Publicités Intempestives - Page 2

Résolu
Précédent
  • 1
  • 2
  1. jorginho67 Messages postés 15447 Statut Contributeur sécurité 1 169
     
    j'ai autant de pub qu'avant !!!!!!!!!

    Concernant Firefox je préfère attendre !!!!
    je te l'avais pourtant suggeré, passe à Firefox, tu en auras beaucoup moins !

    Télécharge ceci: (by Moe) : on y verra un peu plus clair........

    http://sosvirus.changelog.fr/Green_day/Lopxpsetup.exe

    Double clic sur Lopxpsetup.exe pour lancer l'installation
    Au menu, choisir l'option 1
    Patienter jusqu'à que l'on demande d'appuyer sur une touche, appuyer !
    Une rapport sera alors crée, à copie/colle en entier sur le forum.
    0
  2. Dar Tahouna Messages postés 187 Statut Membre 38
     
    J'ai installé Firefox, c'est vrai ce n'est pas mal ....

    Le rapport :
    Rapport Lopxp fait le 17/01/2008 à 11:24:23
    Exécuté dans : C:\Program Files\Lopxp
    
    
      Killing 'iexplore.exe'
    "C:\Program Files\Internet Explorer\iexplore.exe" (3068)
    ___________________________________________________________________________
    
    => Tâches planifiées
    
    C:\WINDOWS\tasks\Norton Internet Security - Effectuer une analyse complète du système - Molio Yves.job 
    Fichier exécuté => C:\Program Files\Norton Internet Security\Norton AntiVirus\Navw32.exe /TASK:"C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Tasks\mycomp.sca"
    
    C:\WINDOWS\tasks\User_Feed_Synchronization-{266F418F-B881-4242-ABD9-F3F09D973A7D}.job 
    Crée le : 27/01/2007 à 09:04
    Fichier exécuté => C:\WINDOWS\system32\msfeedssync.exe sync
    
    
    ___________________________________________________________________________
    
    => Listing des dossiers Application Data
    
    +- C:\Documents and Settings\Administrateur\Application Data
    
    20/12/2007 12:47:43 ... Adobe -----= Adobe
    20/12/2007 12:47:43 ... IDENTI~1 --= Identities
    20/12/2007 12:47:42 ... MICROS~1 --= Microsoft
    20/12/2007 12:47:42 ... Symantec --= Symantec
    
    +- C:\Documents and Settings\Administrateur\Local Settings\Application Data
    
    20/12/2007 12:47:42 ... Adobe -----= Adobe
    20/12/2007 12:47:42 ... MICROS~1 --= Microsoft
    20/12/2007 12:47:42 ... {3248F~1 --= {3248F0A6-6813-11D6-A77B-00B0D0150020}
    
    +- C:\Documents and Settings\All Users\Application Data
    
    14/01/2007 18:21:02 ... Adobe -----= Adobe
    25/01/2007 12:41:49 ... AOL -------= AOL
    25/01/2007 12:36:09 ... AOLDOW~1 --= AOL Downloads
    25/01/2007 12:41:56 ... AOLOCP~1 --= AOL OCP
    11/11/2007 10:22:16 ... AVS4YOU ---= AVS4YOU
    10/02/2007 10:37:08 ... Coktel ----= Coktel
    25/06/2005 06:50:06 ... CYBERL~1 --= CyberLink
    14/01/2006 14:30:27 ... eConsole --= eConsole
    15/01/2008 10:19:34 ... Grisoft ---= Grisoft
    11/12/2005 12:02:46 ... INSTAL~1 --= InstallShield
    14/01/2008 12:15:53 ... Lavasoft --= Lavasoft
    25/06/2005 06:33:43 ... MICROS~1 --= Microsoft
    15/11/2007 12:21:04 ... NCHSWI~1 --= NCH Swift Sound
    19/09/2005 08:50:11 ... NVIEW_~1 --= nView_Profiles
    25/11/2007 14:20:31 ... OFFICE~1 --= Office Genuine Advantage
    10/02/2007 10:22:21 ... QUICKT~1 --= QuickTime
    10/12/2005 22:21:57 ... Skype -----= Skype
    19/12/2007 14:21:16 ... SPYBOT~1 --= Spybot - Search & Destroy
    25/06/2005 06:50:52 ... Symantec --= Symantec
    18/12/2007 12:36:52 ... TEMP ------= TEMP
    25/01/2007 12:41:48 ... VIEWPO~1 --= Viewpoint
    07/02/2006 11:42:00 ... WINDOW~1 --= Windows Genuine Advantage
    13/01/2008 15:09:45 ... WLINST~1 --= WLInstaller
    
