Probleme page internet cid

kurosaki -  
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité -
Bonjour,
voila j'ai un probleme il y a des fenetre qui s'ouvre sans arret nommé cid comment faire pour les enlever svp a chaque fois que je joue ca me fais laggué et en plus ca me retour windows!a laide please
A voir également:

25 réponses

le pro du pc Messages postés 145 Statut Membre 13
 
https://www.commentcamarche.net/list 5996 comment bloquer les fenetres cid

VA ICI
ET LIT
TU VA AVOIR KELKES LOGICIELS OU TU LA ATRAPPER
0
Utilisateur anonyme
 
Lut'

Ton lien n'est pas entier :/

http://www.commentcamarche.net/faq/sujet 5996 comment bloquer les fenetres cid

Essaye ça et dis nous ou ça en est.

a+

0
le pro du pc Messages postés 145 Statut Membre 13
 
Sponsors MSN plus !
Bittorent
BitDownload
BitGrabber
NetPumper
BitRoll
TorrentQ
Torrent101
...
ca vient de ces logiciels

scuse pour le lien
0
kurosaki
 
j'ai vu qu'il fallai installé un hacking mais et analysé mais il me faut l'avis d'un specialiste pour ne pas tout supprimé!g deja fais des analyse avec des antivirus et tout le reste mais ele son toujours la!
0

Vous n’avez pas trouvé la réponse que vous recherchez ?

Posez votre question
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
salut

Télécharge ceci :

Lien : http://www.commentcamarche.net/telecharger/telecharger 159 hijackthis

Démo : http://pageperso.aol.fr/balltrap34/demohijack.htm

Choisir l'option "do a scan and a logfile", et faire un copier/coller du rapport ainsi générer sur le forum.

++
0
kurosaki
 
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:57:16, on 17/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\WINDOWS\system32\PSIService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\USBDeviceService.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\program files\valve\steam\steam.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
c:\program files\valve\steam\steamapps\popodu34\counter-strike source\hl2.exe
C:\program files\valve\steam\GameOverlayUI.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Idea2 SidebarBrowserMonitor Class - {45AD732C-2CE2-4666-B366-B2214AD57A49} - C:\Program Files\Desktop Sidebar\sbhelp.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\eoRezo\EoAdv\EoRezoBHO.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O3 - Toolbar: SYSTRAN Web Translator 5.0 - {A5899B52-3AF9-4F56-85FE-AD7B3BE8490F} - C:\Program Files\SYSTRAN\5.0\Personal\IEPlugIn.dll
O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AAWTray] C:\Program Files\Lavasoft\Ad-Aware 2007\AAWTray.exe
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Base frag grid bows] C:\Documents and Settings\All Users\Application Data\Cast ping base frag\active seek.exe
O4 - HKLM\..\RunOnce: [MessengerPlusLiveUninstall] "C:\DOCUME~1\marques\LOCALS~1\Temp\MsgPlusUninstall.exe" /Cleanup
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [RocketDock] "C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [Yodm3D] C:\Documents and Settings\marques\Bureau\Nouveau dossier\Yodm3D.exe
O4 - HKCU\..\Run: [LClock] C:\Program Files\LClock\LClock.exe
O4 - HKCU\..\Run: [Vista Sidebar] C:\Program Files\Vista Sidebar\sidebar.exe
O4 - HKCU\..\Run: [ViStart] C:\Program Files\ViStart\ViStart.exe
O4 - HKCU\..\Run: [VisualTooltip] C:\Program Files\VisualTooltip\VisualToolTip.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Steam] "c:\program files\valve\steam\steam.exe" -silent
O4 - HKCU\..\Run: [List Lies] C:\DOCUME~1\marques\APPLIC~1\BIBDAS~1\Proc Mail.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: Download Link Using Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - C:\Program Files\Desktop Sidebar\sbhelp.dll
O9 - Extra 'Tools' menuitem: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - C:\Program Files\Desktop Sidebar\sbhelp.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {7DFDB8FD-B498-4958-B930-38021B94351D} (imlUCID Class) - https://validate.perfdrive.com/?ssa=1cb613c1-b580-495b-866c-b6fe71718572&ssb=36371211747&ssc=https%3A%2F%2Fimlive.com%2Fchatsource%2FImlCID.cab&ssi=b98a4b26-ba0f-44c8-a2a5-0315e1e966ee&ssk=support@shieldsquare.com&ssm=77124680964133473105650333749186&ssn=7eafd9fa9826c01597307b85effe791743b46ba2f27a-3977-4b0e-988e66&sso=940ea59d-ee88a13130f2489df365438a8b123fc056d418d499c5df48&ssp=15188465711607082399160702401540426&ssq=67141537474651350705574746278120044759785&ssr=OTEuMjA5LjM1LjIxOA==&sst=Mozilla/5.0%20(X11;%20Linux%20x86_64)%20AppleWebKit/537.36%20(KHTML,%20like%20Gecko)%20Chrome/74.0.3729.131%20Safari/537.36&ssv=&ssw=
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{40F30C54-A075-4723-A576-8346A841B4E0}: NameServer = 213.36.80.1
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Fichiers communs\Logitech\Bluetooth\LBTServ.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: USBDeviceService - Unknown owner - C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\USBDeviceService.exe
O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe
0
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
ok,

Télécharge ceci: (by Moe) :

http://sosvirus.changelog.fr/Green_day/Lopxpsetup.exe

Double clic sur Lopxpsetup.exe pour lancer l'installation
Au menu, choisir l'option 1
Patienter jusqu'à que l'on demande d'appuyer sur une touche, appuyer !
Une rapport sera alors crée, à copie/colle en entier sur le forum.

