Infection trojandownloader.xs +log HijackThis - Page 2

Résolu
Précédent
  • 1
  • 2
  1. green day Messages postés 26374 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   2 166
     
    Salut

    # Télécharger Vundofix.exe (par Atribune) sur votre Bureau : http://www.atribune.org/ccount/click.php?id=4

    * Double-cliquer sur VundoFix.exe afin de le lancer.
    * Cliquer sur le bouton Scan for Vundo.
    * Lorsque le scan est complété, cliquer sur le bouton Fix Vundo.
    * Une invite de commande demandera si l’on souhaite supprimer les fichiers, cliquer sur YES
    * Après avoir cliqué "YES", le Bureau disparaîtra un moment lors de la suppression des fichiers. * Une nouvelle invite de commande annoncera que le PC devra s'éteindre ("shutdown"). Cliquer sur OK , puis laisser le redémarrer.
    * Le contenu du rapport est situé dans C:\vundofix.txt, poste le stp

    ++
    0
    1. freedo Messages postés 160 Statut Membre 3
       
      salut,

      tout en mode sans échec..vundo rien trouvé
      log:VundoFix V7.0.3

      Scan started at 00:43:37 29/03/2008

      Listing files found while scanning....

      No infected files were found.


      VundoFix V7.0.3

      Scan started at 00:51:29 29/03/2008

      Listing files found while scanning....

      No infected files were found.

      Par contre Spybot trouve ça :

      --- Search result list ---
      180Solutions.SearchAssistant: [SBI $AB2A8735] Exécutable (Fichier, fixed)
      C:\Windows\didduid.ini

      180Solutions.SearchAssistant: [SBI $C3DF1F78] Exécutable (Fichier, fixed)
      C:\Windows\salm.exe

      180Solutions.SearchAssistant: [SBI $D1508A11] Browser helper object (Clé du registre, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5dafd089-24b1-4c5e-bd42-8ca72550717b}

      2020Search: [SBI $1C86D773] Bibliothèque (Fichier, fixed)
      C:\Windows\2020search2.dll

      2020Search: [SBI $524079D1] Browser helper object (Clé du registre, fixed)
      HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\explorer\Browser Helper Objects\{4E7BD74F-2B8D-469E-92C6-CE7EB590A94D}

      CoolWWWSearch.Leftovers: [SBI $C5CA9532] Bibliothèque (Fichier, fixed)
      C:\Windows\2020search.dll

      ABetterInternet: [SBI $BD421E1F] Bibliothèque (Fichier, fixed)
      C:\Windows\voiceip.dll

      Smitfraud-C.: [SBI $768AA445] Exécutable (Fichier, fixed)
      C:\Windows\updatetc.exe

      Smitfraud-C.: [SBI $AAC81DC7] Bibliothèque (Fichier, fixed)
      C:\Windows\System32\MSIXU.DLL

      Smitfraud-C.: [SBI $DAFF8341] Browser helper object (Clé du registre, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00000250-0320-4dd4-be4f-7566d2314352}

      Smitfraud-C.: [SBI $749A49D8] Browser helper object (Clé du registre, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{13197ace-6851-45c3-a7ff-c281324d5489}

      Smitfraud-C.: [SBI $CA8B78D4] Browser helper object (Clé du registre, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4e1075f4-eec4-4a86-add7-cd5f52858c31}

      Smitfraud-C.: [SBI $D738367D] Browser helper object (Clé du registre, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5fa6752a-c4a0-4222-88c2-928ae5ab4966}

      Smitfraud-C.: [SBI $8A7B2B35] Browser helper object (Clé du registre, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8674aea0-9d3d-11d9-99dc-00600f9a01f1}

      Smitfraud-C.: [SBI $A507ED05] Browser helper object (Clé du registre, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{965a592f-8efa-4250-8630-7960230792f1}

      Smitfraud-C.: [SBI $81292234] Browser helper object (Clé du registre, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{cf021f40-3e14-23a5-cba2-717765728274}

      Smitfraud-C.: [SBI $73C55E9B] Browser helper object (Clé du registre, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{fc3a74e5-f281-4f10-ae1e-733078684f3c}

      Smitfraud-C.gp: [SBI $29222CE9] Page Web (Fichier, fixed)
      C:\Windows\default.htm

      Microsoft.WindowsSecurityCenter.TaskManager: [SBI $FD4267D3] Réglages (Modification du registre, fixed)
      HKEY_USERS\S-1-5-21-1032764541-1194892956-3733679073-1000\Software\Microsoft\Windows\CurrentVersion\Policies\System\DisableTaskMgr

      Microsoft.WindowsSecurityCenter.TaskManager: [SBI $B2E55F62] Réglages (Modification du registre, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\DisableTaskMgr

      SecondThought.STCLoader: [SBI $CD09A67D] Exécutable (Fichier, fixed)
      C:\Windows\stcloader.exe

      Zango: [SBI $DF8DAC14] Browser helper object (Clé du registre, fixed)
      HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5929CD6E-2062-44a4-B2C5-2C7E78FBAB38}

      Zango: [SBI $5EDB554D] Dossier Application data (Répertoire, fixed)
      C:\Program Files\Seekmo\

      Zango: [SBI $5A7042F6] Dossier Programme (Répertoire, fixed)
      c:\Program Files\Zango\

      180Solutions.SearchAssistant: [SBI $8D6AFC05] Dossier Programme (Répertoire, fixed)
      c:\Program Files\180searchassistant\

      180Solutions.SearchAssistant: [SBI $232559B8] Dossier Programme (Répertoire, fixed)
      C:\Windows\FLEOK\

      180Solutions.SearchAssistant: [SBI $CBCD65CE] Dossier Programme (Répertoire, fixed)
      C:\Program Files\180Solutions\


