Extrême lenteur du PC
Fermé
Breizho
-
25 févr. 2008 à 12:02
jnbndt Messages postés 2 Date d'inscription lundi 18 février 2008 Statut Membre Dernière intervention 25 février 2008 - 25 févr. 2008 à 12:28
jnbndt Messages postés 2 Date d'inscription lundi 18 février 2008 Statut Membre Dernière intervention 25 février 2008 - 25 févr. 2008 à 12:28
Bonjour,
Mon PC est particulièrement lent : le processus Internet Explorer occupe quasiment toutes les ressources. J'ai compris que ce phénomène venait d'un virus aussi j'ai appliqué la totalité de la procédure indiquée dans le forum. Voici les rapports issus de la procédure : rapport Bitdefender, rapport Hijackthis.
J'ai un antivirus : avast. Je ne comprend pas que ce dernier n'agisse pas sur ce virus ?
Faut il installer un firewal ? si oui lequel ?
Pourriez-vous m'aider SVP ?
Breizho
__________________________________________________________________________________
BitDefender Online Scanner
Scan report generated at: Sun, Feb 24, 2008 - 23:42:11
Scan path: A:\;C:\;D:\;E:\;F:\;
Statistics
Time
03:50:38
Files
316771
Folders
5939
Boot Sectors
3
Archives
3742
Packed Files
12644
Results
Identified Viruses
11
Infected Files
47
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
47
Engines Info
Virus Definitions
983342
Engine build
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)
Scan plugins
16
Archive plugins
41
Unpack plugins
7
E-mail plugins
6
System plugins
5
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Documents and Settings\Romain\Application Data\load cdrom rule\Spamwipedate.exe
Infected with: Trojan.Obfus.6.Gen
C:\Documents and Settings\Romain\Application Data\load cdrom rule\Spamwipedate.exe
Disinfection failed
C:\Documents and Settings\Romain\Application Data\load cdrom rule\Spamwipedate.exe
Deleted
C:\Documents and Settings\Romain\Local Settings\Temp\Installer.exe=>(NSIS o)=>lzma_nsis0004
Detected with: Adware.ShoppingReport.A
C:\Documents and Settings\Romain\Local Settings\Temp\Installer.exe=>(NSIS o)=>lzma_nsis0004
Deleted
C:\Documents and Settings\Romain\Local Settings\Temp\Installer.exe=>(NSIS o)
Update failed
C:\Documents and Settings\Romain\Local Settings\Temp\sta6.exe
Infected with: Trojan.Obfus.6.Gen
C:\Documents and Settings\Romain\Local Settings\Temp\sta6.exe
Disinfection failed
C:\Documents and Settings\Romain\Local Settings\Temp\sta6.exe
Deleted
C:\Documents and Settings\Romain\Mes documents\My Received Files\MessengerSkinner\MessengerSkinner.exe
Detected with: Adware.MSNSkinner.A
C:\Documents and Settings\Romain\Mes documents\My Received Files\MessengerSkinner\MessengerSkinner.exe
Deleted
C:\Program Files\MultiMedia France Toolbar\MultiMedia_SSNew.exe
Detected with: Adware.ShoppingReport.B
C:\Program Files\MultiMedia France Toolbar\MultiMedia_SSNew.exe
Deleted
C:\Program Files\Secured IE\Secured IE - Installer.exe=>(NSIS o)=>lzma_nsis0015=>(NSIS o)=>lzma_nsis0004
Detected with: Adware.ShoppingReport.A
C:\Program Files\Secured IE\Secured IE - Installer.exe=>(NSIS o)=>lzma_nsis0015=>(NSIS o)=>lzma_nsis0004
Deleted
C:\Program Files\Secured IE\Secured IE - Installer.exe=>(NSIS o)=>lzma_nsis0015=>(NSIS o)
Update failed
C:\Program Files\ShoppingReport\Bin\2.0.25\ShoppingReport.dll
Detected with: Adware.ShoppingReport.A
C:\Program Files\ShoppingReport\Bin\2.0.25\ShoppingReport.dll