++
0
kurosaki
 
Rapport Lopxp fait le 17/01/2008 à 19:04:30
Exécuté dans : C:\Program Files\Lopxp


  Killing 'iexplore.exe'
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" (3716)
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" (3764)
"C:\Program Files\Internet Explorer\IEXPLORE.EXE"  (4084)
___________________________________________________________________________

=> Tâches planifiées

C:\WINDOWS\tasks\A6DB53339184CB2B.job 
Crée le : 16/01/2008 à 17:28
Fichier exécuté => c:\docume~1\marques\applic~1\bibdas~1\CAMPTWOMAPI.exe 


___________________________________________________________________________

=> Listing des dossiers Application Data

+- C:\Documents and Settings\Administrateur\Application Data

08/11/2006 05:30:55 ... ATI -------= ATI
23/09/2004 19:25:57 ... IDENTI~1 --= Identities
08/11/2006 05:52:06 ... MACROM~1 --= Macromedia
23/09/2004 19:25:09 ... MICROS~1 --= Microsoft
08/11/2006 05:44:34 ... YOU'VE~1 --= You've Got Pictures Screensaver

+- C:\Documents and Settings\Administrateur\Local Settings\Application Data

08/11/2006 05:22:34 ... APPLIC~1 --= ApplicationHistory
08/11/2006 05:30:55 ... ATI -------= ATI
23/09/2004 19:25:08 ... MICROS~1 --= Microsoft
08/11/2006 05:39:09 ... {3248F~1 --= {3248F0A6-6813-11D6-A77B-00B0D0150040}

+- C:\Documents and Settings\All Users\Application Data

20/01/2007 14:43:15 ... Adobe -----= Adobe
08/11/2006 05:43:50 ... AOL -------= AOL
04/08/2007 15:30:57 ... ATI -------= ATI
23/04/2007 12:56:13 ... BOONTY ----= BOONTY
20/01/2007 11:17:47 ... Brother ---= Brother
31/12/2007 11:00:39 ... CASTPI~1 --= Cast ping base frag
20/01/2007 12:20:38 ... Ciel ------= Ciel
16/06/2007 23:34:07 ... Corel -----= Corel
08/03/2007 19:01:31 ... CYBERL~1 --= CyberLink
20/01/2007 14:32:33 ... Google ----= Google
08/11/2006 05:47:11 ... INSTAL~1 --= InstallShield
07/07/2007 16:57:46 ... KASPER~1 --= Kaspersky Lab Setup Files
10/12/2007 09:15:14 ... LogiShrd --= LogiShrd
06/08/2007 10:59:02 ... Logitech --= Logitech
23/09/2004 18:50:45 ... MICROS~1 --= Microsoft
09/08/2007 16:53:36 ... MICROS~2 --= Microsoft Corporation
08/11/2006 05:43:31 ... OD2 -------= OD2
03/06/2007 10:06:33 ... OFFICE~1 --= OFFICE One v7
08/11/2006 05:44:27 ... QUICKT~1 --= QuickTime
20/01/2007 11:19:06 ... ScanSoft --= ScanSoft
14/08/2007 19:02:58 ... Skyline ---= Skyline
19/01/2007 19:22:40 ... Skype -----= Skype
08/11/2006 05:54:44 ... SMARTS~1 --= SmartSound Software Inc
22/09/2007 17:01:03 ... SPYBOT~1 --= Spybot - Search & Destroy
08/11/2006 05:47:49 ... Symantec --= Symantec
08/11/2006 05:52:25 ... ULEADS~1 --= Ulead Systems
08/11/2006 05:45:41 ... VADERE~1 --= VadeRetro
08/11/2006 05:44:33 ... VIEWPO~1 --= Viewpoint
20/01/2007 14:08:22 ... WINDOW~1 --= Windows Genuine Advantage
25/03/2007 15:43:05 ... WINDOW~2 --= Windows Live Toolbar
20/01/2007 14:35:11 ... WinZip ----= WinZip
07/09/2007 16:11:53 ... WLINST~1 --= WLInstaller
31/12/2007 10:55:23 ... YAHOO!~1 --= Yahoo! Companion

+- C:\Documents and Settings\marques\Application Data

20/01/2007 14:45:44 ... Adobe -----= Adobe
26/08/2007 11:24:06 ... Ahead -----= Ahead
19/01/2007 18:57:00 ... ATI -------= ATI
31/12/2007 11:00:24 ... BIBDAS~1 --= bib dash vc
05/02/2007 08:53:12 ... Brother ---= Brother
17/06/2007 14:18:50 ... Corel -----= Corel
08/03/2007 19:01:51 ... CYBERL~1 --= CyberLink
09/08/2007 17:10:35 ... DESKTO~1 --= Desktop Sidebar
20/01/2007 15:32:10 ... DivX ------= DivX
08/08/2007 15:18:53 ... EoRezo ----= EoRezo
08/05/2007 16:51:25 ... FotoWire --= FotoWire
20/01/2007 14:33:25 ... Google ----= Google
19/01/2007 18:57:00 ... IDENTI~1 --= Identities
02/12/2007 10:52:40 ... IMAGEZ~1 --= Image Zone Express
24/07/2007 17:52:14 ... INSTAL~1 --= InstallShield
08/08/2007 18:14:34 ... ItsLabel --= ItsLabel
27/01/2007 00:11:45 ... LEADER~1 --= Leadertech
06/08/2007 11:03:39 ... Logitech --= Logitech
04/08/2007 10:20:56 ... MA-CON~1.COM --= ma-config.com
19/01/2007 18:57:00 ... MACROM~1 --= Macromedia
24/07/2007 17:53:13 ... MEGAUP~2 --= Megaupload
19/01/2007 18:57:00 ... MICROS~1 --= Microsoft
20/01/2007 14:38:02 ... Mozilla ---= Mozilla
19/01/2007 20:37:22 ... OD2 -------= OD2
20/01/2007 12:20:14 ... OFFICE~1 --= OFFICE One v6
20/01/2007 14:28:42 ... Real ------= Real
18/09/2007 17:45:01 ... Samsung ---= Samsung
13/02/2007 18:06:36 ... ScanSoft --= ScanSoft
01/04/2007 16:29:09 ... Shareaza --= Shareaza
14/08/2007 19:07:46 ... Skyline ---= Skyline
19/01/2007 19:22:40 ... Skype -----= Skype
27/01/2007 00:12:37 ... Sonic -----= Sonic
08/05/2007 16:42:56 ... SONYCO~1 --= Sony Corporation
23/01/2007 20:53:10 ... Sun -------= Sun
24/11/2007 00:59:59 ... TEAMSP~1 --= teamspeak2
20/01/2007 15:22:40 ... ULEADS~1 --= Ulead Systems
19/01/2007 20:20:32 ... VADERE~1 --= VadeRetro
14/08/2007 17:42:06 ... ViStart ---= ViStart
12/06/2007 19:21:55 ... vlc -------= vlc
16/06/2007 23:43:54 ... WinRAR ----= WinRAR
31/12/2007 10:55:23 ... Yahoo! ----= Yahoo!
19/01/2007 18:57:00 ... YOU'VE~1 --= You've Got Pictures Screensaver

