le bouton Scan for Vundo
    * Lorsque le scan est complété, clique sur le bouton Remove Vundo
    * Une invite te demandera si tu veux supprimer les fichiers, clique YES
    * Après avoir cliqué "Yes", le Bureau disparaîtra un moment lors de la suppression des fichiers
    * Tu verras une invite qui t'annonce que ton PC va redémarrer; clique OK
    * Copie/colle le contenu du rapport situé dans C:\vundofix.txt ainsi qu'un nouveau rapport HijackThis! dans ta prochaine réponse

    Note: Il est possible que VundoFix soit confronté à un fichier qu'il ne peut supprimer. Si tel est le cas, l'outil se lancera au prochain redémarrage; il faut simplement suivre les instructions ci-haut, à partir de "clique sur le bouton Scan for Vundo".

    et repost un log hijackthis ,
    0
    1. anthony
       
      merci de ta réponse,je fais ce que tu m'as di :
      voilà le résultat de VundoFix


      VundoFix V6.5.6

      Checking Java version...

      Scan started at 22:35:58 18/07/2007

      Listing files found while scanning....

      C:\WINDOWS\System32\awtqr.dll
      C:\WINDOWS\System32\gysefarp.ini
      C:\WINDOWS\System32\pmnmmnl.dll
      C:\WINDOWS\System32\prafesyg.dll
      C:\WINDOWS\System32\rqtwa.bak1
      C:\WINDOWS\System32\rqtwa.bak2
      C:\WINDOWS\System32\rqtwa.ini
      C:\WINDOWS\System32\rqtwa.ini2

      Beginning removal...

      Attempting to delete C:\WINDOWS\System32\awtqr.dll
      C:\WINDOWS\System32\awtqr.dll Has been deleted!

      Attempting to delete C:\WINDOWS\System32\gysefarp.ini
      C:\WINDOWS\System32\gysefarp.ini Has been deleted!

      Attempting to delete C:\WINDOWS\System32\pmnmmnl.dll
      C:\WINDOWS\System32\pmnmmnl.dll Has been deleted!

      Attempting to delete C:\WINDOWS\System32\prafesyg.dll
      C:\WINDOWS\System32\prafesyg.dll Has been deleted!

      Attempting to delete C:\WINDOWS\System32\rqtwa.bak1
      C:\WINDOWS\System32\rqtwa.bak1 Has been deleted!

      Attempting to delete C:\WINDOWS\System32\rqtwa.bak2
      C:\WINDOWS\System32\rqtwa.bak2 Has been deleted!

      Attempting to delete C:\WINDOWS\System32\rqtwa.ini
      C:\WINDOWS\System32\rqtwa.ini Has been deleted!

      Attempting to delete C:\WINDOWS\System32\rqtwa.ini2
      C:\WINDOWS\System32\rqtwa.ini2 Has been deleted!

      Performing Repairs to the registry.
      Done!

      ****************************************
      et voilà le nouveau scan de hijackthis :

      Logfile of HijackThis v1.99.1
      Scan saved at 22:47:05, on 18/07/2007
      Platform: Windows XP SP1 (WinNT 5.01.2600)
      MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

      Running processes:
      C:\WINDOWS\System32\smss.exe
      C:\WINDOWS\system32\winlogon.exe
      C:\WINDOWS\system32\services.exe
      C:\WINDOWS\system32\lsass.exe
      C:\WINDOWS\System32\Ati2evxx.exe
      C:\WINDOWS\system32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      C:\Program Files\Alwil Software\Avast4\ashServ.exe
      C:\WINDOWS\system32\Ati2evxx.exe
      C:\WINDOWS\Explorer.EXE
      C:\WINDOWS\system32\spoolsv.exe
      C:\Program Files\Executive Software\DiskeeperLite\DKService.exe
      C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKSAdmin.exe
      C:\WINDOWS\SOUNDMAN.EXE
      C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      C:\Program Files\MessengerPlus! 3\MsgPlus.exe
      C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
      C:\WINDOWS\System32\u.exe
      C:\WINDOWS\System32\logon.exe
      C:\WINDOWS\System32\smik5.exe
      C:\PROGRA~1\MICROS~3\wcescomm.exe
      C:\WINDOWS\System32\ctfmon.exe
      C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\System32\svchost.exe
      C:\WINDOWS\iTunes.exe
      C:\PROGRA~1\MICROS~3\rapimgr.exe
      C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
      C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
      C:\Program Files\Ashampoo\Ashampoo FireWall\FireWall.exe
      C:\WINDOWS\system32\NOTEPAD.EXE
      C:\Documents and Settings\martin\Mes documents\Ma musique\Nouveau dossier\Scanner.exe.exe