      --- Spybot - Search & Destroy version: 1.5.2 (build: 20080128) ---

      2008-01-28 blindman.exe (1.0.0.7)
      2008-01-28 SDDelFile.exe (1.0.2.4)
      2008-01-28 SDMain.exe (1.0.0.5)
      2007-10-07 SDShred.exe (1.0.1.2)
      2008-01-28 SDUpdate.exe (1.0.8.8)
      2008-01-28 SDWinSec.exe (1.0.0.11)
      2008-01-28 SpybotSD.exe (1.5.2.20)
      2008-01-28 TeaTimer.exe (1.5.2.16)
      2008-02-15 unins000.exe (51.49.0.0)
      2008-01-28 Update.exe (1.4.0.6)
      2008-01-28 advcheck.dll (1.5.4.5)
      2007-04-02 aports.dll (2.1.0.0)
      2007-11-17 DelZip179.dll (1.79.7.4)
      2008-01-28 SDFiles.dll (1.5.1.19)
      2008-01-28 SDHelper.dll (1.5.0.11)
      2008-01-28 Tools.dll (2.1.3.3)
      2008-03-26 Includes\Cookies.sbi (*)
      2007-12-26 Includes\Dialer.sbi (*)
      2008-03-26 Includes\DialerC.sbi (*)
      2008-03-26 Includes\HeavyDuty.sbi (*)
      2008-03-19 Includes\Hijackers.sbi (*)
      2008-03-26 Includes\HijackersC.sbi (*)
      2008-02-27 Includes\Keyloggers.sbi (*)
      2008-03-26 Includes\KeyloggersC.sbi (*)
      2004-11-29 Includes\LSP.sbi (*)
      2008-03-26 Includes\Malware.sbi (*)
      2008-03-26 Includes\MalwareC.sbi (*)
      2008-03-26 Includes\PUPS.sbi (*)
      2008-03-26 Includes\PUPSC.sbi (*)
      2008-03-26 Includes\Revision.sbi (*)
      2008-01-09 Includes\Security.sbi (*)
      2008-03-26 Includes\SecurityC.sbi (*)
      2008-03-19 Includes\Spybots.sbi (*)
      2008-03-26 Includes\SpybotsC.sbi (*)
      2007-11-06 Includes\Tracks.uti
      2008-03-19 Includes\Trojans.sbi (*)
      2008-03-26 Includes\TrojansC.sbi (*)
      2008-03-04 Plugins\Chai.dll
      2008-03-05 Plugins\Fennel.dll
      2008-02-26 Plugins\Mate.dll
      2008-12-24 Plugins\TCPIPAddress.dll



      --- System information ---
      Windows Vista (Build: 6000) (6.0.6000)
      / MSXML4SP2: Security update for MSXML4 SP2 (KB936181)
      / MSXML4SP2: Security update for MSXML4 SP2 (KB941833)


      --- Startup entries list ---
      Located: HK_LM:Run, AAWTray
      command: C:\Program Files\Lavasoft\Ad-Aware 2007\AAWTray.exe
      file: C:\Program Files\Lavasoft\Ad-Aware 2007\AAWTray.exe
      size: 88024
      MD5: 4659F02259D1B628B360EF4B092CCF01

      Located: HK_LM:Run, Acrobat Assistant 8.0
      command: "C:\Program Files\Acrobat 8.0\Acrobat\Acrotray.exe"
      file: C:\Program Files\Acrobat 8.0\Acrobat\Acrotray.exe
      size: 623992
      MD5: 5369A26E89C68E9420AE9B9CC6305834

      Located: HK_LM:Run, avast!
      command: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      file: C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
      size: 79224
      MD5: 88D86112DD9F2BB6A603674706C7E846

      Located: HK_LM:Run, BDRegion
      command: C:\Program Files\Cyberlink\Shared Files\brs.exe
      file: C:\Program Files\Cyberlink\Shared Files\brs.exe
      size: 91432
      MD5: 89954EEC62096524E6B08C6B62C12C11

      Located: HK_LM:Run, Kernel and Hardware Abstraction Layer
      command: KHALMNPR.EXE
      file: C:\Windows\KHALMNPR.EXE
      size: 55824
      MD5: F9E700BB7257EF2CDCB22EE499329E29

      Located: HK_LM:Run, LanguageShortcut
      command: "C:\Program Files\CyberLink\PowerDVD\Language\Language.exe"
      file: C:\Program Files\CyberLink\PowerDVD\Language\Language.exe
      size: 62760
      MD5: D5529678A1D92D125B43E3C2A308223E

      Located: HK_LM:Run, MSConfig
      command: "C:\Windows\system32\msconfig.exe" /auto
      file: C:\Windows\system32\msconfig.exe
      size: 222208
      MD5: 1BB128A09911A936E8EFC30C3F6C597C

      Located: HK_LM:Run, NeroFilterCheck
      command: C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
      file: C:\Program Files\Common Files\Nero\Lib\NeroCheck.exe
      size: 153136
      MD5: 8112D0DACAE746290FC87B3A980FA719

      Located: HK_LM:Run, NvCplDaemon
      command: RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
      file:
      size: 0
      MD5: D41D8CD98F00B204E9800998ECF8427E
      Warning: if the file is actually larger than 0 bytes,
      the checksum could not be properly calculated!

      Located: HK_LM:Run, NvMediaCenter
      command: RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
      file:
      size: 0
      MD5: D41D8CD98F00B204E9800998ECF8427E
      Warning: if the file is actually larger than 0 bytes,
      the checksum could not be properly calculated!

      Located: HK_LM:Run, NvSvc
      command: RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
      file:
      size: 0
      MD5: D41D8CD98F00B204E9800998ECF8427E
      Warning: if the file is actually larger than 0 bytes,
      the checksum could not be properly calculated!