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178909.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178909.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178909.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178911.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178911.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178911.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178912.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178912.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178912.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180917.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180917.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180917.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180920.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180920.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180920.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180921.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180921.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180921.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206898.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206898.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206898.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206899.exe
Detected with: Adware.ShoppingReport.B
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206899.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206900.dll
Detected with: Adware.ShoppingReport.A
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206900.dll
Deleted
C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0005
Detected with: Adware.NaviPromo.BYC
C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0005
Deleted
C:\WINDOWS\pack.epk=>(NSIS 2g)
Update failed
C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0013=>(NSIS g)=>lzma_solid_nsis0002
Detected with: Adware.NaviPromo.BYC
C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0013=>(NSIS g)=>lzma_solid_nsis0002
Deleted
C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0013=>(NSIS g)
Update failed
C:\WINDOWS\system32\aahmiw.exe
Detected with: Adware.Navipromo.BZC
C:\WINDOWS\system32\aahmiw.exe
Disinfection failed
C:\WINDOWS\system32\aahmiw.exe
Deleted
C:\WINDOWS\system32\aqgcbedj.exe
Detected with: Adware.Navipromo.BZC
C:\WINDOWS\system32\aqgcbedj.exe
Disinfection failed
C:\WINDOWS\system32\aqgcbedj.exe
Deleted
C:\WINDOWS\system32\bbmejpipt.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\bbmejpipt.exe
Disinfection failed
C:\WINDOWS\system32\bbmejpipt.exe
Deleted
C:\WINDOWS\system32\fakboburaf.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\fakboburaf.exe
Disinfection failed
C:\WINDOWS\system32\fakboburaf.exe
Deleted
C:\WINDOWS\system32\gcfxpk.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\gcfxpk.exe
Disinfection failed
C:\WINDOWS\system32\gcfxpk.exe
Deleted
C:\WINDOWS\system32\gdxcibiq.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\gdxcibiq.exe
Disinfection failed
C:\WINDOWS\system32\gdxcibiq.exe
Deleted
C:\WINDOWS\system32\gjtmqo.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\gjtmqo.exe
Disinfection failed
C:\WINDOWS\system32\gjtmqo.exe
Deleted
C:\WINDOWS\system32\gnwgjftqbp.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\gnwgjftqbp.exe
Disinfection failed
C:\WINDOWS\system32\gnwgjftqbp.exe
Deleted
C:\WINDOWS\system32\icbsxjk.exe
Detected with: Adware.Navipromo.BZC
C:\WINDOWS\system32\icbsxjk.exe
Disinfection failed
C:\WINDOWS\system32\icbsxjk.exe
Deleted
C:\WINDOWS\system32\idinluvb.exe
Detected with: Adware.Navipromo.BZC
C:\WINDOWS\system32\idinluvb.exe
Disinfection failed
C:\WINDOWS\system32\idinluvb.exe
Deleted
C:\WINDOWS\system32\iuglttfpc.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\iuglttfpc.exe
Disinfection failed
C:\WINDOWS\system32\iuglttfpc.exe
Deleted
C:\WINDOWS\system32\lfzmqudr.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\lfzmqudr.exe
Disinfection failed
C:\WINDOWS\system32\lfzmqudr.exe
Deleted
C:\WINDOWS\system32\mkapdvr.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\mkapdvr.exe