+- C:\Documents and Settings\marques\Local Settings\Application Data

20/01/2007 14:43:56 ... Adobe -----= Adobe
19/01/2007 18:56:59 ... APPLIC~1 --= ApplicationHistory
23/01/2007 19:03:00 ... Ares ------= Ares
19/01/2007 18:56:59 ... ATI -------= ATI
20/01/2007 14:29:25 ... Google ----= Google
19/01/2007 20:20:29 ... IDENTI~1 --= Identities
08/05/2007 20:06:43 ... LOGITE~1 --= Logitech-LS
19/01/2007 18:56:59 ... MICROS~1 --= Microsoft
27/02/2007 20:03:30 ... MICROV~1 --= MicroVision Applications
20/01/2007 14:38:14 ... Mozilla ---= Mozilla
01/08/2007 13:30:26 ... Pando -----= Pando
01/04/2007 16:29:09 ... Shareaza --= Shareaza
29/05/2007 21:47:28 ... SONYER~1 --= Sony Ericsson
14/08/2007 17:42:00 ... Stardock --= Stardock
14/09/2007 16:07:08 ... Steam -----= Steam
03/06/2007 18:48:20 ... WMTOOL~1 --= WMTools Downloaded Files
19/01/2007 18:56:59 ... {3248F~1 --= {3248F0A6-6813-11D6-A77B-00B0D0150040}
01/08/2007 13:29:36 ... {A8609~1 --= {A8609F33-E3A4-4FD8-8580-16F371C682A2}

___________________________________________________________________________

=> Listing du dossier ProgramFiles

+- C:\Program Files

08/11/2006 05:43:09 ... Adobe -----= Adobe
20/01/2007 11:25:51 ... Alice -----= Alice
08/05/2007 20:14:34 ... ALWILS~1 --= Alwil Software
08/11/2006 05:43:50 ... AOL9~1.0 --= AOL 9.0
08/11/2006 05:44:34 ... AOLCOM~1 --= AOL Compagnon
23/01/2007 19:02:53 ... Ares ------= Ares
09/08/2007 17:06:43 ... ATI -------= ATI
08/11/2006 05:29:40 ... ATITEC~1 --= ATI Technologies
16/06/2007 19:39:01 ... AVISYN~1.5 --= AviSynth 2.5
16/01/2008 17:28:34 ... BIBDAS~1 --= bib dash vc
23/04/2007 12:55:27 ... Boonty ----= Boonty
23/04/2007 12:55:43 ... BOONTY~1 --= BoontyGames
20/01/2007 11:20:50 ... Brother ---= Brother
17/01/2008 18:25:53 ... CCleaner --= CCleaner
20/01/2007 12:20:33 ... Ciel ------= Ciel
20/01/2007 11:20:50 ... COMMON~1 --= Common Files
23/09/2004 19:03:49 ... COMPLU~1 --= ComPlus Applications
08/11/2006 05:55:37 ... CYBERL~1 --= CyberLink
09/08/2007 17:10:04 ... DESKTO~1 --= Desktop Sidebar
29/05/2007 21:47:08 ... DISC2P~1 --= Disc2Phone
20/01/2007 14:37:26 ... DivX ------= DivX
20/01/2007 14:38:58 ... eMule -----= eMule
08/08/2007 15:18:05 ... eoRezo ----= eoRezo
04/12/2007 17:47:24 ... ESET ------= ESET
14/08/2007 19:08:51 ... EVERES~1 --= Everest Poker
23/09/2004 18:53:11 ... FICHIE~1 --= Fichiers communs
20/01/2007 14:29:14 ... Google ----= Google
08/11/2006 05:45:41 ... GOTOSO~1 --= Goto Software
24/11/2007 00:39:31 ... HLSW ------= HLSW
02/12/2007 10:51:19 ... HP --------= HP
08/11/2006 05:26:53 ... INSTAL~1 --= InstallShield Installation Information
23/09/2004 19:07:12 ... INTERN~1 --= Internet Explorer
20/01/2007 12:21:06 ... ISSENDIS --= ISSENDIS
08/08/2007 15:19:01 ... ItsLabel --= ItsLabel
08/11/2006 05:39:13 ... Java ------= Java
20/01/2007 14:35:34 ... Lavalys ---= Lavalys
22/09/2007 17:08:47 ... Lavasoft --= Lavasoft
08/11/2006 05:44:34 ... Learn2.com --= Learn2.com
07/06/2007 19:21:58 ... Live_TV ---= Live_TV
08/05/2007 16:48:21 ... Logitech --= Logitech
17/01/2008 19:03:23 ... Lopxp -----= Lopxp
04/08/2007 10:20:56 ... MA-CON~1.COM -----= ma-config.com
24/07/2007 17:52:35 ... MEGAUP~1 --= Megaupload
23/09/2004 18:59:51 ... MESSEN~1 --= Messenger
14/08/2007 18:59:23 ... MESSEN~2 --= Messenger Plus! Live
10/05/2007 02:02:13 ... MICROS~1.2 --= Microsoft CAPICOM 2.1.0.2
23/09/2004 19:15:08 ... MICROS~1 --= microsoft frontpage
23/09/2004 19:01:28 ... MOVIEM~1 --= Movie Maker
20/01/2007 14:38:01 ... MOZILL~1 --= Mozilla Firefox
01/06/2007 17:38:07 ... MP3PLA~1.68 --= MP3 Player Utilities 3.68
23/09/2004 18:59:17 ... MSN -------= MSN
23/09/2004 18:59:48 ... MSNGAM~1 --= MSN Gaming Zone
20/01/2007 16:01:51 ... MSNMES~1 --= MSN Messenger
20/01/2007 14:07:36 ... MSXML4~1.0 --= MSXML 4.0
09/08/2007 17:20:15 ... MYSIGH~1 --= MySight 2006
26/08/2007 11:22:45 ... Nero ------= Nero
23/09/2004 19:07:24 ... NETMEE~1 --= NetMeeting
20/01/2007 12:18:33 ... OFFICE~1.5 --= OFFICE One6.5
23/09/2004 19:03:21 ... ONLINE~1 --= Online Services
23/09/2004 19:07:20 ... OUTLOO~1 --= Outlook Express
25/09/2007 10:09:19 ... Picasa2 ---= Picasa2
27/06/2007 19:00:13 ... PSPVID~1 --= pspvideo9
08/11/2006 05:44:27 ... QUICKT~1 --= QuickTime
08/11/2006 05:44:17 ... Real ------= Real
08/11/2006 05:26:53 ... Realtek ---= Realtek
27/06/2007 18:56:53 ... RM-XTR~1 --= RM-X® Transfert FTP
18/09/2007 17:40:39 ... Samsung ---= Samsung
20/01/2007 11:19:06 ... ScanSoft --= ScanSoft
23/09/2004 19:08:51 ... SERVIC~1 --= Services en ligne
14/08/2007 19:02:54 ... Skyline ---= Skyline
08/11/2006 05:54:44 ... SMARTS~1 --= SmartSound Software
08/11/2006 05:46:26 ... Sonic -----= Sonic
08/05/2007 16:41:08 ... Sony ------= Sony
22/09/2007 17:01:03 ... SPYBOT~1 --= Spybot - Search & Destroy
09/08/2007 17:17:00 ... Stardock --= Stardock
08/11/2006 05:47:54 ... Symantec --= Symantec
20/01/2007 11:14:18 ... SYSTRAN ---= SYSTRAN
20/01/2007 14:50:16 ... TASKSW~1 --= TaskSwitchXP
24/11/2007 00:59:25 ... TEAMSP~1 --= Teamspeak2_RC2
03/05/2007 13:51:16 ... TLC-ED~1 --= TLC-Edusoft
17/01/2008 18:56:47 ... TRENDM~1 --= Trend Micro
23/04/2007 12:55:53 ... TLCHAR~1 --= Téléchargeur de Architecte d intérieur 3D - Edition 2007
23/04/2007 13:05:59 ... TLCHAR~2 --= Téléchargeur de Maison, Jardin et Terrasse 3D
08/11/2006 05:52:49 ... ULEADS~1 --= Ulead Systems
23/09/2004 19:25:47 ... UNINST~1 --= Uninstall Information
08/08/2007 14:53:52 ... UXTHEM~1 --= UxTheme Multipatcher Fr
20/01/2007 15:24:29 ... Valve -----= Valve
12/06/2007 19:18:35 ... VideoLAN --= VideoLAN
08/11/2006 05:44:33 ... VIEWPO~1 --= Viewpoint
14/08/2007 17:34:16 ... ViOrb -----= ViOrb
20/09/2007 15:23:36 ... WEBMED~1 --= WebMediaPlayer
14/08/2007 18:59:24 ... WI1F86~1 --= Windows Live
01/06/2007 22:14:26 ... WI81E8~1 --= Windows Live Toolbar
08/11/2006 05:54:05 ... WI15DA~1 --= Windows Media Components
24/07/2007 14:59:50 ... WI4DF6~1 --= Windows Media Connect 2
23/09/2004 19:02:26 ... WINDOW~3 --= Windows Media Player
23/09/2004 18:59:15 ... WINDOW~1 --= Windows NT
23/09/2004 19:01:56 ... WINDOW~2 --= Windows Plus
23/09/2004 19:09:00 ... WINDOW~4 --= WindowsUpdate
20/01/2007 14:34:51 ... WinRAR ----= WinRAR
20/01/2007 14:35:09 ... WinZip ----= WinZip
23/09/2004 19:15:09 ... xerox -----= xerox
31/12/2007 10:49:59 ... Yahoo! ----= Yahoo!