      Located: HK_LM:Run, RemoteControl
      command: "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
      file: C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
      size: 72736
      MD5: 046E0AF7AC9FAC3D50BD2267139BA70F

      Located: HK_LM:Run, RtHDVCpl
      command: RtHDVCpl.exe
      file: C:\Windows\RtHDVCpl.exe
      size: 4423680
      MD5: 8FBAFD103A801D92E9EB528C9B841AEE

      Located: HK_LM:Run, Skytel
      command: Skytel.exe
      file: C:\Windows\Skytel.exe
      size: 1822720
      MD5: DA58BD76F27E4EA80811A9474ABA79E7

      Located: HK_LM:Run, SunJavaUpdateSched
      command: "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
      file: C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
      size: 132496
      MD5: D4F0F7437327DBAA264338BAAFB5E5AF

      Located: HK_LM:Run, Windows Defender
      command: %ProgramFiles%\Windows Defender\MSASCui.exe -hide
      file: C:\Program Files\Windows Defender\MSASCui.exe
      size: 1006264
      MD5: 9AD9E2FB2811123DA13DE84CC154AB77

      Located: HK_CU:Run, Sidebar
      where: S-1-5-19...
      command: %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem
      file: C:\Program Files\Windows Sidebar\Sidebar.exe
      size: 1232896
      MD5: 582F3A0BA61D8F0D50C66B592808B6D6

      Located: HK_CU:Run, WindowsWelcomeCenter
      where: S-1-5-19...
      command: rundll32.exe oobefldr.dll,ShowWelcomeCenter
      file:
      size: 0
      MD5: D41D8CD98F00B204E9800998ECF8427E
      Warning: if the file is actually larger than 0 bytes,
      the checksum could not be properly calculated!

      Located: HK_CU:Run, Sidebar
      where: S-1-5-20...
      command: %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem
      file: C:\Program Files\Windows Sidebar\Sidebar.exe
      size: 1232896
      MD5: 582F3A0BA61D8F0D50C66B592808B6D6

      Located: HK_CU:Run, WindowsWelcomeCenter
      where: S-1-5-20...
      command: rundll32.exe oobefldr.dll,ShowWelcomeCenter
      file:
      size: 0
      MD5: D41D8CD98F00B204E9800998ECF8427E
      Warning: if the file is actually larger than 0 bytes,
      the checksum could not be properly calculated!

      Located: HK_CU:Run, BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}
      where: S-1-5-21-1032764541-1194892956-3733679073-1000...
      command: "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
      file: C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
      size: 202024
      MD5: 5B2185DA1CDCDC40565B3F1ECDB11E75

      Located: HK_CU:Run, DAEMON Tools
      where: S-1-5-21-1032764541-1194892956-3733679073-1000...
      command: "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
      file: C:\Program Files\DAEMON Tools\daemon.exe
      size: 167368
      MD5: 7FE662041CE93F79DD20BD57BE151B3E

      Located: HK_CU:Run, Sidebar
      where: S-1-5-21-1032764541-1194892956-3733679073-1000...
      command: C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
      file: C:\Program Files\Windows Sidebar\sidebar.exe
      size: 1232896
      MD5: 582F3A0BA61D8F0D50C66B592808B6D6

      Located: HK_CU:Run, swg
      where: S-1-5-21-1032764541-1194892956-3733679073-1000...
      command: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      file: C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
      size: 68856
      MD5: E616A6A6E91B0A86F2F6217CDE835FFE

      Located: Démarrage (utilisateur), Paramètres de la souris et du clavier.lnk
      where: C:\Users\freud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup...
      command: C:\Program Files\Logitech\SetPoint\SetPoint.exe
      file: C:\Program Files\Logitech\SetPoint\SetPoint.exe
      size: 784912
      MD5: 4212D11C8599A16F05E8CC68F3177673



      --- Browser helper object list ---
      {00000250-0320-4dd4-be4f-7566d2314352} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:

      {13197ace-6851-45c3-a7ff-c281324d5489} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:

      {15651c7c-e812-44a2-a9ac-b467a2233e7d} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:

      {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} (BitComet ClickCapture)
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name: BitComet ClickCapture
      CLSID name: BitComet Helper
      Path: C:\Program Files\BitComet\tools\
      Long name: BitCometBHO_1.2.1.2.dll
      Short name: BITCOM~2.DLL
      Date (created): 25/01/2008 11:06:28
      Date (last access): 08/02/2008 23:47:02
      Date (last write): 25/01/2008 11:06:28
      Filesize: 496952
      Attributes: archive
      MD5: F36E6BAC45ADA3C733E994B9530B06BB
      CRC32: 36FE5574
      Version: 1.2.1.16

      {4e1075f4-eec4-4a86-add7-cd5f52858c31} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:

      {4e7bd74f-2b8d-469e-92c6-ce7eb590a94d} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:
      description: 2020Search
      classification: Confirmed as malware
      known filename: 2020Search2.dll<br>2020SE~1.DLL
      info link:
      info source: TonyKlein

      {53707962-6F74-2D53-2644-206D7942484F} (Spybot-S&D IE Protection)
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name: Spybot-S&D IE Protection
      description: Spybot-S&D IE Browser plugin
      classification: Legitimate
      known filename: SDhelper.dll
      info link: http://spybot.eon.net.au/
      info source: Patrick M. Kolla
      Path: C:\PROGRA~1\SPYBOT~1\
      Long name: SDHelper.dll
      Short name:
      Date (created): 15/02/2008 20:24:18
      Date (last access): 15/02/2008 20:24:18
      Date (last write): 28/01/2008 11:43:28
      Filesize: 1554256
      Attributes: archive
      MD5: 5248E02EFBCB64D328647CD00E384B85
      CRC32: C1B426A9
      Version: 1.5.0.11