Disinfection failed
C:\WINDOWS\system32\mkapdvr.exe
Deleted
C:\WINDOWS\system32\ncytuqy.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\ncytuqy.exe
Disinfection failed
C:\WINDOWS\system32\ncytuqy.exe
Deleted
C:\WINDOWS\system32\rcxkapa.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\rcxkapa.exe
Disinfection failed
C:\WINDOWS\system32\rcxkapa.exe
Deleted
C:\WINDOWS\system32\rjunwi.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\rjunwi.exe
Disinfection failed
C:\WINDOWS\system32\rjunwi.exe
Deleted
C:\WINDOWS\system32\rklyylavtc.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\rklyylavtc.exe
Disinfection failed
C:\WINDOWS\system32\rklyylavtc.exe
Deleted
C:\WINDOWS\system32\skcycfk.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\skcycfk.exe
Disinfection failed
C:\WINDOWS\system32\skcycfk.exe
Deleted
C:\WINDOWS\system32\tccyyxh.exe
Infected with: Trojan.Skintrim.AMU
C:\WINDOWS\system32\tccyyxh.exe
Deleted
C:\WINDOWS\system32\wfuybs.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\wfuybs.exe
Disinfection failed
C:\WINDOWS\system32\wfuybs.exe
Deleted
C:\WINDOWS\system32\xgsrpjespw.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\xgsrpjespw.exe
Disinfection failed
C:\WINDOWS\system32\xgsrpjespw.exe
Deleted
D:\Programmes\Norton 2005\Norton AntiVirus 2005 - Fr\_A_LIRE_(Comment_installer_une_version_PIRATE)\Symantec Norton Antivirus 2005 - Patch d'Activation.exe
Infected with: Packer.FSG.A
D:\Programmes\Norton 2005\Norton AntiVirus 2005 - Fr\_A_LIRE_(Comment_installer_une_version_PIRATE)\Symantec Norton Antivirus 2005 - Patch d'Activation.exe
Disinfection failed
D:\Programmes\Norton 2005\Norton AntiVirus 2005 - Fr\_A_LIRE_(Comment_installer_une_version_PIRATE)\Symantec Norton Antivirus 2005 - Patch d'Activation.exe
Deleted
D:\Programmes\Norton 2005\Norton Internet Security 2005 - Fr\NIS 2005 - Crack\tmg-nis2004pro.exe
Infected with: Packer.FSG.A
D:\Programmes\Norton 2005\Norton Internet Security 2005 - Fr\NIS 2005 - Crack\tmg-nis2004pro.exe
Disinfection failed
D:\Programmes\Norton 2005\Norton Internet Security 2005 - Fr\NIS 2005 - Crack\tmg-nis2004pro.exe
Deleted
D:\Programmes\Norton 2005\Norton System Works Premier 2005 - Fr\CD_1\SQUEEZE\keygen.exe
Infected with: Trojan.Packed.617
D:\Programmes\Norton 2005\Norton System Works Premier 2005 - Fr\CD_1\SQUEEZE\keygen.exe
Deleted
D:\Programmes\Norton 2005\Norton System Works Premier 2005 - Fr\CD_1\_A_LIRE_(Crack_Activation)\Symantec_Norton_SystemWorks_2005_Premier_KeyGen.exe
Infected with: Packer.FSG.A
D:\Programmes\Norton 2005\Norton System Works Premier 2005 - Fr\CD_1\_A_LIRE_(Crack_Activation)\Symantec_Norton_SystemWorks_2005_Premier_KeyGen.exe
Disinfection failed
D:\Programmes\Norton 2005\Norton System Works Premier 2005 - Fr\CD_1\_A_LIRE_(Crack_Activation)\Symantec_Norton_SystemWorks_2005_Premier_KeyGen.exe
Deleted
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206925.exe
Infected with: Packer.FSG.A
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206925.exe
Disinfection failed
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206925.exe
Deleted
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206926.exe
Infected with: Packer.FSG.A
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206926.exe
Disinfection failed
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206926.exe
Deleted
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206927.exe
Infected with: Trojan.Packed.617
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206927.exe
Deleted
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206928.exe
Infected with: Packer.FSG.A
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206928.exe
Disinfection failed