      R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
      O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - (no file)
      O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
      O2 - BHO: (no name) - {7001B357-747E-4182-8FDA-9CA3134B7D8C} - C:\WINDOWS\System32\awtqr.dll (file missing)
      O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
      O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
      O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
      O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      O4 - HKLM\..\Run: [adiras] adiras.exe
      O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe"
      O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
      O4 - HKLM\..\Run: [Office Monitor Word Exel R] C:\WINDOWS\System32\u.exe
      O4 - HKLM\..\Run: [Windows Logon Application] C:\WINDOWS\System32\logon.exe
      O4 - HKLM\..\Run: [Ashampoo FireWall] "C:\Program Files\Ashampoo\Ashampoo FireWall\FireWall.exe" -TRAY
      O4 - HKLM\..\Run: [SvcManager] smik5.exe
      O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
      O4 - HKCU\..\Run: [Office Monitor Word Exel R] C:\WINDOWS\System32\u.exe
      O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\PROGRA~1\MICROS~3\wcescomm.exe"
      O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
      O4 - HKCU\..\Run: [ccleaner] "C:\Program Files\CCleaner\ccleaner.exe" /AUTO
      O4 - Global Startup: DSLMON.lnk = C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe
      O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
      O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
      O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
      O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
      O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
      O9 - Extra 'Tools' menuitem: Créer un favori mobile... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
      O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll
      O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll
      O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll
      O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll
      O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll
      O10 - Unknown file in Winsock LSP: c:\program files\ashampoo\ashampoo firewall\spi.dll
      O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx2.mail.live.com/mail/w1/resources/MSNPUpld.cab
      O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
      O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
      O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
      O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
      O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
      O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
      O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
      O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\DiskeeperLite\DKService.exe
      O23 - Service: Diskeeper Administrator - Diskeeper® Corporation - C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKSAdmin.exe
      O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
      O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\1050\Intel 32\IDriverT.exe
      O23 - Service: USB Driver Manager - Unknown owner - C:\WINDOWS\iTunes.exe

      merci encore
      0
    2. anthony
       
      je ne serai pas là à partir de demain pendant quelques jours.
      Mais une fois revenu je prendrai tous les couseils qui seront postés.
      Merci à vous
      0
  2. moK´s@ Messages postés 4410 Statut Membre 89
     
    re,

    avec hijack this coche ceci :

    O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - (no file)
    O2 - BHO: (no name) - {7001B357-747E-4182-8FDA-9CA3134B7D8C} - C:\WINDOWS\System32\awtqr.dll (file missing)
    O4 - HKLM\..\Run: [Windows Logon Application] C:\WINDOWS\System32\logon.exe

    quitte tes applications et navigateur et fix les lignes si dessus.

    comment fixer :

    Démo en image
    http://pageperso.aol.fr/balltrap34/demohijack.htm

    connais tu ceci :

    [SvcManager] smik5.exe

    [Office Monitor Word Exel R] C:\WINDOWS\System32\u.exe

    télécharge OTMoveIt http://download.bleepingcomputer.com/oldtimer/OTMoveIt.exe (de Old_Timer) sur ton Bureau.
    double-clique sur OTMoveIt.exe pour le lancer.
    copie la liste qui se trouve en citation ci-dessous,
    et colle-la dans le cadre de gauche de OTMoveIt :Paste List of Files/Folders to be moved.

    Citation :

    C:\WINDOWS\System32\logon.exe

    clique sur MoveIt! pour lancer la suppression.
    le résultat apparaitra dans le cadre "Results".
    clique sur Exit pour fermer.
    poste le rapport situé dans C:\_OTMoveIt\MovedFiles.

    il te sera peut-être demander de redémarrer le pc pour achever la suppression.si c'est le cas accepte par Yes.
    http://img137.imageshack.us/img137/3558/refaitjk8.th.jpg

    puis fais ceci :

    * Télécharge combofix.exe (par sUBs) sur ton Bureau.

    http://download.bleepingcomputer.com/sUBs/Beta/ComboFix.exe

    * Double clique combofix.exe.
    * Tape sur la touche 1 (Yes) pour démarrer le scan.
    * Lorsque le scan sera complété, un rapport apparaîtra. Copie/colle ce rapport dans ta prochaine réponse.

    NOTE : Le rapport se trouve également ici : C:\Combofix.txt

    @+

    0
    1. anthony
       
      OK
      Je vais faire ce que tu me dis.Je fais au plus vite.
      0
  3. moK´s@ Messages postés 4410 Statut Membre 89
     
    ok

    je regarderais ca demain soir, je vais aller retrouver morphée...

    bonne nuit
    0
    1. anthony
       
      voici le résultat de OTMoveIt :

      C:\WINDOWS\System32\logon.exe moved successfully.