    +- C:\Documents and Settings\Molio Cathy\Application Data
    
    23/12/2005 16:18:18 ... Adobe -----= Adobe
    23/12/2005 16:18:18 ... IDENTI~1 --= Identities
    24/12/2005 11:36:47 ... MACROM~1 --= Macromedia
    23/12/2005 16:18:18 ... MICROS~1 --= Microsoft
    13/04/2006 18:52:36 ... Real ------= Real
    03/04/2006 17:05:45 ... Skype -----= Skype
    23/12/2005 16:18:18 ... Symantec --= Symantec
    31/07/2007 08:19:09 ... VMNTOO~1 --= VMNTOOLBAR
    
    +- C:\Documents and Settings\Molio Cathy\Local Settings\Application Data
    
    23/12/2005 16:18:18 ... Adobe -----= Adobe
    08/04/2006 16:29:06 ... Google ----= Google
    24/12/2005 11:44:09 ... IDENTI~1 --= Identities
    23/12/2005 16:18:18 ... MICROS~1 --= Microsoft
    23/12/2005 16:18:18 ... {3248F~1 --= {3248F0A6-6813-11D6-A77B-00B0D0150020}
    
    +- C:\Documents and Settings\Molio Yves\Application Data
    
    10/12/2005 15:38:35 ... Adobe -----= Adobe
    11/12/2007 09:05:06 ... AdobeAUM --= AdobeAUM
    18/12/2005 20:29:11 ... AdobeUM ---= AdobeUM
    11/11/2007 10:22:21 ... AVS4YOU ---= AVS4YOU
    12/12/2005 18:01:25 ... CYBERL~1 --= CyberLink
    07/12/2006 17:57:31 ... DivX ------= DivX
    11/12/2006 15:01:38 ... FotoWire --= FotoWire
    18/03/2006 11:29:37 ... Google ----= Google
    15/01/2008 10:19:47 ... Grisoft ---= Grisoft
    20/12/2005 13:23:40 ... Help ------= Help
    10/12/2005 15:38:35 ... IDENTI~1 --= Identities
    11/12/2005 12:02:14 ... JASCSO~1 --= Jasc Software Inc
    17/12/2005 09:29:18 ... Lavasoft --= Lavasoft
    11/12/2007 09:25:38 ... LEADER~1 --= Leadertech
    10/12/2005 17:42:58 ... MACROM~1 --= Macromedia
    10/12/2005 15:38:35 ... MICROS~1 --= Microsoft
    15/01/2008 15:26:28 ... Mozilla ---= Mozilla
    15/11/2007 12:20:43 ... NCHSWI~1 --= NCH Swift Sound
    13/04/2006 13:48:29 ... Real ------= Real
    26/07/2007 14:21:35 ... Samsung ---= Samsung
    10/12/2005 22:21:57 ... Skype -----= Skype
    13/12/2007 10:48:48 ... skypePM ---= skypePM
    17/01/2006 14:08:53 ... Sun -------= Sun
    10/12/2005 15:38:35 ... Symantec --= Symantec
    31/07/2007 09:05:46 ... VMNTOO~1 --= VMNTOOLBAR
    11/11/2007 13:28:36 ... Vso -------= Vso
    25/11/2007 15:43:10 ... XnView ----= XnView
    11/12/2005 18:08:33 ... Yahoo! ----= Yahoo!
    
    +- C:\Documents and Settings\Molio Yves\Local Settings\Application Data
    
    10/12/2005 15:38:35 ... Adobe -----= Adobe
    02/03/2006 14:21:59 ... APPLIC~1 --= ApplicationHistory
    11/11/2007 13:36:26 ... DOWNLO~1 --= Downloaded Installations
    18/03/2006 11:29:37 ... Google ----= Google
    20/12/2005 13:23:40 ... Help ------= Help
    10/12/2005 17:10:43 ... IDENTI~1 --= Identities
    13/12/2005 14:50:52 ... LOGITE~1 --= Logitech-LS
    10/12/2005 15:38:35 ... MICROS~1 --= Microsoft
    15/01/2008 15:26:28 ... Mozilla ---= Mozilla
    11/11/2007 11:05:22 ... WinAVI ----= WinAVI
    14/01/2007 22:20:58 ... WMTOOL~1 --= WMTools Downloaded Files
    16/01/2008 09:04:19 ... Zattoo ----= Zattoo
    16/01/2008 09:04:31 ... ZATTOO~1 --= ZattooPlayer
    10/12/2005 15:38:35 ... {3248F~1 --= {3248F0A6-6813-11D6-A77B-00B0D0150020}
    