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206928.exe
Deleted
___________________________________________________________________________________
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:50:05, on 25/02/2008
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\System32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\e-Carte Bleue\LCL\e-Carte Bleue VISA Cleo\ECB-CLEO.exe
C:\WINDOWS\System32\RunDLL32.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0\bin\jusched.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
D:\Programmes\Spamihilator\spamihilator.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Internet Explorer\iexplore.exe
D:\Programmes\wlancfg5.exe
C:\Program Files\OpenOffice.org 2.2\program\soffice.exe
C:\Program Files\OpenOffice.org 2.2\program\soffice.BIN
C:\Program Files\MSN Messenger\msnmsgr.exe
D:\Programmes\Anti Spyare 7.5\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\WINDOWS\System32\msiexec.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\System32\wuauclt.exe
D:\Programmes\Hijackthis\HijackThis.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\MSN Messenger\msnmsgr.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: e-Carte Bleue Browser Helper Object - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} - C:\WINDOWS\System32\BhoECart.dll
O2 - BHO: Multi Media France Toolbar - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul1.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: securedie Toolbar - {cd36797a-70f3-4acd-8825-623d3b896881} - C:\Program Files\securedie\tbsec1.dll
O2 - BHO: (no name) - {F7F94B33-F467-7144-5FEC-66FAC9D8B7AC} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Multi Media France Toolbar - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul1.dll
O3 - Toolbar: securedie Toolbar - {cd36797a-70f3-4acd-8825-623d3b896881} - C:\Program Files\securedie\tbsec1.dll
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [eCarteBleue-CLEO] "C:\Program Files\e-Carte Bleue\LCL\e-Carte Bleue VISA Cleo\ECB-CLEO.exe" /dontopenmycards
O4 - HKLM\..\Run: [PD0870 STISvc] RunDLL32.exe P0870Pin.dll,RunDLL32EP 513
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [One view global this] C:\Documents and Settings\All Users\Application Data\MPEG ELSE ONE VIEW\BURN CORN.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Spamihilator] "D:\Programmes\Spamihilator\spamihilator.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "D:\Programmes\Anti Spyare 7.5\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Mags Frag] C:\DOCUME~1\Jocelyne\APPLIC~1\LOADCD~1\puredumb.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 2.2.lnk = C:\Program Files\OpenOffice.org 2.2\program\quickstart.exe
O4 - Global Startup: NETGEAR WG311v2 Smart Configuration.lnk = D:\Programmes\wlancfg5.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?815302d2520b4ec3b5c00477b50a90b5
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?815302d2520b4ec3b5c00477b50a90b5
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O15 - Trusted Zone: *.registration.sonystyle-europe.com (HKLM)
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - D:\Programmes\Anti Spyare 7.5\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
Mon PC est particulièrement lent : le processus Internet Explorer occupe quasiment toutes les ressources. J'ai compris que ce phénomène venait d'un virus aussi j'ai appliqué la totalité de la procédure indiquée dans le forum. Voici les rapports issus de la procédure : rapport Bitdefender, rapport Hijackthis.
J'ai un antivirus : avast. Je ne comprend pas que ce dernier n'agisse pas sur ce virus ?
Faut il installer un firewal ? si oui lequel ?
Pourriez-vous m'aider SVP ?