      Created on 07/18/2007 23:23:25

      ***********************************************
      et voici le résultat de ComboFix :


      "martin" - 2007-07-18 23:27:20 - ComboFix 07-07-19.3 - Service Pack 1 NTFS


      (((((((((((((((((((((((((((((((((((((((((((( V Log )))))))))))))))))))))))))))))))))))))))))))))))))))))))


      C:\WINDOWS\system32\cbxywtr.dll
      C:\WINDOWS\system32\awttrpo.dll
      C:\WINDOWS\system32\byxusqp.dll
      C:\WINDOWS\system32\byxxyvw.dll
      C:\WINDOWS\system32\cbxwtsp.dll
      C:\WINDOWS\system32\ddcbxwt.dll
      C:\WINDOWS\system32\ddcdawv.dll
      C:\WINDOWS\system32\efcyvut.dll
      C:\WINDOWS\system32\fccbccb.dll
      C:\WINDOWS\system32\gebabba.dll
      C:\WINDOWS\system32\gebabcy.dll
      C:\WINDOWS\system32\gebayab.dll
      C:\WINDOWS\system32\gebbywx.dll
      C:\WINDOWS\system32\gebxuvs.dll
      C:\WINDOWS\system32\gebyxvs.dll
      C:\WINDOWS\system32\hggecca.dll
      C:\WINDOWS\system32\hgggfdd.dll
      C:\WINDOWS\system32\hggghee.dll
      C:\WINDOWS\system32\hgghfec.dll
      C:\WINDOWS\system32\hgghhfg.dll
      C:\WINDOWS\system32\iifccax.dll
      C:\WINDOWS\system32\iifefcd.dll
      C:\WINDOWS\system32\khfdccb.dll
      C:\WINDOWS\system32\ljjgdaw.dll
      C:\WINDOWS\system32\ljjkiig.dll
      C:\WINDOWS\system32\mljhhih.dll
      C:\WINDOWS\system32\mljigde.dll
      C:\WINDOWS\system32\nnnlljg.dll
      C:\WINDOWS\system32\nnnopol.dll
      C:\WINDOWS\system32\opnomjh.dll
      C:\WINDOWS\system32\pmnkjjk.dll
      C:\WINDOWS\system32\pmnlljk.dll
      C:\WINDOWS\system32\pmnmmjg.dll
      C:\WINDOWS\system32\pmnnkii.dll
      C:\WINDOWS\system32\qomjhed.dll
      C:\WINDOWS\system32\rqronnn.dll
      C:\WINDOWS\system32\rqrqnlk.dll
      C:\WINDOWS\system32\rqrqolm.dll
      C:\WINDOWS\system32\rqrqpop.dll
      C:\WINDOWS\system32\rqrrrst.dll
      C:\WINDOWS\system32\rqrstrq.dll
      C:\WINDOWS\system32\rqrstuv.dll
      C:\WINDOWS\system32\ssqnnmm.dll
      C:\WINDOWS\system32\ssqonlk.dll
      C:\WINDOWS\system32\ssqonnn.dll
      C:\WINDOWS\system32\ssqpqop.dll
      C:\WINDOWS\system32\ssqqnop.dll
      C:\WINDOWS\system32\ssqrspm.dll
      C:\WINDOWS\system32\tuvvvsp.dll
      C:\WINDOWS\system32\urqomnk.dll
      C:\WINDOWS\system32\urqrsst.dll
      C:\WINDOWS\system32\wvurqnm.dll
      C:\WINDOWS\system32\wvutqon.dll
