Publicités Intempestives - Page 2

Résolu
  1. Contributeur sécurité
    j'ai autant de pub qu'avant !!!!!!!!!

    Concernant Firefox je préfère attendre !!!!
    je te l'avais pourtant suggeré, passe à Firefox, tu en auras beaucoup moins !

    Télécharge ceci: (by Moe) : on y verra un peu plus clair........

    http://sosvirus.changelog.fr/Green_day/Lopxpsetup.exe

    Double clic sur Lopxpsetup.exe pour lancer l'installation
    Au menu, choisir l'option 1
    Patienter jusqu'à que l'on demande d'appuyer sur une touche, appuyer !
    Une rapport sera alors crée, à copie/colle en entier sur le forum.
    0
    1. J'ai installé Firefox, c'est vrai ce n'est pas mal ....

      Le rapport :
      Rapport Lopxp fait le 17/01/2008 à 11:24:23
      Exécuté dans : C:\Program Files\Lopxp
      
      
        Killing 'iexplore.exe'
      "C:\Program Files\Internet Explorer\iexplore.exe" (3068)
      ___________________________________________________________________________
      
      => Tâches planifiées
      
      C:\WINDOWS\tasks\Norton Internet Security - Effectuer une analyse complète du système - Molio Yves.job 
      Fichier exécuté => C:\Program Files\Norton Internet Security\Norton AntiVirus\Navw32.exe /TASK:"C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Tasks\mycomp.sca"
      
      C:\WINDOWS\tasks\User_Feed_Synchronization-{266F418F-B881-4242-ABD9-F3F09D973A7D}.job 
      Crée le : 27/01/2007 à 09:04
      Fichier exécuté => C:\WINDOWS\system32\msfeedssync.exe sync
      
      
      ___________________________________________________________________________
      
      => Listing des dossiers Application Data
      
      +- C:\Documents and Settings\Administrateur\Application Data
      
      20/12/2007 12:47:43 ... Adobe -----= Adobe
      20/12/2007 12:47:43 ... IDENTI~1 --= Identities
      20/12/2007 12:47:42 ... MICROS~1 --= Microsoft
      20/12/2007 12:47:42 ... Symantec --= Symantec
      
      +- C:\Documents and Settings\Administrateur\Local Settings\Application Data
      
      20/12/2007 12:47:42 ... Adobe -----= Adobe
      20/12/2007 12:47:42 ... MICROS~1 --= Microsoft
      20/12/2007 12:47:42 ... {3248F~1 --= {3248F0A6-6813-11D6-A77B-00B0D0150020}
      
      +- C:\Documents and Settings\All Users\Application Data
      
      14/01/2007 18:21:02 ... Adobe -----= Adobe
      25/01/2007 12:41:49 ... AOL -------= AOL
      25/01/2007 12:36:09 ... AOLDOW~1 --= AOL Downloads
      25/01/2007 12:41:56 ... AOLOCP~1 --= AOL OCP
      11/11/2007 10:22:16 ... AVS4YOU ---= AVS4YOU
      10/02/2007 10:37:08 ... Coktel ----= Coktel
      25/06/2005 06:50:06 ... CYBERL~1 --= CyberLink
      14/01/2006 14:30:27 ... eConsole --= eConsole
      15/01/2008 10:19:34 ... Grisoft ---= Grisoft
      11/12/2005 12:02:46 ... INSTAL~1 --= InstallShield
      14/01/2008 12:15:53 ... Lavasoft --= Lavasoft
      25/06/2005 06:33:43 ... MICROS~1 --= Microsoft
      15/11/2007 12:21:04 ... NCHSWI~1 --= NCH Swift Sound
      19/09/2005 08:50:11 ... NVIEW_~1 --= nView_Profiles
      25/11/2007 14:20:31 ... OFFICE~1 --= Office Genuine Advantage
      10/02/2007 10:22:21 ... QUICKT~1 --= QuickTime
      10/12/2005 22:21:57 ... Skype -----= Skype
      19/12/2007 14:21:16 ... SPYBOT~1 --= Spybot - Search & Destroy
      25/06/2005 06:50:52 ... Symantec --= Symantec
      18/12/2007 12:36:52 ... TEMP ------= TEMP
      25/01/2007 12:41:48 ... VIEWPO~1 --= Viewpoint
      07/02/2006 11:42:00 ... WINDOW~1 --= Windows Genuine Advantage
      13/01/2008 15:09:45 ... WLINST~1 --= WLInstaller
      