Breizho
__________________________________________________________________________________
BitDefender Online Scanner
Scan report generated at: Sun, Feb 24, 2008 - 23:42:11
Scan path: A:\;C:\;D:\;E:\;F:\;
Statistics
Time
03:50:38
Files
316771
Folders
5939
Boot Sectors
3
Archives
3742
Packed Files
12644
Results
Identified Viruses
11
Infected Files
47
Suspect Files
0
Warnings
0
Disinfected
0
Deleted Files
47
Engines Info
Virus Definitions
983342
Engine build
AVCORE v1.0 (build 2422) (i386) (Sep 25 2007 08:26:36)
Scan plugins
16
Archive plugins
41
Unpack plugins
7
E-mail plugins
6
System plugins
5
Scan Settings
First Action
Disinfect
Second Action
Delete
Heuristics
Yes
Enable Warnings
Yes
Scanned Extensions
*;
Exclude Extensions
Scan Emails
Yes
Scan Archives
Yes
Scan Packed
Yes
Scan Files
Yes
Scan Boot
Yes
Scanned File
Status
C:\Documents and Settings\Romain\Application Data\load cdrom rule\Spamwipedate.exe
Infected with: Trojan.Obfus.6.Gen
C:\Documents and Settings\Romain\Application Data\load cdrom rule\Spamwipedate.exe
Disinfection failed
C:\Documents and Settings\Romain\Application Data\load cdrom rule\Spamwipedate.exe
Deleted
C:\Documents and Settings\Romain\Local Settings\Temp\Installer.exe=>(NSIS o)=>lzma_nsis0004
Detected with: Adware.ShoppingReport.A
C:\Documents and Settings\Romain\Local Settings\Temp\Installer.exe=>(NSIS o)=>lzma_nsis0004
Deleted
C:\Documents and Settings\Romain\Local Settings\Temp\Installer.exe=>(NSIS o)
Update failed
C:\Documents and Settings\Romain\Local Settings\Temp\sta6.exe
Infected with: Trojan.Obfus.6.Gen
C:\Documents and Settings\Romain\Local Settings\Temp\sta6.exe
Disinfection failed
C:\Documents and Settings\Romain\Local Settings\Temp\sta6.exe
Deleted
C:\Documents and Settings\Romain\Mes documents\My Received Files\MessengerSkinner\MessengerSkinner.exe
Detected with: Adware.MSNSkinner.A
C:\Documents and Settings\Romain\Mes documents\My Received Files\MessengerSkinner\MessengerSkinner.exe
Deleted
C:\Program Files\MultiMedia France Toolbar\MultiMedia_SSNew.exe
Detected with: Adware.ShoppingReport.B
C:\Program Files\MultiMedia France Toolbar\MultiMedia_SSNew.exe
Deleted
C:\Program Files\Secured IE\Secured IE - Installer.exe=>(NSIS o)=>lzma_nsis0015=>(NSIS o)=>lzma_nsis0004
Detected with: Adware.ShoppingReport.A
C:\Program Files\Secured IE\Secured IE - Installer.exe=>(NSIS o)=>lzma_nsis0015=>(NSIS o)=>lzma_nsis0004
Deleted
C:\Program Files\Secured IE\Secured IE - Installer.exe=>(NSIS o)=>lzma_nsis0015=>(NSIS o)
Update failed
C:\Program Files\ShoppingReport\Bin\2.0.25\ShoppingReport.dll
Detected with: Adware.ShoppingReport.A
C:\Program Files\ShoppingReport\Bin\2.0.25\ShoppingReport.dll
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178909.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178909.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178909.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178911.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178911.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178911.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178912.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178912.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP500\A0178912.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180917.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180917.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180917.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180920.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180920.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180920.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180921.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180921.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP503\A0180921.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206898.exe
Infected with: Trojan.Obfus.6.Gen
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206898.exe
Disinfection failed
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206898.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206899.exe