      C:\WINDOWS\system32\wvutsqr.dll
      C:\WINDOWS\system32\wvuuvss.dll
      C:\WINDOWS\system32\xxyyawt.dll
      C:\WINDOWS\system32\xxyyyax.dll
      C:\WINDOWS\system32\awttrpo.dll
      C:\WINDOWS\system32\byxusqp.dll
      C:\WINDOWS\system32\byxxyvw.dll
      C:\WINDOWS\system32\cbxwtsp.dll
      C:\WINDOWS\system32\ddcbxwt.dll
      C:\WINDOWS\system32\ddcdawv.dll
      C:\WINDOWS\system32\efcyvut.dll
      C:\WINDOWS\system32\fccbccb.dll
      C:\WINDOWS\system32\gebabba.dll
      C:\WINDOWS\system32\gebabcy.dll
      C:\WINDOWS\system32\gebayab.dll
      C:\WINDOWS\system32\gebbywx.dll
      C:\WINDOWS\system32\gebxuvs.dll
      C:\WINDOWS\system32\gebyxvs.dll
      C:\WINDOWS\system32\hggecca.dll
      C:\WINDOWS\system32\hgggfdd.dll
      C:\WINDOWS\system32\hggghee.dll
      C:\WINDOWS\system32\hgghfec.dll
      C:\WINDOWS\system32\hgghhfg.dll
      C:\WINDOWS\system32\iifccax.dll
      C:\WINDOWS\system32\iifefcd.dll
      C:\WINDOWS\system32\khfdccb.dll
      C:\WINDOWS\system32\ljjgdaw.dll
      C:\WINDOWS\system32\ljjkiig.dll
      C:\WINDOWS\system32\mljhhih.dll
      C:\WINDOWS\system32\mljigde.dll
      C:\WINDOWS\system32\nnnlljg.dll
      C:\WINDOWS\system32\nnnopol.dll
      C:\WINDOWS\system32\opnomjh.dll
      C:\WINDOWS\system32\pmnkjjk.dll
      C:\WINDOWS\system32\pmnlljk.dll
      C:\WINDOWS\system32\pmnmmjg.dll
      C:\WINDOWS\system32\pmnnkii.dll
      C:\WINDOWS\system32\qomjhed.dll
      C:\WINDOWS\system32\rqronnn.dll
      C:\WINDOWS\system32\rqrqnlk.dll
      C:\WINDOWS\system32\rqrqolm.dll
      C:\WINDOWS\system32\rqrqpop.dll
      C:\WINDOWS\system32\rqrrrst.dll
      C:\WINDOWS\system32\rqrstrq.dll
      C:\WINDOWS\system32\rqrstuv.dll
      C:\WINDOWS\system32\ssqnnmm.dll
      C:\WINDOWS\system32\ssqonlk.dll
      C:\WINDOWS\system32\ssqonnn.dll
      C:\WINDOWS\system32\ssqpqop.dll
      C:\WINDOWS\system32\ssqqnop.dll
      C:\WINDOWS\system32\ssqrspm.dll
      C:\WINDOWS\system32\tuvvvsp.dll
      C:\WINDOWS\system32\urqomnk.dll
      C:\WINDOWS\system32\urqrsst.dll
      C:\WINDOWS\system32\wvurqnm.dll
      C:\WINDOWS\system32\wvutqon.dll
      C:\WINDOWS\system32\wvutsqr.dll
      C:\WINDOWS\system32\wvuuvss.dll
      C:\WINDOWS\system32\xxyyawt.dll
      C:\WINDOWS\system32\xxyyyax.dll
      C:\WINDOWS\system32\byxwvtr.dll
      C:\WINDOWS\system32\byxwvtr.dll