    ___________________________________________________________________________
    
    => Listing du dossier ProgramFiles
    
    +- C:\Program Files
    
    25/06/2005 18:15:26 ... acer ------= acer
    25/06/2005 06:47:09 ... Adobe -----= Adobe
    11/11/2007 12:32:31 ... AVIDIV~1 --= AVI DivX MPEG to DVD Converter & Burner
    11/11/2007 10:21:11 ... AVS4YOU ---= AVS4YOU
    18/12/2007 12:58:22 ... BITDEF~1 --= BitDefender
    25/07/2007 13:00:26 ... BITTOR~1 --= BitTorrent Fastest Tool
    14/01/2008 11:22:17 ... CCleaner --= CCleaner
    10/02/2007 10:18:05 ... Coktel ----= Coktel
    23/12/2006 13:58:20 ... COMMON~1 --= Common Files
    25/06/2005 06:36:10 ... COMPLU~1 --= ComPlus Applications
    25/06/2005 06:50:04 ... CYBERL~1 --= CyberLink
    25/12/2005 16:52:57 ... DivX ------= DivX
    30/04/2007 15:19:10 ... eMule -----= eMule
    25/06/2005 06:34:05 ... FICHIE~1 --= Fichiers communs
    11/12/2005 11:41:14 ... FILEZI~1 --= FileZilla
    02/05/2007 10:18:35 ... FREEAU~1 --= Free Audio Pack
    18/03/2006 11:29:19 ... Google ----= Google
    15/01/2008 10:19:30 ... Grisoft ---= Grisoft
    25/06/2005 06:43:13 ... INSTAL~1 --= InstallShield Installation Information
    25/06/2005 06:36:17 ... INTERN~1 --= Internet Explorer
    11/12/2005 12:01:34 ... JASCSO~1 --= Jasc Software Inc
    19/09/2005 08:39:35 ... Java ------= Java
    29/12/2005 15:59:57 ... Kazaa -----= Kazaa
    17/12/2005 09:29:13 ... Lavasoft --= Lavasoft
    13/12/2005 13:40:37 ... Logitech --= Logitech
    17/01/2008 11:23:46 ... Lopxp -----= Lopxp
    25/06/2005 06:35:47 ... MESSEN~1 --= Messenger
    25/06/2005 06:37:30 ... MICROS~1 --= microsoft frontpage
    11/12/2005 14:22:04 ... MICROS~2 --= Microsoft Office
    13/01/2008 15:24:21 ... MICROS~4 --= Microsoft SQL Server Compact Edition
    29/01/2006 17:12:59 ... MICROS~3 --= Microsoft Works
    11/12/2005 14:22:04 ... MICROS~1.NET --= Microsoft.NET
    25/06/2005 06:36:21 ... MOVIEM~1 --= Movie Maker
    15/01/2008 15:26:18 ... MOZILL~1 --= Mozilla Firefox
    25/06/2005 06:35:40 ... MSN -------= MSN
    25/06/2005 06:35:47 ... MSNGAM~1 --= MSN Gaming Zone
    10/12/2005 21:58:57 ... MSNMES~1 --= MSN Messenger
    27/07/2007 12:37:24 ... MSXML4~1.0 --= MSXML 4.0
    14/01/2008 14:52:21 ... Navilog1 --= Navilog1
    15/11/2007 12:20:43 ... NCHSWI~1 --= NCH Swift Sound
    25/06/2005 06:36:19 ... NETMEE~1 --= NetMeeting
    25/06/2005 06:48:25 ... NEWTEC~1 --= NewTech Infosystems
    18/12/2007 10:20:26 ... NOADWA~1.0 --= NoAdware5.0
    21/12/2007 14:51:10 ... NORTON~1 --= Norton Internet Security
    18/12/2005 10:11:11 ... OFFICE~1 --= OfficeUpdate11
    25/06/2005 06:35:52 ... ONLINE~1 --= Online Services
    25/06/2005 06:36:19 ... OUTLOO~1 --= Outlook Express
    11/12/2006 15:01:37 ... PHOTOS~1 --= Photo Service
    14/12/2007 15:36:40 ... PHOTOF~1 --= PhotoFiltre
    10/02/2007 10:22:36 ... QUICKT~1 --= QuickTime
    13/04/2006 13:48:59 ... Real ------= Real
    26/07/2007 13:58:05 ... Samsung ---= Samsung
    25/06/2005 06:36:34 ... SERVIC~1 --= Services en ligne
    10/12/2005 22:21:52 ... Skype -----= Skype
    19/12/2007 14:21:16 ... SPYBOT~1 --= Spybot - Search & Destroy
    21/12/2007 14:50:06 ... Symantec --= Symantec
    19/12/2007 10:30:18 ... THECLE~1 --= The Cleaner Free
    14/01/2008 14:46:23 ... TRENDM~1 --= Trend Micro
    25/06/2005 06:45:54 ... UNINST~1 --= Uninstall Information
    31/07/2007 10:53:53 ... VIRGIN~1 --= VirginMega
    11/12/2005 11:27:38 ... VISICO~1 --= Visicom Media
    12/11/2007 15:53:12 ... VSO -------= VSO
    11/11/2007 11:05:14 ... WINAVI~1 --= WinAVI Video Converter
    13/01/2008 15:09:56 ... WI1F86~1 --= Windows Live
    13/01/2008 15:27:24 ... WI81E8~1 --= Windows Live Toolbar
    23/11/2006 10:03:43 ... WINDOW~4 --= Windows Media Connect 2
    25/06/2005 06:35:51 ... WINDOW~2 --= Windows Media Player
    25/06/2005 06:35:40 ... WINDOW~1 --= Windows NT
    21/12/2007 11:11:56 ... WICC9F~1 --= Windows Sidebar
    25/06/2005 06:36:35 ... WINDOW~3 --= WindowsUpdate
    15/12/2005 09:04:37 ... WinRAR ----= WinRAR
    25/06/2005 06:37:31 ... xerox -----= xerox
    25/11/2007 15:42:54 ... XnView ----= XnView
    11/12/2005 16:20:47 ... Yahoo! ----= Yahoo!
    16/01/2008 09:04:03 ... Zattoo ----= Zattoo
    