      {5929cd6e-2062-44a4-b2c5-2c7e78fbab38} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:

      {5dafd089-24b1-4c5e-bd42-8ca72550717b} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:
      description: 180Solutions.com SurfAssistant
      classification: Confirmed as malware
      known filename: saiemod.dll
      info link:
      info source: TonyKlein

      {5fa6752a-c4a0-4222-88c2-928ae5ab4966} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:

      {622cc208-b014-4fe0-801b-874a5e5e403a} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:

      {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} (SSVHelper Class)
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name: SSVHelper Class
      Path: C:\Program Files\Java\jre1.6.0_03\bin\
      Long name: ssv.dll
      Short name:
      Date (created): 09/12/2007 15:41:14
      Date (last access): 24/09/2007 23:31:44
      Date (last write): 25/09/2007 01:11:34
      Filesize: 501136
      Attributes: archive
      MD5: D787E3123FAD2BD58AB45B9A5C360ACD
      CRC32: DDC625C2
      Version: 6.0.30.5

      {8674aea0-9d3d-11d9-99dc-00600f9a01f1} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:

      {965a592f-8efa-4250-8630-7960230792f1} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:

      {9c5b2f29-1f46-4639-a6b4-828942301d3e} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:

      {AA58ED58-01DD-4d91-8333-CF10577473F7} (Google Toolbar Helper)
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name: Google Toolbar Helper
      description: Google toolbar
      classification: Open for discussion
      known filename: googletoolbar.dll<br>googletoolbar*.dll<br>(* = number)<br>googletoolbar_en_*.**-big.dll<br>Googletoolbar_en_*.*.**-deleon.dll
      info link: http://www.google.com/intl/fr/toolbar/ie/index.html
      info source: TonyKlein
      Path: c:\program files\google\
      Long name: GoogleToolbar1.dll
      Short name: GOOGLE~1.DLL
      Date (created): 16/11/2007 23:42:56
      Date (last access): 16/11/2007 23:42:56
      Date (last write): 16/11/2007 23:42:56
      Filesize: 2436160
      Attributes: readonly archive
      MD5: 6D44E0C3B43D27484FBB355E470C4188
      CRC32: 2DE875CD
      Version: 4.0.1601.4978

      {AE7CD045-E861-484f-8273-0445EE161910} (Adobe PDF Conversion Toolbar Helper)
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name: Adobe PDF Conversion Toolbar Helper
      description: Adobe Acrobat
      classification: Legitimate
      known filename: AcroIEFavClient.dll
      info link: https://acrobat.adobe.com/us/en/acrobat/acrobat-pro.html
      info source: TonyKlein
      Path: C:\Program Files\Acrobat 8.0\Acrobat\
      Long name: AcroIEFavClient.dll
      Short name: ACROIE~1.DLL
      Date (created): 22/11/2007 18:50:46
      Date (last access): 11/05/2007 04:37:12
      Date (last write): 10/05/2007 22:47:04
      Filesize: 321120
      Attributes: archive
      MD5: FF29E3FB75E7726EE002B65A9F2D4A6E
      CRC32: 1831F50E
      Version: 8.1.0.0

      {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} (Google Toolbar Notifier BHO)
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name: Google Toolbar Notifier BHO
      Path: C:\Program Files\Google\GoogleToolbarNotifier\2.1.615.5858\
      Long name: swg.dll
      Short name:
      Date (created): 16/11/2007 23:42:40
      Date (last access): 16/11/2007 23:42:40
      Date (last write): 16/11/2007 23:42:40
      Filesize: 654832
      Attributes: archive
      MD5: B85A0FA95E24D9EA3B4181DAD716A27B
      CRC32: D4D52E25
      Version: 2.1.615.5858

      {cf021f40-3e14-23a5-cba2-717765728274} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:

      {fc3a74e5-f281-4f10-ae1e-733078684f3c} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:

      {ffff0001-0002-101a-a3c9-08002b2f49fb} ()
      location: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
      BHO name:
      CLSID name:



      --- ActiveX list ---
      {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool)
      DPF name:
      CLSID name: Windows Genuine Advantage Validation Tool
      Installer: C:\Windows\Downloaded Program Files\LegitCheckControl.inf
      Codebase: http://download.microsoft.com/download/5/b/0/5b0d4654-aa20-495c-b89f-c1c34c691085/LegitCheckControl.cab
      description:
      classification: Legitimate
      known filename: LegitCheckControl.DLL
      info link:
      info source: Safer Networking Ltd.
      Path: C:\Windows\system32\
      Long name: LegitCheckControl.DLL
      Short name: LEGITC~1.DLL
      Date (created): 11/10/2007 14:12:48
      Date (last access): 11/10/2007 14:12:48
      Date (last write): 11/10/2007 14:12:48
      Filesize: 1468968
      Attributes: archive
      MD5: FC6680B6D4812D017109518AC07DED0E
      CRC32: 4DC7C79C
      Version: 1.7.59.1

      {474F00F5-3853-492C-AC3A-476512BBC336} (UploadListView Class)
      DPF name:
      CLSID name: UploadListView Class
      Installer: C:\Windows\Downloaded Program Files\default.inf
      Codebase: http://picasaweb.google.fr/s/v/25.24/uploader2.cab
      Path: C:\Windows\Downloaded Program Files\
      Long name: UploaderX.dll
      Short name: UPLOAD~1.DLL
      Date (created): 18/09/2007 11:20:50
      Date (last access): 18/09/2007 11:20:50
      Date (last write): 18/09/2007 11:20:50
      Filesize: 878072
      Attributes: archive
      MD5: 4314A3B6073BDB452725F8EFD4B77C34
      CRC32: F6A8D4BC
      Version: 1.0.0.31