      +- C:\Documents and Settings\Molio Cathy\Application Data
      
      23/12/2005 16:18:18 ... Adobe -----= Adobe
      23/12/2005 16:18:18 ... IDENTI~1 --= Identities
      24/12/2005 11:36:47 ... MACROM~1 --= Macromedia
      23/12/2005 16:18:18 ... MICROS~1 --= Microsoft
      13/04/2006 18:52:36 ... Real ------= Real
      03/04/2006 17:05:45 ... Skype -----= Skype
      23/12/2005 16:18:18 ... Symantec --= Symantec
      31/07/2007 08:19:09 ... VMNTOO~1 --= VMNTOOLBAR
      
      +- C:\Documents and Settings\Molio Cathy\Local Settings\Application Data
      
      23/12/2005 16:18:18 ... Adobe -----= Adobe
      08/04/2006 16:29:06 ... Google ----= Google
      24/12/2005 11:44:09 ... IDENTI~1 --= Identities
      23/12/2005 16:18:18 ... MICROS~1 --= Microsoft
      23/12/2005 16:18:18 ... {3248F~1 --= {3248F0A6-6813-11D6-A77B-00B0D0150020}
      
      +- C:\Documents and Settings\Molio Yves\Application Data
      
      10/12/2005 15:38:35 ... Adobe -----= Adobe
      11/12/2007 09:05:06 ... AdobeAUM --= AdobeAUM
      18/12/2005 20:29:11 ... AdobeUM ---= AdobeUM
      11/11/2007 10:22:21 ... AVS4YOU ---= AVS4YOU
      12/12/2005 18:01:25 ... CYBERL~1 --= CyberLink
      07/12/2006 17:57:31 ... DivX ------= DivX
      11/12/2006 15:01:38 ... FotoWire --= FotoWire
      18/03/2006 11:29:37 ... Google ----= Google
      15/01/2008 10:19:47 ... Grisoft ---= Grisoft
      20/12/2005 13:23:40 ... Help ------= Help
      10/12/2005 15:38:35 ... IDENTI~1 --= Identities
      11/12/2005 12:02:14 ... JASCSO~1 --= Jasc Software Inc
      17/12/2005 09:29:18 ... Lavasoft --= Lavasoft
      11/12/2007 09:25:38 ... LEADER~1 --= Leadertech
      10/12/2005 17:42:58 ... MACROM~1 --= Macromedia
      10/12/2005 15:38:35 ... MICROS~1 --= Microsoft
      15/01/2008 15:26:28 ... Mozilla ---= Mozilla
      15/11/2007 12:20:43 ... NCHSWI~1 --= NCH Swift Sound
      13/04/2006 13:48:29 ... Real ------= Real
      26/07/2007 14:21:35 ... Samsung ---= Samsung
      10/12/2005 22:21:57 ... Skype -----= Skype
      13/12/2007 10:48:48 ... skypePM ---= skypePM
      17/01/2006 14:08:53 ... Sun -------= Sun
      10/12/2005 15:38:35 ... Symantec --= Symantec
      31/07/2007 09:05:46 ... VMNTOO~1 --= VMNTOOLBAR
      11/11/2007 13:28:36 ... Vso -------= Vso
      25/11/2007 15:43:10 ... XnView ----= XnView
      11/12/2005 18:08:33 ... Yahoo! ----= Yahoo!
      