      * * * POST RUN FILES/FOLDERS * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * *



      ((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


      C:\Program Files\Fichiers communs\microsoft shared\web folders\ibm00001.dll
      C:\Program Files\Fichiers communs\microsoft shared\web folders\ibm00002.dll
      C:\WINDOWS\system32\a.exe
      C:\WINDOWS\system32\drivers\asc3550u.sys
      C:\WINDOWS\system32\jfbnnrlu.exe
      C:\WINDOWS\system32\u.exe
      C:\WINDOWS\system32\yytowmpc.exe


      ((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))


      -------\LEGACY_ASC3550U
      -------\LEGACY_LDRSVC
      -------\LEGACY_NTMLSVC
      -------\asc3550u
      -------\ldrsvc
      -------\NtmlSvc


      ((((((((((((((((((((((((( Files Created from 2007-06-18 to 2007-07-18 )))))))))))))))))))))))))))))))


      2007-07-18 23:26 51,200 --a------ C:\WINDOWS\nircmd.exe
      2007-07-18 22:50 2,048 --a------ C:\agchu.exe
      2007-07-18 22:35 <REP> d-------- C:\VundoFix Backups
      2007-07-18 20:42 43,532 --a------ C:\whnkdutw.exe
      2007-07-18 20:42 20,480 --a------ C:\fuscijja.exe
      2007-07-18 17:33 43,532 --a------ C:\WINDOWS\system32\smik5.exe
      2007-07-18 16:07 <REP> d-------- C:\Program Files\CCleaner
      2007-07-18 11:52 <REP> d-------- C:\Program Files\Ashampoo
      2007-07-17 15:26 44,211 --a------ C:\tpbv.exe
      2007-07-17 15:25 382,464 -r-hs---- C:\WINDOWS\iTunes.exe
      2007-07-17 12:21 7,234 --------- C:\WINDOWS\system32\crvdll.dll
      2007-07-16 23:36 274,488 --a------ C:\WINDOWS\system32\qmgr.dll
      2007-07-16 23:34 <REP> d-------- C:\WINDOWS\system32\BITS
      2007-07-16 23:33 <REP> d-------- C:\DOCUME~1\ALLUSE~1\APPLIC~1\Diskeeper Corporation
      2007-07-16 23:32 <REP> d-------- C:\Program Files\Diskeeper Corporation
      2007-07-16 17:22 <REP> d-------- C:\Program Files\Executive Software
      2007-07-16 13:17 1,572,864 --ah----- C:\DOCUME~1\ADMINI~1\NTUSER.DAT
      2007-07-16 13:17 <REP> dr------- C:\DOCUME~1\ADMINI~1\Menu D‚marrer
      2007-07-16 13:17 <REP> d--h----- C:\DOCUME~1\ADMINI~1\Voisinage r‚seau
      2007-07-16 13:17 <REP> d--h----- C:\DOCUME~1\ADMINI~1\Voisinage d'impression
      2007-07-16 13:17 <REP> d--h----- C:\DOCUME~1\ADMINI~1\ModŠles
      2007-07-16 13:17 <REP> d-------- C:\DOCUME~1\ADMINI~1\Mes documents
      2007-07-16 13:17 <REP> d-------- C:\DOCUME~1\ADMINI~1\Favoris
      2007-07-16 13:17 <REP> d-------- C:\DOCUME~1\ADMINI~1\Bureau
      2007-07-16 08:34 140,462 --a------ C:\loud.exe
      2007-07-15 13:45 <REP> dr------- C:\DOCUME~1\LOCALS~1\Favoris
      2007-07-13 08:47 182,784 -r-hs---- C:\WINDOWS\unrsvc.exe
      2007-07-12 17:33 <REP> d--h----- C:\WINDOWS\$hf_mig$
      2007-07-12 17:32 29,696 --------- C:\WINDOWS\system32\drivers\rndismpx.sys
      2007-07-12 17:32 12,032 --------- C:\WINDOWS\system32\drivers\usb8023x.sys
      2007-07-12 17:32 <REP> d-------- C:\Program Files\Microsoft ActiveSync
      2007-07-12 17:31 <REP> d-------- C:\WINDOWS\Downloaded Installations
      2007-07-11 21:00 86,016 -r-hs---- C:\WINDOWS\MSDEV.EXE
      2007-07-11 21:00 131,524 --a------ C:\out.exe
      2007-07-11 20:16 <REP> d-------- C:\Program Files\EA SPORTS
      2007-07-11 16:49 <REP> d-------- C:\Program Files\PeerTV
      2007-07-03 10:31 52,736 --a------ C:\WINDOWS\system32\drivers\i8042prt.sys
      2007-07-03 10:31 24,064 --a------ C:\WINDOWS\system32\drivers\kbdclass.sys
      2007-07-03 10:31 <REP> d-------- C:\WINDOWS\system32\ReinstallBackups
      2007-07-02 22:18 <REP> d-------- C:\Program Files\Delux
      2007-06-30 13:53 <REP> d-------- C:\DOCUME~1\martin\APPLIC~1\vlc
      2007-06-30 13:52 <REP> d-------- C:\Program Files\VideoLAN
      2007-06-30 11:50 <REP> d-------- C:\DOCUME~1\martin\APPLIC~1\Help
      2007-06-19 17:34 5,632 --a------ C:\WINDOWS\system32\ptpusb.dll
      2007-06-19 17:34 150,528 --a------ C:\WINDOWS\system32\ptpusd.dll
      2007-06-19 11:04 <REP> d-------- C:\DOCUME~1\martin\APPLIC~1\Canon


      (((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))