___________________________________________________________________________

=> Clés registre

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Base frag grid bows"="C:\Documents and Settings\All Users\Application Data\Cast ping base frag\active seek.exe"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"List Lies"="C:\DOCUME~1\marques\APPLIC~1\BIBDAS~1\Proc Mail.exe"


___________________________________________________________________________

=> Bloqueur popups Internet Explorer

+- Liste des popups autorisés :

www.packardbell.com
www.packardbell.co.uk
www.packardbell.at
www.packardbell.dk
www.packardbell.fi
www.packardbell.fr
www.packardbell.de
www.packardbell.it
www.packardbell.no
www.packardbell.es
www.packardbell.se
www.packardbell.ch
www.packardbell.nl
fr.packardbell.be
nl.packardbell.be
www.chantemur.com
www.3suisses.fr
www.lorealparis.fr
webmessenger.msn.com
host-domain-lookup.com
www.host-domain-lookup.com
mysearchnow.com
www.mysearchnow.com
searchweb2.com
www.searchweb2.com
[HKEY_CURRENT_USER\software\microsoft\internet explorer\new windows\allow\*.od2.com]
@

___________________________________________________________________________

/!\  Suggestion (Nécessite une interprétation.)

+- Dossiers suspects :

C:\Documents and Settings\All Users\Application Data\Cast ping base frag
C:\Documents and Settings\marques\Application Data\bib dash vc
C:\Program Files\bib dash vc

+- Tâches planifiées suspectes :

C:\WINDOWS\tasks\A6DB53339184CB2B.job

+- Registre:

REGEDIT4

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Base frag grid bows"=-

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"List Lies"=-

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow]
"host-domain-lookup.com"=-
"www.host-domain-lookup.com"=-
"mysearchnow.com"=-
"www.mysearchnow.com"=-
"searchweb2.com"=-
"www.searchweb2.com"=-



- Fin du rapport -

voila j'attend ta reponse
0
kurosaki
 
je n'ai rien a supprimer avec hijacthis
0
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
minute ! ;-)

va dans : Démarrer > Exécuter puis copier/coller :
"%programfiles%\Lopxp\Lopxp.bat" /Fixme <= Guillemets y compris
puis valide, et poste le rapport stp

@+
0
kurosaki
 
Rapport Lopxp fait le 17/01/2008 à 19:22:36
Exécuté dans : C:\Program Files\Lopxp


___________________________________________________________________________

=> Fixme :

+- Tâches planifiées :
Supprimé : C:\WINDOWS\tasks\A6DB53339184CB2B.job

+- Dossiers :
Supprimé : C:\Documents and Settings\All Users\Application Data\Cast ping base frag
Supprimé : C:\Documents and Settings\marques\Application Data\bib dash vc
Supprimé : C:\Program Files\bib dash vc

+- Registre :
Nettoyage effectué.

+- Fichiers temporaires :
Nettoyage effectué.

___________________________________________________________________________

=> Tâches planifiées

Aucune tâche planifiée détecté.