      +- C:\Documents and Settings\Molio Yves\Local Settings\Application Data
      
      10/12/2005 15:38:35 ... Adobe -----= Adobe
      02/03/2006 14:21:59 ... APPLIC~1 --= ApplicationHistory
      11/11/2007 13:36:26 ... DOWNLO~1 --= Downloaded Installations
      18/03/2006 11:29:37 ... Google ----= Google
      20/12/2005 13:23:40 ... Help ------= Help
      10/12/2005 17:10:43 ... IDENTI~1 --= Identities
      13/12/2005 14:50:52 ... LOGITE~1 --= Logitech-LS
      10/12/2005 15:38:35 ... MICROS~1 --= Microsoft
      15/01/2008 15:26:28 ... Mozilla ---= Mozilla
      11/11/2007 11:05:22 ... WinAVI ----= WinAVI
      14/01/2007 22:20:58 ... WMTOOL~1 --= WMTools Downloaded Files
      16/01/2008 09:04:19 ... Zattoo ----= Zattoo
      16/01/2008 09:04:31 ... ZATTOO~1 --= ZattooPlayer
      10/12/2005 15:38:35 ... {3248F~1 --= {3248F0A6-6813-11D6-A77B-00B0D0150020}
      
      ___________________________________________________________________________
      
      => Listing du dossier ProgramFiles
      
      +- C:\Program Files
      
      25/06/2005 18:15:26 ... acer ------= acer
      25/06/2005 06:47:09 ... Adobe -----= Adobe
      11/11/2007 12:32:31 ... AVIDIV~1 --= AVI DivX MPEG to DVD Converter & Burner
      11/11/2007 10:21:11 ... AVS4YOU ---= AVS4YOU
      18/12/2007 12:58:22 ... BITDEF~1 --= BitDefender
      25/07/2007 13:00:26 ... BITTOR~1 --= BitTorrent Fastest Tool
      14/01/2008 11:22:17 ... CCleaner --= CCleaner
      10/02/2007 10:18:05 ... Coktel ----= Coktel
      23/12/2006 13:58:20 ... COMMON~1 --= Common Files
      25/06/2005 06:36:10 ... COMPLU~1 --= ComPlus Applications
      25/06/2005 06:50:04 ... CYBERL~1 --= CyberLink
      25/12/2005 16:52:57 ... DivX ------= DivX
      30/04/2007 15:19:10 ... eMule -----= eMule
      25/06/2005 06:34:05 ... FICHIE~1 --= Fichiers communs
      11/12/2005 11:41:14 ... FILEZI~1 --= FileZilla
      02/05/2007 10:18:35 ... FREEAU~1 --= Free Audio Pack
      18/03/2006 11:29:19 ... Google ----= Google
      15/01/2008 10:19:30 ... Grisoft ---= Grisoft
      25/06/2005 06:43:13 ... INSTAL~1 --= InstallShield Installation Information
      25/06/2005 06:36:17 ... INTERN~1 --= Internet Explorer
      11/12/2005 12:01:34 ... JASCSO~1 --= Jasc Software Inc
      19/09/2005 08:39:35 ... Java ------= Java
      29/12/2005 15:59:57 ... Kazaa -----= Kazaa
      17/12/2005 09:29:13 ... Lavasoft --= Lavasoft
      13/12/2005 13:40:37 ... Logitech --= Logitech
      17/01/2008 11:23:46 ... Lopxp -----= Lopxp
      25/06/2005 06:35:47 ... MESSEN~1 --= Messenger
      25/06/2005 06:37:30 ... MICROS~1 --= microsoft frontpage
      11/12/2005 14:22:04 ... MICROS~2 --= Microsoft Office
      13/01/2008 15:24:21 ... MICROS~4 --= Microsoft SQL Server Compact Edition
      29/01/2006 17:12:59 ... MICROS~3 --= Microsoft Works
      11/12/2005 14:22:04 ... MICROS~1.NET --= Microsoft.NET
      25/06/2005 06:36:21 ... MOVIEM~1 --= Movie Maker
      15/01/2008 15:26:18 ... MOZILL~1 --= Mozilla Firefox