      2007-07-18 13:43:42 -------- d-----w C:\DOCUME~1\martin\APPLIC~1\Lavasoft
      2007-07-16 21:31:07 71,248 ----a-w C:\WINDOWS\system32\perfc00C.dat
      2007-07-16 21:31:07 458,230 ----a-w C:\WINDOWS\system32\perfh00C.dat
      2007-07-16 10:44:44 -------- d-----w C:\Program Files\eDonkey2000
      2007-07-16 07:58:21 4,212 ---h--w C:\WINDOWS\system32\zllictbl.dat
      2007-07-11 17:33:10 -------- d-----w C:\DOCUME~1\martin\APPLIC~1\Skype
      2007-07-11 15:28:46 -------- d-----w C:\DOCUME~1\martin\APPLIC~1\Ahead
      2007-07-04 08:05:55 -------- d--h--w C:\Program Files\InstallShield Installation Information
      2007-07-02 08:45:06 -------- d--h--w C:\Program Files\WindowsUpdate
      2007-06-17 13:57:59 163,644 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
      2007-06-17 13:49:46 -------- d-----w C:\Program Files\Ubisoft
      2007-06-17 13:39:35 -------- d-----w C:\Program Files\Atari
      2007-06-17 11:18:00 -------- d-----w C:\Program Files\Fichiers communs\Real
      2007-06-17 11:17:52 -------- d-----w C:\DOCUME~1\martin\APPLIC~1\Real
      2007-06-03 19:15:53 41,072 ----a-w C:\DOCUME~1\martin\APPLIC~1\GDIPFONTCACHEV1.DAT
      2007-06-03 15:53:59 -------- d-----w C:\Program Files\TransVente
      2007-06-03 08:45:42 -------- d-----w C:\Program Files\DivX
      2007-05-31 06:45:07 524,288 ----a-w C:\WINDOWS\system32\DivXsm.exe
      2007-05-31 06:44:55 823,296 ----a-w C:\WINDOWS\system32\divx_xx07.dll
      2007-05-31 06:44:54 823,296 ----a-w C:\WINDOWS\system32\divx_xx0c.dll
      2007-05-31 06:44:54 802,816 ----a-w C:\WINDOWS\system32\divx_xx11.dll
      2007-05-31 06:44:54 740,442 ----a-w C:\WINDOWS\system32\DivX.dll
      2007-05-30 08:46:31 162,432 ----a-w C:\WINDOWS\system32\drivers\ithsgt.sys
      2007-05-30 08:46:31 12,032 ----a-w C:\WINDOWS\system32\drivers\lilsgt.sys
      2007-05-30 08:41:40 -------- d-----w C:\Program Files\Fichiers communs\InstallShield
      2007-05-24 13:39:42 18,432 ---ha-w C:\WINDOWS\system32\vhjeak.exe
      2007-05-01 09:38:27 1,277 ----a-w C:\WINDOWS\mozver.dat
      2007-04-30 15:46:10 745,600 ----a-w C:\WINDOWS\system32\aswBoot.exe
      2007-04-30 15:35:28 95,872 ----a-w C:\WINDOWS\system32\AVASTSS.scr
      2007-04-29 16:34:12 0 ----a-w C:\WINDOWS\nsreg.dat
      2007-04-29 15:45:32 0 --sha-r C:\MSDOS.SYS
      2007-04-29 15:45:32 0 --sha-r C:\IO.SYS
      2007-04-29 15:45:32 0 ----a-w C:\CONFIG.SYS
      2007-04-29 15:45:32 0 ----a-w C:\AUTOEXEC.BAT
      2007-04-29 15:41:27 21,892 ----a-w C:\WINDOWS\system32\emptyregdb.dat
      2007-04-23 00:15:29 3,596,288 ----a-w C:\WINDOWS\system32\qt-dx331.dll
      2007-04-23 00:15:18 200,704 ----a-w C:\WINDOWS\system32\ssldivx.dll
      2007-04-23 00:15:18 1,044,480 ----a-w C:\WINDOWS\system32\libdivx.dll
      2007-04-23 00:02:34 73,728 ----a-w C:\WINDOWS\system32\dpl100.dll
      2007-04-23 00:02:34 196,608 ----a-w C:\WINDOWS\system32\dtu100.dll
      2007-04-23 00:02:33 53,248 ----a-w C:\WINDOWS\system32\dpuGUI10.dll
      2007-04-23 00:02:31 593,920 ----a-w C:\WINDOWS\system32\dpuGUI11.dll
      2007-04-23 00:02:31 57,344 ----a-w C:\WINDOWS\system32\dpv11.dll
      2007-04-23 00:02:31 344,064 ----a-w C:\WINDOWS\system32\dpus11.dll
      2007-04-23 00:02:31 294,912 ----a-w C:\WINDOWS\system32\dpu11.dll
      2007-04-23 00:02:31 294,912 ----a-w C:\WINDOWS\system32\dpu10.dll
      2007-04-23 00:01:47 12,288 ----a-w C:\WINDOWS\system32\DivXWMPExtType.dll
      2007-04-23 00:01:46 124,472 ----a-w C:\WINDOWS\system32\DivXCodecUpdateChecker.exe


      ((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))


      *Note* empty entries & legit default entries are not shown

      [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
      2005-05-31 01:04 853672 --a------ C:\PROGRA~1\SPYBOT~1\SDHelper.dll

      [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
      2007-03-14 03:43 501400 --a------ C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "SoundMan"="SOUNDMAN.EXE" [2003-12-19 11:53 C:\WINDOWS\SOUNDMAN.EXE]
      "avast!"="C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe" [2007-04-30 17:42]
      "adiras"="adiras.exe" []
      "MessengerPlus3"="C:\Program Files\MessengerPlus! 3\MsgPlus.exe" [2007-05-01 11:18]
      "SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe" [2007-03-14 03:43]
      "Ashampoo FireWall"="C:\Program Files\Ashampoo\Ashampoo FireWall\FireWall.exe" [2007-04-05 14:57]
      "SvcManager"="smik5.exe" [2007-07-18 17:33 C:\WINDOWS\system32\smik5.exe]

      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "MessengerPlus3"="C:\Program Files\MessengerPlus! 3\MsgPlus.exe" [2007-05-01 11:18]
      "Office Monitor Word Exel R"="C:\WINDOWS\System32\u.exe" []
      "H/PC Connection Agent"="C:\PROGRA~1\MICROS~3\wcescomm.exe" [2006-06-26 21:45]
      "CTFMON.EXE"="C:\WINDOWS\System32\ctfmon.exe" [2002-08-29 11:45]
      "ccleaner"="C:\Program Files\CCleaner\ccleaner.exe" [2007-07-13 11:10]