___________________________________________________________________________

=> Listing des dossiers Application Data

+- C:\Documents and Settings\Administrateur\Application Data

08/11/2006 05:30:55 ... ATI -------= ATI
23/09/2004 19:25:57 ... IDENTI~1 --= Identities
08/11/2006 05:52:06 ... MACROM~1 --= Macromedia
23/09/2004 19:25:09 ... MICROS~1 --= Microsoft
08/11/2006 05:44:34 ... YOU'VE~1 --= You've Got Pictures Screensaver

+- C:\Documents and Settings\Administrateur\Local Settings\Application Data

08/11/2006 05:22:34 ... APPLIC~1 --= ApplicationHistory
08/11/2006 05:30:55 ... ATI -------= ATI
23/09/2004 19:25:08 ... MICROS~1 --= Microsoft
08/11/2006 05:39:09 ... {3248F~1 --= {3248F0A6-6813-11D6-A77B-00B0D0150040}

+- C:\Documents and Settings\All Users\Application Data

20/01/2007 14:43:15 ... Adobe -----= Adobe
08/11/2006 05:43:50 ... AOL -------= AOL
04/08/2007 15:30:57 ... ATI -------= ATI
23/04/2007 12:56:13 ... BOONTY ----= BOONTY
20/01/2007 11:17:47 ... Brother ---= Brother
20/01/2007 12:20:38 ... Ciel ------= Ciel
16/06/2007 23:34:07 ... Corel -----= Corel
08/03/2007 19:01:31 ... CYBERL~1 --= CyberLink
20/01/2007 14:32:33 ... Google ----= Google
08/11/2006 05:47:11 ... INSTAL~1 --= InstallShield
07/07/2007 16:57:46 ... KASPER~1 --= Kaspersky Lab Setup Files
10/12/2007 09:15:14 ... LogiShrd --= LogiShrd
06/08/2007 10:59:02 ... Logitech --= Logitech
23/09/2004 18:50:45 ... MICROS~1 --= Microsoft
09/08/2007 16:53:36 ... MICROS~2 --= Microsoft Corporation
08/11/2006 05:43:31 ... OD2 -------= OD2
03/06/2007 10:06:33 ... OFFICE~1 --= OFFICE One v7
08/11/2006 05:44:27 ... QUICKT~1 --= QuickTime
20/01/2007 11:19:06 ... ScanSoft --= ScanSoft
14/08/2007 19:02:58 ... Skyline ---= Skyline
19/01/2007 19:22:40 ... Skype -----= Skype
08/11/2006 05:54:44 ... SMARTS~1 --= SmartSound Software Inc
22/09/2007 17:01:03 ... SPYBOT~1 --= Spybot - Search & Destroy
08/11/2006 05:47:49 ... Symantec --= Symantec
08/11/2006 05:52:25 ... ULEADS~1 --= Ulead Systems
08/11/2006 05:45:41 ... VADERE~1 --= VadeRetro
08/11/2006 05:44:33 ... VIEWPO~1 --= Viewpoint
20/01/2007 14:08:22 ... WINDOW~1 --= Windows Genuine Advantage
25/03/2007 15:43:05 ... WINDOW~2 --= Windows Live Toolbar
20/01/2007 14:35:11 ... WinZip ----= WinZip
07/09/2007 16:11:53 ... WLINST~1 --= WLInstaller
31/12/2007 10:55:23 ... YAHOO!~1 --= Yahoo! Companion

+- C:\Documents and Settings\marques\Application Data

20/01/2007 14:45:44 ... Adobe -----= Adobe
26/08/2007 11:24:06 ... Ahead -----= Ahead
19/01/2007 18:57:00 ... ATI -------= ATI
05/02/2007 08:53:12 ... Brother ---= Brother
17/06/2007 14:18:50 ... Corel -----= Corel
08/03/2007 19:01:51 ... CYBERL~1 --= CyberLink
09/08/2007 17:10:35 ... DESKTO~1 --= Desktop Sidebar
20/01/2007 15:32:10 ... DivX ------= DivX
08/08/2007 15:18:53 ... EoRezo ----= EoRezo
08/05/2007 16:51:25 ... FotoWire --= FotoWire
20/01/2007 14:33:25 ... Google ----= Google
19/01/2007 18:57:00 ... IDENTI~1 --= Identities
02/12/2007 10:52:40 ... IMAGEZ~1 --= Image Zone Express
24/07/2007 17:52:14 ... INSTAL~1 --= InstallShield
08/08/2007 18:14:34 ... ItsLabel --= ItsLabel
27/01/2007 00:11:45 ... LEADER~1 --= Leadertech
06/08/2007 11:03:39 ... Logitech --= Logitech
04/08/2007 10:20:56 ... MA-CON~1.COM --= ma-config.com
19/01/2007 18:57:00 ... MACROM~1 --= Macromedia
24/07/2007 17:53:13 ... MEGAUP~2 --= Megaupload
19/01/2007 18:57:00 ... MICROS~1 --= Microsoft
20/01/2007 14:38:02 ... Mozilla ---= Mozilla
19/01/2007 20:37:22 ... OD2 -------= OD2
20/01/2007 12:20:14 ... OFFICE~1 --= OFFICE One v6
20/01/2007 14:28:42 ... Real ------= Real
18/09/2007 17:45:01 ... Samsung ---= Samsung
13/02/2007 18:06:36 ... ScanSoft --= ScanSoft
01/04/2007 16:29:09 ... Shareaza --= Shareaza
14/08/2007 19:07:46 ... Skyline ---= Skyline
19/01/2007 19:22:40 ... Skype -----= Skype
27/01/2007 00:12:37 ... Sonic -----= Sonic
08/05/2007 16:42:56 ... SONYCO~1 --= Sony Corporation
23/01/2007 20:53:10 ... Sun -------= Sun
24/11/2007 00:59:59 ... TEAMSP~1 --= teamspeak2
20/01/2007 15:22:40 ... ULEADS~1 --= Ulead Systems
19/01/2007 20:20:32 ... VADERE~1 --= VadeRetro
14/08/2007 17:42:06 ... ViStart ---= ViStart
12/06/2007 19:21:55 ... vlc -------= vlc
16/06/2007 23:43:54 ... WinRAR ----= WinRAR
31/12/2007 10:55:23 ... Yahoo! ----= Yahoo!
19/01/2007 18:57:00 ... YOU'VE~1 --= You've Got Pictures Screensaver