    
    ___________________________________________________________________________
    
    => Clés registre
    
    
    ___________________________________________________________________________
    
    => Bloqueur popups Internet Explorer
    
    +- Liste des popups autorisés :
    
    spaces.live.com
    
    ___________________________________________________________________________
    
    /!\  Suggestion (Nécessite une interprétation.)
    
    
    

    - Fin du rapport -
    0
  3. jfkpresident Messages postés 13877 Statut Contributeur sécurité 1 175
     
    salut vous deux,pour suivre ...
    0
  4. jorginho67 Messages postés 15447 Statut Contributeur sécurité 1 169
     
    Salut vous deux...

    Desolé, dar tahouna, en effet, je t'ai un peu oublié...

    rien de ce coté là, regarde aussi de ce coté là, les Sponsors CID
    reposte moi un nouveau log HJT stp...

    il n'y a pas d'infection, tu devrais installer les fonctions supplementaires de Firefox pour bloquer les pubs !

    No Script pour bloquer certaines pubs

    Il bloque presque tout le contenu publicitaire de toutes les pages Web (pages des sites Internet) sauf pour vos sites de confiance (les sites introduits dans votre liste blanche par vous-même) ou pour des règles d'autorisation fixées par vous. NoScript fait partie des 3 modules complémentaires de Firefox totalement indispensables

    @ suivre...
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. Dar Tahouna Messages postés 187 Statut Membre 38
     