      [HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
      "Winamp Media"=C:\WINDOWS\System32\qmedia.exe
      "Office Monitor Word Exel R"=C:\WINDOWS\System32\u.exe

      C:\DOCUME~1\ALLUSE~1\MENUDM~1\PROGRA~1\DMARRA~1
      DSLMON.lnk - C:\Program Files\SAGEM\SAGEM F@st 800-840\dslmon.exe [2007-04-29 18:27:42]

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
      "{3F4F125D-F31E-4D37-AC35-E50128670469}"="C:\WINDOWS\System32\byxwvtr.dll" []

      [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
      Server Runtime Process C:\WINDOWS\system32\wbemstest.exe

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Menu Démarrer^Programmes^Démarrage^Microsoft Office.lnk]
      path=C:\Documents and Settings\All Users\Menu Démarrer\Programmes\Démarrage\Microsoft Office.lnk
      backup=C:\WINDOWS\pss\Microsoft Office.lnkCommon Startup

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
      "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
      "C:\Program Files\Messenger\msmsgs.exe" /background

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
      C:\WINDOWS\system32\NeroCheck.exe

      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TransVente]
      C:\PROGRA~1\TRANSV~1\TransVente.exe 1
      HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Svchost - netsvcs
      crvdll

      *Newly Created Service* - ALG
      *Newly Created Service* - IPNAT

      **************************************************************************

      catchme 0.3.1040 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
      Rootkit scan 2007-07-18 23:32:41
      Windows 5.1.2600 Service Pack 1 NTFS

      scanning hidden processes ...

      scanning hidden registry entries ...

      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Prefetcher]
      "TracesProcessed"=dword:000000f5

      scanning hidden files ...

      scan completed successfully
      hidden files: 0

      **************************************************************************

      Completion time: 2007-07-18 23:34:14 - machine was rebooted
      C:\ComboFix-quarantined-files.txt ... 2007-07-18 23:33

      --- E O F ---

      ************** fin


      j'ai déjà vu "smik5.exe" mais je ne sais pas du tout à quoi sert-il.
      voilà merci encore pour ton aide bonne soirée et à bientôt
      0
  4. moK´s@ Messages postés 4410 Statut Membre 89
     
    salut anthony,

    j´adore l´intitulé de ton message "petit probleme" lol , tu n´as qu´as voir deja tout ce que combofix a supprimé > vlog + Other Deletions +Drivers/Services , puis vundo fix, ca fait un paquet jusqu´a maintenant...

    rends toi sur ce site :

    http://www.virustotal.com/sobre.html

    click sur l´onglet analysis puis sur parcourir et upload les fichiers ci dessous (1 a la fois)

    puis poste les rapports

    pour les trouver tu dervas surement faire ceci :

    Affiche les dossiers système et fichiers cachés
    Ouvrir le poste de travail
    - Outils --> Options des dossiers
    - Affichage --> zone Paramètres avancés
    - Cocher : Afficher le contenu des dossiers système
    - Cocher : Afficher les fichiers et dossiers cachés
    - Décocher : Masquer les extensions des fichiers dont le type est connu
    - Décocher : Masquer les fichiers protégés du système d'exploitation (recommandé)
    répondre Oui au message
    Clique sur "Appliquer à tous les dossiers"
    Clique sur OK

    C:\WINDOWS\System32\u.exe

    C:\WINDOWS\System32\smik5.exe

    C:\WINDOWS\system32\emptyregdb.dat

    C:\WINDOWS\system32\vhjeak.exe

    C:\WINDOWS\system32\qt-dx331.dll

    puis fais ceci :

    Télécharge SDFix (créé par AndyManchesta) et sauvegarde le sur ton Bureau.
    http://downloads.andymanchesta.com/RemovalTools/SDFix.exe
    Double clique sur SDFix.exe et choisis Install pour l'extraire dans un dossier dédié sur le Bureau. Redémarre ton ordinateur en mode sans échec en suivant la procédure que voici :
    • Redémarre ton ordinateur
    • Après avoir entendu l'ordinateur biper lors du démarrage, mais avant que l'icône Windows apparaisse, tapote la touche F8 (une pression par seconde).
    • A la place du chargement normal de Windows, un menu avec différentes options devrait apparaître.
    • Choisis la première option, pour exécuter Windows en mode sans échec, puis appuie sur "Entrée".
    • Choisis ton compte.
    Déroule la liste des instructions ci-dessous :
    • Ouvre le dossier SDFix qui vient d'être créé dans le répertoire C:\ et double clique sur RunThis.bat pour lancer le script.
    • Appuie sur Y pour commencer le processus de nettoyage.
    • Il va supprimer les services et les entrées du Registre de certains trojans trouvés puis te demandera d'appuyer sur une touche pour redémarrer.
    • Appuie sur une touche pour redémarrer le PC.
    • Ton système sera plus long pour redémarrer qu'à l'accoutumée car l'outil va continuer à s'exécuter et supprimer des fichiers.
    • Après le chargement du Bureau, l'outil terminera son travail et affichera Finished.
    • Appuie sur une touche pour finir l'exécution du script et charger les icônes de ton Bureau.
    • Les icônes du Bureau affichées, le rapport SDFix s'ouvrira à l'écran et s'enregistrera aussi dans le dossier SDFix sous le nom Report.txt.
    • Enfin, copie/colle le contenu du fichier Report.txt dans ta prochaine réponse sur le forum