+- C:\Documents and Settings\marques\Local Settings\Application Data

20/01/2007 14:43:56 ... Adobe -----= Adobe
19/01/2007 18:56:59 ... APPLIC~1 --= ApplicationHistory
23/01/2007 19:03:00 ... Ares ------= Ares
19/01/2007 18:56:59 ... ATI -------= ATI
20/01/2007 14:29:25 ... Google ----= Google
19/01/2007 20:20:29 ... IDENTI~1 --= Identities
08/05/2007 20:06:43 ... LOGITE~1 --= Logitech-LS
19/01/2007 18:56:59 ... MICROS~1 --= Microsoft
27/02/2007 20:03:30 ... MICROV~1 --= MicroVision Applications
20/01/2007 14:38:14 ... Mozilla ---= Mozilla
01/08/2007 13:30:26 ... Pando -----= Pando
01/04/2007 16:29:09 ... Shareaza --= Shareaza
29/05/2007 21:47:28 ... SONYER~1 --= Sony Ericsson
14/08/2007 17:42:00 ... Stardock --= Stardock
14/09/2007 16:07:08 ... Steam -----= Steam
03/06/2007 18:48:20 ... WMTOOL~1 --= WMTools Downloaded Files
19/01/2007 18:56:59 ... {3248F~1 --= {3248F0A6-6813-11D6-A77B-00B0D0150040}
01/08/2007 13:29:36 ... {A8609~1 --= {A8609F33-E3A4-4FD8-8580-16F371C682A2}

___________________________________________________________________________

=> Listing du dossier ProgramFiles

+- C:\Program Files

08/11/2006 05:43:09 ... Adobe -----= Adobe
20/01/2007 11:25:51 ... Alice -----= Alice
08/05/2007 20:14:34 ... ALWILS~1 --= Alwil Software
08/11/2006 05:43:50 ... AOL9~1.0 --= AOL 9.0
08/11/2006 05:44:34 ... AOLCOM~1 --= AOL Compagnon
23/01/2007 19:02:53 ... Ares ------= Ares
09/08/2007 17:06:43 ... ATI -------= ATI
08/11/2006 05:29:40 ... ATITEC~1 --= ATI Technologies
16/06/2007 19:39:01 ... AVISYN~1.5 --= AviSynth 2.5
23/04/2007 12:55:27 ... Boonty ----= Boonty
23/04/2007 12:55:43 ... BOONTY~1 --= BoontyGames
20/01/2007 11:20:50 ... Brother ---= Brother
17/01/2008 18:25:53 ... CCleaner --= CCleaner
20/01/2007 12:20:33 ... Ciel ------= Ciel
20/01/2007 11:20:50 ... COMMON~1 --= Common Files
23/09/2004 19:03:49 ... COMPLU~1 --= ComPlus Applications
08/11/2006 05:55:37 ... CYBERL~1 --= CyberLink
09/08/2007 17:10:04 ... DESKTO~1 --= Desktop Sidebar
29/05/2007 21:47:08 ... DISC2P~1 --= Disc2Phone
20/01/2007 14:37:26 ... DivX ------= DivX
20/01/2007 14:38:58 ... eMule -----= eMule
08/08/2007 15:18:05 ... eoRezo ----= eoRezo
04/12/2007 17:47:24 ... ESET ------= ESET
14/08/2007 19:08:51 ... EVERES~1 --= Everest Poker
23/09/2004 18:53:11 ... FICHIE~1 --= Fichiers communs
20/01/2007 14:29:14 ... Google ----= Google
08/11/2006 05:45:41 ... GOTOSO~1 --= Goto Software
24/11/2007 00:39:31 ... HLSW ------= HLSW
02/12/2007 10:51:19 ... HP --------= HP
08/11/2006 05:26:53 ... INSTAL~1 --= InstallShield Installation Information
23/09/2004 19:07:12 ... INTERN~1 --= Internet Explorer
20/01/2007 12:21:06 ... ISSENDIS --= ISSENDIS
08/08/2007 15:19:01 ... ItsLabel --= ItsLabel
08/11/2006 05:39:13 ... Java ------= Java
20/01/2007 14:35:34 ... Lavalys ---= Lavalys
22/09/2007 17:08:47 ... Lavasoft --= Lavasoft
08/11/2006 05:44:34 ... Learn2.com --= Learn2.com
07/06/2007 19:21:58 ... Live_TV ---= Live_TV
08/05/2007 16:48:21 ... Logitech --= Logitech
17/01/2008 19:03:23 ... Lopxp -----= Lopxp
04/08/2007 10:20:56 ... MA-CON~1.COM -----= ma-config.com
24/07/2007 17:52:35 ... MEGAUP~1 --= Megaupload
23/09/2004 18:59:51 ... MESSEN~1 --= Messenger
14/08/2007 18:59:23 ... MESSEN~2 --= Messenger Plus! Live
10/05/2007 02:02:13 ... MICROS~1.2 --= Microsoft CAPICOM 2.1.0.2
23/09/2004 19:15:08 ... MICROS~1 --= microsoft frontpage
23/09/2004 19:01:28 ... MOVIEM~1 --= Movie Maker
20/01/2007 14:38:01 ... MOZILL~1 --= Mozilla Firefox
01/06/2007 17:38:07 ... MP3PLA~1.68 --= MP3 Player Utilities 3.68
23/09/2004 18:59:17 ... MSN -------= MSN
23/09/2004 18:59:48 ... MSNGAM~1 --= MSN Gaming Zone
20/01/2007 16:01:51 ... MSNMES~1 --= MSN Messenger
20/01/2007 14:07:36 ... MSXML4~1.0 --= MSXML 4.0
09/08/2007 17:20:15 ... MYSIGH~1 --= MySight 2006
26/08/2007 11:22:45 ... Nero ------= Nero
23/09/2004 19:07:24 ... NETMEE~1 --= NetMeeting
20/01/2007 12:18:33 ... OFFICE~1.5 --= OFFICE One6.5
23/09/2004 19:03:21 ... ONLINE~1 --= Online Services
23/09/2004 19:07:20 ... OUTLOO~1 --= Outlook Express
25/09/2007 10:09:19 ... Picasa2 ---= Picasa2
27/06/2007 19:00:13 ... PSPVID~1 --= pspvideo9
08/11/2006 05:44:27 ... QUICKT~1 --= QuickTime
08/11/2006 05:44:17 ... Real ------= Real
08/11/2006 05:26:53 ... Realtek ---= Realtek
27/06/2007 18:56:53 ... RM-XTR~1 --= RM-X® Transfert FTP
18/09/2007 17:40:39 ... Samsung ---= Samsung
20/01/2007 11:19:06 ... ScanSoft --= ScanSoft
23/09/2004 19:08:51 ... SERVIC~1 --= Services en ligne
14/08/2007 19:02:54 ... Skyline ---= Skyline
08/11/2006 05:54:44 ... SMARTS~1 --= SmartSound Software
08/11/2006 05:46:26 ... Sonic -----= Sonic
08/05/2007 16:41:08 ... Sony ------= Sony
22/09/2007 17:01:03 ... SPYBOT~1 --= Spybot - Search & Destroy
09/08/2007 17:17:00 ... Stardock --= Stardock
08/11/2006 05:47:54 ... Symantec --= Symantec
20/01/2007 11:14:18 ... SYSTRAN ---= SYSTRAN
20/01/2007 14:50:16 ... TASKSW~1 --= TaskSwitchXP
24/11/2007 00:59:25 ... TEAMSP~1 --= Teamspeak2_RC2
03/05/2007 13:51:16 ... TLC-ED~1 --= TLC-Edusoft
17/01/2008 18:56:47 ... TRENDM~1 --= Trend Micro
23/04/2007 12:55:53 ... TLCHAR~1 --= Téléchargeur de Architecte d intérieur 3D - Edition 2007
23/04/2007 13:05:59 ... TLCHAR~2 --= Téléchargeur de Maison, Jardin et Terrasse 3D
08/11/2006 05:52:49 ... ULEADS~1 --= Ulead Systems
23/09/2004 19:25:47 ... UNINST~1 --= Uninstall Information
08/08/2007 14:53:52 ... UXTHEM~1 --= UxTheme Multipatcher Fr
20/01/2007 15:24:29 ... Valve -----= Valve
12/06/2007 19:18:35 ... VideoLAN --= VideoLAN
08/11/2006 05:44:33 ... VIEWPO~1 --= Viewpoint
14/08/2007 17:34:16 ... ViOrb -----= ViOrb
20/09/2007 15:23:36 ... WEBMED~1 --= WebMediaPlayer
14/08/2007 18:59:24 ... WI1F86~1 --= Windows Live
01/06/2007 22:14:26 ... WI81E8~1 --= Windows Live Toolbar
08/11/2006 05:54:05 ... WI15DA~1 --= Windows Media Components
24/07/2007 14:59:50 ... WI4DF6~1 --= Windows Media Connect 2
23/09/2004 19:02:26 ... WINDOW~3 --= Windows Media Player
23/09/2004 18:59:15 ... WINDOW~1 --= Windows NT
23/09/2004 19:01:56 ... WINDOW~2 --= Windows Plus
23/09/2004 19:09:00 ... WINDOW~4 --= WindowsUpdate
20/01/2007 14:34:51 ... WinRAR ----= WinRAR
20/01/2007 14:35:09 ... WinZip ----= WinZip
23/09/2004 19:15:09 ... xerox -----= xerox
31/12/2007 10:49:59 ... Yahoo! ----= Yahoo!