      25/06/2005 06:35:40 ... MSN -------= MSN
      25/06/2005 06:35:47 ... MSNGAM~1 --= MSN Gaming Zone
      10/12/2005 21:58:57 ... MSNMES~1 --= MSN Messenger
      27/07/2007 12:37:24 ... MSXML4~1.0 --= MSXML 4.0
      14/01/2008 14:52:21 ... Navilog1 --= Navilog1
      15/11/2007 12:20:43 ... NCHSWI~1 --= NCH Swift Sound
      25/06/2005 06:36:19 ... NETMEE~1 --= NetMeeting
      25/06/2005 06:48:25 ... NEWTEC~1 --= NewTech Infosystems
      18/12/2007 10:20:26 ... NOADWA~1.0 --= NoAdware5.0
      21/12/2007 14:51:10 ... NORTON~1 --= Norton Internet Security
      18/12/2005 10:11:11 ... OFFICE~1 --= OfficeUpdate11
      25/06/2005 06:35:52 ... ONLINE~1 --= Online Services
      25/06/2005 06:36:19 ... OUTLOO~1 --= Outlook Express
      11/12/2006 15:01:37 ... PHOTOS~1 --= Photo Service
      14/12/2007 15:36:40 ... PHOTOF~1 --= PhotoFiltre
      10/02/2007 10:22:36 ... QUICKT~1 --= QuickTime
      13/04/2006 13:48:59 ... Real ------= Real
      26/07/2007 13:58:05 ... Samsung ---= Samsung
      25/06/2005 06:36:34 ... SERVIC~1 --= Services en ligne
      10/12/2005 22:21:52 ... Skype -----= Skype
      19/12/2007 14:21:16 ... SPYBOT~1 --= Spybot - Search & Destroy
      21/12/2007 14:50:06 ... Symantec --= Symantec
      19/12/2007 10:30:18 ... THECLE~1 --= The Cleaner Free
      14/01/2008 14:46:23 ... TRENDM~1 --= Trend Micro
      25/06/2005 06:45:54 ... UNINST~1 --= Uninstall Information
      31/07/2007 10:53:53 ... VIRGIN~1 --= VirginMega
      11/12/2005 11:27:38 ... VISICO~1 --= Visicom Media
      12/11/2007 15:53:12 ... VSO -------= VSO
      11/11/2007 11:05:14 ... WINAVI~1 --= WinAVI Video Converter
      13/01/2008 15:09:56 ... WI1F86~1 --= Windows Live
      13/01/2008 15:27:24 ... WI81E8~1 --= Windows Live Toolbar
      23/11/2006 10:03:43 ... WINDOW~4 --= Windows Media Connect 2
      25/06/2005 06:35:51 ... WINDOW~2 --= Windows Media Player
      25/06/2005 06:35:40 ... WINDOW~1 --= Windows NT
      21/12/2007 11:11:56 ... WICC9F~1 --= Windows Sidebar
      25/06/2005 06:36:35 ... WINDOW~3 --= WindowsUpdate
      15/12/2005 09:04:37 ... WinRAR ----= WinRAR
      25/06/2005 06:37:31 ... xerox -----= xerox
      25/11/2007 15:42:54 ... XnView ----= XnView
      11/12/2005 16:20:47 ... Yahoo! ----= Yahoo!
      16/01/2008 09:04:03 ... Zattoo ----= Zattoo
      
      
      ___________________________________________________________________________
      
      => Clés registre
      
      
      ___________________________________________________________________________
      
      => Bloqueur popups Internet Explorer
      
      +- Liste des popups autorisés :
      
      spaces.live.com
      
      ___________________________________________________________________________
      
      /!\  Suggestion (Nécessite une interprétation.)
      
      
      

      - Fin du rapport -
      0
      1. Contributeur sécurité
        salut vous deux,pour suivre ...
        0
        1. Contributeur sécurité
          Salut vous deux...