    puis passe ce scan :

    * télécharge AVG Anti-Spyware (ewido)

    https://www.avg.com/en-ww/free-antivirus-download
    http://www.infos-du-net.com/telecharger/Ewido-Security-Suite,0301-734.html
    * tu l'installes

    * lance AVG Anti-Spyware et clique sur le bouton Mise à jour. Patiente
    si tu n'arrives pas à le mettre à jour prends ici les màj
    http://downloads.ewido.net/avgas-signatures-full-current.exe

    Sur la page "analyse":
    •- tu choisis d'abord l'onglet "paramètres".
    - sous « Comment réagir » clic sur « Actions recommandées » et dans le menu déroulant, choisir « Supprimer »

    Copie Et colle le rapport ici

    Ps : une fois le scan terminé tu supprime bien tout ce qu´il a trouvé.

    1>tu le mets a jour > click sur l´onglet mis a jour puis commencer la mise a jour.
    2>tu click sur l´onglet analyse puis sur le sous onglet parametre >comment reagir tu click sur ce que tu voie en dessous en bleu et tu regle sur supprimer.
    3>a droite "rapports" tu coche la case "généré un rapport a chaque analyse.

    puis tu lance l´analyse tu click sur le sous onglet analyse puis analyse complete du systeme

    a la fin tu post le rapport


    puis repost aussi un nouveau hijack this

    bon courrage...

    @+
    0
    1. anthony
       
      re bonjour!!
      je suis de retour ,hier j'ai pris une descision définitive j'ai formater mon disque dur en plus j'ai changé d'opérateur je suis chez alice on va voir si c'est bien...
      donc voilà pour le monment je remet tout à jour je télécharge ce qu'il me manque ect.
      je te remerci de ton aide et du temps que tu y as passer.
      je voudrais bien des conseilles pour avoir de bon logiciel pour les mouchards et autre.
      pour le moment j'ai spybot search and destroy et ccleaner.
      est ce que je dois remettre ad-aware?? est ce que c'est bien d'avoir plusieurs logiciels de ce type??
      voilà merci encore à toi
      bonne après midi
      0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. moK´s@ Messages postés 4410 Statut Membre 89
     
    salut anthony,

    ce que je peux te proposer :

    kerio ou zone alarm : par feu

    https://kerio.probb.fr/

    (merci a boulepate pour le site!!!)

    sur cette page tu as le choix entre kerio et zone alarm, zone alarm est plus facile a configurer que kerio mais un peu moins performant, a toi de voir...

    tutorials :

    zone alarm :

    http://forum.telecharger.01net.com/forum/

    kerio 4.2.

    https://kerio.probb.fr/

    kerio autre version 4.5.

    https://kerio.probb.fr/

    puis tu peux installer ca aussi :

    http://www.brightfort.com/spywareblaster.html

    c´est un resident, il suffit de le mettre a jour de temps en temps car la version gratuite ne le fait pas toute seul , une fois installé et mis a jour tu mets toutes les protections sur "enable"

    tu as quoi comme anti virus?

    @+
    0
  7. anthony
     
    j'ai avast comme anti-virus
    j'avais esseillé kerio qui est devenu je crois sunbelt mais je ne suis pas arrivé à le configurer donc j'ai mis ashampoo qui est très facile il ne me cause aucun problème pour le moment me protège bien aussi, donc pour le moment aucun souci avec lui.
    à quoi sert "http://www.brightfort.com/spywareblaster.html " ???
    0
  8. moK´s@ Messages postés 4410 Statut Membre 89
     
    salut anthony,

    ok pour ashampoo.

    spywareblaster est un antispyware qui marche en tache de fond, c´est un resident si tu prefere...

    @+
    0
  9. anthony
     
    ok merci du conseil.je l'ai mis sur mon ordi et je vais cherché un peux comment y fonctionne mais ca ma pas l'air trop conpliquer .
    merci pour tout.
    bonne soirée.
    0
  10. moK´s@ Messages postés 4410 Statut Membre 89
     
    ok
    0