___________________________________________________________________________

=> Clés registre


___________________________________________________________________________

=> Bloqueur popups Internet Explorer

+- Liste des popups autorisés :

www.packardbell.com
www.packardbell.co.uk
www.packardbell.at
www.packardbell.dk
www.packardbell.fi
www.packardbell.fr
www.packardbell.de
www.packardbell.it
www.packardbell.no
www.packardbell.es
www.packardbell.se
www.packardbell.ch
www.packardbell.nl
fr.packardbell.be
nl.packardbell.be
www.chantemur.com
www.3suisses.fr
www.lorealparis.fr
webmessenger.msn.com
[HKEY_CURRENT_USER\software\microsoft\internet explorer\new windows\allow\*.od2.com]
@

___________________________________________________________________________

/!\  Suggestion (Nécessite une interprétation.)



- Fin du rapport -

voila
0
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
très bien, poste un nouveau hijack stp

++
0
kurosaki
 
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:39:05, on 17/01/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\brsvc01a.exe
C:\WINDOWS\system32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\WINDOWS\system32\PSIService.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\USBDeviceService.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\program files\valve\steam\steam.exe
C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
c:\program files\valve\steam\steamapps\popodu34\counter-strike source\hl2.exe
C:\program files\valve\steam\GameOverlayUI.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Alice ADSL
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Fichiers communs\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Idea2 SidebarBrowserMonitor Class - {45AD732C-2CE2-4666-B366-B2214AD57A49} - C:\Program Files\Desktop Sidebar\sbhelp.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\eoRezo\EoAdv\EoRezoBHO.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: MegaIEMn - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll
O3 - Toolbar: SYSTRAN Web Translator 5.0 - {A5899B52-3AF9-4F56-85FE-AD7B3BE8490F} - C:\Program Files\SYSTRAN\5.0\Personal\IEPlugIn.dll
O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-CCB0-B130EEDBE97C} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AAWTray] C:\Program Files\Lavasoft\Ad-Aware 2007\AAWTray.exe
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 7.0\avp.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\RunOnce: [MessengerPlusLiveUninstall] "C:\DOCUME~1\marques\LOCALS~1\Temp\MsgPlusUninstall.exe" /Cleanup
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BackWeb-8876480.exe
O4 - HKCU\..\Run: [RocketDock] "C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [Yodm3D] C:\Documents and Settings\marques\Bureau\Nouveau dossier\Yodm3D.exe
O4 - HKCU\..\Run: [LClock] C:\Program Files\LClock\LClock.exe
O4 - HKCU\..\Run: [Vista Sidebar] C:\Program Files\Vista Sidebar\sidebar.exe
O4 - HKCU\..\Run: [ViStart] C:\Program Files\ViStart\ViStart.exe
O4 - HKCU\..\Run: [VisualTooltip] C:\Program Files\VisualTooltip\VisualToolTip.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKCU\..\Run: [Steam] "c:\program files\valve\steam\steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: Download Link Using Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - C:\Program Files\Desktop Sidebar\sbhelp.dll
O9 - Extra 'Tools' menuitem: Subscribe in Desktop Sidebar - {09FE188B-6E85-479e-9411-51FB2220DF80} - C:\Program Files\Desktop Sidebar\sbhelp.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=file://C:\APPS\IE\offline\fr.htm
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/FR-FR/a-UNO1/GAME_UNO1.cab
O16 - DPF: {7DFDB8FD-B498-4958-B930-38021B94351D} (imlUCID Class) - https://validate.perfdrive.com/?ssa=1cb613c1-b580-495b-866c-b6fe71718572&ssb=36371211747&ssc=https%3A%2F%2Fimlive.com%2Fchatsource%2FImlCID.cab&ssi=b98a4b26-ba0f-44c8-a2a5-0315e1e966ee&ssk=support@shieldsquare.com&ssm=77124680964133473105650333749186&ssn=7eafd9fa9826c01597307b85effe791743b46ba2f27a-3977-4b0e-988e66&sso=940ea59d-ee88a13130f2489df365438a8b123fc056d418d499c5df48&ssp=15188465711607082399160702401540426&ssq=67141537474651350705574746278120044759785&ssr=OTEuMjA5LjM1LjIxOA==&sst=Mozilla/5.0%20(X11;%20Linux%20x86_64)%20AppleWebKit/537.36%20(KHTML,%20like%20Gecko)%20Chrome/74.0.3729.131%20Safari/537.36&ssv=&ssw=
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{40F30C54-A075-4723-A576-8346A841B4E0}: NameServer = 213.36.80.1
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\FICHIE~1\AOL\ACS\AOLacsd.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Fichiers communs\BOONTY Shared\Service\Boonty.exe
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\system32\brsvc01a.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Fichiers communs\Logitech\Bluetooth\LBTServ.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\system32\PSIService.exe
O23 - Service: Ulead Burning Helper (UleadBurningHelper) - Ulead Systems, Inc. - C:\Program Files\Fichiers communs\Ulead Systems\DVD\ULCDRSvr.exe
O23 - Service: USBDeviceService - Unknown owner - C:\Program Files\Sonic\DigitalMedia LE v7\MyDVD LE\USBDeviceService.exe
O23 - Service: Windows Live Setup Service (WLSetupSvc) - Unknown owner - C:\Program Files\Windows Live\installer\WLSetupSvc.exe
0
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
ok,