          Desolé, dar tahouna, en effet, je t'ai un peu oublié...

          rien de ce coté là, regarde aussi de ce coté là, les Sponsors CID
          reposte moi un nouveau log HJT stp...

          il n'y a pas d'infection, tu devrais installer les fonctions supplementaires de Firefox pour bloquer les pubs !

          No Script pour bloquer certaines pubs

          Il bloque presque tout le contenu publicitaire de toutes les pages Web (pages des sites Internet) sauf pour vos sites de confiance (les sites introduits dans votre liste blanche par vous-même) ou pour des règles d'autorisation fixées par vous. NoScript fait partie des 3 modules complémentaires de Firefox totalement indispensables

          @ suivre...
          0
          1. Re bonjour jorginho67,

            Logfile of Trend Micro HijackThis v2.0.2
            Scan saved at 11:39:30, on 05/02/2008
            Platform: Windows XP SP2 (WinNT 5.01.2600)
            MSIE: Internet Explorer v7.00 (7.00.6000.16574)
            Boot mode: Normal

            Running processes:
            C:\WINDOWS\System32\smss.exe
            C:\WINDOWS\system32\winlogon.exe
            C:\WINDOWS\system32\services.exe
            C:\WINDOWS\system32\lsass.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\System32\svchost.exe
            C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
            C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
            C:\WINDOWS\system32\spoolsv.exe
            C:\Program Files\acer\Acer eConsole\MediaServerService.exe
            C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
            C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
            C:\WINDOWS\system32\nvsvc32.exe
            C:\WINDOWS\system32\svchost.exe
            C:\WINDOWS\Explorer.EXE
            C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
            C:\Program Files\Acer\eRecovery\Monitor.exe
            C:\WINDOWS\system32\RUNDLL32.EXE
            C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
            C:\Program Files\Acer\Acer eMode Management\AspireService.exe
            C:\Program Files\Acer\Acer eConsole\MediaSync.exe
            C:\WINDOWS\system32\LVCOMSX.EXE
            C:\Program Files\Logitech\Video\LogiTray.exe
            C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
            C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
            C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
            C:\Program Files\Skype\Phone\Skype.exe
            C:\Program Files\Logitech\Video\FxSvr2.exe
            C:\WINDOWS\system32\ctfmon.exe
            C:\Program Files\Messenger\msmsgs.exe
            C:\Program Files\Skype\Plugin Manager\SkypePM.exe
            C:\PROGRA~1\FICHIE~1\SYMANT~1\CCPD-LC\symlcsvc.exe
            C:\Program Files\Windows Live\Messenger\msnmsgr.exe
            C:\Program Files\Windows Live\Messenger\usnsvc.exe
            C:\Program Files\Outlook Express\msimn.exe
            C:\Program Files\Internet Explorer\IEXPLORE.EXE
            C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
            C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