    Re bonjour jorginho67,

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 11:39:30, on 05/02/2008
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16574)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
    C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\acer\Acer eConsole\MediaServerService.exe
    C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\WINDOWS\system32\nvsvc32.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    C:\Program Files\Acer\eRecovery\Monitor.exe
    C:\WINDOWS\system32\RUNDLL32.EXE
    C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
    C:\Program Files\Acer\Acer eMode Management\AspireService.exe
    C:\Program Files\Acer\Acer eConsole\MediaSync.exe
    C:\WINDOWS\system32\LVCOMSX.EXE
    C:\Program Files\Logitech\Video\LogiTray.exe
    C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
    C:\Program Files\Skype\Phone\Skype.exe
    C:\Program Files\Logitech\Video\FxSvr2.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Skype\Plugin Manager\SkypePM.exe
    C:\PROGRA~1\FICHIE~1\SYMANT~1\CCPD-LC\symlcsvc.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Program Files\Windows Live\Messenger\usnsvc.exe
    C:\Program Files\Outlook Express\msimn.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Fichiers communs\Symantec Shared\coShared\Browser\2.0\coIEPlg.dll
    O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\FICHIE~1\SYMANT~1\IDS\IPSBHO.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
    O3 - Toolbar: Afficher Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Fichiers communs\Symantec Shared\coShared\Browser\2.0\CoIEPlg.dll
    O4 - HKLM\..\Run: [LaunchApp] Alaunch
    O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
    O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
    O4 - HKLM\..\Run: [ntiMUI] "c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe"
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
    O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
    O4 - HKLM\..\Run: [eRecoveryService] "C:\Program Files\Acer\eRecovery\Monitor.exe"
    O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NvMediaCenter] "RUNDLL32.EXE" C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
    O4 - HKLM\..\Run: [AspireService] "C:\Program Files\Acer\Acer eMode Management\AspireService.exe"
    O4 - HKLM\..\Run: [MediaSync] "C:\Program Files\Acer\Acer eConsole\MediaSync.exe"
    O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
    O4 - HKLM\..\Run: [LogitechVideoRepair] "C:\Program Files\Logitech\Video\ISStart.exe"
    O4 - HKLM\..\Run: [LogitechVideoTray] "C:\Program Files\Logitech\Video\LogiTray.exe"
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton Internet Security\osCheck.exe"
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
    O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
    O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
    O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
    O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
    O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
    O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
    O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
    O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
    O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
    O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\Yahoo!\Common\yhexbmesfr.dll
    O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\Yahoo!\Common\yhexbmesfr.dll
    O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com/QuickTime/qtactivex/qtplugin.cab
    O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://dartahouna.spaces.live.com//PhotoUpload/MsnPUpld.cab
    O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
    O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.photoservice.com/aurigma/ImageUploader4.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
    O18 - Filter hijack: text/html - (no CLSID) - (no file)
    O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe
    O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
    O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
    O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\VAScanner\comHost.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
    O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
    O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\FICHIE~1\SYMANT~1\CCPD-LC\symlcsvc.exe
    0
  7. jorginho67 Messages postés 15447 Statut Contributeur sécurité 1 169
     
    Bon, rien d'anormal dan ce log...

    Comment ça ce passe ? Toujours des pubs ?
    Une réponse assez détaillée serait sympa, vu que tu n'es pas trop " bavard " ;o)) et ensuite, on pourra conclure le topic...
    0
  8. Dar Tahouna Messages postés 187 Statut Membre 38
     
    Merci,
    Concernant les pubs : un peu moins mais toujours quand même lorsque je vais sur internet par exemple sur orange.fr, j'ai des carrés de pub qui s'affichent, je suis obligé de cliquer sur "X" pour m'en débarrasser. Et cela depuis un peu plus d'1 mois, depuis que j'ai été infecté par un trojan. En plus je trouve que mon ordi répond moins bien depuis (temps de réponse).

    Autre problème : j'ai mon ventilo qui s'affole souvent, dés que je vais chercher une info sur le disque dur et/ou sur internet. Et la aussi depuis le trojan, enfin il me semble.

    mais peut-être que je deviens parano !!!!!

    Merci de ton aide
    0
  9. jorginho67 Messages postés 15447 Statut Contributeur sécurité 1 169
     
    regarde ici, http://www.commentcamarche.net/faq/sujet 5996 comment bloquer les fenetres cid surtout ce qui concerne les pubs CID, et regarde dans ajout/suppression de progr's si tu trouves des trucs CID, tu les supprimes !

    Pour le ventilo, débranche tout du courant, essaye de démonter le panneau latéral, et un bon coup d'aspirateur....souvent çà regle le probleme !
    Il se peut aussi que se soit du à un probleme matériel !

    regarde tout çà, et tiens moi au courant .

    @+
    0
  10. Dar Tahouna Messages postés 187 Statut Membre 38
     
    Merci
    0
Précédent
  • 1
  • 2