      {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.6.0)
      DPF name: Java Runtime Environment 1.6.0
      CLSID name: Java Plug-in 1.6.0_03
      Installer:
      Codebase: http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
      description: Sun Java
      classification: Legitimate
      known filename: %PROGRAM FILES%\JabaSoft\JRE\*\Bin\npjava131.dll
      info link:
      info source: Patrick M. Kolla
      Path: C:\Program Files\Java\jre1.6.0_03\bin\
      Long name: npjpi160_03.dll
      Short name: NPJPI1~1.DLL
      Date (created): 24/09/2007 23:31:44
      Date (last access): 24/09/2007 23:31:44
      Date (last write): 25/09/2007 01:11:34
      Filesize: 132496
      Attributes: archive
      MD5: D6A4682A6FF41832A3F1A7AB9AE08199
      CRC32: 9080B537
      Version: 6.0.30.5

      {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} (Java Runtime Environment 1.6.0)
      DPF name: Java Runtime Environment 1.6.0
      CLSID name: Java Plug-in 1.6.0_03
      Installer:
      Codebase: http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
      Path: C:\Program Files\Java\jre1.6.0_03\bin\
      Long name: ssv.dll
      Short name:
      Date (created): 09/12/2007 15:41:14
      Date (last access): 24/09/2007 23:31:44
      Date (last write): 25/09/2007 01:11:34
      Filesize: 501136
      Attributes: archive
      MD5: D787E3123FAD2BD58AB45B9A5C360ACD
      CRC32: DDC625C2
      Version: 6.0.30.5

      {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} (Java Runtime Environment 1.6.0)
      DPF name: Java Runtime Environment 1.6.0
      CLSID name: Java Plug-in 1.6.0_03
      Installer:
      Codebase: http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
      description:
      classification: Legitimate
      known filename: npjpi150_06.dll
      info link:
      info source: Safer Networking Ltd.
      Path: C:\Program Files\Java\jre1.6.0_03\bin\
      Long name: npjpi160_03.dll
      Short name: NPJPI1~1.DLL
      Date (created): 24/09/2007 23:31:44
      Date (last access): 24/09/2007 23:31:44
      Date (last write): 25/09/2007 01:11:34
      Filesize: 132496
      Attributes: archive
      MD5: D6A4682A6FF41832A3F1A7AB9AE08199
      CRC32: 9080B537
      Version: 6.0.30.5

      {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object)
      DPF name:
      CLSID name: Shockwave Flash Object
      Installer: C:\Windows\Downloaded Program Files\swflash.inf
      Codebase: http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
      description: Macromedia Shockwave Flash Player
      classification: Legitimate
      known filename:
      info link:
      info source: Patrick M. Kolla
      Path: C:\Windows\system32\Macromed\Flash\
      Long name: Flash9d.ocx
      Short name:
      Date (created): 11/06/2007 12:04:32
      Date (last access): 11/06/2007 12:04:32
      Date (last write): 11/06/2007 12:04:32
      Filesize: 2267368
      Attributes: readonly archive
      MD5: B01E2A41389FBA42B7B5A026EA88C9B7
      CRC32: 8980B6EC
      Version: 9.0.47.0



      --- Process list ---
      PID: 1232 ( 528) C:\Windows\system32\sbwltbxa.exe
      size: 90537
      MD5: 432535DC8660CBDB7B9BC107CF9FE295
      PID: 1240 (1220) C:\Windows\Explorer.EXE
      size: 2923520
      MD5: 6D06CD98D954FE87FB2DB8108793B399
      PID: 1832 (1240) C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
      size: 5146448
      MD5: 2ECA8CDEED7C82F879E766DA92A3561A
      PID: 0 ( 0) [System Process]
      PID: 4 ( 0) System
      PID: 360 ( 4) smss.exe
      size: 62976
      PID: 436 ( 424) csrss.exe
      size: 7680
      PID: 476 ( 468) csrss.exe
      size: 7680
      PID: 484 ( 424) wininit.exe
      size: 95744
      PID: 528 ( 468) winlogon.exe
      size: 308224
      PID: 556 ( 484) services.exe
      size: 279552
      PID: 568 ( 484) lsass.exe
      size: 7680
      PID: 576 ( 484) lsm.exe
      size: 210944
      PID: 724 ( 556) svchost.exe
      size: 22016
      PID: 776 ( 556) svchost.exe
      size: 22016
      PID: 808 ( 556) svchost.exe
      size: 22016
      PID: 884 ( 556) svchost.exe
      size: 22016
      PID: 920 ( 556) svchost.exe
      size: 22016
      PID: 980 ( 556) aawservice.exe


      --- Browser start & search pages list ---
      Spybot - Search & Destroy browser pages report, 29/03/2008 02:06:41

      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Local Page
      C:\Windows\system32\blank.htm
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Search Page
      http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main\Start Page
      https://www.free.fr/freebox/index.html
      HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\SearchAssistant
      http://www.google.com/toolbar/ie8/sidebar.html
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Local Page
      %SystemRoot%\system32\blank.htm
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Page
      http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Search Bar
      http://www.bing.com/spresults.aspx
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\Start Page
      https://www.google.com/?gws_rd=ssl
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main\SearchAssistant
      https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\SearchAssistant
      https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchasst.htm
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\CustomizeSearch
      https://www.bing.com/?toHttps=1&redig=8F3F334EA60E4B1CB4D040DCFE393A89{SUB_RFC1766}/srchasst/srchcust.htm
      HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl\@
      http://home.microsoft.com/access/autosearch.asp?p=%s