Detected with: Adware.ShoppingReport.B
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206899.exe
Deleted
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206900.dll
Detected with: Adware.ShoppingReport.A
C:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206900.dll
Deleted
C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0005
Detected with: Adware.NaviPromo.BYC
C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0005
Deleted
C:\WINDOWS\pack.epk=>(NSIS 2g)
Update failed
C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0013=>(NSIS g)=>lzma_solid_nsis0002
Detected with: Adware.NaviPromo.BYC
C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0013=>(NSIS g)=>lzma_solid_nsis0002
Deleted
C:\WINDOWS\pack.epk=>(NSIS 2g)=>lzma_solid_nsis0013=>(NSIS g)
Update failed
C:\WINDOWS\system32\aahmiw.exe
Detected with: Adware.Navipromo.BZC
C:\WINDOWS\system32\aahmiw.exe
Disinfection failed
C:\WINDOWS\system32\aahmiw.exe
Deleted
C:\WINDOWS\system32\aqgcbedj.exe
Detected with: Adware.Navipromo.BZC
C:\WINDOWS\system32\aqgcbedj.exe
Disinfection failed
C:\WINDOWS\system32\aqgcbedj.exe
Deleted
C:\WINDOWS\system32\bbmejpipt.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\bbmejpipt.exe
Disinfection failed
C:\WINDOWS\system32\bbmejpipt.exe
Deleted
C:\WINDOWS\system32\fakboburaf.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\fakboburaf.exe
Disinfection failed
C:\WINDOWS\system32\fakboburaf.exe
Deleted
C:\WINDOWS\system32\gcfxpk.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\gcfxpk.exe
Disinfection failed
C:\WINDOWS\system32\gcfxpk.exe
Deleted
C:\WINDOWS\system32\gdxcibiq.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\gdxcibiq.exe
Disinfection failed
C:\WINDOWS\system32\gdxcibiq.exe
Deleted
C:\WINDOWS\system32\gjtmqo.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\gjtmqo.exe
Disinfection failed
C:\WINDOWS\system32\gjtmqo.exe
Deleted
C:\WINDOWS\system32\gnwgjftqbp.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\gnwgjftqbp.exe
Disinfection failed
C:\WINDOWS\system32\gnwgjftqbp.exe
Deleted
C:\WINDOWS\system32\icbsxjk.exe
Detected with: Adware.Navipromo.BZC
C:\WINDOWS\system32\icbsxjk.exe
Disinfection failed
C:\WINDOWS\system32\icbsxjk.exe
Deleted
C:\WINDOWS\system32\idinluvb.exe
Detected with: Adware.Navipromo.BZC
C:\WINDOWS\system32\idinluvb.exe
Disinfection failed
C:\WINDOWS\system32\idinluvb.exe
Deleted
C:\WINDOWS\system32\iuglttfpc.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\iuglttfpc.exe
Disinfection failed
C:\WINDOWS\system32\iuglttfpc.exe
Deleted
C:\WINDOWS\system32\lfzmqudr.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\lfzmqudr.exe
Disinfection failed
C:\WINDOWS\system32\lfzmqudr.exe
Deleted
C:\WINDOWS\system32\mkapdvr.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\mkapdvr.exe
Disinfection failed
C:\WINDOWS\system32\mkapdvr.exe
Deleted
C:\WINDOWS\system32\ncytuqy.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\ncytuqy.exe
Disinfection failed
C:\WINDOWS\system32\ncytuqy.exe
Deleted
C:\WINDOWS\system32\rcxkapa.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\rcxkapa.exe
Disinfection failed
C:\WINDOWS\system32\rcxkapa.exe
Deleted
C:\WINDOWS\system32\rjunwi.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\rjunwi.exe
Disinfection failed
C:\WINDOWS\system32\rjunwi.exe
Deleted
C:\WINDOWS\system32\rklyylavtc.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\rklyylavtc.exe
Disinfection failed
C:\WINDOWS\system32\rklyylavtc.exe
Deleted
C:\WINDOWS\system32\skcycfk.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\skcycfk.exe
Disinfection failed
C:\WINDOWS\system32\skcycfk.exe
Deleted
C:\WINDOWS\system32\tccyyxh.exe
Infected with: Trojan.Skintrim.AMU
C:\WINDOWS\system32\tccyyxh.exe
Deleted
C:\WINDOWS\system32\wfuybs.exe
Detected with: Adware.Navipromo.BYT
C:\WINDOWS\system32\wfuybs.exe
Disinfection failed
C:\WINDOWS\system32\wfuybs.exe
Deleted
C:\WINDOWS\system32\xgsrpjespw.exe
Detected with: Adware.Navipromo.BYZ
C:\WINDOWS\system32\xgsrpjespw.exe