            R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.orange.fr/portail
            R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
            O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
            O2 - BHO: NCO 2.0 IE BHO - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files\Fichiers communs\Symantec Shared\coShared\Browser\2.0\coIEPlg.dll
            O2 - BHO: Symantec Intrusion Prevention - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\PROGRA~1\FICHIE~1\SYMANT~1\IDS\IPSBHO.dll
            O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
            O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
            O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
            O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
            O3 - Toolbar: Afficher Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Fichiers communs\Symantec Shared\coShared\Browser\2.0\CoIEPlg.dll
            O4 - HKLM\..\Run: [LaunchApp] Alaunch
            O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAShCut.exe
            O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
            O4 - HKLM\..\Run: [ntiMUI] "c:\Program Files\NewTech Infosystems\NTI CD & DVD-Maker 7\ntiMUI.exe"
            O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
            O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
            O4 - HKLM\..\Run: [eRecoveryService] "C:\Program Files\Acer\eRecovery\Monitor.exe"
            O4 - HKLM\..\Run: [NvCplDaemon] "RUNDLL32.EXE" C:\WINDOWS\system32\NvCpl.dll,NvStartup
            O4 - HKLM\..\Run: [NvMediaCenter] "RUNDLL32.EXE" C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
            O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
            O4 - HKLM\..\Run: [AspireService] "C:\Program Files\Acer\Acer eMode Management\AspireService.exe"
            O4 - HKLM\..\Run: [MediaSync] "C:\Program Files\Acer\Acer eConsole\MediaSync.exe"
            O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
            O4 - HKLM\..\Run: [LogitechVideoRepair] "C:\Program Files\Logitech\Video\ISStart.exe"
            O4 - HKLM\..\Run: [LogitechVideoTray] "C:\Program Files\Logitech\Video\LogiTray.exe"
            O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Fichiers communs\Symantec Shared\ccApp.exe"
            O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton Internet Security\osCheck.exe"
            O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
            O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
            O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
            O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
            O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
            O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
            O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
            O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
            O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
            O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
            O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
            O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
            O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
            O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
            O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
            O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
            O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
            O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
            O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
            O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
            O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
            O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\Yahoo!\Common\yhexbmesfr.dll
            O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\PROGRA~1\Yahoo!\Common\yhexbmesfr.dll
            O9 - Extra button: Recherche - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
            O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
            O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
            O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
            O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://appldnld.apple.com/QuickTime/qtactivex/qtplugin.cab
            O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
            O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://dartahouna.spaces.live.com//PhotoUpload/MsnPUpld.cab
            O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
            O16 - DPF: {6E5E167B-1566-4316-B27F-0DDAB3484CF7} (Image Uploader Control) - http://www.photoservice.com/aurigma/ImageUploader4.cab
            O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
            O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\FICHIE~1\Skype\SKYPE4~1.DLL
            O18 - Filter hijack: text/html - (no CLSID) - (no file)
            O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
            O23 - Service: Acer Media Server - Acer Inc. - C:\Program Files\acer\Acer eConsole\MediaServerService.exe
            O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
            O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\AluSchedulerSvc.exe
            O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
            O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
            O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
            O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
            O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\VAScanner\comHost.exe
            O23 - Service: LiveUpdate - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\LuComServer_3_4.EXE
            O23 - Service: LiveUpdate Notice - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\ccSvcHst.exe
            O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
            O23 - Service: Planificateur LiveUpdate automatique - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
            O23 - Service: Symantec Core LC - Unknown owner - C:\PROGRA~1\FICHIE~1\SYMANT~1\CCPD-LC\symlcsvc.exe
            0
            1. Contributeur sécurité
              Bon, rien d'anormal dan ce log...

              Comment ça ce passe ? Toujours des pubs ?
              Une réponse assez détaillée serait sympa, vu que tu n'es pas trop " bavard " ;o)) et ensuite, on pourra conclure le topic...
              0
              1. Merci,
                Concernant les pubs : un peu moins mais toujours quand même lorsque je vais sur internet par exemple sur orange.fr, j'ai des carrés de pub qui s'affichent, je suis obligé de cliquer sur "X" pour m'en débarrasser. Et cela depuis un peu plus d'1 mois, depuis que j'ai été infecté par un trojan. En plus je trouve que mon ordi répond moins bien depuis (temps de réponse).

                Autre problème : j'ai mon ventilo qui s'affole souvent, dés que je vais chercher une info sur le disque dur et/ou sur internet. Et la aussi depuis le trojan, enfin il me semble.

                mais peut-être que je deviens parano !!!!!

                Merci de ton aide
                0
                1. Contributeur sécurité
                  regarde ici, http://www.commentcamarche.net/faq/sujet 5996 comment bloquer les fenetres cid surtout ce qui concerne les pubs CID, et regarde dans ajout/suppression de progr's si tu trouves des trucs CID, tu les supprimes !

                  Pour le ventilo, débranche tout du courant, essaye de démonter le panneau latéral, et un bon coup d'aspirateur....souvent çà regle le probleme !
                  Il se peut aussi que se soit du à un probleme matériel !

                  regarde tout çà, et tiens moi au courant .

                  @+
                  0
                  Précédent
                  • 1
                  • 2