      --- Winsock Layered Service Provider list ---
      Protocol 0: MSAFD Tcpip [TCP/IP]
      GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP IP protocol
      DB filename: %SystemRoot%\system32\mswsock.dll
      DB protocol: MSAFD Tcpip [*]

      Protocol 1: MSAFD Tcpip [UDP/IP]
      GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP IP protocol
      DB filename: %SystemRoot%\system32\mswsock.dll
      DB protocol: MSAFD Tcpip [*]

      Protocol 2: MSAFD Tcpip [RAW/IP]
      GUID: {E70F1AA0-AB8B-11CF-8CA3-00805F48A192}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP IP protocol
      DB filename: %SystemRoot%\system32\mswsock.dll
      DB protocol: MSAFD Tcpip [*]

      Protocol 3: MSAFD Tcpip [TCP/IPv6]
      GUID: {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP IPv6 protocol
      DB filename: %SystemRoot%\system32\mswsock.dll
      DB protocol: MSAFD Tcpip [*]

      Protocol 4: MSAFD Tcpip [UDP/IPv6]
      GUID: {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP IPv6 protocol
      DB filename: %SystemRoot%\system32\mswsock.dll
      DB protocol: MSAFD Tcpip [*]

      Protocol 5: MSAFD Tcpip [RAW/IPv6]
      GUID: {F9EAB0C0-26D4-11D0-BBBF-00AA006C34E4}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP IPv6 protocol
      DB filename: %SystemRoot%\system32\mswsock.dll
      DB protocol: MSAFD Tcpip [*]

      Protocol 6: Fournisseur de services RSVP TCPv6
      GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP RVSP
      DB filename: %SystemRoot%\system32\rsvpsp.dll
      DB protocol: RSVP * Service Provider

      Protocol 7: Fournisseur de services RSVP TCP
      GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP RVSP
      DB filename: %SystemRoot%\system32\rsvpsp.dll
      DB protocol: RSVP * Service Provider

      Protocol 8: Fournisseur de services RSVP UDPv6
      GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP RVSP
      DB filename: %SystemRoot%\system32\rsvpsp.dll
      DB protocol: RSVP * Service Provider

      Protocol 9: Fournisseur de services RSVP UDP
      GUID: {9D60A9E0-337A-11D0-BD88-0000C082E69A}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP RVSP
      DB filename: %SystemRoot%\system32\rsvpsp.dll
      DB protocol: RSVP * Service Provider

      Protocol 10: MSAFD NetBIOS [\Device\NetBT_Tcpip_{B269F48A-FC2C-4B7C-9CF9-5F9D2A71FF14}] SEQPACKET 4
      GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP NetBios protocol
      DB filename: %SystemRoot%\system32\mswsock.dll
      DB protocol: MSAFD NetBIOS *

      Protocol 11: MSAFD NetBIOS [\Device\NetBT_Tcpip_{B269F48A-FC2C-4B7C-9CF9-5F9D2A71FF14}] DATAGRAM 4
      GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP NetBios protocol
      DB filename: %SystemRoot%\system32\mswsock.dll
      DB protocol: MSAFD NetBIOS *

      Protocol 12: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{B269F48A-FC2C-4B7C-9CF9-5F9D2A71FF14}] SEQPACKET 5
      GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP NetBios protocol
      DB filename: %SystemRoot%\system32\mswsock.dll
      DB protocol: MSAFD NetBIOS *

      Protocol 13: MSAFD NetBIOS [\Device\NetBT_Tcpip6_{B269F48A-FC2C-4B7C-9CF9-5F9D2A71FF14}] DATAGRAM 5
      GUID: {8D5F1830-C273-11CF-95C8-00805F48A192}
      Filename: %SystemRoot%\system32\mswsock.dll
      Description: Microsoft Windows NT/2k/XP NetBios protocol
      DB filename: %SystemRoot%\system32\mswsock.dll
      DB protocol: MSAFD NetBIOS *

      Namespace Provider 0: Espace de noms NLAv1 (Network Location Awareness Legacy)
      GUID: {6642243A-3BA8-4AA6-BAA5-2E0BD71FDD83}
      Filename:
      Description: Microsoft Windows NT/2k/XP name space provider
      DB filename: %SystemRoot%\system32\mswsock.dll
      DB protocol: NLA-Namespace

      Namespace Provider 1: TCP/IP
      GUID: {22059D40-7E9E-11CF-AE5A-00AA00A7112B}
      Filename:
      Description: Microsoft Windows NT/2k/XP TCP/IP name space provider
      DB filename: %SystemRoot%\system32\mswsock.dll
      DB protocol: TCP/IP

      Namespace Provider 2: NTDS
      GUID: {3B2637EE-E580-11CF-A555-00C04FD8D4AC}
      Filename: %SystemRoot%\System32\winrnr.dll
      Description: Microsoft Windows NT/2k/XP name space provider
      DB filename: %SystemRoot%\system32\winrnr.dll
      DB protocol: NTDS

      Namespace Provider 3: Fournisseur Shim d'affectation de noms de messagerie
      GUID: {964ACBA2-B2BC-40EB-8C6A-A6DB40161CAE}
      Filename:

      Namespace Provider 4: Fournisseur d'espace de noms du nuage PNRP
      GUID: {03FE89CE-766D-4976-B9C1-BB9BC42C7B4D}
      Filename:

      Namespace Provider 5: Fournisseur d'espace de noms du nom PNRP
      GUID: {03FE89CD-766D-4976-B9C1-BB9BC42C7B4D}
      Filename:

      Namespace Provider 6: mdnsNSP
      GUID: {B600E6E9-553B-4A19-8696-335E5C896153}
      Filename: C:\Program Files\Bonjour\mdnsNSP.dll
      Description: Apple Rendezvous protocol
      DB filename: %ProgramFiles%\Rendezvous\bin\mdnsNSP.dll
      DB protocol: mdnsNSP


      de retour en session Normale>>>Re bazar pop et compagnie...
      rien ni fait...c'est quoi ce binz?
      0
  2. green day Messages postés 26374 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   2 166
     