Disinfection failed
C:\WINDOWS\system32\xgsrpjespw.exe
Deleted
D:\Programmes\Norton 2005\Norton AntiVirus 2005 - Fr\_A_LIRE_(Comment_installer_une_version_PIRATE)\Symantec Norton Antivirus 2005 - Patch d'Activation.exe
Infected with: Packer.FSG.A
D:\Programmes\Norton 2005\Norton AntiVirus 2005 - Fr\_A_LIRE_(Comment_installer_une_version_PIRATE)\Symantec Norton Antivirus 2005 - Patch d'Activation.exe
Disinfection failed
D:\Programmes\Norton 2005\Norton AntiVirus 2005 - Fr\_A_LIRE_(Comment_installer_une_version_PIRATE)\Symantec Norton Antivirus 2005 - Patch d'Activation.exe
Deleted
D:\Programmes\Norton 2005\Norton Internet Security 2005 - Fr\NIS 2005 - Crack\tmg-nis2004pro.exe
Infected with: Packer.FSG.A
D:\Programmes\Norton 2005\Norton Internet Security 2005 - Fr\NIS 2005 - Crack\tmg-nis2004pro.exe
Disinfection failed
D:\Programmes\Norton 2005\Norton Internet Security 2005 - Fr\NIS 2005 - Crack\tmg-nis2004pro.exe
Deleted
D:\Programmes\Norton 2005\Norton System Works Premier 2005 - Fr\CD_1\SQUEEZE\keygen.exe
Infected with: Trojan.Packed.617
D:\Programmes\Norton 2005\Norton System Works Premier 2005 - Fr\CD_1\SQUEEZE\keygen.exe
Deleted
D:\Programmes\Norton 2005\Norton System Works Premier 2005 - Fr\CD_1\_A_LIRE_(Crack_Activation)\Symantec_Norton_SystemWorks_2005_Premier_KeyGen.exe
Infected with: Packer.FSG.A
D:\Programmes\Norton 2005\Norton System Works Premier 2005 - Fr\CD_1\_A_LIRE_(Crack_Activation)\Symantec_Norton_SystemWorks_2005_Premier_KeyGen.exe
Disinfection failed
D:\Programmes\Norton 2005\Norton System Works Premier 2005 - Fr\CD_1\_A_LIRE_(Crack_Activation)\Symantec_Norton_SystemWorks_2005_Premier_KeyGen.exe
Deleted
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206925.exe
Infected with: Packer.FSG.A
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206925.exe
Disinfection failed
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206925.exe
Deleted
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206926.exe
Infected with: Packer.FSG.A
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206926.exe
Disinfection failed
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206926.exe
Deleted
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206927.exe
Infected with: Trojan.Packed.617
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206927.exe
Deleted
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206928.exe
Infected with: Packer.FSG.A
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206928.exe
Disinfection failed
D:\System Volume Information\_restore{0D087349-D777-4806-91B8-2183387DBD32}\RP542\A0206928.exe
Deleted
___________________________________________________________________________________
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:50:05, on 25/02/2008
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\WINDOWS\System32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\e-Carte Bleue\LCL\e-Carte Bleue VISA Cleo\ECB-CLEO.exe
C:\WINDOWS\System32\RunDLL32.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Java\jre1.6.0\bin\jusched.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
D:\Programmes\Spamihilator\spamihilator.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Internet Explorer\iexplore.exe
D:\Programmes\wlancfg5.exe
C:\Program Files\OpenOffice.org 2.2\program\soffice.exe
C:\Program Files\OpenOffice.org 2.2\program\soffice.BIN
C:\Program Files\MSN Messenger\msnmsgr.exe
D:\Programmes\Anti Spyare 7.5\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\WINDOWS\System32\msiexec.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\System32\wuauclt.exe
D:\Programmes\Hijackthis\HijackThis.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\MSN Messenger\msnmsgr.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Liens
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: e-Carte Bleue Browser Helper Object - {2E03C0FD-4C48-43A7-9A54-00240C70FF16} - C:\WINDOWS\System32\BhoECart.dll