Téléchargez ceci (de gchris) : http://komun.chez-alice.fr/Repertoire/Utilitaires.Desinfection.html
Dézippez-le sur votre bureau (clic droit -> extraire tout).
Vérifiez que vous êtes bien connecté à internet.
Dans le dossier créé, double-cliquez sur le fichier "Ad-Fix.bat" ou "Ad-fix"
Choisissez l'option 1.
Si vous avez un message de votre pare-feu qui vous demande si vous voulez autoriser le fichier URL2FILE.EXE à
se connecter à Internet, Autorisez, c'est nécessaire à ad-fix pour vérifier la version.
Quand c'est finit (cela peut prendre plusieurs minutes), un rapport s'ouvre avec le bloc-notes.
Merci de faire un copier/coller ici du contenu du rapport (Ad-Fix.txt)

++
0
kurosaki
 
ya pas de gchris
0
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
si, si ! le tout 1er ! :)

Adfix de gchris ! voici le lien :

http://gchrisftp.free.fr/divers/Ad-Fix/Ad-Fix.zip

++
0
kurosaki
 
Ad-Fix v0.101e
by gchris

OPTION 1 (Scan) :

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Démarré à :

19:56:52,68 17/01/2008

Executé depuis :

C:\Documents and Settings\marques\Bureau\Ad-Fix\Ad-Fix

Os :

Microsoft Windows XP [version 5.1.2600]

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Recherche de fichier manquant

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Recherche de fichiers cachés (pas forcément mauvais)

Fichiers cachés à la racine du disque système :

BOOT.BAK
Bootfont.bin
cmldr
hiberfil.sys
IO.SYS
MSDOS.SYS
pagefile.sys

Fichiers cachés dans le répertoire Windows :

QTFont.qfn
WindowsShell.Manifest
winnt.bmp
winnt256.bmp

Fichiers cachés dans le répertoire System32 :

AAB958AD05.sys
cdplayer.exe.manifest
KGyGaAvL.sys
logonui.exe.manifest
ncpa.cpl.manifest
nwc.cpl.manifest
sapi.cpl.manifest
WindowsLogon.manifest
wuaucpl.cpl.manifest
zllictbl.dat

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Analyse du registre

---------- USER AGENT -- POST PLATFORM

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]

----------

---------- AppInit_DLLs

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""
"LoadAppInit_DLLs"=dword:00000001

----------
HKCR\Interface\{48E59292-9880-11CF-9754-00AA00C00908} Détecté !
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\media-motor.net Détecté !
HKLM\SOFTWARE\Classes\Interface\{48E59292-9880-11CF-9754-00AA00C00908} Détecté !
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\contentmatch.net Détecté !
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\net-nucleus.com Détecté !

Complete!

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Recherche de fichiers et dossiers

C:\StubInstaller.exe Détecté !

C:\WINDOWS\unvise32qt.exe Détecté !

C:\Progra~1\Everest Poker\cstart-tmp.exe Détecté !
C:\Progra~1\Everest Poker\CStart.exe Détecté !
C:\Progra~1\Everest Poker\Everest Poker.exe Détecté !
C:\Progra~1\Webmediaplayer Détecté !

C:\WINDOWS\system32\MYDLL.dll Détecté !

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Terminé à 20:00:11,93
0
green day Messages postés 26722 Statut Modérateur, Contributeur sécurité 2 163
 
ok, passe à l'option 2 en mode sans échec, sauvegarde le rapport, puis redemarre et poste le rapport stp

++
0
kurosaki
 
Ad-Fix v0.101e
by gchris

OPTION 2 (Fix) :

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Démarré à :

20:15:11,01 17/01/2008
en mode sans échec

Executé depuis :

C:\Documents and Settings\marques\Bureau\Ad-Fix\Ad-Fix

Os :

Microsoft Windows XP [version 5.1.2600]

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Recherche de fichier manquant

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Nettoyage du registre

HKCR\Interface\{48E59292-9880-11CF-9754-00AA00C00908} Supprimé !
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\media-motor.net Supprimé !
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\contentmatch.net Supprimé !
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\net-nucleus.com Supprimé !

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Suppression des fichiers

C:\StubInstaller.exe Supprimé !
C:\WINDOWS\unvise32qt.exe Supprimé !
C:\WINDOWS\system32\MYDLL.dll Supprimé !
C:\Progra~1\Everest Poker\cstart-tmp.exe Supprimé !
C:\Progra~1\Everest Poker\CStart.exe Supprimé !
C:\Progra~1\Everest Poker\Everest Poker.exe Supprimé !
C:\Progra~1\Webmediaplayer Supprimé !

»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»

Terminé à 20:19:09,12

Redémarrage effectué
0
kurosaki
 
je n'ai plus aucune fenetre qui s'affiche en tout cas!!je pense que c'est bon
0