    Salut

    tu as pas mal de bébéttes à déloger, patience ! :)

    * Faire un clic droit sur ce lien : http://perso.orange.fr/il.mafioso/Navifix/Navilog1.zip
    * Enregistrez la cible (du lien) sous... et enregistrez-le sur le bureau.
    * Faire un clic droit sur navilog1.zip et choisir "tout extraire"
    * Double-cliquez sur navilog1.exe
    * Arriver au menu principal, choisir l'option 1 et valider.
    * Patientez jusqu'au message : Analyse Termine le ...
    * Le rapport sera en outre sauvegardé à la racine du disque (fixnavi.txt)

    ++
    0
    1. freedo Messages postés 160 Statut Membre 3
       
      salut green day,

      te casse pas ...sur ma bécane j'ai 3 OS....XP m'a méchamment planté
      alos j'en ai profité pour faire une réinstalle de XP et Vista en multiboot...
      Comme ça c'est réglé...un format et on repart à zéro...

      Donc je suis de retour avec un système clean, Par contre je veux bien un tuyau
      pour ma protection sous Vista.
      J'ai installer ANTIVIR à la place de Avast...pour les spyware je met quoi en protection temps réel?

      freedo
      0
  3. green day Messages postés 26374 Date d'inscription   Statut Modérateur, Contributeur sécurité Dernière intervention   2 166
     
    Salut

    ah ! ok

    installe un parefeu ! ( pas besoin d'installer spyware doctor )

    ==> http://www.commentcamarche.net/telecharger/telecharger 34055293 pc tools firewall plus

    pour les spyware je met quoi en protection temps réel?


    pas besoin de les avoir en temps réel, ce qui importe c'est de faire les mises à jour avant de scanner !

    avg est très bien, ajouter à ccleaner et quelques autres que je te laisse choisir :

    http://www.commentcamarche.net/faq/sujet 2432 securite proteger un ordinateur contre les malwares d internet

    @+
    0
  4. darom Messages postés 61 Statut Membre
     
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 13:02:19, on 03/04/2008
    Platform: Windows Vista (WinNT 6.00.1904)
    MSIE: Internet Explorer v7.00 (7.00.6000.16609)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Apoint\Apoint.exe
    C:\Program Files\Sony\Network Utility\LANUtil.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Windows\ehome\ehtray.exe
    C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\ProgramData\vktrxxpu\zglyruzy.exe
    C:\ProgramData\dcdujgfw\bmxwdgvk.exe
    C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
    C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
    C:\Program Files\Apoint\Apntex.exe
    C:\Windows\ehome\ehmsas.exe
    C:\Windows\system32\wbem\unsecapp.exe
    C:\Program Files\Internet Explorer\ieuser.exe
    C:\Users\maurad\Documents\HiJackThis.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Windows\system32\Macromed\Flash\FlashUtil9b.exe
    C:\Users\maurad\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JR6TRSYL\HiJackThis[1].exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.lequipe.fr/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.club-vaio.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\2.bin\A5SRCHAS.DLL
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O1 - Hosts: ::1 localhost
    O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Download Manager Browser Helper Object - {19C8E43B-07B3-49CB-BFFC-6777B593E6F8} - C:\PROGRA~1\COMMON~1\fluxDVD\DOWNLO~1\XEBDLH~1.DLL
    O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\2.bin\A5SRCHAS.DLL
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\PROGRA~1\GOOGLE~1\BAE.dll
    O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\2.bin\ASKTBAR.DLL
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\2.bin\ASKTBAR.DLL
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKCU\..\Run: [NSUFloatingUI] "C:\Program Files\Sony\Network Utility\LANUtil.exe"
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKCU\..\Run: [vktrxxpu] C:\ProgramData\vktrxxpu\zglyruzy.exe
    O4 - HKCU\..\Run: [emYWoy0B1C] C:\ProgramData\dcdujgfw\bmxwdgvk.exe
    O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
    O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll
    O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
    O13 - Gopher Prefix:
    O15 - Trusted Zone: *.canalplay.com
    O15 - Trusted Zone: *.canalplusactive.com
    O15 - Trusted Zone: *.canalplay.com (HKLM)
    O15 - Trusted Zone: *.canalplusactive.com (HKLM)
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
    O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
    O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
    O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
    O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
    O23 - Service: Norton Save and Restore - Symantec Corporation - C:\Program Files\Norton Save and Restore\Agent\VProSvc.exe
    O23 - Service: NSUService - Sony Corporation - C:\Program Files\Sony\Network Utility\NSUService.exe
    O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
    O23 - Service: Service CANALPLAY - Canal+ Active - C:\Program Files\Lecteur CANALPLAY\CanalPlayService.exe
    O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
    O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
    O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
    O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
    O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
    O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe
    O23 - Service: VAIO Media Content Collection (VAIOMediaPlatform-UCLS-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\UCLS.exe
    O23 - Service: VAIO Media Content Collection (HTTP) (VAIOMediaPlatform-UCLS-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
    O23 - Service: VAIO Media Content Collection (UPnP) (VAIOMediaPlatform-UCLS-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    O23 - Service: VAIO Content Metadata Intelligent Analyzing Manager (VcmIAlzMgr) - Sony Corporation - C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
    O23 - Service: VAIO Content Metadata XML Interface (VcmXmlIfHelper) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper.exe
    O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
    O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
    O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
    O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
    0
  5. Vous n’avez pas trouvé la réponse que vous recherchez ?