O2 - BHO: Multi Media France Toolbar - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul1.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Fichiers communs\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: securedie Toolbar - {cd36797a-70f3-4acd-8825-623d3b896881} - C:\Program Files\securedie\tbsec1.dll
O2 - BHO: (no name) - {F7F94B33-F467-7144-5FEC-66FAC9D8B7AC} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Multi Media France Toolbar - {7009fcd4-05be-44f4-9583-93fe419ab7b0} - C:\Program Files\Multi_Media_France\tbMul1.dll
O3 - Toolbar: securedie Toolbar - {cd36797a-70f3-4acd-8825-623d3b896881} - C:\Program Files\securedie\tbsec1.dll
O4 - HKLM\..\Run: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Fichiers communs\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [eCarteBleue-CLEO] "C:\Program Files\e-Carte Bleue\LCL\e-Carte Bleue VISA Cleo\ECB-CLEO.exe" /dontopenmycards
O4 - HKLM\..\Run: [PD0870 STISvc] RunDLL32.exe P0870Pin.dll,RunDLL32EP 513
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [One view global this] C:\Documents and Settings\All Users\Application Data\MPEG ELSE ONE VIEW\BURN CORN.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [Spamihilator] "D:\Programmes\Spamihilator\spamihilator.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "D:\Programmes\Anti Spyare 7.5\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus.exe" /WinStart
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Mags Frag] C:\DOCUME~1\Jocelyne\APPLIC~1\LOADCD~1\puredumb.exe
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE LOCAL')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SERVICE RÉSEAU')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 2.2.lnk = C:\Program Files\OpenOffice.org 2.2\program\quickstart.exe
O4 - Global Startup: NETGEAR WG311v2 Smart Configuration.lnk = D:\Programmes\wlancfg5.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - https://onedrive.live.com/?id=favorites
O8 - Extra context menu item: Ouvrir dans un nouvel onglet d'arrière-plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/229?815302d2520b4ec3b5c00477b50a90b5
O8 - Extra context menu item: Ouvrir dans un nouvel onglet de premier plan - res://C:\Program Files\Windows Live Toolbar\Components\fr-fr\msntabres.dll.mui/230?815302d2520b4ec3b5c00477b50a90b5
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O15 - Trusted Zone: *.registration.sonystyle-europe.com (HKLM)
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - D:\Programmes\Anti Spyare 7.5\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Fichiers communs\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Fichiers communs\Symantec Shared\CCPD-LC\symlcsvc.exe
A voir également:
- Extrême lenteur du PC
- Lenteur pc - Guide
- Extreme download - Accueil - Outils
- Test performance pc - Guide
- Reinitialiser pc - Guide
- Extreme-down - Accueil - Services en ligne
1 réponse
jnbndt
Messages postés
2
Date d'inscription
lundi 18 février 2008
Statut
Membre
Dernière intervention
25 février 2008
25 févr. 2008 à 12:28
25 févr. 2008 à 12:28
défragmenter régulièrement
aller sur options internet et supprimer les fichiers temporaires, les cookies etc
faire unspybot
faire un ad aware
aller dans nettoyage et le faire
enlever le maximum de raccourcis sur ton bureau
enlever tous les logiciels qui ne te servent plus
enlever les photos en double
faire un Ccleaner
après tout çà, redémarre ton PC pour qu'il enregistre les nouvelles configurations
si çà ne va pas mieux, formate ton disque dur
si tu ne sais pas faire tout çà, fais toi aider par quelqu'un qui s'y connait!
Salut! jnbndt
aller sur options internet et supprimer les fichiers temporaires, les cookies etc
faire unspybot
faire un ad aware
aller dans nettoyage et le faire
enlever le maximum de raccourcis sur ton bureau
enlever tous les logiciels qui ne te servent plus
enlever les photos en double
faire un Ccleaner
après tout çà, redémarre ton PC pour qu'il enregistre les nouvelles configurations
si çà ne va pas mieux, formate ton disque dur
si tu ne sais pas faire tout çà, fais toi aider par quelqu'un qui s'y connait!
Salut! jnbndt