    Posez votre question
  6. darom Messages postés 61 Statut Membre
     
    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 13:02:19, on 03/04/2008
    Platform: Windows Vista (WinNT 6.00.1904)
    MSIE: Internet Explorer v7.00 (7.00.6000.16609)
    Boot mode: Normal

    Running processes:
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files\Apoint\Apoint.exe
    C:\Program Files\Sony\Network Utility\LANUtil.exe
    C:\Program Files\Windows Live\Messenger\msnmsgr.exe
    C:\Windows\ehome\ehtray.exe
    C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe
    C:\Program Files\Windows Media Player\wmpnscfg.exe
    C:\ProgramData\vktrxxpu\zglyruzy.exe
    C:\ProgramData\dcdujgfw\bmxwdgvk.exe
    C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
    C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe
    C:\Program Files\Apoint\Apntex.exe
    C:\Windows\ehome\ehmsas.exe
    C:\Windows\system32\wbem\unsecapp.exe
    C:\Program Files\Internet Explorer\ieuser.exe
    C:\Users\maurad\Documents\HiJackThis.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
    C:\Windows\system32\Macromed\Flash\FlashUtil9b.exe
    C:\Users\maurad\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\JR6TRSYL\HiJackThis[1].exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.lequipe.fr/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.club-vaio.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://www.bing.com/?toHttps=1&redig=5FC791212101479BAFBE1A679848B1AF
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.msn.com/fr-fr/?ocid=iehp
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    R3 - URLSearchHook: (no name) - {9CB65206-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\2.bin\A5SRCHAS.DLL
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O1 - Hosts: ::1 localhost
    O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: Aide pour le lien d'Adobe PDF Reader - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: Download Manager Browser Helper Object - {19C8E43B-07B3-49CB-BFFC-6777B593E6F8} - C:\PROGRA~1\COMMON~1\fluxDVD\DOWNLO~1\XEBDLH~1.DLL
    O2 - BHO: EoRezoBHO - {64F56FC1-1272-44CD-BA6E-39723696E350} - C:\Program Files\EoRezo\EoAdv\EoRezoBHO.dll (file missing)
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
    O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
    O2 - BHO: Programme d'aide de l'Assistant de connexion Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Ask Search Assistant BHO - {9CB65201-89C4-402c-BA80-02D8C59F9B1D} - C:\Program Files\AskTBar\SrchAstt\2.bin\A5SRCHAS.DLL
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\PROGRA~1\GOOGLE~1\BAE.dll
    O2 - BHO: Ask Toolbar BHO - {FE063DB1-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\2.bin\ASKTBAR.DLL
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
    O3 - Toolbar: Ask Toolbar - {FE063DB9-4EC0-403e-8DD8-394C54984B2C} - C:\Program Files\AskTBar\bar\2.bin\ASKTBAR.DLL
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
    O4 - HKCU\..\Run: [NSUFloatingUI] "C:\Program Files\Sony\Network Utility\LANUtil.exe"
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMBgMonitor.exe"
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKCU\..\Run: [vktrxxpu] C:\ProgramData\vktrxxpu\zglyruzy.exe
    O4 - HKCU\..\Run: [emYWoy0B1C] C:\ProgramData\dcdujgfw\bmxwdgvk.exe
    O4 - Startup: OneNote 2007 - Capture d'écran et lancement.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
    O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
    O8 - Extra context menu item: E&xporter vers Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll
    O9 - Extra 'Tools' menuitem: Console Java (Sun) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\npjpi160_01.dll
    O9 - Extra button: Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: &Envoyer à OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
    O13 - Gopher Prefix:
    O15 - Trusted Zone: *.canalplay.com
    O15 - Trusted Zone: *.canalplusactive.com
    O15 - Trusted Zone: *.canalplay.com (HKLM)
    O15 - Trusted Zone: *.canalplusactive.com (HKLM)
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
    O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
    O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe (file missing)
    O23 - Service: GoogleDesktopManager - Google - C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
    O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe
    O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe
    O23 - Service: Norton Save and Restore - Symantec Corporation - C:\Program Files\Norton Save and Restore\Agent\VProSvc.exe
    O23 - Service: NSUService - Sony Corporation - C:\Program Files\Sony\Network Utility\NSUService.exe
    O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
    O23 - Service: Service CANALPLAY - Canal+ Active - C:\Program Files\Lecteur CANALPLAY\CanalPlayService.exe
    O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
    O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
    O23 - Service: VAIO Event Service - Sony Corporation - C:\Program Files\Sony\VAIO Event Service\VESMgr.exe
    O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
    O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
    O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe
    O23 - Service: VAIO Media Content Collection (VAIOMediaPlatform-UCLS-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\UCLS.exe
    O23 - Service: VAIO Media Content Collection (HTTP) (VAIOMediaPlatform-UCLS-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
    O23 - Service: VAIO Media Content Collection (UPnP) (VAIOMediaPlatform-UCLS-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    O23 - Service: VAIO Content Metadata Intelligent Analyzing Manager (VcmIAlzMgr) - Sony Corporation - C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
    O23 - Service: VAIO Content Metadata XML Interface (VcmXmlIfHelper) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper.exe
    O23 - Service: VAIO Entertainment UPnP Client Adapter (Vcsw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe
    O23 - Service: VAIO Entertainment Database Service (VzCdbSvc) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
    O23 - Service: VAIO Entertainment File Import Service (VzFw) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzFw.exe
    O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe
    0
    1. Utilisateur anonyme
       
      BONJOUR ???
      0
  7. jfkpresident Messages postés 13877 Statut Contributeur sécurité 1 175
     
    pour darom:créé ton propre message afin qu'on puisse t'aider STP MERCI !
    procede comme suit:http://pageperso.aol.fr/balltrap34/demofairesontmessage.htm
    0
Précédent
  • 1
  • 2